Products

Learn more about STREAM - the comprehensive risk and
compliance management solution

Solutions

Learn about the different ways STREAM is used

Industries

Find out which industries benefit from using STREAM

Resources

Want to download a datasheet? Go to our resources page

Contact Us

Use our enquiry form to contact us

Risk Metrics Management

Risk Metrics Management

Define a range of Risk Metrics to help measure all aspects of your assurance management system, including Key Risk Indicators, Key Compliance Indicators, Key Performance Indicators, and Events metrics

 

 

 

 

Control Effectiveness

  • Define Metrics for your key controls, and use them to measure objectively the effectiveness of controls

Residual Risk

  • Define Key Risk Indicators, with your own weightings, and use them to help measure how effectively identified risks are being mitigated, and to measure overall residual risk levels
  • Indicated risk levels change automatically as Metrics change

Out of the box Metrics

  • STREAM Standard Profiles (e.g. STREAM for ISO 27001) are provided pre-loaded with a set of Metrics for the key risk mitigation controls

Define your own Metrics

  • Add your own Metrics, and link them to your preferred asset types, and/or risks
  • Easily maintain the Metrics as changes are required
  • Include guidance for users, to help understand the requirements and issues relating to Metrics

Dependencies

  • Link Metrics to each other, to reflect real-world relationships

Interfacing

  • Interface with other tools (e.g. patch management, Anti-Virus and vulnerability scanning tools) to obtain technical metrics relevant to your risks
  • Interface with any other tabular data sources to obtain soft metrics, e.g. HR databases, audit data

Management Reporting

  • Demonstrate to senior managers that your Risk Management, Compliance Management and Events Management activities are driven by objective Metrics
  • Measure historic trends in control health, changing residual risk levels, and events history.
     

 

ISF logo

Register for email news

Latest

  • Information Security Europe 2010

    Significant interest was expressed in the STREAM suite of products at Information Security 2010. It is clear that comprehensive risk and compliance management is becoming a key requirement for public and private organisations.

  • STREAM Seminar - Ljubljana May 2010

    Richard Mayall presented a workshop in Ljubljana, Slovenia on 20 May 2010 on 'A better way to manage all your risks'. The workshop considered how STREAM can automate assurance management systems and support standards compliance.

  • Risk appetite for information security

    Risk management best practice says that we need to manage risk in relation to risk appetite. But how do we do this for information security?


Register or Book

What are you looking for?

© 2010 Acuity Risk Management

Legal | Sitemap

Website Design By Hatton Marketing