home.social

#crq — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #crq, aggregated by home.social.

  1. You can't predict the future but every important decision we make involves getting as close to it as we can. #grc #risk #crq #cybersecurity #prediction #GJP

  2. You can't predict the future but every important decision we make involves getting as close to it as we can. #grc #risk #crq #cybersecurity #prediction #GJP

  3. You're biased. Knowing you are is a start, but not enough. You don't need to openly admit you have a biased decision-making problem because every human 100% does. Fortunately establishing cognitive and technical routines works and tools and resources are available and even fun to use #grc #risk #crq #cybersecurity #deriverisk deriverisk.com

  4. You're biased. Knowing you are is a start, but not enough. You don't need to openly admit you have a biased decision-making problem because every human 100% does. Fortunately establishing cognitive and technical routines works and tools and resources are available and even fun to use #grc #risk #crq #cybersecurity #deriverisk deriverisk.com

  5. Cybersecurity effort decisions can very easily get in the way of innovation and progress. How much to compromise innovation in favor of cybersecurity is too fine a line for guesswork. That's basically why I'm obsessed with risk modeling in this space. #grc #risk #crq #cybersecurity

  6. Cybersecurity effort decisions can very easily get in the way of innovation and progress. How much to compromise innovation in favor of cybersecurity is too fine a line for guesswork. That's basically why I'm obsessed with risk modeling in this space. #grc #risk #crq #cybersecurity

  7. Cybersecurity risks are all tails but many risk analysts continue to use arithmetic mean to sum up the distribution of possibilities. #grc #risk #crq #cybersecurity

  8. Cybersecurity risks are all tails but many risk analysts continue to use arithmetic mean to sum up the distribution of possibilities. #grc #risk #crq #cybersecurity

  9. How many data breaches can you afford to have in order to collect enough data points for statistical analysis? #grc #risk #crq #cybersecurity

  10. How many data breaches can you afford to have in order to collect enough data points for statistical analysis? #grc #risk #crq #cybersecurity

  11. What are event counts and statistics like #DBIR useful for in #Bayesian modeling? They provide what _may_ be valuable background information. #grc #risk #crq #cybersecurity

  12. What are event counts and statistics like #DBIR useful for in #Bayesian modeling? They provide what _may_ be valuable background information. #grc #risk #crq #cybersecurity

  13. The value of cautious deliberation and strategic inaction. When dealing with potential cyber threats, the decision to act swiftly may seem imperative. But making hasty decisions w/o comprehensive information can lead to vulnerabilities being overlooked or exacerbated. #Cybersecurity professionals often face uncertain outcomes, especially when dealing with new or evolving threats. In these cases, the act of waiting for more data or clearer insights can be incredibly valuable. #grc #risk #crq

  14. The value of cautious deliberation and strategic inaction. When dealing with potential cyber threats, the decision to act swiftly may seem imperative. But making hasty decisions w/o comprehensive information can lead to vulnerabilities being overlooked or exacerbated. #Cybersecurity professionals often face uncertain outcomes, especially when dealing with new or evolving threats. In these cases, the act of waiting for more data or clearer insights can be incredibly valuable. #grc #risk #crq

  15. Only 1/3 of UK businesses have ever conducted a cyber risk assessment 😮

    Plus we often hear from IT and Security Teams that struggle to know what makes a *good* risk assessment?

    This is despite risk being widely regarded as the foundation for any cyber security programme. It features in government guidance, international standards, and wider good practice.

    So we're starting a new series on the Cydea blog looking into just that. Plus tips and tricks on how you can up your #cyber #risk game (and maybe sneak in a bit of #CRQ too 🤑)

    Check out the link below to the first part where we touch on preparation and (briefly) identifying risk - then make sure you're following Cydea for future updates!

    What makes a good risk assessment? >> cydea.com/blog/what-makes-a-go

    #PositiveSecurity #CyberRisk #InfoSec

  16. Only 1/3 of UK businesses have ever conducted a cyber risk assessment 😮

    Plus we often hear from IT and Security Teams that struggle to know what makes a *good* risk assessment?

    This is despite risk being widely regarded as the foundation for any cyber security programme. It features in government guidance, international standards, and wider good practice.

    So we're starting a new series on the Cydea blog looking into just that. Plus tips and tricks on how you can up your #cyber #risk game (and maybe sneak in a bit of #CRQ too 🤑)

    Check out the link below to the first part where we touch on preparation and (briefly) identifying risk - then make sure you're following Cydea for future updates!

