Upcoming Events

Thought Leadership Events

More Coming Soon!

Resetting Cyber Risk in the Age of AI

The 2025 FAIR Conference is the Institute's main event of the year. This event is the premier event in risk management, that brings leaders in cybersecurity and operational risk management together to explore best FAIR™ practices that produce greater value and alignment with business goals. FAIRCON25 will be held on November 4 & 5, 2025 at The Glasshouse in New York City.

Learn More about the FAIR Conference

Chapter Meetings

More Coming Soon!

FAIR Training Courses

FAIR Foundations

Upcoming Virtual Classes: 
- Week of January 12
- Week of January 26 (APAC Timezone)
- Week of February 9
- Week of March 9

This foundational course offers a comprehensive introduction to Factor Analysis of Information Risk (FAIR), the leading quantitative model for managing cyber and operational risk. Participants will explore the limitations of traditional risk management approaches and gain an understanding of how FAIR provides a structured, data-driven methodology for assessing and communicating risk.

FAIR Cyber Risk Analysis

Upcoming Virtual Classes: 
- Week of January 26
- Week of February 23
- Week of February 23 (APAC Timezone)
- Week of March 16

The Cyber Risk Analysis course from the FAIR Institute is a foundational training designed to build the core competencies required to perform quantitative cyber risk analysis using the Factor Analysis of Information Risk (FAIR™) model. This course provides participants with a step-by-step approach to analyzing cybersecurity risk scenarios in financial terms—enabling more informed business decisions.

FAIR Cyber Risk Communication

Upcoming Virtual Classes: 
- Week of February 2
- Week of March 2
- Week of March 30
- Week of March 30 (APAC Timezone)

*Course offered as part of the "FAIR Certified Cyber Risk Professional" bundle only.*

This course equips cybersecurity and risk management professionals with essential skills for translating FAIR quantitative assessments into compelling narratives for executives, boards, and regulators. Participants will master techniques for presenting complex risk scenarios in clear, business-relevant language that drives strategic decision-making and aligns with organizational priorities. Through practical application, attendees will learn to leverage FAIR results to support resource allocation, risk treatment strategies, and regulatory compliance while connecting cyber threats to tangible business impact.

FAIR Third-Party Risk Management Specialization

Upcoming Virtual Classes: 
- Week of February 9

This five-day virtual course is designed for professionals who support or manage Third-Party Risk Management (TPRM) programs and want to shift from a traditional compliance-based approach to a risk-based strategy using the FAIR™ (Factor Analysis of Information Risk) methodology.

FAIR-U For Cyber Office Hours

Next Session: January 15 at 12 PM ET

We collaborated with our founder and technical advisor, SAFE Security, to provide a free tool for learners called FAIR-U for Cyber (beta release). Powered by SAFE ONE, FAIR-U for Cyber shows how the FAIR Model, FAIR-CAM, and FAIR-MAM work together in a cyber risk management system (CRMS) to manage risk.

To help learners get the most out of the tool, we host live Office Hours led by Certified FAIR Experts and SAFE Solution Architects.

*Must be logged into FAIR Academy to access.

Industry Events

RSAC™ 2026 Conference

March 23-26, 2026 | Moscone Center, San Francisco, CA

RSAC™ Conference is your ongoing source for timely insights, thoughtful interactions, and actionable intelligence. All designed to help cybersecurity professionals continually strengthen their organizations and push their careers further.

As a valued FAIR member, save on passes when using the discount codes below:

$150 Discount code off All Access (unlimited): 16UFAIRAD            
$250 Discount code off Expo Plus (unlimited): 16UFAIRXPD

RSAC Conference is here to help you build your learning, find smarter solutions, and connect with the community. Join the conversation today. Join RSAC Conference—where the world talks security™.

Sponsor Events

Out with the Old, In with the Future: Why Operationalizing CRQ Can’t Wait

December 17, 2025 | 12-1 PM ET

The door has closed on dated, manual, and siloed ways of managing cyber risk. Today, security teams strive to give a clear, continuous, and quantifiable picture of risk. It’s a necessary pursuit, but actually putting the required frameworks into practice can be a challenge.

Join SAFE + FAIR discover how leading teams have achieved this, drawing on real-world examples of what a mature cyber risk management program looks like.

Strategic Control Prioritization: A Data-Driven Approach for CISOs

December 18, 2025 | 3-4 PM CET

Today CISOs face increasing pressure to identify their top cyber risks and allocate resources and budget effectively. How do you ensure your security controls align with your key assets and against the most significant threats while making a strong business case for investment?

Join Institute partner, C-Risk, for a practical discussion on how data-driven methodologies can help CISOs scope top risks, assess control gaps, and prioritize initiatives with confidence.