Our blog

Insights

Hear from thought leaders across the CRI community.
View all
CRQ in action

From pilot to capability: The journey to operationalise CRQ

CRQ can’t remain a pilot forever. To drive meaningful, repeatable value, it needs to mature into a business capability: trusted, embedded, and regularly informing decisions.
James Hanbury
May 13, 2025
CRQ in action

Winning the first yes: Navigating the five most common CRQ objections

Before a single scenario is modelled or a number estimated, one of first challenges in adopting cyber risk quantification (CRQ) is simply persuading stakeholders it's worth doing.
James Hanbury
May 6, 2025
8 min read
CRQ in action

Six principles of effective CRQ: How to build an engine that lasts

In this article, I’ll share six working principles I’ve found essential for embedding CRQ in a way that sticks — not just as a project, but as a true business capability.
James Hanbury
April 29, 2025
7 min read
CRQ in action

The art and science of CRQ: Why practitioners must lead the change

What Shackleton Can Teach Us About Navigating Cyber Risk
James Hanbury
April 22, 2025
8 min read
CRQ in action

From insight to action: Making CRQ results actually useful

For all the energy that organisations invest in CRQ, a frustrating truth remains: many results don't actually lead to better decisions. Quantification is a powerful tool. But like any tool, its value lies in how it’s used.
James Hanbury
April 15, 2025
7 min read
CRQ in action

A common language for cyber risk: Why CRQ needs standardised metrics

Just like the weather, Cyber Risk Quantification (CRQ) needs a standardised set of metrics. Let's explore what they can be.
James Hanbury
April 8, 2025
4 min read

See CRI in action

Book a personalised demo and discover how CRI can help you make smarter cyber risk decisions.