    What makes a good risk assessment? >> cydea.com/blog/what-makes-a-go

    #PositiveSecurity #CyberRisk #InfoSec

  17. Only 1/3 of UK businesses have ever conducted a cyber risk assessment 😮

    Plus we often hear from IT and Security Teams that struggle to know what makes a *good* risk assessment?

    This is despite risk being widely regarded as the foundation for any cyber security programme. It features in government guidance, international standards, and wider good practice.

    So we're starting a new series on the Cydea blog looking into just that. Plus tips and tricks on how you can up your #cyber #risk game (and maybe sneak in a bit of #CRQ too 🤑)

    Check out the link below to the first part where we touch on preparation and (briefly) identifying risk - then make sure you're following Cydea for future updates!

    What makes a good risk assessment? >> cydea.com/blog/what-makes-a-go

    #PositiveSecurity #CyberRisk #InfoSec

  18. 🚀 Cydea has been selected for the Cyber Runway: Scale programme! 🚀

    The Cyber Runway programme is funded by the Department for Science, Innovation and Technology (DSIT) and delivered by Plexal Cyber with Deloitte and Centre for Secure Information Technologies (CSIT).

    Cyber Runway is the largest cyber accelerator in the UK and the Scale programme is intended to support businesses grow rapidly in the UK and internationally. We'll get support on review/formulating growth plans, introductions and networking with potential partners and customers, engineering support, a range of workshops and mentoring sessions on growing the business, and access to a network of other cyber hubs around the world.

    It’s recognition of the pervasive problems with cyber risk management, and the potential for Cydea’s innovative services – which can be delivered via our SaaS platform or as consultancy – to help improve security programmes and #CloseTheLoop on cyber risk.

    If you haven’t already, follow us for more #CRQ insights, our Cyber Runway experience, and check out cydea.com/platform/ and signup to get started for free, or to book some time with one of the team.

    cydea.com/blog/cydea-cyber-ruw

  19. 🚀 Cydea has been selected for the Cyber Runway: Scale programme! 🚀

    The Cyber Runway programme is funded by the Department for Science, Innovation and Technology (DSIT) and delivered by Plexal Cyber with Deloitte and Centre for Secure Information Technologies (CSIT).

    Cyber Runway is the largest cyber accelerator in the UK and the Scale programme is intended to support businesses grow rapidly in the UK and internationally. We'll get support on review/formulating growth plans, introductions and networking with potential partners and customers, engineering support, a range of workshops and mentoring sessions on growing the business, and access to a network of other cyber hubs around the world.

    It’s recognition of the pervasive problems with cyber risk management, and the potential for Cydea’s innovative services – which can be delivered via our SaaS platform or as consultancy – to help improve security programmes and #CloseTheLoop on cyber risk.

    If you haven’t already, follow us for more #CRQ insights, our Cyber Runway experience, and check out cydea.com/platform/ and signup to get started for free, or to book some time with one of the team.

    cydea.com/blog/cydea-cyber-ruw

  20. 🚀 Cydea has been selected for the Cyber Runway: Scale programme! 🚀

    The Cyber Runway programme is funded by the Department for Science, Innovation and Technology (DSIT) and delivered by Plexal Cyber with Deloitte and Centre for Secure Information Technologies (CSIT).

    Cyber Runway is the largest cyber accelerator in the UK and the Scale programme is intended to support businesses grow rapidly in the UK and internationally. We'll get support on review/formulating growth plans, introductions and networking with potential partners and customers, engineering support, a range of workshops and mentoring sessions on growing the business, and access to a network of other cyber hubs around the world.

    It’s recognition of the pervasive problems with cyber risk management, and the potential for Cydea’s innovative services – which can be delivered via our SaaS platform or as consultancy – to help improve security programmes and #CloseTheLoop on cyber risk.

    If you haven’t already, follow us for more #CRQ insights, our Cyber Runway experience, and check out cydea.com/platform/ and signup to get started for free, or to book some time with one of the team.

    cydea.com/blog/cydea-cyber-ruw

  21. Join us at #RISK, the UK’s premier event for governance, risk, and compliance, in just over a month!

    You'll find @cydea at booth 73 (next to the coffee ☕️) discussing ways to improve cyber risk conversations, and showing off our Risk Platform!

