|

The Prevari Risk Index (PRI) - The PRI is the key result for all Prevari tools and is communicated via the CIA Triad. Prevari added Audit based on the Department of Defense’s model which also embraces Accountability. The PRI is a mathematical mean representing the probability of compromise for information systems using inferential statistics to measure the security strength of those systems. The probability of compromise is based on a scale of zero (0) to one-hundred (100) whereby zero indicates that compromise is impossible and one-hundred represents that compromise is imminent. Each risk index represents the probability that information can be compromised by an average technologist with average technical resources given 50,000 minutes within which to do so.

A PRI is established for each dimension of security including Confidentiality, Integrity, Availability, and Audit. In addition to the PRI, the Prevari Approach also allows the ability to measure variance using standard deviation mathematics. This enables organizations to not only determine an exact quantitative state of risk, but also how pervasive that risk is throughout the network or enterprise being evaluated.
|