03/05/2012 | Security Metrics
Information security metrics is a topic that has long plagued many a security professional. Metrics are important and necessary, of course, but what to measure and how to measure in a field that often operates in the realm of the unknown is complicated for so many. It is one thing to provide to senior management a list of the number and types of known security vulnerabilities, but
02/08/2012 | Security Metrics
How do you generate practical security metrics that mean something and are useful to your business processes? Is it possible to get excited about producing statistics and data? Is it possible that statistics and data can help justify your existence to your employer? If that last item didn't get your attention, wake up! In this Enterprise Client Briefing we will outline a few
02/08/2012 | Security Metrics
How do you generate practical security metrics that mean something and are useful to your business processes? Is it possible to get excited about producing statistics and data? Is it possible that statistics and data can help justify your existence to your employer? If that last item didn't get your attention, wake up! In this Enterprise Client Briefing we will outline a few
12/09/2011 | Security Metrics
When you ask a security practitioner about metrics, be prepared for a wide range of answers. Sometimes it seems like a circular game of “phone tag”: management asks for “security metrics” and the practitioners turn to their vendors and ask, “What metrics do you have?” The vendors in turn ask the customers, “What metrics do you want?” And the process goes around in circles until
01/15/2010 | Security Metrics
The 2009 Pacific Information Security Forum, held on December 8th and 9th in San Francisco, brought together more than 110 practicing information security professionals from 64 organizations. On average, delegates had more than 15 years of information security experience.