Contact Douglas W. Hubbard

Full Consulting Support for Your Risk Assessment Solution

Contact Hubbard Decision Research about onsite training and custom consulting solutions for an enterprise of any size. We can build your cybersecurity risk assessment models, train your staff in using them, and design performance metrics for updating the models as the risks evolve.  We even help integrate quantitative risk management into existing GRC and related enterprise risk management solutions.

Webinar: How to Measure Anything in Cybersecurity Risk – Introduction to Concepts

Do current risk assessment methods in cybersecurity work? Recent big security breaches have forced business and government to question their validity. Is there a way to fix them? How can risk even be assessed in cybersecurity?

Douglas Hubbard will reveal answers to these questions in a webinar reviewing key concepts discussed in the book How to Measure Anything in Cybersecurity Risk. This webinar is an introduction to how to fix these problems by using quantitative techniques that produce measurably improved outcomes. This session will completely change how you look at assessing risk in cybersecurity.

Contact us for information on group rates!

HDR Opinion Survey of Quantitative Risk Assessment Methods

What Cybersecurity Professionals Believe, What Methods They Use, and What Should change About It.

What do Cybersecurity professionals believe about various risk assessment methods and why do they believe it? This survey of 171 cybersecurity professionals reveals surprising opinions of many professionals on the use of various risk assessment methods – including probabilistic methods and qualitative methods. The survey also evaluated their basic understanding of probabilities and statistics used in quantitative methods. We even discover some clues about what methods might actually reduce the risk of data breaches and potential sources of resistance to improvement.

How to Measure Anything in Cybersecurity Risk

What if your single biggest cybersecurity risk was the risk assessment method itself? Even if your approach to assessing this critical risk makes you feel more confident about your decisions, you may actually be making things worse. How to Measure Anything in Cybersecurity Risk presents real solutions by skillfully applying the quantitative language of risk analysis to information security.

As with his previous How to Measure Anything books, measurement expert Douglas Hubbard simplifies the complexity of quantifying uncertainty and sheds light on matters with little data or seemingly intangible goals—and here he taps cybersecurity influencer Richard Seiersen to dispel long-held beliefs about cybersecurity practices and provide authoritative guidance to solving problems by measuring risk. Together, they debunk popular risk scores and risk matrices and replace them with scientifically proven, yet practical, quantitative methods.

Discount Package – Cybersecurity Risk Webinar, Book and Survey (22% Off)

Cybersecurity Risk Webinar
Do current risk assessment methods in cybersecurity work? Recent big security breaches have forced business and government to question their validity. Is there a way to fix them? How can risk even be assessed in cybersecurity?

Douglas Hubbard will reveal answers to these questions in a webinar reviewing key concepts discussed in the book How to Measure Anything in Cybersecurity Risk. This webinar is an introduction to how to fix these problems by using quantitative techniques that produce measurably improved outcomes. This session will completely change how you look at assessing risk in cybersecurity.

Book
A ground shaking exposé on the failure of popular cyber risk management methods

How to Measure Anything in Cybersecurity Risk exposes the shortcomings of current “risk management” practices, and offers a series of improvement techniques that help you fill the holes and ramp up security. Ships in August.

Survey
What Cybersecurity Professionals Use and What They Believe about Qualitative and Quantitative Approaches
What do Cybersecurity professionals believe about various risk assessment methods and why do they believe it? This survey of 171 cybersecurity professionals reveals surprising opinions of many professionals on the use of various risk assessment methods – including probabilistic methods and qualitative methods. The survey also evaluated their basic understanding of probabilities and statistics used in quantitative methods. We even discover some clues about what methods might actually reduce the risk of data breaches and potential sources of resistance to improvement.