Global cyber intelligence
What is changing across threats, vulnerabilities, campaigns and regulation?
KCF–CRIF · Cyber Risk Intelligence Framework
Transform fragmented cyber data into a continuously updated view of threats, vulnerabilities, business exposure and remediation priorities.
The intelligence equation
Threat intelligence
+ Enterprise context
+ Business impact
+ Regulatory context
= Cyber risk intelligence
Decision frame
What cyber threats are relevant to this enterprise?
Which assets, suppliers, identities, applications and business processes are exposed?
What would happen to the business if those threats materialised?
What should management prioritise and invest in?
Is cyber risk improving or deteriorating over time?
The framework
What is changing across threats, vulnerabilities, campaigns and regulation?
Which assets, identities, suppliers, applications and processes could be affected?
Which threats can realistically exploit the enterprise?
What happens when an exposed asset or process is compromised?
Can the organisation prevent, detect, respond and recover?
What is the plausible enterprise impact?
What should management prioritise and invest in now?
How is the organisation’s risk posture changing over time?
Intelligence modules
Correlate external intelligence, active exploitation and enterprise exposure.
Connect likely entry paths to identities, assets, processes and consequences.
Translate technical findings into operational, financial and regulatory exposure.
Assess prevention, detection, response, recovery and evidence quality.
See supplier concentration, dependencies, incidents and inherited exposure.
Map changing obligations to assets, controls, evidence and remediation.
Rank action by threat probability, exploitability, criticality and control weakness.
Turn intelligence into board, CISO, maturity and investment reports.
The proposed KCF Cyber Risk Intelligence Score is a weighted intelligence model—not a simple questionnaire score. Industry-specific weights remain configurable.
How developed and effective are the controls?
How exposed is the organisation to relevant threats?
Can critical operations continue and recover?
Role-based intelligence
Enterprise exposure, risk appetite, resilience, investment priorities and accountability.
Critical services, disruption, revenue at risk, customers and transformation priorities.
Threats, vulnerabilities, attack surface, incidents, remediation and ATT&CK coverage.
Infrastructure, cloud, identity, applications, APIs, data and software supply chains.
Cyber-loss exposure, scenario ranges, insurance, control ROI and expected-loss reduction.
Regulatory mappings, evidence, control gaps, audit findings and remediation progress.
Evidence & governance
Every important assertion should show its source, freshness and confidence. The framework separates facts, observations, inferences and AI recommendations. AI recommends; a human approves; authorised security tools execute.
Adoption path
Start with context