Remove Accountability Remove CISO Remove Policy Compliance Remove Security Performance
article thumbnail

Measure Security Performance, Not Policy Compliance

The Falcon's View

I'm convinced the answer to this query lies in stretching the "security as code" notion a step further by focusing on security performance metrics for everything and everyone instead of security policies. Convert those objectives into measurable items, and there you are on the path to KPIs as policies.