Columbus, Ohio · Local Chapter of the FAIR Institute

Quantify
Cyber Risk.
Lead with Data.

cbuscrq.org brings the FAIR standard for cyber risk quantification to Columbus — connecting security leaders, analysts, and executives who speak the language of business risk.

Learn About FAIR →
Affiliated with
FAIR Institute
Local Chapter
Factor Analysis of Information Risk
Columbus Ohio
Cyber Risk Quantification
Risk-Based Decision Making
FAIR Institute
Risk in Financial Terms
Open FAIR Standard
Columbus Cybersecurity Community
Factor Analysis of Information Risk
Columbus Ohio
Cyber Risk Quantification
Risk-Based Decision Making
FAIR Institute
Risk in Financial Terms
Open FAIR Standard
Columbus Cybersecurity Community

Risk is a financial problem — not a technical one.

Factor Analysis of Information Risk (FAIR) is the only internationally recognized standard quantitative model for cybersecurity and operational risk. It enables organizations to measure, manage, and communicate risk in the financial terms that boards and executives understand.

The FAIR Institute is a non-profit professional organization with chapters across the globe. The Columbus chapter — cbuscrq.org — serves Central Ohio's security and risk community with local events, peer learning, and practical application of the FAIR model.

$
Risk in Dollars FAIR translates technical exposure into dollar-denominated loss estimates, enabling true risk-informed budgeting.
ISO
International Standard Open FAIR is an ISO/IEC international standard (ISO/IEC TS 27016), recognized globally as the benchmark for risk quantification.
CBJ
Right Here in Columbus Our local chapter connects practitioners across Ohio's capital — from finance to healthcare, defense to tech.

Built for practitioners,
led by practitioners.

Education

FAIR Model Training

Workshops, study groups, and certification prep for the Open FAIR Body of Knowledge — practical skills you can apply the next day.

Community

Peer Networking

Connect with CISOs, risk analysts, auditors, and security engineers across Columbus who share a data-driven approach to risk management.

Events

Local Chapter Meetings

Regular in-person and virtual meetups featuring guest speakers, case studies, and hands-on FAIR analysis exercises.

Advocacy

Board Communication

Learn to present cyber risk to executives and board members in the language they speak: financial exposure, probability, and business impact.

Tools

Model Application

Hands-on sessions applying the FAIR model to real scenarios — from ransomware impact analysis to third-party vendor risk quantification.

Research

Industry Insight

Access to FAIR Institute research, frameworks, and resources — curated and contextualized for Central Ohio's business landscape.

CISOs & Security Leaders

Translate technical risk into executive-ready financial exposure reports.

Risk Analysts

Apply quantitative methods to move beyond red/amber/green heat maps.

Auditors & GRC

Strengthen risk assessments with defensible, model-driven quantification.

Students & Early-Career

Build in-demand CRQ skills and connect with Columbus's security community.