
PAUL INNELLA
Chief Executive Officer, TDI

The challenge of cybersecurity and risk management is made even more difficult by today’s sophisticated, constantly developing threats and complex digital systems. Cyber spending increased to $260B last year from $3.5B in 2004. Yet, the cost of cybercrime increased from $4T to $6T. Furthermore, with cyber insurance premiums continuing to rise along with more restrictive coverage terms, the message is clear, a new approach is urgently needed to achieve better outcomes around systemic risk, compliance, maturity, and ultimately ensuring positive return on investment. Organizations and top leadership are increasingly aware of the imperative to gain enhanced visibility into systemic risk. Also, enterprises are equally careful about communicating the importance of risk effectively across the enterprise. This is especially true with publicly traded companies.
SEC’s new Rule 10 requires Board Cyber Governance and reporting on material cyber incidents. There is an evident tendency to make the process of effective risk management go hand-in-hand with the ever-growing need to establish traceable, defensible, and measurable strategies to measure success. Enter TDI. TDI is a full-lifecycle cybersecurity solutions company providing Cybersecurity Operations, Cybersecurity Compliance, and Cyber Performance Management (CPM)™. Pioneered by TDI, the Cybersecurity Performance Management framework provides organizations with the most comprehensive, practical, and accurate way to improve organizational cybersecurity performance and elevate understanding of systemic risk.
Highlighted as an Innovation Trigger by Gartner® in their 2022 Cyber and IT Risk Management Hype Cycle, CPM provides visibility into meaningful quantitative measures of cyber performance aligned to strategic cyber objectives, tracked over time, to ensure continuous management and improvement of risk, compliance, maturity, and short and long-term ROI. TDI also offers Managed Cyber Performance (MCP)™, a low-touch tailored services layer proving rightsized augmented expertise where it’s needed most. Collectively, TDI’s solutions drive customer ROI, reduce risk, lower costs, and deliver mission-critical reporting to Stakeholders, Senior Management, the C-Suite & the Board. TDI’s services include the entire spectrum of cybersecurity, from world-famous hack resolution to assessments on ships at sea.
“As part of our CPM core competency, we created CnSight®, first-mover technology to tech-enable TDI’s services & lead innovation in the burgeoning CPM market. Our entire model is centered around CPM, which we use to deliver results and real answers to our customers’ hardest questions. We have the proven expertise, framework, and technology to deliver results for our customers as we stay at the forefront of our field, working with NIST, CISA, cyber insurers, and key commercial partners, creating the world’s most advanced cybersecurity ecosystem,” informs Paul Innella, CEO and founder, TDI. TDI began over two decades ago. Since then, the enterprise has been focused on cybersecurity and risk management.
In-depth knowledge of these and a culture of innovation led to the creation of the CPM automation platform CnSight, and, ultimately, our Managed Cybersecurity Performance offering. The Managed Cyber Security Offering, or MCP, combines TDI’s professional services with CnSight, providing today’s most comprehensive cyber performance solution. TDI’s expertise is leveraged by prominent names, including – to name only a few – the U.S. Navy, U.S. Military Sealift Command, U.S. Legislative Branch, Ogilvy, Wedgewood, and Celero.
One of TDI’s clients encountered an urgent need to ensure continuous monitoring and risk analysis services were in place. Additionally, they had to adhere to regulatory and cybersecurity compliance requirements in both private and public sectors. The need for external support was apparent due to inadequate in-house resources. The search for expertise to most effectively meet these requirements led to TDI. TDI’s expert team implemented CnSight, TDI’s automated CPM platform, and their MCP service for additional support. The process also involved providing SME support to monitor, report and guide the client on emerging changes concerning threats, technologies, vulnerabilities, and business processes. Combined with TDI’s cyber expertise, this strategy employed a dynamic and continuous approach to manage the risk and cybersecurity objectives internally and for their downstream clients.
Additionally, TDI built the first CIO cyber dashboard for a U.S. Federal Department and reorganized an entire cybersecurity division for an Intelligence agency. Also, the firm designed the architecture for one of the industry’s first MSSPs, teamed with IBM & Yahoo to develop a cyber tool, and built CnSight, an innovative solution designed to provide previously unknown insights into risk through a continuous view into the effectiveness and consistency of an organization’s cybersecurity. Furthermore, TDI was the cybersecurity risk advisor for a multi-billion-dollar bank acquisition, consultant to a global Fortune 100 Board, defined the first Tiger-Team protocols for the public stock exchange, and delivered the first Metal Exchange trading platform cyber program.
TDI’s longevity in cyber speaks volumes about the quality and expertise of their offerings. Their customers are gaining new benefits and insights from the application of CPM, CnSight, & MCP. Specifically, one organization discovered a critical flaw in their vulnerability scanner configuration that was highlighted by using CnSight. Another customer leveraged cost-effective cyber support (MCP) that led to growth in new government businesses. More broadly using the CPM framework, the degree to which TDI’s customers are reporting better outcomes around risk management and cyber performance are impressive.
TDI is ISO certified 20000, 9001, and 27001. For the third consecutive year, TDI’s ground-breaking solution CnSight received the Gold Cybersecurity Excellence Award in Cybersecurity Performance Management. As the best cyber industry solution for the cyber insurance sector this year, CnSight also received the Gold Cybersecurity Excellence Award. “We’re genuinely honored to win these highly competitive awards based on voting from the cybersecurity community. Being a three-time category winner is a big deal, and we’re thrilled to also be recognized for the Cyber Industry Solution for the Cyber Insurance industry. It’s a timely award for a CPM solution that benefits policyholders and carriers alike along with our broader market of C-Suite and Board Members across every vertical,” says Jesse Dean, CIO and Head of Solutions.
“We’re looking at a watershed moment in the industry. Aside from the state of cybersecurity insurance and the new SEC Cyber ruling mentioned above, the White House recently released the new National Cybersecurity Strategy calling for urgent and meaningful action to increase resiliency and accountability. In addition, NIST is hard at work with NIST CSF 2.0, which emphasizes governance and objective measures, complementing CISA’s refreshed Cyber Performance Goals. Taken In total, cyber and risk are rapidly evolving. Adding CPM and Gartner’s projection of wider market adoption over the next 2-5 years should be a welcome relief to businesses serious about better understanding and reducing their systemic risk,” says Dean.
Undoubtedly, the insurance sector is one of TDI’s areas of attention. The enterprise has partnered with forward-thinking carriers to simplify the application process and to offer a constant picture of the goals for cyber performance and how they affect risk. Additionally, MSPs have expressed serious interest in cyber optimization as have significant accounting and consulting firms who are joining forces to cut costs and provide their clients with value-added excellence; CnSight will provide an improved focus on these. TDI strives to extend expertise to clients around the globe against threats through innovative tech-enabled Cyber Compliance and Operations services and our CPM platform – CnSight – to manage cyber and risk across the enterprise effectively. Relying on these core competencies, TDI provides an integrated approach to address business needs of cybersecurity effectively – managing the business of cyber.