Blogs

Anthony Tran Anthony Tran

Webinar Recap: How Zero Trust and Cyber Risk Quantification Work Together

In our latest webinar with the FAIR™ Institute, we explored a timely question: “Zero Trust in CRQ, or CRQ in Zero Trust?” It wasn’t just a play on words. The conversation, led by John Linford (The Open Group) and Hasan Yasar (Carnegie Mellon University), unpacked how these two concepts—often treated as separate—actually reinforce each other when applied together.

Read More
Anthony Tran Anthony Tran

Cyber Risk Quantification vs. Traditional Risk Assessments: Why You Need Both

Cyber Risk Quantification (CRQ) is the process of translating cyber risk into financial terms, enabling organizations to prioritize threats, allocate resources effectively, and understand how security decisions impact business outcomes. Unlike traditional risk assessments that rely on qualitative risk scores, CRQ applies data-driven analysis to measure cyber risk in dollars and probabilities, making risk management more actionable.

Read More
Anthony Tran Anthony Tran

Webinar Recap: Cyber Risk Assessments for Law Firms

On January 9th, we at Ostrich Cyber Risk had the privilege of hosting a webinar on Cyber Risk Assessments for Law Firms. Greg Spicer, our Co-founder and CRO, led the session alongside Arlan McMillan, CSO of a top 100 AMLaw law firm. Held in collaboration with ILTA, the webinar provided practical insights on how law firms can approach cyber risk assessments with confidence and clarity.

Read more…

Read More
Yiannis Vassiliades Yiannis Vassiliades

The SEC, CRQ, and “Materiality”

A blog about understanding “materiality” as it pertains to the new SEC regulations, its relationship with CRQ, and how you can start implementing strategies in support of the new regulatory environment.

Read More