CISOs are confident in what cybersecurity threat information to present to the board and what type of information the board wants to hear. However, much of this information is either misunderstood, too technical or CISOs aren’t able to put security and risk in context. How can security leaders streamline the process and provide more actionable information? For the board to make decisions regarding an organization’s cybersecurity risk posture, they need quantitative information in the framework of relevant business concerns. This panel presentation provides insights modern CISOs can use to field tough questions from board members and to translate cybersecurity risk into a language non-security practitioners can understand.