Andrew JaquithSecurity Metrics: Scorecard DesignAuthor’s note: the chapter is not finished. It has some organizational and structural flaws that won’t be ironed out until later in the editing process. There are also some parts that need additional fleshing out.
Andrew JaquithEscaping the Hamster Wheel of PainSecurity shouldn’t be an endless patch-and-pray exercise. Metrics offer a way out.