Measuring What Matters: Security Metrics Workshop

Live Online-Public | This training has been canceled

Open

10/12/2022 (one day)

8:30 AM-5:00 PM EDT on Wed

Course Fees (USD) U.S. Industry: $800 U.S. Government/Academic: $650 International: $1125 Location: SEI Live Online It is critical to measure the right things in order to make informed management decisions, take the appropriate actions, and change behaviors. But how do managers figure out what those right things are? Public and private organizations today often base cyber risk management decisions on fear, uncertainty, and doubt (FUD) and the latest attack; compliance mandates such as HIPAA, FISMA, SOX, and PCI; and security risk frameworks that typically have little to do with the way the rest of the organization measures risk and prioritizes operational risk management activities. CFOs, enterprise risk management officers, internal audit directors, and CISOs need information risk management approaches that align with business objectives. A measurement approach tied to strategic business objectives will ensure that planning, budgeting, and the allocation of operational resources are focused on what matters most to the organization. In addition, a shift to such an approach will help identify metrics that are expensive to collect and may not be worth the investment. Students in this course will use real-world strategic objectives to develop specific business goals and the applicable questions, indicators, and actionable metrics that they can implement at their own organizations to improve their ability to manage operational risks, particularly cybersecurity risks. For a detailed course description, please go to Measuring What Matters: Security Metrics Workshop

  • This one day course meets at the following times:
  • 8:30 a.m. - 5:00 p.m.