About Forrester
Forrester Research, Inc. is an independent research company that provides pragmatic and forward-thinking advice to global leaders in business and technology.
Understand The New Threat Paradigm To Make Your Responses More Effective
The information security threat landscape is changing rapidly, and many security organizations are struggling to keep up with the changing nature, complexity, and scale of attacks. Not only is it...
The Forrester BT Leadership Maturity Model consists of four domains (leadership, strategy and planning, BT service design, and BT service delivery). This model is designed to provide a brief...


Last week, Forrester launched its CIO Role Community, a place for CIOs (and other IT leaders) exclusively to engage in conversations and discussions with their peers. This community will also...
Assessment Framework: The S&R Practice Playbook
This report outlines the assessment framework associated with Forrester's solution for security and risk (S&R) executives. The report is designed to help CISOs as they continue working their way...

Today, 22% of employees say that they have used a non-IT-provisioned service over the Web to perform their job function —not to update their Facebook accounts, but to do real work.[i]...
As you may know, I recently was named the Research Director for our CIO team — a team of highly accomplished and experienced analysts at Forrester. One of our first tasks as a team was to...
In Forrester's 78-criteria evaluation of managed security services providers (MSSP), we found that IBM and SecureWorks led the pack because of flexibility, competency, and breadth of coverage. While...
The Renaissance was possible because of dissemination of ideas from the later 15th century. The availability of paper and the subsequent invention of the printing press in 1445 forever changed the...
A Self-Assessment Framework To Focus And Accelerate Your Transformation
Many CIOs struggle to answer two deceptively simple questions: 1) How are we doing, and 2) what should I prioritize? These questions invite a host of complexities, raising questions about the role of...
Firms Must Improve The Maturity Of Their Services To Remain Relevant
While it hasn't always been seen in the past as the earliest adopter of information security technologies or the largest market for information security services, the US federal government is...
Governance, Maturity, And Analytics Are The Major Themes For 2011
Every winter Forrester outlines 12 important recommendations for your security strategy for the coming year. We base these recommendations on hundreds of client inquiries, numerous consulting...
A Road Map For CIOs To Succeed In An Empowered World
Many pundits are writing the CIO's obituary. Your employees and the business are no longer relying on IT to provision and deliver technology. They are using technologies like social, mobile, cloud,...

The cyberinsurance market has existed for longer than most would guess. In fact, insurance companies wrote the first cyberinsurance policies more than a decade ago. Since cyberinsurance first emerged...
Today, with technology embedded in virtually every business process and market dynamics changing at a mind-boggling pace, the role of CIO is rapidly changing from a technology manager to a business...
Dell announced Tuesday its intent to acquire managed security services provider (MSSP) SecureWorks for an undisclosed amount. SecureWorks, which acquired VeriSign's Managed Security Services...
The Forrester Information Security Maturity Model is a framework that consists of four main security domains (oversight, technology, process, and people) with 25 functions and 123 low-level...

In the past few days, almost every conversation I have had with a CISO has somehow stumbled onto the topic of the data breach at the US Department of Defense (DoD) and subsequent release of that...
As information security matures into a formal discipline, it needs formal governance mechanisms. Over the past 12 months, Forrester has seen increased interest and activity in establishing security...