Skip to main content

Understand the measured score

Updated over 3 months ago

Measured scores will take into account the performance of your measure.

What does the performance score consist of?

The performance score is calculated only on your implemented measures. This allows you to attest to the performance of your measures based on:

  • Performance indicators related to the measures

  • Completion (or not) of recurring tasks associated with the measure, over the last 12 months.

This is then called operational performance score.

🔎 Activity indicators like "PHI.I03 - Number of clicks (Phishing)" will be linked to measures but will not be considered in the performance score calculation.

⚠️ The operational score is only part of the performance score. Performance also takes into account the efficiency of the measure. A measure with an operational performance of 100% will have a reduced performance score if its efficiency is not 100%. The score is weighted by the efficiency of the measure.

Conceptual diagram of calculating measure performance


Example with a measure with 100% efficiency on measure 4.7 of CIS Control V8


Example with a measure with 80% efficiency on measure 4.8 of CIS Control V8

⚠️ Measures without controls (recurring tasks and indicators) will have an "operational performance" value applied of 75% for the calculation.

Example:

  • 4.8 CIS V8 = 75

  • 4.7 CIS V8 = 37.5 rounded to 38.

This default value can be modified in preferences: measure.default_performance

Did this answer your question?