Tag: Metrics
-
Security Awareness Metrics That Matter to the CISO
Security awareness has become a critical component of organizational defense strategies, particularly as companies adopt zero-trust …
-
Security Theater: Vanity Metrics Keep You Busy – and Exposed
After more than 25 years of mitigating risks, ensuring compliance, and building robust security programs for Fortune 500 companies, I’ve …
-
As We Implement Zero Trust, Let’s Not Forget About Metrics – George Finney – CSP #179
Many organizations are starting today down the Zero Trust path. Zero Trust is a strategy (vs an architecture) and to prove the value of …
-
The Top MSP KPIs and Metrics You Should Measure as a Managed Service Provider
What Are MSP KPIs? Key performance indicators are metrics that any business can use to measure its …
-
Why the Right Metrics Matter When it Comes to Vulnerability Management
How’s your vulnerability management program doing? Is it …
-
How To Break The Metrics Mirage in Vulnerability Management
Meet Jeff. He’s the CISO of a mid-sized financial services company – and it’s his job to keep the organization safe from security …
-
CVSS v4.0 Released with New Supplemental Metrics, and OT/ICS/IoT Support
FIRST has released the fourth instalment of the CVSS standard. CVSS v4.0 offers superior applicability to OT (Operational Technology), ICS …
-
Vulnerability Management Metrics: It’s Time to Look Past the Metrics Mirage
The top 10 most common vulnerability management metrics The truth is, few businesses will have the time and resources to resolve each …
-
Defining DORA-Like Metrics for Security Engineering
With operational availability now essentially publicly available, built programmatically and publicly shared, security is capable of much …
-
Why Mean Time to Repair Is Not Always A Useful Security Metric
Analyzing and learning from incidents is the ideal path to finding more insightful data and metrics, according to the VOID …
-
Why Analyzing Past Incidents Helps Teams More Than Usual Security Metrics
Traditional metrics don’t reflect real-world severity. Instead, analyzing previously reported incidents can help teams decide how to react, …
-
Better Cybercrime Metrics Act signed into law
, will, in turn, standardize the kinds of threats organizations face: the adversaries that promulgate attacks, as well as the nature and …
●●●