The pervasiveness of data breaches has firmly placed the topic of cybersecurity on the agenda of the Board of Directors. It is part of their responsibility as members of the board to understand the threat landscape, current best practices, and what the company is doing to protect the employees, customers, constituents and shareholders. This brief contains some of the key things the Board of Directors and the cyber risk committee need to do to minimize risk and approach security with a prevention mindset.