    Plus, don't miss @rto on 10th October in the Risk Theatre at 12:00: "Quantifying Cyber Risk: Tools and Techniques for Better Decision Making"

    You can book your free ticket here: buytickets.at/grcworldforums/1

    #CyberRisk #PositiveSecurity #CloseTheLoop #CRQ #RISKLondon

  22. Join us at #RISK, the UK’s premier event for governance, risk, and compliance, in just over a month!

    You'll find @cydea at booth 73 (next to the coffee ☕️) discussing ways to improve cyber risk conversations, and showing off our Risk Platform!

    Plus, don't miss @rto on 10th October in the Risk Theatre at 12:00: "Quantifying Cyber Risk: Tools and Techniques for Better Decision Making"

    You can book your free ticket here: buytickets.at/grcworldforums/1

    #CyberRisk #PositiveSecurity #CloseTheLoop #CRQ #RISKLondon

  23. Join us at #RISK, the UK’s premier event for governance, risk, and compliance, in just over a month!

    You'll find @cydea at booth 73 (next to the coffee ☕️) discussing ways to improve cyber risk conversations, and showing off our Risk Platform!

    Plus, don't miss @rto on 10th October in the Risk Theatre at 12:00: "Quantifying Cyber Risk: Tools and Techniques for Better Decision Making"

    You can book your free ticket here: buytickets.at/grcworldforums/1

    #CyberRisk #PositiveSecurity #CloseTheLoop #CRQ #RISKLondon

  24. "Security teams are struggling to conduct accurate risk assessments and communicate the results with business and technology colleagues. They find simple questions like 'what is our risk?' difficult to answer meaningfully."

    Check out this interview with Cydea founder Robin Oldham about why we need to change how we understand #cyber #risk

    betanews.com/2024/07/31/why-we

    #CloseTheLoop #PositiveSecurity #CRQ

  25. "Security teams are struggling to conduct accurate risk assessments and communicate the results with business and technology colleagues. They find simple questions like 'what is our risk?' difficult to answer meaningfully."

    Check out this interview with Cydea founder Robin Oldham about why we need to change how we understand #cyber #risk

    betanews.com/2024/07/31/why-we

    #CloseTheLoop #PositiveSecurity #CRQ

  26. "Security teams are struggling to conduct accurate risk assessments and communicate the results with business and technology colleagues. They find simple questions like 'what is our risk?' difficult to answer meaningfully."

    Check out this interview with Cydea founder Robin Oldham about why we need to change how we understand #cyber #risk

    betanews.com/2024/07/31/why-we

    #CloseTheLoop #PositiveSecurity #CRQ

  27. What is "likely?" 🤔

    This is what #BSides Exeter thought... ignoring the 0% trolls, "likely" means anywhere between ~30% and ~90% to the 50+ people that voted in our poll.

    If you're struggling to communicate your #CyberRisk or don't feel like you're being heard, Cydea can help. Turn ambiguous statements into meaningful numbers that can underpin security programmes, investment cases, or show the benefit you're bringing to the business.

    cydea.com/platform/

    #PositiveSecurity #CloseTheLoop #CRQ #Cyber

  28. What is "likely?" 🤔

    This is what #BSides Exeter thought... ignoring the 0% trolls, "likely" means anywhere between ~30% and ~90% to the 50+ people that voted in our poll.

    If you're struggling to communicate your #CyberRisk or don't feel like you're being heard, Cydea can help. Turn ambiguous statements into meaningful numbers that can underpin security programmes, investment cases, or show the benefit you're bringing to the business.

    cydea.com/platform/

    #PositiveSecurity #CloseTheLoop #CRQ #Cyber

  29. What is "likely?" 🤔

    This is what #BSides Exeter thought... ignoring the 0% trolls, "likely" means anywhere between ~30% and ~90% to the 50+ people that voted in our poll.

    If you're struggling to communicate your #CyberRisk or don't feel like you're being heard, Cydea can help. Turn ambiguous statements into meaningful numbers that can underpin security programmes, investment cases, or show the benefit you're bringing to the business.

    cydea.com/platform/

    #PositiveSecurity #CloseTheLoop #CRQ #Cyber

  30. Suffering from blank page syndrome with your cyber risk assessments?

    Getting started with mapping your risk can be challenging. Whether that’s understanding what matters, calculating the probabilities of certain risks occurring or getting the right stakeholders involved to get their input.

    We’ve taken our collective years of experience to create a simple to use library of common risk scenarios, complete with guidance on where to ask for the information you need to make a decision. Nice and easy!

