An information risk management and security company, Invictis, announced the launch of the Invictis Risk Score (IRS) service.
IRS is described as a comparative risk benchmarking service which uses proprietary methodology and complex mathematical algorithms to generate a security profile of the enterprise.
Offered in three incremental stages, the makers say, IRS enables large and medium-sized businesses to understand their security posture within the context of their industry and beyond. Both internal and external factors, including security standards, legislation, regulation, and best practice, are used to determine the ‘risk score’ of the business and generate comparative data that can be used to identify potential areas of under- or over-investment, justify expenditure, focus resource, and determine the effectiveness of future business strategy.
IRS consists of a no-fee initial qualitative and quantitative assessment of the overall risk posture based on multiple-choice questionnaires. A web-based front-end collates internal and external audit information while back-end processes take into account other horizontal and vertical sector-specific factors including compliance requirements and cyber threats. Key areas examined include the philosophical approach to information security, risk appetite, strength and completeness of security policies, certifications and accreditations, specific business activities, internal security awareness, thoroughness of education programmes, use of technical controls, testing and validation regimes, and planned projects.
IRS is delivered in three stages. IRS Stages 1 and 2 are offered free of charge while Stage 3 is a subscription based service.
“Industry bodies, such as Intellect, have been calling for a means to benchmark information risk for some time and IRS presents a vendor-independent, product-agnostic means by which organisations can quickly and effectively do exactly that,” says Richard Walters, CTO for Invictis. “IRS allows an organisation to really grasp where they stand in their industry and how they compare with peers and competitors. That kind of data is invaluable in today’s market where budgets are tight, so resources and future investment need to be focused, and where the cyber threat is becoming more of an issue, with sophisticated attacks specifically targeting individuals and the board of companies in particular sectors.”
Security project and subscription services offered by Invictis include IRIS, a risk intelligence service which provides sector specific commercial, geo-political and cyber threat insights, and ITRA, an intelligent assessment service which identifies vulnerable assets, the threats posed to them and the impact of a compromise to establish the level of protection or mitigation required.
To take an IRS assessment visit: http://www.invictis.com/services/IRS