Infosecurity Europe 2026: Prioritizing Cyber Risk Quantification
Severity: Low (Score: 21.9)
Sources: Darkreading, Infosecurity-Magazine
Published: · Updated:
Keywords: europe, infosecurity, boards, cyber, risk, cybersecurity, prioritize
Summary
At Infosecurity Europe 2026, cybersecurity leaders discussed the importance of quantifying cyber risks in financial terms to secure board support for cybersecurity initiatives. James Russell from BP emphasized that translating cyber risks into dollar values makes them more relatable for business leaders. Silas Bartlett from NatWest Group highlighted the challenges of using existing data to model cyber risks accurately, noting the lack of historical data compared to credit risk assessments. The discussion focused on how effective communication of cyber risk can lead to better investment in cybersecurity measures, ultimately saving organizations money by preventing breaches. Key Points: • Cyber Risk Quantification (CRQ) is essential for board engagement in cybersecurity. • Translating cyber risks into dollar values helps communicate their importance to business leaders. • Organizations face challenges in modeling cyber risks due to limited historical data.
Detailed Analysis
**Impact** The briefing focuses on the adoption of Cyber Risk Quantification (CRQ) by large enterprises such as BP and NatWest Group to better communicate cyber risks to boards. The impact is primarily on organizational decision-making processes within multinational corporations and financial institutions, improving prioritization of cybersecurity investments. No specific data breaches, affected data, or geographic scope of cyber incidents are detailed in the sources. **Technical Details** The articles do not provide information on specific attack vectors, TTPs, malware, CVEs, or infrastructure related to cyber incidents. The focus is on the methodology of risk quantification rather than on active threats or technical exploitation details. **Recommended Response** Organizations should develop and refine CRQ models using available cybersecurity data to quantify risks in financial terms understandable to business leaders. Emphasis should be placed on ensuring data quality and transparency of assumptions within models to improve accuracy over time. Monitoring should focus on evolving cyber threat data to continuously update risk models, as no specific detection or mitigation actions are provided.
Source articles (2)
- [An RX Global Event] Infosecurity Europe — Darkreading · 2026-06-02
Infosecurity Europe is the leading gathering for the cybersecurity industry in Europe. Each year, we bring the community together to the latest innovations, learn from one another, and test and benchm… - Infosecurity Europe: How to Get Boards to Prioritize Cyber Risk Quantification — Infosecurity-Magazine · 2026-06-03
One of the best ways to advise boards on cybersecurity risks is is to focus on money and how a smart approach to cyber risk management can be a strong long term investment for the organization, accord…
Timeline
- 2026-06-02 — Infosecurity Europe 2026 held: Cybersecurity leaders gathered to discuss innovations and strategies for improving cyber risk management.
- 2026-06-03 — Panel discussion on cyber risk quantification: Experts from BP and NatWest Group shared insights on how to effectively communicate cyber risks to boards.