Measurement
The number an objective is judged by lives on the record
A metric has a type, a direction, a calculation method and a frequency. A target has a status. A measurement has a source and a date. Nothing about a score is a free-text field.
- Metric types for performance, risk and control indicators
- Direction and calculation method decide what counts as better
- Targets with baseline, due date and status
- Measurements with source, status and full reading history
In the application · Govern
- Metrics
- Targets
- Measurements
- Frequencies
Privileged accounts without review
KRI · monthly · owner: Security Operations
Metrics and targets
Defined once, read everywhere
A metric is bound to the objective, risk, control or initiative it measures, and the same reading history drives the coverage dashboard, the executive view and the board report.
- Origin recorded on every metric: strategic, risk, control or operational
- Frequency options configured per tenant, with next-reading-due tracking
- Target status computed from the latest measurement, not declared
- Owner, data source and formula on every metric
Level 3: Well Defined
A standard process is defined and followed across the organisation.
Every question in the control library carries its own written descriptor at each level.
Benefit realisation
Did the benefit arrive?
Benefits declared on initiatives are bound to live metrics and measured on a cadence, including after the initiative has closed, so realised against expected is a comparison of readings.
- Typed benefits with review cadence
- Post-closure realisation tracking
- ROI and payback computed with their caveats shown
- Benefit coverage per objective on the dashboard
- ObjectiveResidual cyber risk within appetiteUSD 68m
- InitiativeCyber defence modernisationUSD 40m
- ProjectPAM completionEUR 12m
Framework alignment
Works with your control frameworks
This module shares the platform control library. International standards, sector regulations and your own internal standard are loaded the same way and mapped to one another, wherever you operate.
Solutions by role
Built for your team
See measurement in your environment
A walkthrough scoped to your entities, your frameworks, and the way your programme is actually run.