   When Nuno Sebasti?o enrolled1 on the London Business School MBA programme, he looked beyond the traditional careers of consultancy and investment banking2. In fact, he decided3 to fight hackers5 instead.

  当努诺?塞巴斯蒂昂(Nuno Sebasti?o)就读伦敦商学院(LBS) MBA课程时,他的目光超越了咨询和投行等传统职业。实际上,他决定对抗黑客。
  This was not for purely6 ideological7 reasons. Having witnessed hacking8 attacks on computer networks at his former employer, the European Space Agency, his MBA training enabled him to spot a lucrative9 niche10 for somebody with business and communication skills to enter the technical field of cyber security.
  这并非出于纯粹的意识形态原因。他在前雇主欧洲航天局(European Space Agency)那里目睹过针对电脑网络的黑客攻击,他的MBA培训让他得以发现一个有利可图的利基市场:让具备商业和沟通技能的人进军网络安全这个技术领域。
  “It was clear to me [even] in 2009 that there was an issue here that needed to be addressed,” he says.
  After graduation he set up Feedzai, a company that identifies fraudulent payment transactions, with two fellow engineers from his native Portugal. “I was the one who identified the business problem,” he says. His California-based company has 150 employees, with plans to grow to 300 this year.
  Mr Sebasti?o is far from the only MBA candidate or graduate to have spotted11 an opportunity in cyber crime. Many are becoming interested in picking up skills that leaders of the future will need to fight hacking crises, while a clutch of schools have added cyber security content to their MBA courses.
  The shortage of cyber security experts at a technical level is acknowledged. A less well-known problem, however, is a corresponding lack of management executives who possess the technical know-how12 to deal with hacks13.
  “When companies hire cyber security people they are very strong in the technical skills but they miss the soft skills and the business acumen,” says Gianluca D’Antonio, chief information officer of Spanish construction and services company FCC Group and chair of the Spanish Association for the Advancement14 of Information Security.
  西班牙建筑和服务公司FCC Group首席信息官、西班牙信息安全促进协会(Spanish Association for the Advancement of Information Security)主席詹卢卡?丹东尼奥(Gianluca D’Antonio)表示:“在公司聘用网络安全员工时,他们的技术能力很强,但缺乏软技能和商业智慧。”
  He says that the people who are working in cyber security are not able to communicate the risk to the board. “It’s about communications, it’s about management. Everybody now is talking about the incredible digital future but nobody is talking in a proper way about the digital risk.”
  Hack4 to the future
  At IE Business School in Madrid, José Esteves, a professor of information systems, teaches a digital innovation class to MBAs during which he hacks into the accounts of his own students to show them how easy it is. IE is also launching a cyber security masters degree in October for future business leaders.
  位于马德里的西班牙企业学院(IE Business School)信息系统教授约瑟夫?埃斯特韦斯(José Esteves)向MBA学员教授数字创新课程,他在课堂上侵入学生的账号,向他们演示这有多么容易。今年10月,该商学院还将为未来的企业领导者推出网络安全硕士学位课程。
  Meanwhile, Iese Business School in Barcelona has brought in Deloitte to help provide sessions on cyber security in one of its MBA electives.
  与此同时,位于巴塞罗那的IESE商学院(Iese Business School)邀请德勤(Deloitte)帮助在MBA选修科目之一提供网络安全课程。
  “It [cyber security] is not something you can delegate, it’s about the security and the reputation of the company,” says Javier Zamora, a senior lecturer in information systems at Iese.
  IESE商学院信息系统高级讲师哈维尔?萨莫拉(Javier Zamora)表示:“(网络安全)无法委托,它关乎公司安全和声誉。”
  Even the most secure networks are vulnerable to cyber attacks, as data breaches15 at Yahoo and Sony showed. Attacks by hackers cost global businesses $280bn in 2016, according to consultancy Grant Thornton, which cites reputational damage as the major risk corporations face.
  就连最安全的网络在网络攻击面前也很脆弱,就像雅虎(Yahoo)和索尼(Sony)数据泄露事件所显示的那样。根据咨询公司均富(Grant Thornton)的估算,2016年,黑客攻击导致全球企业损失2800亿美元,该公司把声誉损害列为公司面临的主要风险。
  The high-level ramifications16 of cyber attacks mean they have to be addressed by executives who steer17 corporate18 strategy, instead of being left to the techies, says Stuart Madnick, professor of IT and engineering systems at MIT Sloan School of Management.
  麻省理工斯隆管理学院(MIT Sloan School of Management) IT和工程系统教授斯图尔特?马德尼克(Stuart Madnick)表示,网络攻击的高层次后果意味着,它们必须由指导公司战略的高管负责应对,而不是留给技术人员。
  Mr Madnick, who teaches cyber security on the school’s MBA course, says dealing19 with hacks takes extremely nimble management thinking because they can be less predictable than natural disasters.
  “A hurricane doesn’t change direction because you know it’s coming, but cyber attackers can.”
  A big part of the problem for managers is the complexity20 of dealing with such issues, says David Upton, professor of operations management at Oxford’s Sa?d Business School.
  牛津大学(Oxford)萨伊德商学院(Sa?d Business School)运营管理教授戴维?厄普顿(David Upton)表示,对于管理者而言,很大一部分问题在于这类问题在应对上的复杂性。
  Cyber attacks encompass21 everything from state-sponsored espionage22 to petty criminal acts for financial gain, he adds.
  But defending against a catastrophic negative event is also “inherently unsexy” for many business leaders, he adds. “Managers’ eyes tend to glaze23 over when you mention it.”
  Nevertheless, he says, the risk must be addressed at board level and include all corporate departments.
  A job for the board
  Prof Upton has helped design a board-level executive course and teaches a compulsory24 course on Sa?d’s MBA. “There is a whole global industry that is at work on this and we have managers that are asleep at the wheel,” he says.
  Iese’s Prof Zamora also believes cyber security issues will permeate25 every aspect of a business, as technology spreads, from HR to insurance risk.
  Security is often an afterthought, with speed to push the latest gadgets26 to market taking precedence. “Whenever you design a product or a service you have to build in cyber security from the beginning,” says Prof Zamora. “It’s an integral part of the design issue.”
  At Harvard Business School, associate professor Ben Edelman defends his fellow academics’ reluctance27 to engage with these problems, because the technical aspects are at odds28 with a general management approach. But it has not stopped him. “I thought these were really important issues and jumped right in with two feet,” he says.
  在哈佛商学院(Harvard Business School),副教授本?埃德尔曼(Ben Edelman)为学者们不愿讨论这些问题做出辩护,因为技术层面与总体管理策略格格不入。但这并未阻止他。他表示:“我认为这些问题确实很重要,于是全身心投入了。”
  In Mr Edelman’s teaching he presents a hypothetical case in which a company’s systems are hacked29 and the students have to decide how the manager should respond. The case goes to a core ethical30 issue: should the manager close the company network to prevent further hacking or hope to tackle it behind the scenes without informing customers.
  “Obviously these are difficult questions but that doesn’t mean we shouldn’t tackle these issues,” says Prof Edelman.
  Mr Sebasti?o likens the situation to the run-up to the 2008 financial crisis. “No one was interested and then the whole world came crashing down and then all sorts of mechanisms31 were put in place to prevent it happening again. It is exactly the same in cyber security.”



