Sept. 24, 2026

Life as a Public Sector CISO: Hackers, Headaches & Red Tape

Life as a Public Sector CISO: Hackers, Headaches & Red Tape
Life as a Public Sector CISO: Hackers, Headaches & Red Tape
And Security For All
Life as a Public Sector CISO: Hackers, Headaches & Red Tape

What does it really take to protect an entire city?

In this episode of And Security For All, host Kim Hakim sits down with Merlin Namuth, CISO for the City and County of Denver, for a behind-the-scenes look at the complex world of public-sector cybersecurity.

With responsibility spanning 55 different agencies, Merlin is helping protect everything from police, fire, and emergency services to transportation, infrastructure, wastewater systems, and other essential services Denver residents depend on every day. And unlike many private-sector environments, the mission isn’t about protecting the bottom line—it’s about protecting people and keeping critical public services running.

Kim and Merlin dive into the realities of being a public-sector CISO, including navigating government red tape and procurement, balancing security across agencies with different priorities and resources, attracting cybersecurity talent, managing limited budgets, and deciding when risk has to be accepted in order to accomplish the larger mission.

They also discuss why relationships may be one of a CISO’s most important security tools. Merlin shares why only about 30–40% of his role involves the technical side of cybersecurity, with much of the rest centered around communication, collaboration, leadership, and building trust across the organization.

The conversation also tackles ransomware, critical infrastructure, incident preparedness, public communication, collaboration with other CISOs and security partners, and an important distinction every security leader should understand: the CISO helps identify and mitigate risk, but the organization ultimately owns it.

Plus, Merlin shares his advice for cybersecurity professionals who want to move into leadership and eventually become a CISO, including lessons from his own transition from a hands-on technical career into security leadership.

From hackers and headaches to budgets, bureaucracy, public safety, and the people behind the technology, this episode offers a candid look at what it means to lead cybersecurity when an entire community is counting on you.

Tune in for a conversation about cybersecurity, leadership, resilience, and the unique challenges—and rewards—of protecting the public sector.