our range of services
maturity action plan
maturity action plan
This is not what you think it is.
We use the word “assessment” more broadly than you may expect.
In a Yass Assessment, we analyze a specific ‘issue’ and suggest an action plan. We build from where you currently are and iterate with a shared understanding of where to go towards. Deliverables commonly include detailed action plans and slides.
Security Strategy & Roadmap
Developing and structuring the upcoming strategic AND tactical roadmap in the context of what’s been achieved and the program’s maturity. Importantly, we jointly craft how it’s messaged to the stakeholders.
Metrics & Dashboards
Strategy and support for executive messaging, metrics and dashboards. Organized to define thresholds, communicate commentary and improve performance.
Security Program Impact
360 review of your security program. We perform a variation of a “year in review” of the security program. It’s buttressed with executive stakeholder feedback. The result is a better understanding of the overall impact and a defined , we help to understand the overall impact of the security program and identify ‘hot points’ and strategies to unblock. Objectively.
office of the CISO & Chief of Staff
office of the CISO & Chief of Staff
This is the ‘doing.’ For common CISO rituals.
We deliver it in a variety of formats. Ranging based on the need and your team. We are thrilled to train and mentor the forever person. We are just as comfortable sharing our templates and getting you started.
The Business of CISO’ing
Facilitated strategic planning as well as strategies for common tasks (vendor management, program tracking, talent management) and a framework for interdepartmental connectivity.
Corporate & Business Integration & Engagement
Whether acquiring, divesting or integrating we assist the CISO plan, contribute, communicate, manage and execute.
CISO Chief of Staff Apprenticeship
Train and mentor the CISO’s deputy, chief of staff or program manager.
Strategic Roadmap
You’re going to do it anyway. We’ll make sure you’re prepared to do it better. Necessarily, we consider how it’s messaged to the stakeholders.
ciso success services
ciso success services
Structured assessments and tactical strategies with your best interest in mind.
To be a CISO is to face new challenges. You see them as puzzles and you tackle them and grow. Patterns emerge. Yass recognizes the patterns that make CISOs successful. These services are architected to enable you ciso stronger. Delivered as workshops, action plans and advisory.
Executive Workshops & Tabletops
Scenario planning and practice at executive and board levels include a focus on escalation, communication and decision making. Tuned to the industry and company.
Business Threat Assessment
Facilitating the execution of a business threat assessment to identify cybersecurity priorities and validate investments based on the company’s critical and sensitive information assets.
Expand Business Risk Ownership
Leveraging many tools to drive business risk ownership. This includes, ambassadors, engagement, reporting and measurement.