Security Risk, Strategy & Governance
Topics
Types of Content
Discover and Classify Your DataMany organizations struggle to keep ahead of today’s overwhelming flood of data, resulting in limited value at best, and unmitigated risks at worst. Our research offers... |
|
Data Classification Scheme Selection ToolA concise set of questions used to determine what data classification scheme might be most appropriate for your organization. |
|
Black Hat 2026 Trends – Security Buyers Want Proof, Not More ToolsThe following trends reflect themes that emerged from conversations, vendor briefings, and conference sessions at Black Hat 2026, with an emphasis on what they mean for... |
|
Cisco Releases Antares: Open-Weight Models for Vulnerability LocalizationCisco released Antares-350M and Antares-1B, two open-weight small language models that locate where known vulnerabilities live inside a codebase. Both are free on Hugging... |
|
Security Service WorkbookA practical Excel-based template to help you describe your security service in its business context, align it to an impacted business service, and estimate costs. |
|
Security Service Communication TemplateThis valuable PowerPoint template can be used to communicate and market your security service. |
|
Build Security Services for Business ValueSecurity leaders often respond to emerging threats by implementing tools or controls that fail to support the organizational outcomes they are meant to enable. Use this... |
|
Security Service Roadmap ToolA comprehensive Excel-based tool to create a visual roadmap that supports your security service in becoming a reality. |
|
Build Security Services for Business Value – Phases 1-3This blueprint helps you ground each security service in a clear understanding of why it exists, who it enables, and how it supports organizational outcomes. |
|
ThreatLocker: Default-Deny Endpoint Protection for the Post-Mythos Threat EnvironmentA single-agent endpoint platform combining application allowlisting, ringfencing, ZTNA, patch management, and EDR around a default-deny philosophy. Designed for MSPs and... |
|