Author Archives: Wayne Horkan

About Wayne Horkan

I’m a technologist and engineer, typically working in enterprise architecture and systems engineering.

Why Self-Attestation Doesn’t Work: Lessons for the DSIT Code

This article argues that self-attestation has failed as a credible assurance mechanism, citing Cyber Essentials’ low uptake and ISO 27001’s limits. It warns that if DSIT builds the Cyber Governance Code of Practice on self-assessment, it will fail. To succeed, the Code must mandate independent, accredited assurance that directors, investors, and regulators can trust.

Continue reading

Lester Dent’s Master Plot Formula: A Guide for Structuring Compelling Narratives

This article outlines Lester Dent’s Master Plot Formula, a systematic approach designed to help writers craft engaging and tightly structured stories. Originating from the pulp fiction era, Dent’s formula divides a story into four equal parts, each with specific goals and challenges for the protagonist, culminating in a resolution that ties up the narrative threads. It offers a practical framework for narrative development, emphasizing pacing, character predicaments, and a satisfying conclusion.

Continue reading

Directors and Cyber Responsibility: Towards a New Company Law

This article examines DSIT’s 2024 proposal to embed cyber responsibility into company law. It argues that directors should carry legal duties for cyber resilience, as they already do for finance and health and safety — but only if those duties are proportionate, professionalised, and practical. The consultation did not change the law, but the direction of travel is unmistakable.

Continue reading

From Practitioner to Professional Body: The IET Response on Cyber Governance

This article examines the IET’s joint response to DSIT’s 2024 consultation on the Cyber Governance Code of Practice. Building on my practitioner-led analysis, the IET added institutional weight: emphasising professional recognition, proportionality for SMEs, broader engagement, and integration into training. It shows how practitioner insight and professional consensus can work together to shape policy.

Continue reading

Securing Success: Strategic Questions for Cyber Startups Seeking Growth in the West Midlands and UK

This article outlines critical questions that cyber security startups, particularly those like Cyber Tzar after completing the NCSC’s “NCSC for Startups” Accelerator programme, should consider when seeking support from regional organizations such as the West Midlands Growth Company or Invest West Midlands. It emphasizes prioritising inquiries around funding and marketing to harness regional opportunities for development and expansion.

Continue reading

Directors and Cyber Governance: My Practitioner’s Response to DSIT’s Consultation

This article revisits my practitioner-led response to DSIT’s 2024 consultation on the Cyber Governance Code of Practice. It highlights key issues I raised: supply chain risk, flaws in self-attestation, tool overload, lack of incentives, and the need for continuous governance. The argument is simple: cyber resilience belongs in the boardroom, but only if policy is grounded in practice.

Continue reading

The Senate’s Latest Quest for Social Media Accountability

In an era where social media’s sway on public opinion, privacy, and youth well-being has become a burning issue, the U.S. Senate Judiciary Committee’s latest hearing on Wednesday the 31st of January, 2024, offers a pivotal glimpse into the potential future of digital regulation. This article provides an insightful summary of the discussions, focusing on the balance between innovation and user safety, the complex web of accountability, and the global implications of legislative measures. It’s a must-read for anyone interested in understanding the evolving digital governance landscape and its impact on society.

Continue reading

Before the DSIT Cyber Governance Code of Practice: What the Consultation Proposed

The DSIT Cyber Governance Code of Practice consultation (Jan 2024) proposed five principles for boards: risk management, strategy, people, incident response, and assurance. But it left key gaps: no incentives, little for SMEs, no professional recognition, and weak thinking on assurance. This article argues the consultation was historic, but incomplete — a foundation that required sharper, practitioner-led input.

Continue reading
Glad smiling hiker dressed casually, stands with backpack against yellow background Image by wayhomestudio on Freepik

Navigating the UK Startup Investment Landscape: A Reading List and Comprehensive Guide

You can probably guess what stage Cyber Tzar is at from my most recent reading list. I put together this article exploring the essentials of thriving in the UK’s dynamic startup ecosystem. This guide offers a blend of recommended readings and practical resources, tailored to help entrepreneurs and startups in the UK effectively navigate the investment process, stay attuned to market trends, and engage with local networks for growth and success.

Continue reading

Guide to Active Listening

This guide outlines the fundamentals of active listening, including paying full attention, showing understanding through feedback, and responding appropriately without judgment. It highlights the importance of empathy, open-mindedness, and engaging fully in conversations to improve communication and build stronger relationships.

Continue reading

Power and Destruction in Panels: A Comparative Analysis of ‘Miracleman’ and ‘Uber’

I like ‘Miracleman’. I like ‘Uber’. So this article delves into the thematic and narrative parallels between Alan Moore’s “Miracleman” and Kieron Gillen’s “Uber.” Exploring how both comics redefine superhero conventions through their dark, realistic portrayal of superhuman powers, the article highlights the influence of Moore on Gillen’s work and the shared focus on the catastrophic consequences of such powers in society.

Continue reading

Titans of American Theatre: The Unparalleled Influence of O’Neill, Williams, and Miller

I like O’Neill. One of my lads is doing Lit. This article provides a comprehensive view of the landscape of American playwriting, emphasizing the unique contributions of O’Neill, Williams, and Miller, while also acknowledging the broader context of American theatre history and the significant figures who have contributed to its evolution.

Continue reading

Secure Your Site: A Comprehensive Guide to WordPress Backup and Restoration

Backing up and restoring a WordPress website is a critical task for website administrators, ensuring that website data is not lost due to unforeseen circumstances such as server crashes, hacking, or accidental deletions. This article will guide you through the processes involved in backing up and restoring your WordPress website, an overview of popular backup and restore plugins, help you to choose the appropriate backup and restore approach, and hopefully help you recover your site quickly and efficiently when needed.

Continue reading

Comparing SaaS GitHub and Self-Hosted GitLab: An In-Depth Analysis of Pros and Cons with Alternatives

On the penultimate day of the NCSC For Startups programme, there was an ad hoc discussion on code repositories and DevOps tooling. A couple of the cohort were long-time GitHub users, while we use a self-hosted version of GitLab. One of the teams had just moved from the latter to the former, while the final team used Azure DevOps. I thought it would be nice to write up an objective look at the first two options, along with alternatives, as well as summarise our decision. I didn’t want to cover Azure DevOps as I’ve just spent two years using it and I’m grateful to have escaped its clutches. Learn more here.

Continue reading

Irish Unification and Scottish Independence Compared

Irish unification and Scottish independence, while both concerning the political future of parts of the UK differ significantly in their historical, cultural, and political contexts. This article was inspired by a relatively recent conversation I had comparing the two. While there are some obvious analogies the reality is they are very different. Explore the comparison with me here.

Continue reading

Irish Unification: Could It Happen In My Lifetime?

Could there really be a free and united Ireland in my lifetime? Or is it just an unrealistic pipedream? Evidence suggests that resistance to the idea itself is breaking down, and with it, a united Ireland comes a little closer every day. Let’s break down the latest research from The Irish Times and their ARINS survey on Irish unification.

Continue reading