200 results for Paul McKay in All

blog

Today’s Regulatory Intelligence Solutions Replace Drudgery With Confidence
Over the past five years, security and risk (S&R) professionals have experienced a flood of new cybersecurity regulations, with 170 countries now boasting cybersecurity and data protection laws. Leaders are left to decide which regulations apply, identify gaps, and implement controls — an onerous task as regulatory volume and the pace of change accelerate. Manual […]

blog

Cyber Risk Ratings Fade Out; Actionable Intelligence Takes The Spotlight
In musical notation, “al niente” means fading until sound is barely perceptible, usually to end a significant piece of music such as the ending of Tchaikovsky’s reflective and somber sixth symphony. And that is how the cybersecurity risk ratings market is likely to proceed over the coming months. Ratings will not fade away to nothing […]

Wave Report

The Forrester Wave™: Cybersecurity Risk Ratings Platforms, Q2 2026
In our evaluation of cybersecurity risk ratings (CRR) platform providers, we identified the most significant ones and researched, analyzed, and scored them. This report shows how each provider measures up and helps you select the right one for your needs.
Paul McKay
Paul McKay

How To Report

Use Regulatory Intelligence To Manage The Proliferation Of Cybersecurity Regulations
Over the past five years, security and risk (S&R) professionals have faced a flood of new cybersecurity regulations. Unfortunately, most S&R teams tracked these regulations manually and struggled to keep up. Regulatory intelligence solutions, which are already popular with financial services organizations, are gaining traction in other industries to automate elements of cybersecurity regulatory change management. S&R pros should use this report to transform the management of regulatory obligations using regulatory intelligence solutions with governance, risk, and compliance (GRC) integrations.
Paul McKay
Paul McKay

blog

The Security Priorities APAC And EMEA Leaders Doubled Down On — And Deprioritized — In H2 2025
In the second half of 2025, security and risk (S&R) leaders in APAC and EMEA continued to grapple with familiar pressures, but they reprioritized how they address them. While AI; governance, risk, and compliance (GRC); and third-party risk management (TPRM) stayed stubbornly on top of the charts, application security and security organization structure resurfaced with […]

Trend Report

Executive Spotlight: Top Priorities For APAC And EMEA Security And Risk Leaders, H2 2025
Every year, Forrester fields hundreds of requests for guidance on security and risk (S&R) topics from Forrester Decisions clients, who are C-level executives from companies across the globe. We analyzed more than 250 requests that we received in the second half of 2025 from clients in Asia Pacific (APAC) and EMEA; this executive spotlight identifies the top priorities for those clients. It’s no surprise that questions related to AI risk and security dominated. S&R leaders can use this report to understand the business value that they can realize by tackling each of these priorities and how best to do so.
Madelein van der Hout
Paul McKay
Tope Olufon
Enza Iannopollo
+1
Madelein van der Hout, Paul McKay, Tope Olufon, Enza Iannopollo, Meng Liu

Data Overview Report

The State Of Privacy And Cybersecurity, Q1 2026
Tech executives face powerful headwinds as they shape privacy and cybersecurity programs to advance their organizations’ strategic objectives. A tumultuous backdrop of geopolitical upheaval, a shaky economic outlook with uneven recovery, and a flood of regulatory requirements add complexity to a competing list of priorities. Tech execs should use the data in this report to track privacy and cybersecurity challenges, concerns, and priorities and modify their programs accordingly.
Heidi Shey
Madelein van der Hout
Jeff Pollard
Jess Burn
+1
Heidi Shey, Madelein van der Hout, Jeff Pollard, Jess Burn, Paul McKay

Data Overview Report

The State Of Enterprise Risk Operating Models, 2025
As enterprise risk management (ERM) shifts to a strategic advisory function that influences business decisions, most enterprises have a chief risk officer (CRO). However, accountability and reporting lines vary widely, which affects risk culture. Risk leaders should use this report to understand current trends for risk organizational model and reporting structure, benchmark their risk program, and modify their program accordingly.
Paul McKay
Cody Scott
Paul McKay, Cody Scott

Best Practice Report

A Practical Guide To Zero Trust Implementation
Zero Trust (ZT) is the de facto security model for many business and government organizations, but security leaders often don’t know where to begin architecting and implementing it; they can be daunted by the fundamental shifts in strategy and architecture that ZT demands. Contrary to popular belief, a Zero Trust architecture does not require ripping out current security controls and starting anew. With the right approach, security leaders can increase their ZT competence and realize security benefits right away. This report guides security leaders through a roadmap for implementing ZT using practical building blocks that take advantage of existing technology investments and current maturity.
James Plouffe
Carlos Rivera
Jinan Budge
Paul McKay
+3
James Plouffe, Carlos Rivera, Jinan Budge, Paul McKay, Andras Cser, Heidi Shey, Merritt Maxim

ON-DEMAND WEBINAR

Predictions 2026: Europe
Join Forrester experts and your peers for an interactive presentation that will dive deeper into Forrester’s 2026 Predictions for Europe.Key takeaways: Understand the changing technology, consumer, and market dynamics in store in 2026. Uncover new insights based on Forrester’s research and expert analysis.Prepare your team and your organization for what’s ahead. Target audience level: all levels
Thomas Husson
Martin Gill
Martha Bennett
Paul McKay
Thomas Husson, Martin Gill, Martha Bennett, Paul McKay

Get help finding what you need
Ask Forrester AI for instant answers or submit a research request and receive a curated list of research within 48 hours.