What happened
Black Duck appointed Dom Glavach as chief information security officer, placing him in charge of the company’s global information security strategy and operations. The company said Glavach will lead efforts across security governance, risk management, compliance, and cyber resilience as Black Duck continues serving organizations focused on software security and application risk. Before joining Black Duck, Glavach held senior security leadership roles including time as CISO at Cohesity and Rubrik. The appointment adds an experienced security executive to the company’s leadership team as it continues building out its enterprise security posture and customer-facing trust commitments.
Who is affected
The direct impact falls on Black Duck and its internal security leadership structure. The appointment is also relevant to the company’s customers and partners because the CISO role is responsible for the security strategy, governance, and resilience efforts that support the business and its operations.
Why CISOs should care
This move matters because it reflects continued emphasis on formal executive security leadership inside companies operating in the software and application security market. It also highlights how organizations are strengthening top-level accountability for governance, resilience, and trust as security expectations from customers and partners continue to rise.
3 practical actions
- Use leadership changes to reassess security maturity: Review whether the current security program structure still matches the size, complexity, and external expectations facing the business.
- Align the CISO role with enterprise-wide responsibility: Make sure the top security leader has clear authority across governance, risk, compliance, and resilience rather than only technical operations.
- Treat trust leadership as a business function: Recognize that senior security appointments can shape customer confidence, partner expectations, and broader market credibility alongside internal protection goals.
For more news about cybersecurity leadership moves and enterprise security strategy, click Cybersecurity to read more.
