Value and Uncertainty in Pandemic Metrics

New York Governor Andrew Cuomo’s daily briefings have become a mainstay of support for many during the COVID-19 pandemic, especially with New York being the initial epicenter of the disease in the U.S. It is clear that Cuomo’s polished slid… Continue reading Value and Uncertainty in Pandemic Metrics

Truth, Trust and Cybersecurity Risk

It is a sad reflection on the times, but it is becoming increasingly difficult to distinguish among true and false “facts,” accurate and misleading interpretations, and personal and politically-expedient beliefs. In my November 11, 2019 Blo… Continue reading Truth, Trust and Cybersecurity Risk

Are Cybersecurity Intelligence and Security Metrics Statistically Significant?

It is customary to begin an article on cybersecurity with some statement about the exponential growth of threats, attacks, vulnerabilities, etc. I’m no different. It seems like a reasonable, generally accepted thing to do. So, I was somewhat surp… Continue reading Are Cybersecurity Intelligence and Security Metrics Statistically Significant?

Are Cybersecurity Intelligence and Security Metrics Statistically Significant?

It is customary to begin an article on cybersecurity with some statement about the exponential growth of threats, attacks, vulnerabilities, etc. I’m no different. It seems like a reasonable, generally accepted thing to do. So, I was somewhat surp… Continue reading Are Cybersecurity Intelligence and Security Metrics Statistically Significant?

What prevents companies from achieving effective security performance management?

Cybersecurity performance is critical to achieving commercial success, according to a BitSight study. Among the study’s most interesting findings is that nearly two in five (38 percent) of enterprises admit that they have lost business due to either a … Continue reading What prevents companies from achieving effective security performance management?

CISO do’s and don’ts for board reporting

Security is no longer just a job for IT – it impacts all areas of a business, from brand perception to the bottom line. As a result, CISOs are increasingly being asked to deliver cybersecurity reports to their boards, including information on global tr… Continue reading CISO do’s and don’ts for board reporting

Structural integrity: Quantifying risk with security measurement

In my previous post, we set up the foundation for a risk quantification program. Many organizations have begun this part of their security strategy and are learning how to approach this challenge, which has plagued the security industry for years. In t… Continue reading Structural integrity: Quantifying risk with security measurement

Most organizations suffered a business-disrupting cyber event

A study conducted by Ponemon Institute found that 60 percent of organizations globally had suffered two or more business-disrupting cyber events — defined as cyber attacks causing data breaches or significant disruption and downtime to business operati… Continue reading Most organizations suffered a business-disrupting cyber event

5 Ways CISOs Can Improve Collaboration on Security Risks

While the CISO’s role is more important than ever, recent studies have revealed a disconnect between CISOs and business executives and difficulities communicating security risks in business terms.

The post 5 Ways CISOs Can Improve Collaboration on Security Risks appeared first on Security Intelligence.

Continue reading 5 Ways CISOs Can Improve Collaboration on Security Risks

Even with internal focus, most companies utilize external resources for cybersecurity

A greater reliance on metrics to measure success combined with enhancing skills across security teams can help organizations boost their cybersecurity effectiveness, according to a new report from CompTIA. The use of security metrics to measure success… Continue reading Even with internal focus, most companies utilize external resources for cybersecurity