Which of the following best describes the purpose of a security scorecard presented to the board of directors?
-
A
Provide raw SIEM logs for board review
-
B
Translate technical security metrics into business-relevant risk language
-
C
List every CVE discovered in the quarter
-
D
Detail firewall rule changes made during the period