New ArrivalsChristmasHoliday Hosting & EntertainingGift IdeasAI Gift FinderClothing, Shoes & AccessoriesToysElectronicsBeautyGift CardsHomeFurnitureCharacter ShopBabyKitchen & DiningGroceryHousehold EssentialsSchool & Office SuppliesVideo GamesMovies, Music & BooksSports & OutdoorsBackpacks & LuggagePersonal CareHealthPetsUlta Beauty at TargetTarget OpticalParty SuppliesClearanceTarget New Arrivals Target Finds #TargetStyleHanukkahStore EventsAsian-Owned Brands at TargetBlack-Owned or Founded Brands at TargetLatino-Owned Brands at TargetWomen-Owned Brands at TargetLGBTQIA+ ShopTop DealsTarget Circle DealsWeekly AdShop Order PickupShop Same Day DeliveryRegistryRedCardTarget CircleFind Stores
From Heatmaps to Histograms - by  Tony Martin-Vegue (Paperback) - 1 of 1

From Heatmaps to Histograms - by Tony Martin-Vegue (Paperback)

New at  target 
$54.99

Pre-order

Eligible for registries and wish lists

Sponsored

About this item

Highlights

  • Cyber risk quantification (CRQ) is the practice of measuring cybersecurity risk using numbers --not colors or guesswork.
  • About the Author: Tony Martin-Vegue is a cybersecurity and technology risk expert with over 25 years of experience helping Fortune 500 companies build and scale quantitative risk programs.
  • Computers + Internet, Security

Description



Book Synopsis



Cyber risk quantification (CRQ) is the practice of measuring cybersecurity risk using numbers --not colors or guesswork. Instead of labeling risks "high," "medium," or "low," CRQ uses probabilities, ranges, and impact estimates to help organizations make better, data-informed decisions about risk.

In a world where ransomware gangs operate like small businesses, every core function of an organization is digital, and Boards and regulators are demanding meaningful, defensible risk metrics, CRQ has never been more relevant than now. And thanks to AI, it's about to scale fast.

At the same time, CRQ is often misunderstood as expensive, technical, or just "voodoo math." People assume you need a stats degree, six-figure software, or a room full of analysts. This book is here to prove otherwise.

From Heatmaps to Histograms is a hands-on, plain-English guide written by a seasoned practitioner who's built CRQ programs at top global companies. It's packed with step-by-step instructions, practical tips, templates, shortcuts, AI prompts, and plenty of myth-busting to take you from CRQ skeptic to CRQ champion--even if you've never cracked open a statistics book.

All techniques in this book can be performed in Excel or Google Sheets--no coding required. But for readers who want to go further, you'll find dozens of GenAI prompts that help you generate risk scenarios, clean messy data, or even "vibe-code" your way through a Monte Carlo simulation in Python or R. You'll also get guidance on when to not use AI, how to spot hallucinations, and how to integrate it responsibly into your risk practice.

CRQ is no longer optional. This is your roadmap for making it work--cheaply, ethically, and effectively.

What You Will Learn:

  • A beginner-friendly introduction to the statistical foundations of CRQ, including Monte Carlo simulations, credible intervals, Bayesian reasoning, and simple methods for summarizing uncertainty--without requiring a math or coding background
  • Gather, vet, and work with data--even when it's scarce, messy, or missing
  • Perform full end-to-end quantitative risk assessments using only Excel or Google Sheets
  • Harness the power of generative AI to supercharge risk analysis workflows
  • Apply CRQ and GenAI responsibly and ethically, with clear guidance on common pitfalls, misuse scenarios, and ensure transparency, fairness, and trustworthiness in your analysis and reporting

Who This Book Is For

Beginner/intermediate in the cyber/technology risk management field



From the Back Cover



Cyber risk quantification (CRQ) is the practice of measuring cybersecurity risk using numbers --not colors or guesswork. Instead of labeling risks "high," "medium," or "low," CRQ uses probabilities, ranges, and impact estimates to help organizations make better, data-informed decisions about risk.

In a world where ransomware gangs operate like small businesses, every core function of an organization is digital, and Boards and regulators are demanding meaningful, defensible risk metrics, CRQ has never been more relevant than now. And thanks to AI, it's about to scale fast.

At the same time, CRQ is often misunderstood as expensive, technical, or just "voodoo math." People assume you need a stats degree, six-figure software, or a room full of analysts. This book is here to prove otherwise.

