The Risk Dr ®

  • CRQ, Zero Trust, NACD, and Risk Treatment Options

    Here is a mega update on several items I’ve been working on lately. First, I did a podcast with ThreatConnect talking about CRQ. We did a bit of a retrospective on the FAIR book as well which was nice. Next is a piece I wrote for ISACA about how to not over-respond to current work…

    17 March 2021

    ·

    @ISACA, Decision making, Emerging Risk, ISACA, Quantification, Risk, Risk Communication
  • How to Report Cyber Risk to the Board

    I’m giving a webinar tomorrow based on the whitepaper I authored for ISACA: Reporting Cybersecurity Risk to the Board of Directors. It’s a free download. I cover Board reporting from the technologists perspective, covering the role of the Board and how to communicate to them in a way they understand. You can register for the…

    20 January 2021

    ·

    @ISACA, ISACA, Quantification, Reporting, Risk Communication, Webinar
  • ISSA Distinguished Fellow

    Two weeks ago I was named a Distinguished Fellow of the ISSA. It’s really a great honor for me as I really didn’t think I was qualified. Thanks to everyone who made this possible, including Clarke Cummings for getting me involved in the ISSA to begin with and to Joel Weise for helping with my…

    1 December 2020

    ·

    Awards, ISSA, Risk
  • Cyentia Xtreme

    In case you missed it, the Cyentia Institute published the IRIS2020 Xtreme report. I was very happy to have written the conclusions for this report. In it, I speak about how the data in the report can be useful for Board Directors. You can read the full report here. Dark Reading quoted me in their…

    30 November 2020

    ·

    Metrics, Quantification, Risk
  • Pandemic Lessons and Record Count

    I was asked to write a piece for ISACA about cyber risk in the Pandemic. I used some popular memes as a bouncing off point to talk about how to manage risk in these crazy times. You can read this here. I also had my article about why using record counts as your risk appetite…

    2 October 2020

    ·

    @ISACA, Appetite, Awards, Emerging Risk, Forecasting, ISACA, ISC2, Risk
  • ISC2 Global Award

    I’m pleased to announce that I have been honored with an ISC2 Global Award in the Senior Professional Award category for the work I’ve done integrating FAIR into the NIST CSF framework. Many thanks to the FAIR Institute for their support and for ISC2 for these awards programs.

    14 August 2020

    ·

    Risk
  • Positive Risk, ISACA Journal, and more NIST

    ISACA asked me to write a short piece on my Journal article about risk communication. They published that here. I also wrote a blog post for the @ISACA newsletter about the trouble with positive risk. Lastly, NIST released an update to their ERM-Cyber integration standard and my friends at the FAIR Institute asked me to…

    31 July 2020

    ·

    @ISACA, FAIR Institute, NIST, Risk
  • Cyber Risk Frameworks, MITRE ATT&CK, and Risk Communication in the ISACA Journal

    Interviewed by Phil Venables, published in the ISACA Journal and Dark Reading, and more thoughts on NIST and CVSS

    13 May 2020

    ·

    Frameworks, NIST, Risk, Risk Communication, Standards, Threat
  • 85.7% COVID-19 Free March Update!

    RSA Roundup Updates on the Monday all-day FAIR session I did with Jack Jones, Chad Weinman, and Rachel Slabotsky, as well as my Thursday session on maturing your risk management practice. RSAC 2020 Report – Big Turnout for 2 FAIR Seminars, Breakfast Advice on Starting a FAIR Program from Jack Jones and Fannie Mae, Ascena…

    16 March 2020

    ·

    ICYMI, podcast, Presentations, Publications, Risk, Risk Communication, RSA
  • Feb Update! Davos, NIST, Cloud Smart, and Risk Mgmt Maturity

    NIST webinar, app rationalization for Federal Cloud Smart policy, Risk Mgmt Maturity report, and Davos

    11 February 2020

    ·

    Economics, FAIR, FAIR Institute, NIST, Presentations, Public Sector, Publications, Risk, Webinar
Previous Page
1 2 3 4 5 6 … 16
Next Page

The Risk Dr ®

About

  • Subscribe Subscribed
    • The Risk Dr ®
    • Join 33 other subscribers
    • Already have a WordPress.com account? Log in now.
    • The Risk Dr ®
    • Subscribe Subscribed
    • Sign up
    • Log in
    • Report this content
    • View site in Reader
    • Manage subscriptions
    • Collapse this bar