The Cybersecurity Resilience Quotient Measuring Security Effectiveness
Architecture Defensibility : With asset inventory in hand, how well is your organization able to defend its digital assets? Does the topology of your enterprise architecture map to the current communication flows? Where are the short circuits in your communication flows? The CRQ examines the robustness of this architecture, focusing on network seg
... See moreRik Ferguson • The Cybersecurity Resilience Quotient Measuring Security Effectiveness
Asset Vulnerability : Identifying vulnerabilities within these assets is the next step. Vulnerabilities can be technical (e.g., unpatched software) or human-related (e.g., suboptimal configuration). Individual vulnerabilities will also have different outcomes and widely varying likelihoods of real-world exploitation. Does successful exploitation o
... See moreRik Ferguson • The Cybersecurity Resilience Quotient Measuring Security Effectiveness
Continuous Monitoring : Dynamic recalculation of the CRQ to monitor the impact of security improvements and emerging threats allows you to adapt your strategy as the threat landscape and enterprise architecture evolve.