Non-Security Metrics To Identify & Quantify Security Related Risk @S4Events
Non-Security Metrics To Identify & Quantify Security Related Risk  @S4Events
Uploaded April 2025 | Updated September 2026, 1 week ago
Security metrics are one way to evaluate cyber risk. However, companies with seemingly good security metrics have been hacked due to other corporate risk factors. JC discusses non-security data and business indicators you should look at through a cyber risk lens.

There are mountains of non-security data about company risk: financial health or distress, ownership changes, regulatory violations and legal issues, and business performance. On-time delivery. Defects. Contract cancellation. Layoffs. Staffing in general.

Many security professionals have lived through chapters of company history when security posture is insufficient. Lack of focus. Other priorities. But those other priorities have a way of showing up in non-security data. This session helps you identify and use these leading indicators of security incidents.
Non-Security Metrics To Identify & Quantify Security Related RiskTwo Degrees from Patrick MillerUnderstanding and Securing Unified Name Space (UNS)Microlearning Techniques To Improve Cybersecurity Awareness TrainingEvaluating Vendor AI ClaimsPoland 2025: Attack on the Electric SystemSupply Chain Chipping Attacks: When Should I Worry?OT Security Artist #shortsMake The Big Decisions With Cyber Decision DiagramsDecision Points: OT Fit-For-Purpose Or ITIdentifying Malware In Factory Program FilesNavigating The S4x26 Welcome Party
S4 Events |

Non-Security Metrics To Identify & Quantify Security Related Risk

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER