Blog

Welcome to Risk Analys.is. We hope you’ll join us for lively and good natured discussion about risk and risk issues!  We’re risk geeks, plain and simple. We’re big advocates of the Factor Analysis of Information Risk (FAIR) framework for quantifying risk. You may want to check out the following page for more information on FAIR: FAIR Resources

 

Subscribe To Our Site

 Subscribe  & Comments

 Subscribe via email

Roland Cloutier & Risk Management

An Interview with Roland Cloutier, Vice President and Chief Security Officer for ADP Worldwide: With more than $10 billion in revenues and 600,000 clients, ADP is one of the world’s largest providers of business...

Read More

Improving Signal to Noise in Risk Management

One of the most important responsibilities of the information security professional (or any IT professional, for that matter) is to help management make well-informed decisions. Unfortunately, this has been an elusive objective when it...

Read More

CXOWARE Programmer Scott Traver Places Third in Hackathon Competition

Spokane just completed its first hackathon this weekend.  A hackathon is an event where computer develpers come to together to solve problems or just build cool stuff.   The theme of our event was,  “Use...

Read More

Booz Allen – Financial Services Cybersecurity Trends for 2013

http://www.equities.com/news/headline-story?dt=2012-11-29&val=772186&cat=finance

Read More

Open Group – Quantifying Cybersecurity Risk in $$$

For those wishing to attend the Open Group event click here: The Open Group Part Two – Quantifying Cybersecurity Risk in $$$.  For more personal attention and detailed information following the event, register here:...

Read More

Open Group – Communicating Cybersecurity Risk to Business Leaders

September 13th, 2012 event: Communicating Cybersecurity Risk to Business Leaders Link to Open Group Event: http://hosted-p0.vresp.com/794319/6991ab13c6/ARCHIVE  

Read More

Jack Jones: Numbers Game – CSO Magazine

Jack Jones: Numbers game CSO When someone says Jack Jones wrote the book on how to think about information risk, they mean it literally. He created the Factor Analysis of Information Risk (FAIR), which...

Read More

Risky Conversations by Dwayne Melancon

http://www.tripwire.com/state-of-security/it-security-data-protection/cyber-security/risky-conversations/  

Read More

What is FAIR’s unique value proposition? What is the business case for FAIR?

I posed these questions recently to several CISO’s in an effort to validate and quantify the FAIR value proposition.  Translating features and benefits into business impact or economic impact is the challenge.  For instance,...

Read More

Risk Rating Litmus Test

One of the significant challenges the risk profession faces is the ability to prioritize.  What I see a lot of in the industry are tools and methods that spit out dozens or even hundreds...

Read More
12