    Get started today! cydea.com/platform/

    #CloseTheLoop #CRQ #Cyber

  31. Suffering from blank page syndrome with your cyber risk assessments?

    Getting started with mapping your risk can be challenging. Whether that’s understanding what matters, calculating the probabilities of certain risks occurring or getting the right stakeholders involved to get their input.

    We’ve taken our collective years of experience to create a simple to use library of common risk scenarios, complete with guidance on where to ask for the information you need to make a decision. Nice and easy!

    Get started today! cydea.com/platform/

    #CloseTheLoop #CRQ #Cyber

  32. Suffering from blank page syndrome with your cyber risk assessments?

    Getting started with mapping your risk can be challenging. Whether that’s understanding what matters, calculating the probabilities of certain risks occurring or getting the right stakeholders involved to get their input.

    We’ve taken our collective years of experience to create a simple to use library of common risk scenarios, complete with guidance on where to ask for the information you need to make a decision. Nice and easy!

    Get started today! cydea.com/platform/

    #CloseTheLoop #CRQ #Cyber

  33. What is unique about the Cydea Risk Platform?

    It can be challenging to explain the level of risk facing an organisation. Often organisations get stuck in a process of trying to gather ever more detailed ‘bottom-up’ data. It’s an impossible quest for precision, instead of accuracy.

    Cydea Risk Platform and our ‘top-down’ approach makes this really easy and presents the information in a way that is easily digestible by others - even outside the cyber security team!

    Get started today to have better conversations around cyber risk in your organisation.

    youtu.be/HOOagndRVCs

    #CloseTheLoop #Cyber #CRQ

  34. What is unique about the Cydea Risk Platform?

    It can be challenging to explain the level of risk facing an organisation. Often organisations get stuck in a process of trying to gather ever more detailed ‘bottom-up’ data. It’s an impossible quest for precision, instead of accuracy.

    Cydea Risk Platform and our ‘top-down’ approach makes this really easy and presents the information in a way that is easily digestible by others - even outside the cyber security team!

    Get started today to have better conversations around cyber risk in your organisation.

    youtu.be/HOOagndRVCs

    #CloseTheLoop #Cyber #CRQ

  35. What is unique about the Cydea Risk Platform?

    It can be challenging to explain the level of risk facing an organisation. Often organisations get stuck in a process of trying to gather ever more detailed ‘bottom-up’ data. It’s an impossible quest for precision, instead of accuracy.

    Cydea Risk Platform and our ‘top-down’ approach makes this really easy and presents the information in a way that is easily digestible by others - even outside the cyber security team!

    Get started today to have better conversations around cyber risk in your organisation.

    youtu.be/HOOagndRVCs

    #CloseTheLoop #Cyber #CRQ

  36. Many people have told us that conducting risk assessments is a chore. They end up spending more time managing spreadsheets than managing risk.

    Cydea Risk Platform makes it easy for security teams to conduct a risk assessment with input from their business and technology colleagues.

    The result is a shared, quantified understanding of the cyber risk the business faces and clear investment cases to tackle that risk.

    Get started today! 👉cydea.com/platform/

    #CloseTheLoop #CRQ #RSAC

  37. Many people have told us that conducting risk assessments is a chore. They end up spending more time managing spreadsheets than managing risk.

    Cydea Risk Platform makes it easy for security teams to conduct a risk assessment with input from their business and technology colleagues.

    The result is a shared, quantified understanding of the cyber risk the business faces and clear investment cases to tackle that risk.

    Get started today! 👉cydea.com/platform/

    #CloseTheLoop #CRQ #RSAC

  38. Many people have told us that conducting risk assessments is a chore. They end up spending more time managing spreadsheets than managing risk.

    Cydea Risk Platform makes it easy for security teams to conduct a risk assessment with input from their business and technology colleagues.

    The result is a shared, quantified understanding of the cyber risk the business faces and clear investment cases to tackle that risk.

    Get started today! 👉cydea.com/platform/

    #CloseTheLoop #CRQ #RSAC

  39. Kaluza’s technology empowers some of the biggest energy retailers to better serve millions of customers and help them transition to net-zero.

    Michelle spoke at our launch event about why she’s excited for the Cydea Risk Platform and the impact it’ll have on risk management across her organisation.

