The key informants' current role, years of experience, country, industry sector, qualifications and interview duration
| KI # | Country | Role | Sector | Experience (years) | Qualification (education/professional accreditation) | Interview duration (minutes) |
|---|---|---|---|---|---|---|
| 1 | Saudi Arabia | IS security consultant | Education | >12 years | PhD (Security Software Design) | 60 |
| 2 | Saudi Arabia | CISO (chief information officer) | Fintech | ∼8 years | BSc (Computing) CEH and CISSP | 45 |
| 3 | Saudi Arabia | Supervisor in the cybersecurity department | Education | 10 years | PhD (Cyber Security Management) ISO27001 | 55 |
| 4 | Kuwait | Cyber security leader | Oil and Gas | ∼22 years | PhD (Management and Operations) Cybersecurity Influencer | 60 |
| 5 | Lebanon | Governance and risk management compliance manager | Banking | 10 years | BSc (Computer Information Systems) CISA, CISM, CRISC and CIPM | 40 |
| 6 | Qatar | Senior manager for governance risk and compliance | Telecommunications | 12 years | MSc (Cyber Security) CISM, ISO27001 | 45 |
| 7 | UAE | InfoSec training lead | IT Services (SME) | 10 years | BSc (Computer Software Engineering) | 40 |
| 8 | UAE | Consultant in IS security | IT Services (SME) | >17 years | MBA CISSP, ISO27001 and CRISC | 50 |
| 9 | Saudi Arabia | CISO (chief information officer) | Petrochemicals and Chemicals | 15 years | MSc (Information Security) ISOC | 55 |
| 10 | Kuwait | CISO (chief information officer | Oil and Energy | 8 years | MSc (Computer Engineering) | 40 |
| 11 | USA | Consultant in IS security | Financial Services and Education | 20 years | BSc (Computer Information Systems) Certified SANS Instructor | 60 |
| 12 | UK | CISO (chief information officer) | IT Services | ∼20 years | MSc (Information Security) CISSP, CISM and ISO27001 | 55 |
| 13 | USA | Director for cyber leadership and strategy solutions | IT Services | 25 years | MBA (Information Security Management) CISM | 45 |
| 14 | Kuwait | Head of information security governance | IT Services | 20 years | MSc (Information Security) CISM, ISO270001 | 50 |
| 15 | Saudi Arabia | Cyber security consultant | Computer and Network Security | 10 years | PHD (Cyber Security) CISM | 60 |
| 16 | Egypt | Head of cyber security | Banking | 20 years | MSc (Business Information Technology) C|CISO, CISM, CRISC and ISO27001 | 55 |
| 17 | UK | Security Awareness Manager | Banking | 15 years | MSc (Information Security and Privacy) | 50 |
| 18 | USA | Director of Security Awareness | Computer and Network Security | >20 years | MBA Certified SANS Instructor | 45 |
| 19 | Ireland | Senior lecture in IS security | Education | 17 years | PhD (IS Security Management) | 45 |
| 20 | Ireland | IT security officer | Education | 21 years | MBA (Technology and Management) | 50 |
| KI # | Country | Role | Sector | Experience (years) | Qualification (education/professional accreditation) | Interview duration (minutes) |
|---|---|---|---|---|---|---|
| 1 | Saudi Arabia | IS security consultant | Education | >12 years | PhD (Security Software Design) | 60 |
| 2 | Saudi Arabia | CISO (chief information officer) | Fintech | ∼8 years | BSc (Computing) | 45 |
| 3 | Saudi Arabia | Supervisor in the cybersecurity department | Education | 10 years | PhD (Cyber Security Management) | 55 |
| 4 | Kuwait | Cyber security leader | Oil and Gas | ∼22 years | PhD (Management and Operations) | 60 |
| 5 | Lebanon | Governance and risk management compliance manager | Banking | 10 years | BSc (Computer Information Systems) | 40 |
| 6 | Qatar | Senior manager for governance risk and compliance | Telecommunications | 12 years | MSc (Cyber Security) | 45 |
| 7 | UAE | InfoSec training lead | IT Services (SME) | 10 years | BSc (Computer Software Engineering) | 40 |
| 8 | UAE | Consultant in IS security | IT Services (SME) | >17 years | MBA | 50 |
| 9 | Saudi Arabia | CISO (chief information officer) | Petrochemicals and Chemicals | 15 years | MSc (Information Security) | 55 |
| 10 | Kuwait | CISO (chief information officer | Oil and Energy | 8 years | MSc (Computer Engineering) | 40 |
| 11 | USA | Consultant in IS security | Financial Services and Education | 20 years | BSc (Computer Information Systems) | 60 |
| 12 | UK | CISO (chief information officer) | IT Services | ∼20 years | MSc (Information Security) | 55 |
| 13 | USA | Director for cyber leadership and strategy solutions | IT Services | 25 years | MBA (Information Security Management) | 45 |
| 14 | Kuwait | Head of information security governance | IT Services | 20 years | MSc (Information Security) | 50 |
| 15 | Saudi Arabia | Cyber security consultant | Computer and Network Security | 10 years | PHD (Cyber Security) | 60 |
| 16 | Egypt | Head of cyber security | Banking | 20 years | MSc (Business Information Technology) | 55 |
| 17 | UK | Security Awareness Manager | Banking | 15 years | MSc (Information Security and Privacy) | 50 |
| 18 | USA | Director of Security Awareness | Computer and Network Security | >20 years | MBA | 45 |
| 19 | Ireland | Senior lecture in IS security | Education | 17 years | PhD (IS Security Management) | 45 |
| 20 | Ireland | IT security officer | Education | 21 years | MBA (Technology and Management) | 50 |
Source(s): Table legend for professional accreditation
•CEH: Certified Ethical Hacker
•ISO27001: International Standard (Information Security Management Systems)
•CISA: Certified Information Systems Auditor
•CISM: Certified Information Security Management
•CRISC: Certified in Risk and Information Systems Control
•CIPM: Certificate in Investment Performance Measurement
•CISSP: Certified Information Systems Security Professional
•ISOC: Industrial Security Oversight Certification
•SANS: SysAdmin, Audit, Network and Security
•C|CISO: Certified Chief Information Security Officer
Author's own creation/work
Sharing content requires targeting cookies to be enabled. Please update your cookie preferences to use this feature.