jason
cd ~ cd posts_ cd learn_ man jason_

visitor@thefish.nz:~$ grep -r security-metrics

#security-metrics

all account-compromise analyst-methodology authentication beginner betrayal blue-team career cis-controls cloud-security control-mapping control-testing ctf dark-waters dark-web detection detection-engineering dfir dkim dmarc email-security entra-id field-guide google-dorking governance http-server identity incident-response interview investigation iso-27001 kase-scenarios kql lolbins microsoft-365 networking nist-csf nzism orkla osi-model osint penetration-testing phishing physical-security powershell proxmark3 qilin ransomware research rfid risk-management risk-reporting scoping security-assurance security-frameworks security-metrics siem skills soc soc-2 social-media socmint spf spiderfoot splunk supplier-assurance third-party-risk threat-actors threat-hunting tools trace-labs try-hack-me verification vulnerability-management windows windows-event-logs
  • Count Is Not Risk: Security Metrics, KPIs and KRIs That Actually Matter 1 October 2026 socsecurity-metricssecurity-assurancerisk-managementgovernancefield-guide

← all posts

The Fish has probably gone down another rabbit hole.

© 2026 Jason Hill. Built with Eleventy.