<mods:mods xmlns:mods="http://www.loc.gov/mods/v3" xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.loc.gov/mods/v3 http://www.loc.gov/standards/mods/v3/mods-3-7.xsd">
 <mods:titleInfo>
<mods:title>
Cyber Risk Scoring for Executives: An Assessment Framework
</mods:title>
</mods:titleInfo>
<mods:abstract>
Cybersecurity data is robust and prevalent. However, that data rarely correlates with vulnerabilities, security controls, and threats for a target environment. As cyber-related threats continue to increase in prevalence and potential impact, organizations must become more agile and strategic in understanding and responding to threats. The following paper provides a framework to calculate a numerical risk score and present the information in a dashboard for use by executives and security teams. The framework includes strategic business and technical considerations, along with a rudimentary equation to aggregate cybersecurity data in near-real time.
</mods:abstract>
<mods:name>
<mods:namePart>Schappert, Andrew</mods:namePart>
<mods:role>
<mods:roleTerm authority="marcrelator" authorityURI="http://id.loc.gov/vocabulary/relators" valueURI="http://id.loc.gov/vocabulary/relators/cre">Creator</mods:roleTerm>
</mods:role>
</mods:name>
<mods:name type="personal">
<mods:namePart>Pendse, Ravi</mods:namePart>
<mods:role>
<mods:roleTerm type="text">Advisor</mods:roleTerm>
</mods:role>
</mods:name>
<mods:name type="corporate">
<mods:namePart> Brown University School of Professional Studies and Department of Computer Science
</mods:namePart>
<mods:role>
<mods:roleTerm type="text">Sponsor</mods:roleTerm>
</mods:role>
</mods:name>
<mods:originInfo>
<mods:copyrightDate>2020</mods:copyrightDate>
</mods:originInfo>
<mods:physicalDescription>
<mods:extent>21 p.</mods:extent>
<mods:digitalOrigin>born digital</mods:digitalOrigin>
</mods:physicalDescription>
<mods:note type="Capstone">Capstone (EMCS)--Brown University, 2020</mods:note>
<mods:subject authority="local">
<mods:topic>Risk</mods:topic>
</mods:subject>
<mods:subject authority="local">
<mods:topic>Assessment</mods:topic>
</mods:subject>
<mods:subject authority="local">
<mods:topic>Cybersecurity</mods:topic>
</mods:subject>
<mods:subject authority="local">
<mods:topic>Executive cybersecurity</mods:topic>
</mods:subject>
<mods:subject authority="local">
<mods:topic>Executive dashboard</mods:topic>
</mods:subject>
<mods:typeOfResource>text</mods:typeOfResource>
<mods:genre>Critical Challenge Project</mods:genre>
<mods:language>
<mods:languageTerm authority="iso639-2b">English</mods:languageTerm>
</mods:language>
<mods:accessCondition type="rights statement" xlink:href="http://rightsstatements.org/vocab/InC/1.0/">In Copyright</mods:accessCondition>
<mods:accessCondition type="restriction on access">All rights reserved. Collection is open for research.</mods:accessCondition>


<mods:identifier type="doi">10.26300/ghx8-zn29</mods:identifier></mods:mods>