Good Security Metrics Are a Work in Progress
- Metrics are key for putting cybersecurity into a business perspective.
- Use metrics to spell out your cybersecurity risks in hard dollar terms.
“When you collect metrics, you’re collecting them to tell a story.”
Gary Hayslip found himself sitting next to the mayor of San Diego, California, one evening over dinner. The mayor turned to San Diego’s chief information security officer (CISO) and asked, “Just how secure are our networks?”