Improving Return on Security Investment: Estimating the Impact of Mitigations

By Simone Curzi, Principal Consultant, Microsoft; John Linford, Security Portfolio Forum Director, The Open Group; Dan Riley, Vice President & Distinguished Engineer Data Science, Kyndryl; Ken St. Cyr, Sr. Cybersecurity Architect, Microsoft

Understanding the risks present in the system you are developing is important, but it is even more important to determine mitigation actions. Activities like threat modeling can help with identifying your options, but they are usually too numerous and too expensive. What should you really do? And would the residual risk be acceptable afterwards?

Using AI to Develop Enhanced Cybersecurity Measures

A research team at Los Alamos National Laboratory is using artificial intelligence to address several critical shortcomings in large-scale malware analysis, making significant advancements in the classification of Microsoft Windows malware and paving t…

Agenda Unveiled for Business Change & Transformation Conference Europe 2024 Co-Located with AI in Transformation and Service Design Conferences

IRM UK has announced the release of the agenda for its upcoming Business Change & Transformation Conference Europe 2024. This innovative event, co-located with the AI in Transformation Conference and Service Design Conference, is set […]

Improving Return on Security Investment: Threat Modeling & Open FAIR

For most, Security is a cost. Therefore, it is important to get just the right amount of it, and no more. But how do you decide when you have enough Security, and what do you do to get it? That’s an entirely different matter. This is the first post of a series on how to Improve the Return on your Security Investment with Threat Modeling and Open FAIR.