Navigating Cybersecurity Challenges in The Digital Era
CIOREVIEW >> Cyber Security >> NEWS

SugarCreek

Todd Pugh, Chief Information Officer and Chief Technology Officer

Navigating Cybersecurity Challenges in The Digital Era

Todd Pugh, Chief Information Officer and Chief Technology Officer
Todd Pugh, Chief Information Officer and Chief Technology Officer, SugarCreek

Todd graduated from Ohio University in 1989 with a Bachelor’s Degree in Business Administration while majoring in MIS. Todd joined SugarCreek in March of 2000 after spending several years in IT in various roles including programmer, consultant, and IT project leader. He took over the role of CIO in January 2019 after spending several years of leading the day-to-day operations at SugarCreek.

In an interview with Enterprise Networking Magazine, Todd Pugh, Chief Information Officer and Chief Technology Officer of SugarCreek, sheds light on the importance of data analysis skills and their impact on decision-making in today’s data-driven world. He also shares strategies for proactive risk mitigation, including comprehensive employee training and selecting vendors that offer comprehensive solutions.

As an expert in the domain, could you please elaborate on your current roles and responsibilities as the Chief Technology Officer at SugarCreek?

With a remarkable 23-year tenure at Sugar Creek, I began my journey as a project manager analyst and steadily advanced through the ranks, assuming positions as a manager, director, and Chief Information Officer (CIO), before finally being appointed as the Chief Technology Officer (CTO) approximately a month ago. As the CTO, I now hold a pivotal role in guiding the technological direction of the company, implementing cutting-edge solutions, and spearheading digital transformation initiatives to drive growth and efficiency.

As a leader in the industry, specifically as the Chief Information Officer, what are some of the significant challenges you currently observe in the marketplace?

In the post-pandemic world, talent acquisition is one of the major challenges we have encountered. Despite having open positions for a couple of months, finding the right candidates willing to join our organization has proven difficult. This has become a significant issue that we are currently facing.

Additionally, security remains a constant concern. This year, a noticeable surge in ransomware attacks has put our organization at risk. It is a sobering reality that a single phone call or a successful breach can quickly make headlines and compromise our operations. The financial resources we allocate to safeguard our network and prevent malicious activities could otherwise be invested in improving and advancing our core business operations. The reality is that ransomware poses a significant challenge, forcing us to prioritize cybersecurity measures and divert valuable resources that could be better utilized for business growth and development. These are some of my biggest concerns right now.

In light of the rise in ransomware attacks, you mentioned that it is one of the issues your organization is currently addressing. Could you share any specific projects or initiatives you have undertaken to mitigate the risk of such attacks and enhance your organization’s security measures?

While we don’t have a specific project dedicated to addressing ransomware attacks, our organization consistently focuses on improving security measures and actively mitigating risks. We prioritize initiatives to reduce the impact of potential attacks and minimize downtime in the event of a breach. These efforts are part of our daily routine as we strive to enhance security protocols and response capabilities.

  ​In today's data-driven world, having strong skills in analyzing and interpreting data is crucial. The ability to extract meaningful insights from data sets will greatly enhance your decision-making capabilities and enable you to contribute effectively to your organization  

One of the significant projects that demands much of my attention is the implementation of SAP across our enterprise. This crucial initiative occupies a significant portion of our time and resources. As a growing business, we recently achieved a milestone by surpassing one billion dollars in revenue for the first time. We aim to surpass this achievement once again this year through organic growth. Our business’s continuous expansion necessitates adding new facilities, personnel, and ERP systems. This dynamic environment, coupled with our commitment to mitigating security risks, keeps us engaged in a constant state of adaptation and improvement. We are also actively pursuing a cloud initiative alongside our ongoing efforts.

According to you, what are some strategies a Chief Information Officer should consider implementing to proactively mitigate future risks within an organization?

In my opinion, one crucial strategy to mitigate future risks is comprehensive training. It is essential to educate employees about potential threats and instill a mindset of caution. Emphasize the importance of not clicking on suspicious links or opening unknown files. Additionally, encourage employees to verify the authenticity of vendors before making any sensitive transactions, such as changing bank account information. By promoting awareness and providing regular training, organizations can enhance their overall security posture.

Our industry focuses on selecting top vendors in the overall space rather than seeking “best-in-breed” solutions for each specific aspect. By choosing vendors that provide comprehensive solutions, we minimize the need for integrating products from multiple vendors, which can introduce complexities and potential issues. Additionally, this approach reduces the training burden on our teams, as they can become well-versed in the products and technologies offered by a single vendor. For instance, we may rely on Cisco for networking and security solutions. This allows our networking team to develop expertise in Cisco IOS and related technologies, such as Call Manager. Despite being distinct products, they come from the same vendor, which streamlines training efforts and helps the team stay up to date with the latest developments more efficiently.

Looking ahead, how do you envision the future of the enterprise networking space?

I firmly believe that artificial intelligence, particularly ChatGPT, is poised to significantly change various industries, including the enterprise networking space. We are already witnessing its impact, such as college students using it to write papers and people seeking assistance in programming tasks. We have even leveraged ChatGPT to help us create job descriptions.

Over the years, we have accumulated vast amounts of data through our IT and OT systems, even before the term “OT” was coined. However, despite having this wealth of data, we have often struggled to fully utilize its potential. This is where I believe ChatGPT will play a transformative role. By leveraging ChatGPT, we will be able to feed it our data and unlock valuable insights that can significantly improve how we operate our business and make informed decisions.

For example, in our accounts payable processes, we utilize artificial intelligence to perform three-part matches on accounts payable. This enables us to quickly approve close matches, reducing the workload for our accounting staff, who can then focus on addressing significant discrepancies. This increased efficiency is particularly valuable in times when resources are scarce.

As an ending note, what is your advice for other senior leaders and CXOs working in the space?

For aspiring professionals in the field, I would offer two key pieces of advice. Firstly, prioritize learning about data analytics. In today’s data-driven world, having strong skills in analyzing and interpreting data is crucial. The ability to extract meaningful insights from data sets will greatly enhance your decision-making capabilities and enable you to contribute effectively to your organization.

Secondly, avoid narrowing your focus to a single discipline. Instead, embrace a mindset of continuous learning from diverse sources. Actively listen and learn from individuals at all levels of the organization, from the plant floor worker to the CEO. Each person possesses valuable knowledge and perspectives that can improve processes and drive success. Cultivating your listening skills and being open to insights from various stakeholders will broaden your understanding and enable you to apply practical solutions to your work.

The articles from these contributors are based on their personal expertise and viewpoints, and do not necessarily reflect the opinions of their employers or affiliated organizations.