« Hacking the "Wall of Sheep" | Main | Top 5 Reasons to Denigrate Security Metrics »

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/services/trackback/6a00d8345207f669e200e550718a238834

Listed below are links to weblogs that reference On "Gaming" Security Metrics:

» The Daily Incite - August 16, 2006 from Security Incite: Analysis on Information Security
August 16, 2006 - #96 Good Morning: Boy Im bushed. Those mid-week late nights are challenging, but the Dave Matthews show was great. Hes one of the artists that just jams. 10-15 minute jams that start out like a song you recognize and then [Read More]

» Security Metrics Post from RiskAnalys.is
Mike sounds like he is channeling Donn Parkers fatalistic and random finger-crossing approach to security From a great post on Metrics over at Spire Security. ... [Read More]

Comments

I am with you on this one Pete. It must be my automotive manufacturing background. You cannot improve without metrics. It is only recently that vendor products have begun to supply metrics that are meant to measure overall posture: numbers that include vulnerabilities, asset value, and threats. The next evolution will be for someone to publish benchmarks by industry vertical and region. Imagine the scramble by the IT department if their score fell below the norm?

Verify your Comment

Previewing your Comment

This is only a preview. Your comment has not yet been posted.

Working...
Your comment could not be posted. Error type:
Your comment has been posted. Post another comment

The letters and numbers you entered did not match the image. Please try again.

As a final step before posting your comment, enter the letters and numbers you see in the image below. This prevents automated programs from posting comments.

Having trouble reading this image? View an alternate.

Working...

Post a comment