Episode #072: Measuring the Immeasurable: The Power and Pitfalls of Metrics in DevSecOps

Relating to DevSecOps

28-08-2024 • 33 mins

Send us a Text Message.

Ken and Mike dive deep into the world of metrics and measurement in the context of security and DevSecOps. They explore the critical role metrics play in driving security improvements, from tracking vulnerabilities to gauging the effectiveness of incident response. The hosts discuss what makes a good metric, the importance of aligning metrics with business goals, and the dangers of relying too heavily on numbers alone. They also tackle the challenges of quantifying "squishy" aspects like culture and training effectiveness. Whether you're a seasoned security professional or just getting started, this episode offers valuable insights into the art and science of measurement in security

Reference talk:

https://www.youtube.com/watch?v=GXTvlQXVCOs&t=0s