NY-DILIGENT
26.3.2024 12:01:25 CET | Business Wire | Press release
Companies with advanced cybersecurity performance create 372% higher shareholder return compared to their peers with basic cybersecurity performance, according to a new report from Diligent and Bitsight. The report also reveals that highly regulated industries, such as healthcare and financial services, have the highest cybersecurity ratings, and companies with either a specialized risk committee or audit committee achieve better cybersecurity performance compared to those with neither, with ratings of 710 and 650 respectively.
“These findings show that cybersecurity is not just an IT problem — it is an enterprise risk that has material impact on a company’s near-term performance and long-term health, and one that management and the board needs to be up to speed on,” said Dottie Schindlinger, Executive Director of the Diligent Institute. “With increased pressure from regulators for organizations to demonstrate how they oversee cybersecurity, now is the time for boards and leaders to build their competency around cyber risk.”
“Cybersecurity is no longer about simply mitigating risk, it's now a key indicator of financial performance. Companies must treat cybersecurity as a cornerstone of their business strategy, guided by clear, ambitious benchmarks, and backed by the full support of their boards," added Dr. Homaira Akbari, CEO of AKnowledge Partners, Board of Director member for Banco Santander and Landstar System and member of Bitsight’s Advisory Board.
In the “Cybersecurity, Audit and the Board” report, Diligent and Bitsight analyzed more than 4,000 mid to large-cap companies in public indices globally. Additional findings include:
Companies with measurably stronger cybersecurity performance deliver higher financial performance than their peers
- The average total shareholder return (TSR) for companies with advanced security performance ratings over a five-year and three-year period was 71% and 67%, respectively, while companies in the basic performance range delivered 37% and 14% TSR over the same time frames.
- Companies with a higher number of independent directors are more likely to have advanced security ratings. About 76% of directors on the boards of these companies with advanced security ratings are independent, compared to 66% in the basic security performance category.
Companies with specialized risk or audit committees have better cybersecurity performance
- The median cybersecurity rating for companies with specialized risk committees is 730, compared to 720 for companies with just audit committees, indicating there is not a significant difference in the ability of the audit committee to oversee cyber risk compared to a specialized risk committee.
- Having a cybersecurity expert on the general board is not enough – those experts need to be directly involved with cyber oversight. Companies with cybersecurity experts on either audit or specialized risk committees achieve an average security performance rating of 700, whereas companies with cybersecurity experts on the general board, but not on either committee attain a security rating of 580.
Highly regulated industries outperform other industries in cybersecurity performance
- The healthcare sector had the highest average security ratings overall at 730. Of the companies with advanced security performance ratings, 33% came from the financial services sector, with an average rating of 720.
- By comparison, 24% of companies with basic security performance ratings came from the industrials sector, and the sector with the lowest overall performance rating was the communications sector, at 630.
"The research shows that market leading companies that prioritize cyber risk management outperform their peers,” said Derek Vadala, Chief Risk Officer, Bitsight. “This cannot be achieved without a strong understanding of cybersecurity performance and clear benchmarks shared across the executive team and board. The role of the CISO has shifted. Cyber risk is a key component of business performance."
Learn more about how to get certified to oversee cyber risk here. For more information on how Diligent and Bitsight partner to give directors access to market-leading cyber risk data and insights, visit here.
View the full report here.
Methodology
Analyses consists of 4,149 mid to large-cap companies in public indices across Australia, Canada, France, Germany, Japan, the United Kingdom, and the United States. Diligent correlated each company’s cyber oversight structure with their corresponding security performance data, obtained from Bitsight. The correlation method involved averaging the ratings within each category to identify discernible patterns. Bitsight creates cybersecurity ratings based on externally observable measurements of an organization’s security posture. View a full report methodology here.
About Diligent
Diligent is the leading GRC SaaS company, empowering more than 1 million users and 700,000 board members and leaders to make better decisions, faster. The Diligent One Platform helps organizations connect their entire GRC practice — including governance, risk, compliance, audit and ESG — to bring clarity to complex risk, stay ahead of regulatory changes and deliver impactful insights, in one consolidated view. Learn more at diligent.com.
Follow Diligent on LinkedIn, X (Twitter) and Facebook.
