Buß: Yes, unfortunately, I had to go through that experience. Not in my role at Merck, but elsewhere. I think the most important thing I learned from it and how I handled the situation was to stay calm, to trust the experts and colleagues, and to reassure them that everything they do has my backing.
What would you advise other CISOs in such a case?
Buß: What’s most important, in my opinion, is not to act too quickly and not to allow yourself to be pressured from outside. Instead, you should make clear and quick decisions based on an objective assessment of the situation. Speculation and “could-would-should” questions are, in my opinion, unhelpful in such a crisis situation. It’s also crucial to have the right experts on your side.
