Cyber capability forecast
Cyber Future
“How much people, process and technology capability do we need to stay within risk appetite in 90 days, 1 year and 3 years?”
4 report pages · hover to hold, select a frame to view it
What it shows
- A Capability Growth Index projecting the multiplier each pillar needs against a target baseline.
- A threat sprawl index built from public vulnerability data (CISA KEV, NVD, CVSS).
- Driver contribution: which assumptions move the forecast most, with their ranges.
- AI and technology sprawl velocity, quarter on quarter.
Outcomes
- Turns "we need more budget" into a quantified, time-bound capability gap.
- Shows which pillar breaches tolerance first.
- Gives an investment conversation a defensible basis.
Built for: Executives and boards building a multi-year cyber investment case, and risk and strategy teams.
Product specification
Four report pages: Cyber Risk Futures, Target Capability Growth, Driver Contribution Deep-Dive, and AI & Technology Sprawl Velocity.
The threat curve is sigmoid-fitted to public vulnerability data. Each driver carries a minimum, most likely and maximum value, and a 5,000-run PERT Monte Carlo turns them into ranges for People, Process and Technology at each horizon, with P50 planning and P90 stress views. Every driver and assumption is documented in a methodology companion.
- Pages
- 4
- Horizons
- Now · 90D · 1Y · 3Y
- Simulation
- 5,000-run PERT Monte Carlo
- Format
- Power BI (PBIP)
How it's delivered: days, not months
- ScopeA short call to agree the decision it needs to support and which data you already have.
- LoadYour exports go into the model's CSV templates. No live connection to your systems is needed to start.
- RunThe model runs on your data, and every number traces back to its inputs and the documented method.
- Hand overYou keep the Power BI file, its design walkthrough and engineering companion, or our practitioners run it with you each month.
See Cyber Future running on your own data.