Skip to main content
a promotional graphic telling you that PCI Compliance is no longer an annual exercise and that continuous monitory must be built in
FAIR Institute

FAIR Institute

Quantifying Cyber Risk for Informed Decisions

Visit Website

About

The FAIR Institute is dedicated to sharing and advancing standards and practices for measuring, monitoring, managing, and mitigating cyber risk. They focus on risk quantification and provide resources around the FAIR (Factor Analysis of Information Risk) framework. The institute aims to enhance the discipline of cyber and operational risk management through education, research, and collaboration, promoting a systematic approach to understand and communicate risk in a business context. They also provide metrics and analytics to improve organizational risk posture.

Related Vendors

Ostrich Cyber-Risk
Ostrich Cyber-Risk
Navigate Cyber Risks with Precision and Insight

Ostrich Cyber-Risk provides a comprehensive cyber risk management software known as Birdseye™ that enables businesses to identify and mitigate their substantial cyber risks. The platform offers a unique combination of qualitative analysis and quantitative risk simulation, making it a cost-effective alternative to traditional assessments. Users can prioritize security projects, quantify risk through unlimited scenarios, and benchmark their cyber risk programs against industry peers. Additionally, Birdseye integrates NIST CSF 2.0 Assessments for a streamlined evaluation process, enhancing the overall cybersecurity risk analysis framework.

View Profile ›
Alter Domus
Alter Domus
Tailored Insights for Transformative Investment Strategies

Risk Modeler is presented as a platform for data analytics and enhanced model risk management offered by Alter Domus. The record describes a technology suite and standalone data solutions alongside services and technology solutions tailored for alternative investments and asset managers. Alter Domus positions its offering within private equity fund services, describing tailor-made solutions, the ability to build a model to fit specific needs, and support across fund operations, reporting and risk reduction. The company states its services aim to reduce operational burden, strengthen transparency and minimize risk for PE, VC and fund-of-funds clients, combining specialist expertise with modern technology platforms.

View Profile ›
Stern Security
Stern Security
Quantify risks, optimize security investments

Stern Security's Velocity platform provides data-driven cyber risk quantification, enabling organizations to accurately assess risk from both internal and third-party sources. This platform helps security teams optimize costs and demonstrate ROI by tracking improvements in security posture. Stern Security also specializes in penetration testing and virtual Chief Information Security Officer (vCISO) services, further enhancing organizations' security strategies. Through a comprehensive approach, Stern Security focuses on empowering businesses to secure their operations effectively.

View Profile ›
Promotional banner highlighting failures found in PCI audits and how to spot the gaps