About Forrester
Forrester Research, Inc. is an independent research company that provides pragmatic and forward-thinking advice to global leaders in business and technology.

Andy serves eBusiness & Channel Strategy Professionals. He focuses primarily on B2B and B2B2C eCommerce, as well as issues related to enabling channel partner businesses for manufacturers. Andy's current research areas include multichannel retailing, mobile couponing, affiliate marketing, and enabling manufacturers to sell online.
Prior to joining Forrester, Andy spent 11 years in product and marketing leadership roles within Silicon Valley. In that time, he developed Yahoo's Web2Store local shopping initiative, co-founded an eCommerce company, and helped create several award-winning products in the consumer Internet and mobile software spaces. Before moving to Silicon Valley, Andy spent four years in Washington, D.C., as a research analyst for an economic consulting firm.
Andy has been quoted in various media outlets including The Wall Street Journal, Internet Retailer, Direct Marketing News, American Banker, and CNBC.
Andy is a summa cum laude graduate in economics from the University of Dayton and holds an M.P.A. from Harvard University and an M.S. in integrated marketing from Northwestern University.
Rethinking Data Discovery And Classification For Data Security
Defining data via data discovery and classification is an often overlooked, yet critical, component of data security and control. Security and risk (S&R) pros can't expect to adequately protect data...

Strategic Plan: The Governance, Risk, And Compliance Playbook
Governance, risk management, and compliance (GRC) are far too often positions of emergency response. What's worse, as you constantly rush to respond to new mandates, enforce policies, or pull...


How do retailer websites handle login expiration? Is it session-based, login-persisted, 30-day cookie, and so on? What is the norm or best practice?
Estimating Levels Of Risk Exposure To Help Guide Informed Decisions
Opposition to adopting formal risk management tends to use the process of risk measurement as its attack target — it's too subjective, it's too complicated, or it's too much investment just to...
SaaS Values Are Established, And Vendors Move Quickly To Capture Market Share
Content security products enable organizations to protect against email- and web-borne threats, enforce acceptable use policies, and guard against data leak risks. SaaS delivery has been a game...
We're looking for current best practices and recommendations for Active Directory (AD) password policies.
Business Case: The Governance, Risk, And Compliance Playbook
As the governance, risk, and compliance (GRC) platform market matures, product vendors struggle to point to credible return on investment figures, and potential buyers similarly struggle when asked...
Protect Yourself From Hacktivists And Other Cybercriminals
Until recently, distributed denial of service (DDoS) attacks had been part of infosec lore: something you heard about but rarely experienced. With the rise of hacktivist groups and other...
It is possible to greatly reduce the complexity of your branch office infrastructure, thanks to cheaper bandwidth, desktop virtualization, and cloud computing technologies such as...
Business Impact: The Data Security And Privacy Playbook
Protecting customer data such as credit card information, log-in credentials, and personally identifiable information is an important part of enterprise IT security. Such data fuels a large and...

How does Forrester define Advanced Persistent Threat?
Policy And Procedures: The S&R Practice Playbook
Over recent years, the information security industry has matured nicely; experts and associations have documented many best practice models, and their adoption has been widespread. It's disconcerting...
What Security Professionals Need To Know Today About Smart City Initiatives
With the promise of improved citizen services and more efficient use of scarce resources, the smart city trend is picking up momentum across the globe. A "smart city" integrates technology with...
What is the size of the governance, risk, and compliance (GRC) market, and what is the market growth rate in India? Who are the major GRC vendors in India, and what are the areas of opportunity?
Protecting Information Consistently With Identity Context (PICWIC) Is A Must
According to Forrester survey data, "trusted" insiders and business partners, intentionally or unintentionally, are responsible for 43% of security breaches. The recent WikiLeaks breach illustrates...

Enterprise rights management (ERM) products enable organizations to provide persistent protection for valuable business documents, enhancing traditional information control capabilities. Because ERM...
How One Healthcare Provider Improved The End User Experience Of 1,500 Physicians
In today's healthcare environment, physicians must access a wide array of IT applications to provide quality patient care. Because of the growing number of both on-premises and SaaS-based...