A Report from the Field: Implementing Cyber Security Metrics that Work
To join the CHAT for this session,
register here or sign in above.
Join the LiveCall
Please call Line 1 at (916) 469-4750. PIN: 541628.
Wednesday, August 17th
8:00-9:00am PDT
Full Description ↓
Wednesday, August 17, 8:00am PDT
Rick Grandy & Gregg Serene,
Lockheed Martin
The presenter(s) will not be making the same presentation as at the IT Summit, but instead will present a brief overview and then engage with the participants. The abstract below is provided to give you a sense of their interest:
How do you know if your cyber security program is healthy? Is passing audits and the absence of “bad news” enough? The cyber security team at the Department of Energy Hanford site has implemented a detailed set of cyber security metrics that provide significantly better insight into the performance of the program. In developing these metrics, the team reviewed metrics and metrics guidance from a number of sources and selected the Center for Internet Security (CIS) Consensus Metric Definitions as the starting point. This session will discuss our evaluation of various metrics standards, why we selected the CIS metrics, the issues we discovered during our feasibility study and the lessons learned for getting a metrics program off the ground. The target audience is security practitioners who are interested in the real-life experiences of peers who are attempting to develop usable, affordable and actionable security metrics.
To join the discussion for this session,
register here or sign in above.
-
Heather Kimley posted an update in the session
A Report from the Field: Implementing Cyber Security Metrics that Work: 9 months ago · Viewome very basic questions…. Answer any you have time for.
How flexible are the metrics to change?
You said you want to avoid incentivizing the wrong behavior. What behaviors?
How do you gather the benchmarks and targets?
-
Lianne (Moderator) posted an update in the session
A Report from the Field: Implementing Cyber Security Metrics that Work: 9 months ago · ViewDiscussion questions from Rick and Gregg:
-What sources of data might you already have?
-What goals of objectives do you have for a cyber metrics program?
-Where are you in doing cyber metrics?
-Interested
-Planning a project
-Implementing
-Running
-If you could brief cyber to your center director every month for 15 minutes, what measures or metrics would you want to brief? -
Heather Kimley joined the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months ago · View -
Audrey (Moderator) posted an update in the session
A Report from the Field: Implementing Cyber Security Metrics that Work: 9 months ago · ViewCenter for Internet Security Metrics (Mentioned by Gregg Serene) – http://www.cisecurity.org/
-
Carol Bryant joined the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months ago · View -
Consuelo Annon joined the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months ago · View -
Paulette Carter joined the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months ago · View -
Ozzie Osband joined the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months ago · View -
Julian Breidenthal joined the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months ago · View -
Matthew Rosen joined the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months ago · View -
Rick Grandy joined the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months, 1 week ago · View -
Gregg A. Serene joined the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months, 1 week ago · View -
Tedd Determan favorited the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months, 1 week ago · View -
Matthew C Henderson favorited the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months, 1 week ago · View -
Lianne (Moderator) favorited the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months, 1 week ago · View -
Audrey (Moderator) favorited the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months, 1 week ago · View -
Gretchen Morris favorited the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months, 1 week ago · View -
Lorretta A Filiault favorited the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months, 1 week ago · View -
Lucas Cioffi created the session
A Report from the Field: Implementing Cyber Security Metrics that Work 9 months, 2 weeks ago · View
