
About
The FAIR Institute is dedicated to sharing and advancing standards and practices for measuring, monitoring, managing, and mitigating cyber risk. They focus on risk quantification and provide resources around the FAIR (Factor Analysis of Information Risk) framework. The institute aims to enhance the discipline of cyber and operational risk management through education, research, and collaboration, promoting a systematic approach to understand and communicate risk in a business context. They also provide metrics and analytics to improve organizational risk posture.
Related Vendors

Ostrich Cyber-Risk provides a comprehensive cyber risk management software known as Birdseye™ that enables businesses to identify and mitigate their substantial cyber risks. The platform offers a unique combination of qualitative analysis and quantitative risk simulation, making it a cost-effective alternative to traditional assessments. Users can prioritize security projects, quantify risk through unlimited scenarios, and benchmark their cyber risk programs against industry peers. Additionally, Birdseye integrates NIST CSF 2.0 Assessments for a streamlined evaluation process, enhancing the overall cybersecurity risk analysis framework.

Risk Modeler is presented as a platform for data analytics and enhanced model risk management offered by Alter Domus. The record describes a technology suite and standalone data solutions alongside services and technology solutions tailored for alternative investments and asset managers. Alter Domus positions its offering within private equity fund services, describing tailor-made solutions, the ability to build a model to fit specific needs, and support across fund operations, reporting and risk reduction. The company states its services aim to reduce operational burden, strengthen transparency and minimize risk for PE, VC and fund-of-funds clients, combining specialist expertise with modern technology platforms.

Stern Security's Velocity platform provides data-driven cyber risk quantification, enabling organizations to accurately assess risk from both internal and third-party sources. This platform helps security teams optimize costs and demonstrate ROI by tracking improvements in security posture. Stern Security also specializes in penetration testing and virtual Chief Information Security Officer (vCISO) services, further enhancing organizations' security strategies. Through a comprehensive approach, Stern Security focuses on empowering businesses to secure their operations effectively.

