Skip to main content
Custom Development

How SimpleRisk Can Meet Your Custom GRC Requirements

What is the right way to do risk management?  We hear this question fairly frequently on calls with prospects and my answer is always the same.  There is no "right way" or "wrong way" to do risk management.  There's only your way...

 

NIST Cybersecurity Framework

Simplifying the NIST Cybersecurity Framework with SimpleRisk

Learn how to use SimpleRisk's Import-Export and Risk Assessment Extras in order to efficiently use the NIST Cybersecurity Framework's controls to assess your organization's risks and perform a control gap analysis.

img

What's new with the SimpleRisk 20200711-001 release?

img

What's new with the SimpleRisk 20201005-001 release?

SimpleRisk Stands Against Hate

SimpleRisk Stands Against Hate

At the end of June 2020, a civil rights coalition, which includes the Anti-Defamation League (ADL) and the NAACP, launched the #StopHateforProfit campaign.  This campaign calls upon major corporations to put a pause on Facebook advertisements, citing the company's...

Risk Management for Dummies

Risk Management for Dummies

Today I had a really interesting conversation with a guy from Japan via LinkedIn.  It started with him trying to sell me...

SimpleRisk On-Premise

SimpleRisk On-Premise or Hosted - Which Deployment Model is Right for You?

As the Information Security Program Owner at National Instruments, I spent years contemplating the answer to a ...

new features

What features do you want to see added to SimpleRisk?

Back in 2013, when I first started working on SimpleRisk in my spare time on nights and weekends, I started using a ...

img

SimpleRisk Now Offering Complimentary Risk Management Program Consulting to Customers

As the Information Security Program Owner at National Instruments, a $1.4B global enterprise, I've spent the past ...

img

How to Perform Risk Assessments (with SimpleRisk)

This is just a short (1 minute) animated video explaining some of the capabilities around performing internal and ...

img

How to Manage the Evolving Risk of Bluekeep (with SimpleRisk)

Unless you've been hiding under a rock for the past three weeks, you're probably familiar with CVE-2019-0708, also ...

img

How to Use Standards to Assess Your Organization's Cybersecurity Maturity (by SimpleRisk)

On March 29, 2019, Alex Polimeni and I presented at the BSides Austin conference on some of the work we've ...

img

GRC is Dead, Long Live GRC!

Recently, a friend sent me a blog post by John A. Wheeler of Gartner entitled "What Ever Happened to GRC?".  In ...

img

Should Vulnerabilities and Risks be Managed in the Same Place?

While the distinctions between vulnerabilities versus risks has been widely documented in various forums, we ...

img

Pricing Integrity and Why We Won't Play the Pricing Games

Before starting SimpleRisk, I sat in the CISO chair, on the other side of the negotiating table.  I learned the tricks ...

img

Why Management Doesn't Understand Your Security Woes

Has the number of security issues you deal with on a routine basis ever made you feel a bit like Atlas carrying the ...

img

What do Role Playing and Risk Management have in common?

A couple of weeks ago I participated in a CISO Summit with a focus on the topics of Security Visibility and Incident ...

img

How Does an Asset's Value Affect Your Risk?

Any CISSP will tell you that the way to calculate risk is by taking the likelihood and multiplying it by the impact...

img

The Origin of SimpleRisk - A Founder's Story

Every comic book superhero has a story behind them describing how they overcame some form of adversity in ...

KEEP UP WITH THE LATEST
PRODUCT ANNOUNCEMENTS
AND BLOG POSTS

FOLLOW US

CONTACT US