Measure Your Threat-Informed Readiness

MITRE INFORM provides a framework for building a more threat-informed security program. Use this assessment to evaluate how well your program aligns with the practices required for effective cyber defense.

In just a few minutes, you’ll get:

  • A clear view of your current maturity across key capabilities

  • Insight into gaps and areas of highest risk

  • Practical recommendations to improve your threat-informed defense

    1. Cyber Threat Intelligence
    1. Defensive Measures
    1. Test & Evaluation
    1. Results

CTI.1 - Depth of Threat Intelligence

What level of intelligence (relative to the Pyramid of Pain) is being used to track adversaries?

  • Ephemeral IOCs
  • Tools used by adversaries
  • Techniques and Tactics used by adversaries
  • Low-variance adversary behaviors and observables

CTI.2 - Relevance of Threat Intelligence

How much does the threat intelligence relate to your organization?

  • Generic or freely available reporting
  • Industry-specific reporting
  • In-house or organizationally-specific reporting

CTI.3 - Operational Integration of Threat Intelligence

To what extent is threat intelligence integrated across your organization?

  • Reviewed by individuals or siloed teams
  • Integrated across different security teams
  • Contextualized and made actionable across entire organization

CTI.4 - Incorporation of CTI

How frequently are you incorporating threat intelligence into your organization’s workflows?

  • Never
  • Intermittently
  • Monthly
  • Weekly
  • Daily

CTI.5 - Recency of CTI

How recent is the threat intelligence you use?

  • Unsure
  • Within the past year
  • Within the past month
  • Within the past week

CTI.6 - Speed of CTI Dissemination

How quickly is new threat intelligence - either internally created or externally sourced - processed and disseminated within your organization?

  • Not disseminated
  • Within a month
  • Within a week
  • Within a day

CTI.7 - CTI Driven Decision Making

To what extent is CTI incorporated into decision making?

  • CTI is not considered
  • CTI is considered, but not a driving factor
  • CTI is strongly weighted for cybersecurity decisions
  • CTI is strongly weighted for cybersecurity and business decisions

Your baseline is set

Now make it count

Turn your results into action with prioritized recommendations to improve your threat-informed defense.