Footnotes

Chapter 1

  1 D. Geer, “Risk Management Is Where the Money Is,” speech to the Digital Commerce Society of Boston, November 3, 1998, http://www.stanford.edu/~hodges/doc/Geer-RiskManagement.txt.

Chapter 2

  1 P.L. Bernstein, Against the Gods: The Remarkable Story of Risk, John Wiley & Sons, 1996, p. 1.

  2 M. Gerencser and D. Aguirre, “Security Concerns Prominent on CEO Agenda,” strategy + business, 12 Feb., 2002, http://www.strategy-business.com/press/enews/article/?ptag-ps=&art=254087&pg=0. The 10-point scale represents relative priorities, where 10 represents the highest ones.

  3 A. Carey, “Worldwide Information Security Services Forecast, 2001–2006,” IDC report no. 26899, Apr. 2002.

  4 B. Schneier, Secrets & Lies, John Wiley & Sons, ...

Get Security Metrics: Replacing Fear, Uncertainty, and Doubt now with O’Reilly online learning.

O’Reilly members experience live online training, plus books, videos, and digital content from 200+ publishers.