CISO

Code of

Ethics

Purpose and Scope

The Global CISO Council Code of Ethics & Governance establishes the principles of professional conduct expected of all individuals and organizations affiliated with the Council, including members, volunteers, officers, contractors, and CISO Council Chapters.

This Code ensures that all Chapter activities are conducted with integrity, accountability, and respect, in accordance with applicable laws, nonprofit standards, and CISO Council’s policies. Adherence to this Code is a condition of membership, leadership, and affiliation remains aligned with humanity’s broader good.

Ethical Principles

1. Integrity and Honesty

  • Act truthfully and transparently in all professional dealings.
  • Avoid conflicts of interest and disclose any circumstance that could compromise impartial judgment.
  • Never use Chapter resources for personal or commercial gain.

2. Professional Competence and Due Care

  • Maintain the highest levels of professional knowledge and competence in cybersecurity and leadership.
  • Perform duties diligently, ethically, and to the best of one’s abilities.
  • Share expertise responsibly to advance the cybersecurity profession.

3. Confidentiality

  • Respect and protect the confidentiality of information acquired through Chapter activities.
  • Do not disclose proprietary, personal, or sensitive information unless authorized or legally required.

4. Fairness and Respect 

  • Treat all individuals with dignity, equity, and respect.
  • Promote an inclusive and diverse community that values collaboration and open exchange of ideas.
  • Harassment, discrimination, or abuse of authority will not be tolerated.

5. Accountability

  • Accept responsibility for personal actions and decisions.
  • Report unethical behavior or policy violations promptly through designated reporting channels.
  • Support transparency in governance, operations, and financial management.

6. Compliance with Laws and Policies

  • Observe all applicable laws, regulations, and Global CISO Council policies, including anti-bribery, anti-corruption, data protection, and financial integrity standards

Responsibilities by Role

Members:

  • Uphold the reputation and objectives of the Global CISO Council and its Chapters.
  • Participate constructively in programs, events, and initiatives.
  • Act in ways that strengthen trust and collaboration within the cybersecurity community.

Chapter Leaders:

  • Lead with fairness, transparency, and accountability.
  • Ensure accurate record keeping, ethical financial management, and compliance with reporting obligations.
  • Foster a positive and inclusive environment for all members.

Global CISO Council Officers and Trustees:

  • Exercise fiduciary responsibility with honesty and prudence.
  • Avoid conflicts between personal, professional, or financial interests and Council duties.
  • Oversee governance in accordance with this Code and all Council by laws.

Conflict of Interest

All individuals acting on behalf of the Council or its Chapters must:

  • Disclose any actual, potential, or perceived conflicts of interest.
  • Abstain from decisions where impartiality could be questioned.
  • Avoid gifts, favors, or benefits that could influence judgment or appear improper.

The Council’s Ethics Committee will review conflict disclosures and recommend appropriate actions to the Board of Trustees.

The Ethics Committee is a standing committee constituted by the Global CISO Council for the purpose of oversight and enforcement of this Code. 

Reporting and Enforcement

  1. Reporting: Suspected violations of this Code should be reported confidentially to [email protected]
  2. Investigation: The Ethics Committee shall conduct impartial investigations, ensuring confidentiality, fairness, and due process.
  3. Sanctions: Confirmed violations may result in disciplinary actions, including:
  • Formal reprimand or written warning.
  • Suspension or termination of membership.
  • Removal from chapter or Global CISO Council leadership roles.
  • Revocation of chapter affiliation.

Appeals

Any individual subject to disciplinary action may submit a written appeal within 30 days of notice. The Board of Trustees shall review all appeals and issue a final decision within 60 days. All decisions of the Board shall be final and binding

Periodic Review

This Code of Ethics shall be reviewed at least once every three years by the Ethics Committee and approved by the Council’s Board of Trustees to ensure continued relevance and alignment with global ethical standards.

Outreach & Advocacy

Partner with schools, universities, and organizations to promote cybersecurity education and awareness.

Member Affirmation

All individuals affiliated with the Global CISO Council agree to abide by this Code of Ethics as a condition of participation and leadership.