Главная
Study mode:
on
1
Introduction
2
The Problem of Metrics
3
FAIR Based Approach
4
Poll Question
5
Classic Slide
6
Risk
7
Data Breach
8
What is Risk
9
Risk Indicators
10
Robert Stroud
11
Case Studies
12
The Process
13
Risk Slide
14
Histogram
15
Fair Institute
16
Case Study 1 Death by 1000 Cuts
17
Case Study 1 Baseline Estimate
18
Case Study 2 Authentication Control
19
Case Study 2 Analysis
20
Vulnerability Controls
21
LossExceedance
22
Threat Capabilities
23
Comparing Leverage
24
Analysis
25
The Promise Dashboard
26
Key Factors
27
Sonny
28
Eckerd
29
Do your metrics indicate risk
30
Recap
31
Homework
32
Risk Appetite
33
QA
34
Denial of Service
Description:
Explore a FAIR-based approach to identifying meaningful key risk indicators (KRIs) in this 43-minute RSA Conference talk. Learn how to distinguish effective metrics from noise-generating ones in risk management. Discover the characteristics of good KRIs and see how sensitivity analysis can be applied to risk quantification. Through case studies and practical examples, understand how to leverage FAIR (Factor Analysis of Information Risk) methodology to improve your risk assessment and continuous monitoring processes. Gain insights into analyzing data breaches, authentication controls, and vulnerability management. Examine the concept of risk appetite and its role in metric selection. By the end of the session, acquire the knowledge to develop more impactful risk dashboards and make informed decisions about resource allocation in your organization's risk management efforts.

What Makes a Good KRI? Using FAIR to Discover Meaningful Metrics

RSA Conference
Add to list