A Few Good Information Security Metrics

Information security metrics don't have to rely on heavy-duty math to be effective, but they also don't have to be dumbed down to red, yellow, green. Here are five smart measurements--and effective ways to present them.

» View Article

READER FEEDBACK
Preview
Anonymous
Sun, 2008-11-30 18:26

Are you kidding me? I was searching the web for a few ideas on new metrics and came across this. I would be fired, no, in fact, I would fire myself if I bothered reporting this type of info to the CEO and Board.

I run security for a well-known F100 and when I read stuff like this I see why executives in our profession can be held back as "one of those paranoid security guys".

"Hey, Mr. CEO, did you know that 92% of our systems have AV and email is all gud?"

Not my CEO or Board.

Come on.

reply
Post a comment
The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.