About Forrester
Forrester Research, Inc. is an independent research company that provides pragmatic and forward-thinking advice to global leaders in business and technology.

Connie is a member of Forrester's Business Technology Futures team, which serves CIOs and their business partners by predicting the long-term business impact of information technology. Her research focus is on smart computing and analytics.
Connie came to Forrester through its acquisition of Giga Information Group in 2003. She has more than 25 years of experience in the IT industry and has been an analyst for 19 years. Most of her research focuses on business process management and business optimization. Prior to joining Giga, Connie managed BIS Strategic Decisions' European IT consulting group, headquartered in the UK. Before then, Connie was vice president of product marketing at TDC (now part of BancTec), a manufacturer of high-end document capture systems. She was also a manager with Andersen Consulting (now Accenture), specializing in document management, document imaging, and end user computing. Earlier, Connie was with Wang Laboratories, where she managed Wang's technical support resources for the US Department of Defense and intelligence agencies. She began her career in IT and management at Mathematica Policy Research.
Connie was the co-champion of Forrester's 2009 Business Technology Forum, with its theme of "Lean: The New Business Technology Imperative." Connie also co-championed Forrester's 2007 Technology Leadership Forum, with the theme of "Design for People, Build for Change," and Forrester's 2008 Technology Leadership Forum, themed as "Embrace Technology Chaos, Deliver Business Results." Connie is a widely sought speaker. She has keynoted at many industry events, chaired 10 business process and workflow conferences in Europe and the US, and co-chaired Giga's "Leveraging Knowledge" conference. Connie also served as a director of AIIM International, the premier association for the content management industry, and is a member of the Association of Business Process Management Professionals.
Connie attended the University of North Carolina at Chapel Hill and holds a B.A. in political science and history from East Carolina University and an M.B.A. in information systems from George Washington University.
I just finished a research document titled Measure The Effectiveness Of Your Data Security And Privacy Program for the The Security Architecture And Operations Playbook. This was a lot of fun...
Forrester receives a significant number of inquiries from clients requesting Forrester guidance on Information Security Metrics. Chief Information Security Officers (CISOs) need new types of...
The Nine Service Providers That Matter Most And How They Stack Up
In Forrester's 60-criteria evaluation of the North American managed security services market, we identified the nine significant service providers in this category — AT&T, CSC, Dell...


Seven Critical Executive-Level Metrics For CISOs And The Business
Performance Management: The Data Security And Privacy Playbook
Privacy is one of the most important and emotional issues in information security. Privacy, or the lack thereof, affects a company's management, employees, and most importantly, customers. With the...

I just finished a final draft of a presentation on information security executive reporting that I and some colleagues will present at the upcoming Forrester IT Forum in Las Vegas. For those of...
Ernst & Young, Deloitte, IBM, Accenture, PwC, And KPMG Lead, With Wipro Following Close Behind
The information security consulting market is growing explosively because security and risk professionals often lack the skill and bandwidth to accomplish their increasingly difficult mission. To...

This month I published a new report on information security metrics, best practices as well as a maturity model to measure your maturity in the reporting process. This report outlines the...
In conjunction with Forrester's update to our information security metrics and best practices report, Forrester has developed a model to help you assess the maturity of your security metrics program.
Guest Post From Researcher Chris Sherman Last month, Ed and I spent a couple days in Paris with Orange's management team for their annual analyst event. Overall I was impressed with...
At Forrester, we place a great deal of emphasis on relevance and what it means when researching a topic. For the busy executive, it's sometimes difficult to wade through deep lists of...
I always have been interested in Enterprise Architecture. Enterprise Architecture is one of those terms that security professionals hear about but do not always know how it can benefit what...
Guest post from Researcher Heidi Shey. Calculating the cost of a data breach should be a part of every organization’s information security risk management strategy. It’s not an easy...
Business Impact: The S&R Practice Playbook
This report outlines Forrester's approach to helping you financially model information security. In today's seemingly never-ending cycle of new technologies, cyberthreats, and regulations, it's...
Everyone knows that in business you need to do two things: Increase top-line revenue growth and reduce bottom line cost. Doing both of these is how companies grow profitably. It really is that...
Performance Management: The S&R Practice Playbook
This report outlines the benchmarks for Forrester's solution for security and risk (S&R) professionals looking to build a high-performance security program and organization. We designed this report...
This is the second in a series of reports providing guidance and new methods for the financial management of information security. The CISO's role is rapidly changing. A few years ago the CISO for...

Seven Critical Executive-Level Metrics For CISOs And The Business
The ability to communicate effectively has always been a core competency for any business executive, and today's chief information security officer (CISO) is fast becoming a business executive. The...
Performance Management: The Security Architecture And Operations Playbook
Information security programs have struggled with legitimacy with senior leaders for a long time. There are many reasons for this, but they all can be traced back to the historical inability of chief...

What are the pros and cons of security reporting within IT versus a non-IT department?
After months of diligent vendor evaluations, last week we officially published The Forrester Wave: Managed Security Services: North America, Q1 2012. This report features our detailed analysis on...