Grunt's personal blog

this is my personal blog for my hacking stuff, my degree stuff, etc

View on GitHub

AppSec KPIs & Metrics

Fundamental KPIs in AppSec

  1. Number of Active Critical Vulnerabilities (NACV)
  1. Time to Remedy (TTR)
  1. Number of Vulnerabilities per Team (NVT)
  1. Time to Remedy per Criticality (TTRC)

Typical Implementations

Things to Keep in Mind

Example Implementation