Cyber security is a “nebulous domain… that tends to resist easy measurement and, in some cases, appears to defy any measurement,” according to a report issued in March by Sandia National Laboratories.
In order to establish a common vocabulary for discussing cyber threats, and thereby to enable an appropriate response, the Sandia authors propose a variety of attributes that can be used to characterize cyber threats in a standardized and consistent way.
“Several advantages ensue from the ability to measure threats accurately and consistently,” the authors write. “Good threat measurement, for example, can improve understanding and facilitate analysis. It can also reveal trends and anomalies, underscore the significance of specific vulnerabilities, and help associate threats with potential consequences. In short, good threat measurement supports good risk management.”
See “Cyber Threat Metrics” by Mark Mateski, et al, Sandia National Laboratories, March 2012.
As we head into the fall and the end of the 119th session, we face significant S&T issues of concern. Here is what we’re tracking.
Colorado faces a projected shortage of more than 2,400 physicians by 2030, alongside the growing shortage nationwide, particularly in rural and certain underserved urban communities.
The Colorado Skills Map would define the technical and durable skills employers expect by sector and occupation, then attach a common skill identifier to ensure that credentials, courses, and work-based learning experiences are recognized as equivalent and portable across the state.
Only through independent monitoring, reporting, and investigation on data centers’ environmental impacts, can we promote public trust, inform the allocation of natural resources, and enable responsible governance on future data center development.