The index will track the overall sentiment of a group of cybersecurity experts to offer a measure of cyber risk. Are attacks up, spending on network defenses down, or national hacking on the rise? The Index of Cybersecurity could help indicate the general trend in the risks to corporate networks and information in the future.The index, launched by two security professionals, is a survey that attempts to gauge the state of cybersecurity by measuring the overall sentiment of operational experts. Much like the consumer confidence index that measures U.S. citizen’s optimism of their economic future, the index focuses on experts’ overall perception of current threats and defenses.The index is an experiment that could prove to be a useful way to gauge the overall security situation online, says Dan Geer, the co-creator of the index and the chief security officer of In-Q-Tel, the investment arm of the Central Intelligence Agency. While Geer has attempted to create other indices based on measures of threat, good data was not always available, he said.Also see: Security metric techniques: How to answer the ‘so what?’ “It is not like we are overwhelmed with useful numbers; we are short on them,” he says. His conclusion: Focus on the data that you know you can get.“Maybe we shouldn’t be trying to measure the concrete, but trying to measure the opinion of people who know something,” he says. “Because it may well be that the opinion of people that know something may have more coherence than anything we know how to measure, or have the permission to measure, on a wide scale.” The cybersecurity index measures the outlook of 300 or so security operations managers — from chief risk officers and chief security information officers to academicians and security firm chief scientists. The index measures their responses over time. Questions vary from whether certain threats — such as malware, insider threats, or industrial espionage — have become worse to whether information sharing and defenses have improved. Each respondent answers on a five-point scale: falling fast, falling, static, rising, or rising fast.Geer and co-creator Mukul Pareek, a risk professional who asked that his company not be identified, believe that the cybersecurity risk index could have practical uses. Cyber risk insurers could use the metric as a way to hedge their risks, for example.“This is something that we do not have an answer to yet,” Pakeet says. “But it is clearly at the top of our minds, we are thinking about it. In the coming months, we should come up with some ideas” about how to use the index.In April, the index rose to 1,021.6, up 2 percent from the March baseline of 1,000, indicating that experts’ perception of the cybersecurity situation has worsened. The fastest rising threats are malware, nation-state-sponsored attacks and risks from suppliers and service providers. The most significant cybersecurity improvement comes from the perception that information sharing is getting better. Related content news UK government plans 2,500 new tech recruits by 2025 with focus on cybersecurity New apprenticeships and talent programmes will support recruitment for in-demand roles such as cybersecurity technologists and software developers By Michael Hill Sep 29, 2023 4 mins Education Industry Education Industry Education Industry news UK data regulator orders end to spreadsheet FOI requests after serious data breaches The Information Commissioner’s Office says alternative approaches should be used to publish freedom of information data to mitigate risks to personal information By Michael Hill Sep 29, 2023 3 mins Government Cybercrime Data and Information Security feature Cybersecurity startups to watch for in 2023 These startups are jumping in where most established security vendors have yet to go. By CSO Staff Sep 29, 2023 19 mins CSO and CISO Security news analysis Companies are already feeling the pressure from upcoming US SEC cyber rules New Securities and Exchange Commission cyber incident reporting rules don't kick in until December, but experts say they highlight the need for greater collaboration between CISOs and the C-suite By Cynthia Brumfield Sep 28, 2023 6 mins Regulation Data Breach Financial Services Industry Podcasts Videos Resources Events SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe