About the Book

Exclusive Editions

Coming Spring 2026 — Get Your Copy

Cyber risk quantification (CRQ) is the practice of measuring cybersecurity risk with probabilities, ranges, and financial impact — not colors or guesswork. For too long, risk programs have relied on “high/medium/low” charts that fail to inform executives.

This book is a hands-on, plain-English guide that shows professionals how to build CRQ programs from scratch, run practical assessments in Excel, and use AI responsibly to accelerate analysis. Packed with case studies, templates, and step-by-step instructions, it transforms CRQ from intimidating theory into a tool any risk leader can apply.

PREORDER


Cover of From Heatmaps to Histograms by Tony Martin-Vegue — a practical guide to cyber risk quantification.

Practical Skills You Can Use Right Away

By the end of From Heatmaps to Histograms, you’ll know how to turn risk analysis into real decision support — using proven methods, data, and tools.

Run Simulations Without Complex Math

Use simple Monte Carlo techniques and everyday tools like Excel to model uncertainty and financial impact.

Build a Clear Mental Model for CRQ

Understand how cyber risk quantification (CRQ) works and why it’s essential for better decision-making.

Communicate Risk with Executive Clarity

Turn your findings into stories and visuals that help leaders make confident, data-driven decisions.

Testimonials

Clarity That Resonates Across the Industry

  • This book makes cyber risk quantification clear, practical, and actionable.

    – Senior Security Leader

  • A must-read for anyone tired of vague heatmaps and ready for real decision support.

    - CISO, Fortune 500 Company

  • Tony shows how to make risk analysis approachable and impactful — even if you’re not a math person.

    - Industry Peer

Tools That Turn Insight Into Action

Tools and Download

Access practical worksheets and templates from From Heatmaps to Histograms to put cyber risk quantification into action.

EXPLORE TOOLS ↗