| CPC G06F 21/577 (2013.01) [G06F 2221/034 (2013.01)] | 27 Claims |

|
1. A method of displaying a cyber risk assessment, the method comprising:
a) receiving a request for a quantitative cyber risk assessment of an entity associated with a domain name;
b) discovering a digital footprint of the entity based on the domain name using non-intrusive information gathering;
c) determining an entity classification based on a digital footprint;
d) determining an entity technical finding;
e) computing a loss event frequency using the entity classification and the entity technical finding, wherein computing the loss event frequency comprises computing using data that contains statistical information about a frequency of financial loss for certain industries;
f) computing a loss magnitude using the entity classification and the entity technical finding, wherein computing the loss magnitude comprises computing a primary loss that represents a direct cost associated with a cyber incident and computing a secondary loss that represents an indirect cost associated with the cyber incident;
g) computing a probable financial impact in financial terms of a cyber risk based on the loss event frequency and on the loss magnitude; and
h) displaying recommendations for remediating the cyber risk based on the computed probable financial impact.
|