
Products
Learn more about STREAM - the comprehensive risk and
compliance management solution
Solutions
Learn about the different ways STREAM is used
Industries
Find out which industries benefit from using STREAM
Resources
Want to download a datasheet? Go to our resources page
Contact Us
Use our enquiry form to contact us
Risk Metrics Management

Define a range of Risk Metrics to help measure all aspects of your assurance management system, including Key Risk Indicators, Key Compliance Indicators, Key Performance Indicators, and Events metrics
Control Effectiveness
- Define Metrics for your key controls, and use them to measure objectively the effectiveness of controls
Residual Risk
- Define Key Risk Indicators, with your own weightings, and use them to help measure how effectively identified risks are being mitigated, and to measure overall residual risk levels
- Indicated risk levels change automatically as Metrics change
Out of the box Metrics
- STREAM Standard Profiles (e.g. STREAM for ISO 27001) are provided pre-loaded with a set of Metrics for the key risk mitigation controls
Define your own Metrics
- Add your own Metrics, and link them to your preferred asset types, and/or risks
- Easily maintain the Metrics as changes are required
- Include guidance for users, to help understand the requirements and issues relating to Metrics
Dependencies
- Link Metrics to each other, to reflect real-world relationships
Interfacing
- Interface with other tools (e.g. patch management, Anti-Virus and vulnerability scanning tools) to obtain technical metrics relevant to your risks
- Interface with any other tabular data sources to obtain soft metrics, e.g. HR databases, audit data
Management Reporting
- Demonstrate to senior managers that your Risk Management, Compliance Management and Events Management activities are driven by objective Metrics
- Measure historic trends in control health, changing residual risk levels, and events history.
Register for email news
Latest
-
Information Security Europe 2010
Significant interest was expressed in the STREAM suite of products at Information Security 2010. It is clear that comprehensive risk and compliance management is becoming a key requirement for public and private organisations.
-
STREAM Seminar - Ljubljana May 2010
Richard Mayall presented a workshop in Ljubljana, Slovenia on 20 May 2010 on 'A better way to manage all your risks'. The workshop considered how STREAM can automate assurance management systems and support standards compliance.
-
Risk appetite for information security
Risk management best practice says that we need to manage risk in relation to risk appetite. But how do we do this for information security?

