Do the current free assessments collect research data?
No. Readiness assessments on vciso.tr are calculated in your browser by default. There is no hidden mechanism that submits your answers into a research dataset.
Planned research areas
- Cybersecurity maturity and governance ownership
- AI/LLM inventory and AI-governance maturity
- ISO 27001 / SOC 2 assurance readiness
- Vendor and third-party risk management
- Customer security questionnaires and enterprise-sales trust
- Board cyber-risk reporting
- Incident response and ransomware readiness
- Shadow AI / shadow IT governance
Publication standard
- Methodology first: question set, sample, collection window, and calculation method will be disclosed.
- Minimum sample: small groups will not be generalized into headline percentages; insufficient segments will be marked accordingly.
- Anonymization: person- or company-identifying information will not appear in research outputs.
- No cherry-picking: findings will not be selected only because they support a marketing narrative.
- Uncertainty: limitations of self-assessment data and sampling bias will be stated.
- Raw-count context: where practical, percentages will be accompanied by respondent counts.
Planned report
The State of Cyber Governance in Turkey report will not be presented as published until there is sufficient, ethically collected data. When released, date, version, sample size, and methodology changes will be visible.