␡
- Types
- Overview of Metrics Program
- Purpose, Approach, and Objectives
- Requirements
- Benefits of Using Metrics
- Metrics Types
- Data Management Concerns
- Stakeholder Interest Identification
- Goals and Objectives Definition
- Security Policies, Guidance, and Procedures Review
- System Security Program Implementation Review
- Metrics Development and Selection
- Establishing Performance Targets
- Feedback within Metrics Development Process
- Metrics Program Implementation
- Summary
- Appendix
Like this article? We recommend
Summary
Summary
Developing a full security metric program may seem overwhelming. It is important to realize that the development of this type of program starts small and grows in a controlled and disciplined manner. A full security metric program commonly takes two years to fully mature, but that all depends upon the organization’s commitment and available resources.