Home / Companies / GitLab / Blog / Post Details
Content Deep Dive

3 tips to improve your security risk management program

Blog post from GitLab

Post Details
Company
Date Published
Author
Kyle Smith
Word Count
700
Company Posts That Month
16
Language
English
Hacker News Points
-
Post removed?
No
Summary

Risk management is often perceived as a compliance formality or hindrance, but effective programs can significantly aid strategic decision-making by providing relevant and actionable information. GitLab's Security Operational Risk Management (StORM) program is designed to identify, monitor, and remediate security risks, thereby supporting the company's objectives and safeguarding data confidentiality, integrity, and availability. Recent changes in GitLab's risk management practices emphasize the aggregation of risk information from diverse sources like GitLab's own objects, Google Drive, calendars, Slack, and the GitLab Handbook to foster better decision-making and transparency. By self-serving and contextualizing risk information, GitLab aims to familiarize team members with potential risks, reduce bias, and streamline risk management processes. The company encourages open access to risk-related data to enhance awareness and engagement, suggesting that increased transparency can spark new ideas and refine risk assessments. Metrics are vital for contextualizing risks, measuring progress, and understanding company complexities, and GitLab seeks feedback from decision-makers to ensure the metrics presented are useful.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.