About Forrester
Forrester Research, Inc. is an independent research company that provides pragmatic and forward-thinking advice to global leaders in business and technology.

Carrie serves eBusiness & Channel Strategy Professionals and leads a team that helps these professionals in the retail, financial services, travel, and healthcare industries optimize sales and service strategies across channels. Carrie's current research focuses on online and multichannel retailing.
Prior to this position, Carrie spent eight years at Forrester researching the dynamics and growth of online retailing. In this role, she analyzed consumers' adoption of eCommerce, their multichannel behavior, and how retailers optimize sales to those consumers with key technologies and strategies. In this role, Carrie authored many key Forrester reports, including Forrester's annual eCommerce forecast. In addition, since 2002, Carrie has authored or led the research effort for "The State of Retailing Online," a Shop.org survey conducted by Forrester Research.
Carrie's background prior to Forrester includes work at the Harvard Business School, where she wrote case studies on Barnes & Noble, Frontgate, PlanetAll, QVC, Streamline, and TV Guide.
Carrie has appeared on NBC Nightly News, CNBC, and CNNfn to speak about online retail trends and react to various retail news events. She has also been quoted in various newspapers, including The Wall Street Journal, The New York Times, USA Today, and The Boston Globe.
Carrie is a magna cum laude graduate of Bowdoin College.
Rethinking Data Discovery And Classification For Data Security
Defining data via data discovery and classification is an often overlooked, yet critical, component of data security and control. Security and risk (S&R) pros can't expect to adequately protect data...

Protect Yourself From Hacktivists And Other Cybercriminals
Until recently, distributed denial of service (DDoS) attacks had been part of infosec lore: something you heard about but rarely experienced. With the rise of hacktivist groups and other...
Companies often demand to know what their peers in a particular vertical market are doing within the realm of information security before making new decisions. “We’re in retail” or...
ForeScout, Juniper, And Bradford Networks Outdistance The Pack, But Cisco, McAfee, And Enterasys Are Close Behind
In Forrester's 72-criteria evaluation of network access control (NAC) vendors, we found few notable points of differentiation between vendor offerings. Thus we have a tight clustering of vendors...
Policy And Procedures US Government Spotlight: The Security Architecture And Operations Playbook
US federal law, specifically the Federal Information Security Management Act (FISMA), requires US federal government agencies to adhere to National Institute of Standards and Technology (NIST)...
We are currently exploring all remote access options, particularly SSL functionality. What kind of trends are you are seeing in these areas?
Future Look: The Data Security And Privacy Playbook
This report outlines the future look of Forrester's solution for security and risk (S&R) executives seeking to develop a holistic strategy to protect and manage sensitive data. In the...

Are there certain vendors/solutions/configurations that are considered best practices for jump servers? Are organizations relying entirely on authentication and authorization controls, without having...
Preparing Your Network For Any Device, Anywhere, Any Time
You are part of an extended enterprise — a new extended ecosystem of customers, clouds, service providers, partners, supply chains, and empowered users. The business expects you, the security...

Last year the country of Japan suffered a devastating disaster of unspeakable proportions. A massive earthquake on the eastern coast of the country triggered a deadly tsunami that caused the flooding...
The PCI Security Standards Council released the summary of changes for the new version of PCI — 2.0. Merchants, you can quit holding your breath as this document is a yawner...
Road Map: The Security Architecture And Operations Playbook
This report outlines Forrester's solution to help security and risk (S&R) leaders develop their road map for Zero Trust network threat mitigation technologies using Forrester's TechRadar™...

Vision: The Security Architecture And Operations Playbook
There's an old saying in information security: "We want our network to be like an M&M, with a hard crunchy outside and a soft chewy center." For a generation of information security...
Strategic Plan: The Security Architecture And Operations Playbook
One of our goals with Zero Trust is to optimize the security architectures and technologies for future flexibility. As we move toward a data-centric world with shifting threats and perimeters, we...

An Empowered Report: Understanding The Threats To Unified Communication And VoIP Deployments
In many companies, the worlds of data networking and telecommunications have merged, and voice and video traffic travels with other enterprise data on the same corporate network. Often known...
This is a workbook that supplements the PCI X-Ray: Application Security Document
Assessment Framework: The Data Security And Privacy Playbook
Data loss prevention or protection (DLP) — depending upon your usage — is both one of the hottest topics and most difficult challenges among information security professionals today. In...

Business Case: The Security Architecture And Operations Playbook
We may look back on 2011 and 2012 as the golden age of hacking. In 2011, we saw well-publicized and devastating attacks such as the one that brought down the Sony PlayStation Network (PSN). In 2012,...
Are there any standard PCI report templates for providing information to my QSA?
Executive Overview: The Security Architecture And Operations Playbook
We've all heard about the "evolving threat landscape." In biology, evolution is a process that takes millions of years to occur as a result of small changes in successive generations. Mutations, on...
We would like to understand some best practices in the field of log management. More specifically: 1. Is it a best practice to correlate, aggregate, and monitor all logs for business risk and...
We are looking for a solution to centrally manage USB drives for all of our desktops. More specifically, we would want to ensure that data on the USB drive is encrypted. Does Forrester have any...
This checklist is provided as a concise and comprehensive workbook to help organizations deal with the different types of assessments and tests that security and risk professionals must perform to...
I’ll be in Austin, TX this weekend to participate in South-by-Southwest Interactive. My panel “Big Data Smackdown on Cybersecurity” will be held Sunday, March 11 from 12:30PM -...
Strategic Plan: The Data Security And Privacy Playbook
As cybercriminals have become more skillful and sophisticated, they have eroded the effectiveness of our traditional perimeter-based security controls. The constantly mutating threat landscape...