Allie Mellen
Principal Analyst

Author Insights
Blog
Go Beyond The MITRE ATT&CK Evaluation To The True Cost Of Alert Volumes
MITRE released its latest Enterprise MITRE ATT&CK Evaluations in December of 2024. At that time, we published a blog with a quick overview of the results. Today, we’re excited to announce that we have released three new pieces of research about this round of evaluations.
Blog
DeepSeek Just “Opened” The Path To AI ROI
DeepSeek’s open-source model, DeepThink (R1), has sent shock waves across the tech world. But there are far-reaching implications to this important AI development.
Blog
Highlights And Implications Of Biden’s Executive Order On Strengthening And Promoting Innovation In The Nation’s Cybersecurity
Forrester's security and risk research team breaks down the key highlights and implications of former US President Joe Biden’s 2025 Executive Order (EO) 14144 on strengthening security, improving accountability for software and cloud service providers, and promoting innovation, including use of emerging technologies.
Blog
Don’t Trust Vendor Claims About Getting 100% On The MITRE ATT&CK Evaluations
The MITRE Engenuity ATT&CK Evaluations 2024 results are out. Get a detailed review in this preview of an upcoming report.
Blog
If You’re Not Using Data Pipeline Management For Security And IT, You Need To
Data ingestion into security information and event management (SIEM) have been too expensive for too long. Find out what's driving up the cost and how to manage it better in this post.
Blog
Predictions 2025: AI’s Mishaps And Patchy Rules Lead To Uneven Pockets Of Trust
Patchy AI standards and regulations across the globe will result in some organizations faring better than others when it comes to building and maintaining trust. Learn more in this preview of our 2025 trust predictions.
Blog
Apply For The 2024 Forrester Security & Risk Summit Scholarship Today
Forrester is once again partnering with Women in Security and Privacy to provide free admission to our Security & Risk Summit for four women looking to break into cybersecurity. Learn the details and find out how to apply for the scholarship here.
Blog
CrowdStrike Holds Its Fal.Con Conference As It Tries To Move On From July 19
Here are the top things you need to know coming out of CrowdStrike's recently held Fal.Con user conference, just two months after its config update took down 8.5 million Windows endpoints.
Blog
The Shakedown From Black Hat USA, 2024
What happens when five security analysts gather at a security conference in Las Vegas? Stuff gets broke. Find out more in this review of the recent BlackHat USA event.
Blog
Falcon Fallout: What’s Next For CrowdStrike, Competitors, And CISOs
The July 19 CrowdStrike Falcon outage created major trust issues for the company and the broader security market. What's next for CrowdStrike? Find out as we make several predictions on where the company will go next.
Blog
The CrowdStrike Moment Calls For A Redefinition Of Business Resilience
Crises such as the one triggered by CrowdStrike's global outage shine a bright light on many aspects of business and technology. Our new report provides a thorough overview of recommended actions for tech leaders as they face the unfolding long-term repercussions.
Blog
CrowdStrike Global Outage: Critical Next Steps For Tech And Security Leaders
Technology leaders woke up this morning to find that a software update by cybersecurity vendor CrowdStrike had gone badly wrong. Get updates on the steps that your organization should take now and in the long term as a result of the CrowdStrike outage.
Blog
And So It Begins: Insights From Splunk’s First .conf With Cisco
The big question at the Splunk annual user conference — .conf — was simple: What will happen to Splunk in the wake of the Cisco deal? Find out if the question got answered in this review of the conference.
Blog
Announcing The Forrester Wave™: Extended Detection And Response Platforms, Q2 2024
Recent upheaval in the security information and event management market has created new opportunities for extended detection and response platform vendors. Get three tips on evaluating this changing market in this preview of our new Forrester Wave™ evaluation.
Blog
Cloud Detection And Response Tools Do Not Exist
Cloud detection and response is not a market category — it is a feature of existing cloud tools. Get a formal definition and more in this post previewing a new report.
Blog
IBM Surrenders SIEM While PANW Tries To Gain Ground On Tech Titans
Find out what Palo Alto Networks' acquisition of IBM’s QRadar business means for the broader security information and event management SIEM market.
Blog
Opposites Attract: LogRhythm And Exabeam To Merge
LogRhythm and Exabeam announced their intent to merge, representing another big change for the security analytics platform market. Find out what's driving the merger and what the implications could be.
Blog
Generative AI Will Not Fulfill Your Autonomous SOC Hopes (Or Even Your Demo Dreams)
It’s easy to trust generative AI implementations because of how human they feel. But when it comes to security, there are still some fundamental challenges to overcome with genAI. Learn more about those challenges in this post.
Blog
Wiz Acquires Cloud Detection And Response Specialist Gem Security To Round Out Cloud Security Portfolio
Recently, Wiz announced the acquisition of cloud detection and response vendor Gem Security. Learn how this move aligns with Wiz’s plan to build a comprehensive cloud security portfolio and accelerate product innovation.
Blog
It Ain’t Just AI: What We Saw At Google Cloud Next
Google recently held its Google Cloud Next conference four months early to unveil new AI offerings and upstage its rivals. Get a detailed review of all of the announcements at the event in this post.
More posts