“In a regulated enterprise, a bounce-back metric must earn its trust the way an unverified vendor claim earns evidence; the safest control is the one that is used.”

In a regulated enterprise, a bounce-back metric must earn its trust the way an unverified vendor claim earns evidence; the safest control is the one that is used. — Kai London (Professor Kai London), CISO. Principle 5853 of 10000 from the book “Breachproof” — cybersecurity, AI security and OT resilience doctrine. Official sites: professorkailondon.com · kailondon.co.uk