From Heatmaps to Histograms is a hands-on, plain-English guide written by a seasoned practitioner who's built CRQ programs at top global companies. It's packed with step-by-step instructions, practical tips, templates, shortcuts, AI prompts, and plenty of myth-busting to take you from CRQ skeptic to CRQ champion--even if you've never cracked open a statistics book.

All techniques in this book can be performed in Excel or Google Sheets--no coding required. But for readers who want to go further, you'll find dozens of GenAI prompts that help you generate risk scenarios, clean messy data, or even "vibe-code" your way through a Monte Carlo simulation in Python or R. You'll also get guidance on when to not use AI, how to spot hallucinations, and how to integrate it responsibly into your risk practice.

CRQ is no longer optional. This is your roadmap for making it work--cheaply, ethically, and effectively.

What You Will Learn

  • A beginner-friendly introduction to the statistical foundations of CRQ, including Monte Carlo simulations, credible intervals, Bayesian reasoning, and simple methods for summarizing uncertainty--without requiring a math or coding background
  • Gather, vet, and work with data--even when it's scarce, messy, or missing
  • Perform full end-to-end quantitative risk assessments using only Excel or Google Sheets
  • Harness the power of generative AI to supercharge risk analysis workflows
  • Apply CRQ and GenAI responsibly and ethically, with clear guidance on common pitfalls, misuse scenarios, and ensure transparency, fairness, and trustworthiness in your analysis and reporting



About the Author



Tony Martin-Vegue is a cybersecurity and technology risk expert with over 25 years of experience helping Fortune 500 companies build and scale quantitative risk programs. He writes and speaks prolifically on the topic of risk and decision science, and is known for his new ways of thinking about old problems.

A hands-on practitioner as much as a leader, Tony has performed an estimated 1,000 quantitative risk assessments across domains including cyber, fraud, operations, and enterprise risk. He's a frequent speaker at FAIRcon, SIRAcon, RSA, various Security BSides, and ISACA events. He also chairs the San Francisco Chapter of the FAIR Institute, a global organization dedicated to advancing risk quantification practices, and was honored with the FAIR Ambassador Award in 2020. He has been published in numerous publications such as the ISACA journal, Risk.net, and regularly blogs at tonym-v.com on the topics of risk, quantification, and security economics.

Tony lives with his family on an island in the San Francisco Bay (not Alcatraz)--though he has swum from Alcatraz to San Francisco ten times.

Dimensions (Overall): 10.0 Inches (H) x 7.01 Inches (W)
Suggested Age: 22 Years and Up
Genre: Computers + Internet
Sub-Genre: Security
Publisher: Apress
Theme: General
Format: Paperback
Author: Tony Martin-Vegue
Language: English
Street Date: June 29, 2026
TCIN: 1007917059
UPC: 9798868822995
Item Number (DPCI): 247-51-7616
Origin: Made in the USA or Imported
If the item details aren’t accurate or complete, we want to know about it.

Shipping details

Estimated ship dimensions: 1 inches length x 7.01 inches width x 10 inches height
Estimated ship weight: 1 pounds
We regret that this item cannot be shipped to PO Boxes.
This item cannot be shipped to the following locations: American Samoa (see also separate entry under AS), Guam (see also separate entry under GU), Northern Mariana Islands, Puerto Rico (see also separate entry under PR), United States Minor Outlying Islands, Virgin Islands, U.S., APO/FPO

Return details

This item can be returned to any Target store or Target.com.
This item must be returned within 90 days of the date it was purchased in store, shipped, delivered by a Shipt shopper, or made ready for pickup.
See the return policy for complete information.

Related Categories

Get top deals, latest trends, and more.

Privacy policy

Footer

About Us

About TargetCareersNews & BlogTarget BrandsBullseye ShopSustainability & GovernancePress CenterAdvertise with UsInvestorsAffiliates & PartnersSuppliersTargetPlus

Help

Target HelpReturnsTrack OrdersRecallsContact UsFeedbackAccessibilitySecurity & FraudTeam Member ServicesLegal & Privacy

Stores

Find a StoreClinicPharmacyTarget OpticalMore In-Store Services

Services

Target Circle™Target Circle™ CardTarget Circle 360™Target AppRegistrySame Day DeliveryOrder PickupDrive UpFree 2-Day ShippingShipping & DeliveryMore Services
PinterestFacebookInstagramXYoutubeTiktokTermsCA Supply ChainPrivacy PolicyCA Privacy RightsYour Privacy ChoicesInterest Based AdsHealth Privacy Policy