Suggestions
Bill Frank
I help CISOs justify proposed control investments by translating their cyber posture improvements to reductions in the probability of material financial impact due to loss events.
Bill Frank is an experienced cybersecurity professional currently serving as the Chief Client Officer at Monaco Risk Analytics Inc.1 With over 24 years of experience in the cybersecurity field, Frank specializes in helping organizations manage cyber risks as business risks.1
Key Aspects of Bill Frank's Role and Expertise
Cyber Risk Quantification: Frank's primary focus is on bridging the gap between cybersecurity metrics and business risk.1 He helps Chief Information Security Officers (CISOs) justify proposed control investments by translating cyber posture improvements into quantifiable reductions in the probability of material financial losses.1
GRAACE™ Model: At Monaco Risk Analytics, Frank utilizes the GRAACE™ model, which is described as the next generation model for Cyber Risk Quantification.1 This approach involves:
- Identifying loss events of concern to business leaders
- Baselining current cyber posture using the Cyber Defense Graph
- Running what-if scenarios on control changes to show changes in risk expressed in dollars2
Cyber Defense Graph™: Frank is one of two inventors of Monaco Risk's patented Cyber Defense Graph™ technology.2 This innovative tool:
- Models an organization's controls' abilities to detect and block threats
- Visually highlights critical path weaknesses in applications and infrastructure
- Enables "what-if" scenarios to justify adding or enhancing alternative controls based on risk reduction in dollars1
Professional Background
Before joining Monaco Risk Analytics in March 2021, Frank's career included:
- Principal of Cybersecurity Solutions and Services at Cymbel (2009-2016)1
- Experience in various information security areas, including compliance, zero trust, penetration testing, and threat hunting1
- Work at a SIEM software company in the 2000s, where he designed novel alert correlation approaches2
Bill Frank is active in the cybersecurity community, being a member of InfraGard since January 2019.1 His LinkedIn username is riskpundit, reflecting his expertise in risk management.3