    Get started today to:
    📉Tangibly demonstrate how your security efforts directly reduce the risk faced by your business
    ✍️Identify and make ROI-driven decisions in business proposals
    🏢Tie cyber into organisation-wide risk management strategies

    youtu.be/JX5s1O3n174

    #CloseTheLoop #CRQ #PositiveSecurity #CyberRisk

  40. Kaluza’s technology empowers some of the biggest energy retailers to better serve millions of customers and help them transition to net-zero.

    Michelle spoke at our launch event about why she’s excited for the Cydea Risk Platform and the impact it’ll have on risk management across her organisation.

    Get started today to:
    📉Tangibly demonstrate how your security efforts directly reduce the risk faced by your business
    ✍️Identify and make ROI-driven decisions in business proposals
    🏢Tie cyber into organisation-wide risk management strategies

    youtu.be/JX5s1O3n174

    #CloseTheLoop #CRQ #PositiveSecurity #CyberRisk

  41. Kaluza’s technology empowers some of the biggest energy retailers to better serve millions of customers and help them transition to net-zero.

    Michelle spoke at our launch event about why she’s excited for the Cydea Risk Platform and the impact it’ll have on risk management across her organisation.

    Get started today to:
    📉Tangibly demonstrate how your security efforts directly reduce the risk faced by your business
    ✍️Identify and make ROI-driven decisions in business proposals
    🏢Tie cyber into organisation-wide risk management strategies

    youtu.be/JX5s1O3n174

    #CloseTheLoop #CRQ #PositiveSecurity #CyberRisk

  42. We’ve shared lots of exciting content from our launch of the Cydea Risk Platform.

    But why should you sign up and close the loop on cyber risk?

    Simply:
    Track and manage your risk.
    Improve cyber risk conversations.
    Comply with frameworks.
    Learn from security incidents.

    Head to the comments to get started today!

    #CloseTheLoop #CRQ #PositiveSecurity #CyberRisk

  43. We’ve shared lots of exciting content from our launch of the Cydea Risk Platform.

    But why should you sign up and close the loop on cyber risk?

    Simply:
    Track and manage your risk.
    Improve cyber risk conversations.
    Comply with frameworks.
    Learn from security incidents.

    Head to the comments to get started today!

    #CloseTheLoop #CRQ #PositiveSecurity #CyberRisk

  44. We’ve shared lots of exciting content from our launch of the Cydea Risk Platform.

    But why should you sign up and close the loop on cyber risk?

    Simply:
    Track and manage your risk.
    Improve cyber risk conversations.
    Comply with frameworks.
    Learn from security incidents.

    Head to the comments to get started today!

    #CloseTheLoop #CRQ #PositiveSecurity #CyberRisk

  45. There are some big, well documented problems with 5x5 risk matrices (or ‘PIGs’ as we like to call them!🐖) We think they hinder, rather than help, communication.

    Cydea Risk Platform helps achieve better security outcomes, such as improved communication between security, technology and business teams.

    That’s why, when you open an assessment, you see an easy to understand ‘loss exceedance curve’. It shows you the aggregate risk of all your scenarios in your assessment. Clear, easy-to-digest visuals of your overall risk posture, and how it relates to your risk tolerance.

    No more ‘how many ambers make a red’ or trying to mix colours. 🟥+🟨+🟩🟰🟫

    If you’ve struggled to get buy-in for cybersecurity investments, or demonstrate the value in your security programme, then cyber risk quantification can help you achieve those goals (and much more!).

    Plus you can import your existing risk register to get started in no time at all.

    Get started today! cydea.com/platform

    #CloseTheLoop #CRQ #PositiveSecurity #Cyber

  46. There are some big, well documented problems with 5x5 risk matrices (or ‘PIGs’ as we like to call them!🐖) We think they hinder, rather than help, communication.

    Cydea Risk Platform helps achieve better security outcomes, such as improved communication between security, technology and business teams.

    That’s why, when you open an assessment, you see an easy to understand ‘loss exceedance curve’. It shows you the aggregate risk of all your scenarios in your assessment. Clear, easy-to-digest visuals of your overall risk posture, and how it relates to your risk tolerance.

    No more ‘how many ambers make a red’ or trying to mix colours. 🟥+🟨+🟩🟰🟫

    If you’ve struggled to get buy-in for cybersecurity investments, or demonstrate the value in your security programme, then cyber risk quantification can help you achieve those goals (and much more!).

    Plus you can import your existing risk register to get started in no time at all.

    Get started today! cydea.com/platform

    #CloseTheLoop #CRQ #PositiveSecurity #Cyber