CRF

How to Win Your First 90 Days as a New CISO

Professional presentation at a corporate meeting

Speaker: Russell Eubanks Event: RSAC 2025 Date: April 30, 2025 Watch on YouTube: https://www.youtube.com/watch?v=VflCqx9aHGA   Introduction In this RSA Conference session, seasoned cybersecurity leader Russell Eubanks offers a practical and motivational guide for CISOs looking to make a successful transition into their new role. Drawing from his own experience as the former CISO of the […]

Architecting Data Analytics for Continuous Risk Management

Speaker: James Tarala Event: RSAC 2025 Date: May 1, 2025 Watch on YouTube: https://www.youtube.com/watch?v=Q2-39LjjKnQ&t=1s Introduction At RSA Conference 2024, cybersecurity veteran James Tarala returned to explore one of today’s most urgent but misunderstood topics: how to architect meaningful data analytics and business intelligence programs that support continuous cybersecurity risk management. In his characteristically practical and […]

From Vision to Execution: Inside the CRF Governance Model v2025

Colleagues Working During Corporate Meeting Sitting At Desk In Office

The Cybersecurity Risk Foundation (CRF) has released the 2025 version of its Governance & Risk Model, and the biggest change is also the most helpful: It now follows a step-by-step roadmap to guide teams through the work. The core ideas in the model haven’t changed. It’s still based on practical risk management, good governance, and […]

Moving Beyond Gut Checks: The 2025 CRF Business Intelligence Model and the Future of Cybersecurity Validation

Picture of important corporate meeting

Cybersecurity has long relied on manual assessments, periodic audits, and professional intuition to determine if safeguards are working as intended. These practices were once the only practical option available, but today, new tools and automation capabilities give us the opportunity to significantly improve how we validate and monitor cybersecurity safeguards. Organizations need timely, reliable insight […]

Moving Forward Together: Elevating Cybersecurity with AI in the 2025 CRF-Safeguards

Woman and AI robot working together

Cybersecurity is a constantly evolving field, and so are the tools we use to navigate it. At the Cybersecurity Risk Foundation (CRF), our mission is to help organizations build practical, resilient security programs that can keep pace with modern threats and technologies. That mission inspired the latest updates to the 2025 CRF Safeguards Assessment Tool. […]