Reporting on Risk to the Board - A CISO's Approach


Download In this article, we'll take a look at why the reporting on vulns closed--rather than taking a more strategic view of risk approach fails--and how it may be possible to swap out the "numbers game" with a more comprehensive view of risk. Ed explains conceptually how you can do that. Of course, he'll also talk about how Kenna can help, but his intention is to help inform your approach even if you have no interest in Kenna.

In many organizations, reporting on risk is actually all about volume: "We closed this many vulns last quarter, and last month, and this month/" Sometimes, the extra step has been taken of assigning CVSS or scanner scores to each vulnerability, with the hopes of demonstrating that the closed vulns represent a particular level of criticality.

0 Comment

Leave a Reply

Captcha image


  • 5300c769af79e

    Cyber-Security 2017 Predictions

    But more than just listing out predictions, we invested in reviewing and considering different strategies and practical tactics that businesses can readily adopt as they approach the security battlefield.These aren't necessarily the obvious tactics.
  • 5300c769af79e

    Google Now on Tap Gets Translating From Any Screen, New Discover Mode, Barcode/QR Scanning

    The latest wave of new features to hit the in-the-moment search service includes the ability to translate text from any screen, discover new content in a new Discover mode, and quickly find out information about products by scanning barcodes and QR codes.With the new translate feature, it does exactly what you would hope – translate any screen.
  • 5300c769af79e

    Twitter 'Connect' Tab Helps You Find People to Follow

    In a sea of 310 million active Twitter users—friends, family, celebrities, comedians, politicians—it can be difficult to choose the right people to follow.Rolling out now to the iOS and Android platforms, the Connect tab also allows the option to automatically sync your address book, making it easier to keep up with new users and old friends.
  • 5300c769af79e

    Kafka Summit: Big Data In Real-Time Gains Momentum

    One of the frequently cited use-cases for real-time data comes from Uber, which has harnessed the power of data and real-time analytics to actually predict when your driver will arrive to pick you up.It is the power and momentum of what real-time data can do -- as in that Uber application -- that brought more than 500 users to the Kafka Summit in San Francisco this week.