FAIRTM (Factor Analysis of Information Risk) has emerged as the premier Value at Risk (VaR) model for cybersecurity and operational risk. The FAIRTM Institute is a non-profit professional organization dedicated to advancing the discipline of measuring and managing cyber and operational risk.
It provides information risk, cybersecurity and business executives with the standards and best practices to help organizations measure, manage and report on information risk from the business perspective. The FAIRTM Institute and its community focus on innovation, education and sharing of best practices to advance the FAIRTM model and the cyber and operational risk management professions.
Sep 27, 2025 10:47:14 AM
“Uncertainty is the only certainty there is…”, John Allen Paulos – mathematician and author.
Sep 26, 2025 8:00:00 AM
Image: CISO Roundtable, FAIRCON24
At the 2024 FAIR Conference, our CISO Roundtables were one of the most talked-about elements of the program. More than 70 CISOs participated in last year’s sessions, making them some of the largest and most dynamic peer-to-peer exchanges we’ve ever hosted. Attendees told us the format was refreshing, moving beyond theory and presentations into real-world problem solving, candid dialogue, and actionable takeaways.
Sep 25, 2025 10:00:02 AM
By Jeff Copeland
Feb 15, 2023 5:09:00 PM
I recently had a conversation with clients around a risk analysis they conducted and noticed as they walked me through it that they seemed to get hung up on the terms “inherent risk” and “residual...
Read More >>Jan 10, 2025 1:51:52 PM
Cybersecurity leaders face an increasingly complex risk landscape where the stakes—financial, operational, and regulatory—continue to climb. The FAIR Institute’s latest white paper, A FAIR Framework...
Read More >>Aug 25, 2025 4:08:56 PM
We are buzzing with anticipation as FAIRCON25 approaches, and for good reason. This isn't just another conference—it is the gathering of the most brilliant minds in cyber risk...
Read More >>