Why Get Your Score?
Cyber risk is a business issue.
This scorecard looks beyond security tools and technical jargon to examine how your organization manages cyber risk across leadership, business priorities, protection, response, and recovery.
You’ll see how well your organization understands what matters, where responsibilities are clear or unclear, how prepared you are to respond, and whether the business is positioned to recover when disruption happens.
Your results are delivered in business language you can use. Behind the scenes, the scorecard is informed by the NIST Cybersecurity Framework (CSF) 2.0, a widely used framework for understanding, managing, prioritizing, and communicating cybersecurity risk.
The questions are designed to be answered by a CEO, business owner, CFO, or COO just as easily as a CIO or CISO.
You don’t need to be a cybersecurity expert. You need to know your business.


You’ll be scored against the following key areas:
You’ll see where your business is strong, exposed, and what deserves attention first.
Your overall score gives you the big picture. Then we break it down across five areas so you can see where gaps may affect the business and where to focus next.
For each area, you’ll get your score, what it means for the business, what should concern you, and practical direction based on your answers.

Governance & Accountability

Business Visibility & Priorities

Protection & Access

Detection & Response

Resilience & Recovery