About Bitsight
Bitsight is a global cyber risk management leader transforming how organizations manage exposure, performance, and risk for themselves and their third parties. Companies rely on Bitsight to prioritize their cybersecurity investments, build greater trust within their ecosystem, and reduce their chances of financial loss. Built on over a decade of market-leading innovation, Bitsight’s integrated solutions deliver value across enterprise security performance, digital supply chains, cyber insurance and data analysis. For more information, visit bitsight.com or connect with us on LinkedIn.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20240326307541/en/
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Andersen Consulting udvider platformen med Reach Consulting5.3.2026 22:05:00 CET | Pressemeddelelse
Andersen Consulting udvider sin platform i Mellemøsten gennem en samarbejdsaftale med Reach Consulting, et digitalt transformations- og rådgivningsfirma med hovedsæde i De Forenede Arabiske Emirater. Reach Consulting hjælper organisationer med at skabe vækst, håndtere risici og navigere i komplekse forandringer gennem en omfattende portefølje af ydelser, herunder digital transformation, strategi, intern revision og M&A-rådgivning. Med en tilstedeværelse i De Forenede Arabiske Emirater, Saudi-Arabien, Oman, Qatar og Jordan betjener firmaet kunder i både den offentlige og private sektor med skræddersyede løsninger, tværfaglig ekspertise og indgående lokalkendskab. Reach Consulting kombinerer skala med agilitet for at fremme driftsresultater og innovation i arbejdsstyrken. "Transformation fungerer bedst, når lokal indsigt, tværfaglig ekspertise og praktisk udførelse spiller sammen," udtalte Suhail Shaker, administrerende direktør for Reach Consulting. "Ved at samarbejde med Andersen Consu
2PointZero Group Completes Majority Acquisition in Italy-Based ISEM Packaging Group for AED 704 Million5.3.2026 22:02:00 CET | Press release
Transaction results in 60.8% ownership by 2PointZero Packaging becomes the sixth consumer-focused vertical with ISEM as an anchor 2PointZero Group PJSC (ADX: 2PointZero), a next-generation investment powerhouse focused on energy and consumer sectors, announced today that it has formally completed the transaction to acquire a majority position in ISEM, a leading European packaging group serving beauty, fashion, luxury, nutraceuticals and more, for AED 704 million through a combination of secondary and primary capital earmarked to accelerate organic and inorganic growth. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260305800523/en/ 2PointZero Group completes majority acquisition in Italy-based ISEM Packaging Group for AED 704 million (Photo: AETOSWire) 2PointZero Group now holds 60.8% of ISEM, while Peninsula Capital and minority investors own the remaining 39.2%. This marks the start of a strategic partnership between 2Poin
Xsolla Announces Reseller Program to Help Game Developers Unlock New Revenue Streams in Local Markets5.3.2026 18:00:00 CET | Press release
Game Developers And Publishers Can Now Reach More Players By Partnering with Official Distributors And Resellers Globally Without Building Local Infrastructure Xsolla, a leading global video game commerce company, today announced the Xsolla Reseller Program, a new product designed to help game developers scale and capture untapped revenue in local markets with no development needed. The program launches with a curated cohort of resellers and distributors in Southeast Asia and Latin America, with expansion into additional regions throughout 2026. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260305047070/en/ Graphic: Xsolla As game developers pursue global growth, they face a fundamental infrastructure challenge: billions of dollars in revenue remain untapped in emerging, cash-dependent economies, such as Southeast Asia, Latin America, the Middle East, and North Africa, where players purchase digital content through local di
Andersen Consulting styrker sine kompetencer inden for cybersikkerhed gennem samarbejde med A3Sec5.3.2026 17:16:00 CET | Pressemeddelelse
Andersen Consulting styrker sine tilbud inden for cybersikkerhed og teknologisk transformation gennem en samarbejdsaftale med A3Sec, et firma, der specialiserer sig i datadrevet trusselsdetektion, hændelsesrespons og exposure management. Med hovedsæde i Spanien og kontorer i Mexico og Colombia har A3Sec mere end 14 års erfaring med at hjælpe offentlige og private organisationer inden for finans, telekommunikation, energi, den offentlige sektor og erhvervslivet med at sikre deres digitale aktiver. Virksomheden driver sit Security and Digital Surveillance Center® (CSVD®) døgnet rundt med et team på over 180 cybersikkerhedseksperter og betjener mere end 280 kunder verden over. Firmaet leverer integrerede cybersikkerhedstjenester, herunder managed detection and response, cybertelemetri, trusselsanalyse og krisestyring, og hjælper kunder med at styrke deres robusthed og omdanne risiko til en strategisk fordel, samtidig med at de effektivt håndterer eksponering og minimerer risiko. "Vores fo
Xsolla Agency Launches to Empower Creators Across Entertainment-Based Intellectual Property5.3.2026 16:23:00 CET | Press release
New Service Simplifies Access to Premium IP Licensing, Driving Discoverability, Player Engagement, and Revenue for Game Developers Xsolla, a global video game commerce company, today launched Xsolla Agency, a comprehensive service connecting game developers with premium entertainment-based intellectual property (IP). The integrated offering addresses critical challenges for game creators: access to world-class IP, global monetization capabilities, and the operational infrastructure needed to build sustainable businesses. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260305044119/en/ Graphic: Xsolla Xsolla Agency simplifies access to entertainment-based licenses through expert-led negotiations and industry relationships, offering affordable, monetization-focused deals structured for maximum ROI. Strategic IP partnerships increase discoverability, reduce user acquisition costs, and drive higher player spend through impactful
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
