Risk
1/4/2010
09:37 PM
Chris Murphy
Chris Murphy
Commentary
Connect Directly
Google+
LinkedIn
Twitter
RSS
E-Mail
50%
50%

Global CIO: 13 CIOs Describe Their Biggest Mistakes

We all make decisions we wish we could do over. These leaders aren't afraid to admit theirs.

When InformationWeek editors drew up questions for our ongoing CIO Profile series, we included one asking about the "Decision I wish I could do over." I was ready for a lot of job interview type responses, of the "my biggest fault is trying too hard" variety.

Instead, I've been blown away by the candor, humility, and perspective these leaders have shared. CIOs have discussed genuine mistakes--hold the sugar coating, with a side of lesson learned. They've relived problems with vendor contracts, outsourcing, and project management. They've lamented letting a troubled project drag on. Many are intensely personal looks back on career missteps, including chasing dot-com riches.

It's leadership by example. Of course we all know it's OK to make mistakes--in concept. The hard part is staring down the real thing. Here are some "Decisions I wish I could do over" that your CIO peers shared during the past year, with links to their full CIO Profiles:

Michael Manchisi , CTO, MasterCard Global Technology and Operations: As a financial officer earlier in my career, I saw all the signs that a project was heading south, but I kept it going longer than I should have. I learned the importance of failing fast and redirecting resources and dollars to more mission-critical projects.

Peter Whatnell, CIO of Sunoco: At one company, we were looking at a major legacy replacement project and a number of the executives didn't want to "go to the trouble" of defining a business case, arguing that it was an obvious business infrastructure investment. Against my better judgment, I was convinced to go along with that view. Of course, 10 months later, the project was killed.

Ed Trainor, CIO of Amtrak: When I was CIO of Paramount Pictures, a subsidiary of Viacom, the CIOs of the major Viacom business units launched a company-wide infrastructure outsourcing initiative that ultimately failed, primarily because the result/reward structure was overly unbalanced in Viacom's favor, as we didn't construct a true win-win situation for both parties. One lesson I learned was that there has to be sufficient benefit for both parties to make it truly successful. I also learned that outsourcing is simply another way of many to accomplish your business objectives and that it isn't a general solution to be applied to all problems.

Mark Greenlaw, VP and CIO of Cognizant: 2003 was a tough year for me when the startup I worked for was acquired, and I was laid off. I took a job that wasn't right for me. I stayed only a short time and felt I let down the person who hired me.

Global CIO
Global CIOs: A Site Just For You
Visit InformationWeek's Global CIO -- our new online community and information resource for CIOs operating in the global economy.

Amin Kassem, Executive VP and CIO of SHPS: A major software vendor tried to change a software licensing model on already licensed software in order to charge higher fees. After we obtained bids from competitors, it quickly stopped its efforts to change the licensing model, and I kept the software. I wish I'd replaced the vendor, as it wasn't serving as our business partner. Thankfully, its technology plays a less critical role in our current technology strategy.

Previous
1 of 2
Next
Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading December Tech Digest
Experts weigh in on the pros and cons of end-user security training.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-5395
Published: 2014-11-21
Multiple cross-site request forgery (CSRF) vulnerabilities in Huawei HiLink E3276 and E3236 TCPU before V200R002B470D13SP00C00 and WebUI before V100R007B100D03SP01C03, E5180s-22 before 21.270.21.00.00, and E586Bs-2 before 21.322.10.00.889 allow remote attackers to hijack the authentication of users ...

CVE-2014-7137
Published: 2014-11-21
Multiple SQL injection vulnerabilities in Dolibarr ERP/CRM before 3.6.1 allow remote authenticated users to execute arbitrary SQL commands via the (1) contactid parameter in an addcontact action, (2) ligne parameter in a swapstatut action, or (3) project_ref parameter to projet/tasks/contact.php; (4...

CVE-2014-7871
Published: 2014-11-21
SQL injection vulnerability in Open-Xchange (OX) AppSuite before 7.4.2-rev36 and 7.6.x before 7.6.0-rev23 allows remote authenticated users to execute arbitrary SQL commands via a crafted jslob API call.

CVE-2014-8090
Published: 2014-11-21
The REXML parser in Ruby 1.9.x before 1.9.3 patchlevel 551, 2.0.x before 2.0.0 patchlevel 598, and 2.1.x before 2.1.5 allows remote attackers to cause a denial of service (CPU and memory consumption) a crafted XML document containing an empty string in an entity that is used in a large number of nes...

CVE-2014-8469
Published: 2014-11-21
Cross-site scripting (XSS) vulnerability in Guests/Boots in AdminCP in Moxi9 PHPFox before 4 Beta allows remote attackers to inject arbitrary web script or HTML via the User-Agent header.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Now that the holiday season is about to begin both online and in stores, will this be yet another season of nonstop gifting to cybercriminals?