Cyber KPI for Return on Security Investment
Title | Cyber KPI for Return on Security Investment |
Publication Type | Conference Paper |
Year of Publication | 2019 |
Authors | Onwubiko, Cyril, Onwubiko, Austine |
Conference Name | 2019 International Conference on Cyber Situational Awareness, Data Analytics And Assessment (Cyber SA) |
Publisher | IEEE |
ISBN Number | 978-1-7281-0232-0 |
Keywords | cyber dashboard, cyber incidents, cyber KPI, cyber security, cyber security benefits, cyber security incident, cyber security reports, cyber security return, cyber subject matter experts, cyber-attack, cyber-attacks, Metrics, pubcrawl, return on investment, Return on Security Investment, ROI, RoSI, security investment, security metrics, security of data |
Abstract | Cyber security return on investment (RoI) or return on security investment (RoSI) is extremely challenging to measure. This is partly because it is difficult to measure the actual cost of a cyber security incident or cyber security proceeds. This is further complicated by the fact that there are no consensus metrics that every organisation agrees to, and even among cyber subject matter experts, there are no set of agreed parameters or metric upon which cyber security benefits or rewards can be assessed against. One approach to demonstrating return on security investment is by producing cyber security reports of certain key performance indicators (KPI) and metrics, such as number of cyber incidents detected, number of cyber-attacks or terrorist attacks that were foiled, or ongoing monitoring capabilities. These are some of the demonstratable and empirical metrics that could be used to measure RoSI. In this abstract paper, we investigate some of the cyber KPIs and metrics to be considered for cyber dashboard and reporting for RoSI. |
URL | https://ieeexplore.ieee.org/document/8899375 |
DOI | 10.1109/CyberSA.2019.8899375 |
Citation Key | onwubiko_cyber_2019 |
- cyber-attacks
- security of data
- Security Metrics
- security investment
- RoSI
- ROI
- Return on Security Investment
- return on investment
- pubcrawl
- Metrics
- cyber dashboard
- cyber-attack
- cyber subject matter experts
- cyber security return
- cyber security reports
- cyber security incident
- cyber security benefits
- cyber security
- cyber KPI
- cyber incidents