http://www.securitymetrics.org
"Security Metrics - Replacing Fear, Uncertainty, and Doubt" by Andrew Jaquith - Addison-Wesley.http://www.youtube.com/watch?v=dFsbqGJ3qEY - Security Metrics: A Beginner's Guide
This website will house links to relevant websites, articles, whitepapers, organisations that deal with governance, risk and compliance (GRC). I have categorised all the posts into areas of relevance based on my current role.