(Length: 20 pages)

March 31, 2006

Are We Secure Yet?

Defining Business-Centric Metrics For Information Security

This is the second document in the "Measuring Information Security" series.

by Khalid Kark

with Laurie M. Orlov, Paul Stamp, Samuel Bright

Executive Summary (This is a document excerpt)

Information security managers around the globe are frustrated. They are struggling to make sense of the reams of data being churned out in today's enterprise environment. The real challenge for them is not only to identify what is important but also to be able to tie this information from disparate tools into business-centric metrics so that the senior executives can understand them, take action, and be confident that the enterprise is secure. Security managers must differentiate between sustainable operational metrics that help them manage and business-centric metrics that are meaningful to top management. To craft the right metrics, information security managers need to subdivide the initiative into three discrete phases.

Buy Risk-Free

Download and print PDF immediately. Price: US $379

Our Money-Back Guarantee: If you are not completely satisfied, return it for a full refund within three weeks of your online purchase.

Already a Forrester Client?
Log in to read this document.

Add to cart

TABLE OF CONTENTS

NOTES & RESOURCES

itemInformation Security Managers Struggle To Demonstrate Accountability

itemSecurity Managers Must Develop The Security Metrics That Matter

itemThe Three Phases Of Developing Information Security Metrics

recommendations

itemSuccessful Presentation: The Key To Getting Management's Attention

WHAT IT MEANS

itemMetrics Can Bridge The Chasm Between Business And Security

itemSupplemental Material

For this research, Forrester conducted telephone interviews with 52 chief information security officers (CISOs) and senior security executives at user and vendor companies.

Related Research Documents

itemThe Myths Of Information Security Reporting

March 23, 2006, Best Practices

itemNorth America's 2006 Enterprise IT Spending Outlook: Business Technographics North America

February 3, 2006, Data Overview

itemHow To Measure What Matters In Security

January 20, 2006, Best Practices

Find Documents In Related Categories

This document falls under the following categories. Click on a link below to find similar documents.
Analyst: Khalid Kark
Technology: IT Management, IT Strategy, Planning, & Governance, Security & Risk, Security Operations
Geography: Asia Pacific, Europe, North America

Upcoming Teleconference:
corner border corner
Ratings and Comments
NOT YET RATED
corner border corner