Cyber Threats require a new governance model

A very interesting opinion by the NACD arguing that cyber threat are as complex, require as much expertise and attention and have as large impacts as financial risks. Because of this, like financial risks require an audit committee, Cyber risks warrant the creation of a separate committee of the board, of which the CISO is a member, and that can receive support from outside advisors to ensure the board adequately meets its oversight responsibilities. What do you think?

http://boardleadership.nacdonline.org/rs/815-YTL-682/images/The%20Director%27s%20Chair.pdf?mkt_tok=3RkMMJWWfF9wsRonsqnPZKXonjHpfsX57%2BsvWKG%2BlMI%2F0ER3fOvrPUfGjI4DScFlI%2BSLDwEYGJlv6SgFQrHAMbl01rgLUxM%3D