Chapter 1

  1 D. Geer, “Risk Management Is Where the Money Is,” speech to the Digital Commerce Society of Boston, November 3, 1998,

Chapter 2

  1 P.L. Bernstein, Against the Gods: The Remarkable Story of Risk, John Wiley & Sons, 1996, p. 1.

  2 M. Gerencser and D. Aguirre, “Security Concerns Prominent on CEO Agenda,” strategy + business, 12 Feb., 2002, The 10-point scale represents relative priorities, where 10 represents the highest ones.

  3 A. Carey, “Worldwide Information Security Services Forecast, 2001–2006,” IDC report no. 26899, Apr. 2002.

  4 B. Schneier, Secrets & Lies, John Wiley & Sons, ...

Get Security Metrics: Replacing Fear, Uncertainty, and Doubt now with the O’Reilly learning platform.

O’Reilly members experience live online training, plus books, videos, and digital content from nearly 200 publishers.