[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [Full-Disclosure] ROSI



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Yo All!

n30 wrote:
> Any good links/pointers to ROSI (Return on security investment)?

How do you calculate the ROSI on a police force or army?  Who knows how
many people would be dead without one.

How would you have calculated the ROSI of the US anti terrorism
investment pre 9/11?  How would you calculate it now that we know the
10s of billions of $ that failure cost us?

Few of the numbers matter when the entire company is shut down due to
a virus or other security issue.  ROSI meant nothing to BoA after they
were shut down due to virii last year.  You have to decide you are ready
to give up or are going to fight back with whatever it takes.

Much better to look at security as a matter of acceptable risk.  What
are you willing to spend to reduce the risk of being crippled by your
own network this year to X%.

RGDS
GARY
- ---------------------------------------------------------------------------
Gary E. Miller Rellim 20340 Empire Blvd, Suite E-3, Bend, OR 97701
        gem@xxxxxxxxxx  Tel:+1(541)382-8588 Fax: +1(541)382-8676

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)

iD8DBQFAdLXW8KZibdeR3qURAjGgAJ0d32ZMeoXYyMQd4+2Gp1HT6NlLmgCfaFr3
QWkIUHnQJtUsUYTJiYlzV7k=
=AQfG
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html