Security Basics mailing list archives

Re: The Return on Investment of Good Security


From: Eitan Adler <eitanadlerlist () gmail com>
Date: Mon, 05 Jan 2009 16:42:44 -0500

Adriel T. Desautels wrote:
Latest blog entry for those who care. This one compares the Return on
Investment of good security services to the Return on Investment of poor
quality security services.  As usual comments and criticisms are welcome
and appreciated.

Something I would like to point out: If you figure out security ROI in
the normal way Amount paid/Amount gained you get a divide by zero.
Security is to prevent a possible loss.  You do not gain directly from
security even if perfect.

While I don't agree with all that he says
http://www.schneier.com/blog/archives/2008/09/security_roi_1.html is an
article by Bruce Schneier written on the topic.


Direct link as requested:

http://snosoft.blogspot.com/2009/01/cost-of-good-security-is-fraction-of.html



    Adriel T. Desautels
    ad_lists () netragard com
        --------------------------------------

    Subscribe to our blog
        http://snosoft.blogspot.com




-- 
Eitan Adler
"Security is increased by designing for the way humans actually behave."
-Jakob Nielsen


Current thread: