Business Wire

NY-DILIGENT

Share
Companies With Advanced Cybersecurity Performance Deliver Nearly Four Times’ Higher Shareholder Return Than Their Peers, According to Diligent and Bitsight

Companies with advanced cybersecurity performance create 372% higher shareholder return compared to their peers with basic cybersecurity performance, according to a new report from Diligent and Bitsight. The report also reveals that highly regulated industries, such as healthcare and financial services, have the highest cybersecurity ratings, and companies with either a specialized risk committee or audit committee achieve better cybersecurity performance compared to those with neither, with ratings of 710 and 650 respectively.

“These findings show that cybersecurity is not just an IT problem — it is an enterprise risk that has material impact on a company’s near-term performance and long-term health, and one that management and the board needs to be up to speed on,” said Dottie Schindlinger, Executive Director of the Diligent Institute. “With increased pressure from regulators for organizations to demonstrate how they oversee cybersecurity, now is the time for boards and leaders to build their competency around cyber risk.”

“Cybersecurity is no longer about simply mitigating risk, it's now a key indicator of financial performance. Companies must treat cybersecurity as a cornerstone of their business strategy, guided by clear, ambitious benchmarks, and backed by the full support of their boards," added Dr. Homaira Akbari, CEO of AKnowledge Partners, Board of Director member for Banco Santander and Landstar System and member of Bitsight’s Advisory Board.

In the “Cybersecurity, Audit and the Board” report, Diligent and Bitsight analyzed more than 4,000 mid to large-cap companies in public indices globally. Additional findings include:

Companies with measurably stronger cybersecurity performance deliver higher financial performance than their peers

  • The average total shareholder return (TSR) for companies with advanced security performance ratings over a five-year and three-year period was 71% and 67%, respectively, while companies in the basic performance range delivered 37% and 14% TSR over the same time frames.
  • Companies with a higher number of independent directors are more likely to have advanced security ratings. About 76% of directors on the boards of these companies with advanced security ratings are independent, compared to 66% in the basic security performance category.

Companies with specialized risk or audit committees have better cybersecurity performance

  • The median cybersecurity rating for companies with specialized risk committees is 730, compared to 720 for companies with just audit committees, indicating there is not a significant difference in the ability of the audit committee to oversee cyber risk compared to a specialized risk committee.
  • Having a cybersecurity expert on the general board is not enough – those experts need to be directly involved with cyber oversight. Companies with cybersecurity experts on either audit or specialized risk committees achieve an average security performance rating of 700, whereas companies with cybersecurity experts on the general board, but not on either committee attain a security rating of 580.

Highly regulated industries outperform other industries in cybersecurity performance

  • The healthcare sector had the highest average security ratings overall at 730. Of the companies with advanced security performance ratings, 33% came from the financial services sector, with an average rating of 720.
  • By comparison, 24% of companies with basic security performance ratings came from the industrials sector, and the sector with the lowest overall performance rating was the communications sector, at 630.

"The research shows that market leading companies that prioritize cyber risk management outperform their peers,” said Derek Vadala, Chief Risk Officer, Bitsight. “This cannot be achieved without a strong understanding of cybersecurity performance and clear benchmarks shared across the executive team and board. The role of the CISO has shifted. Cyber risk is a key component of business performance."

Learn more about how to get certified to oversee cyber risk here. For more information on how Diligent and Bitsight partner to give directors access to market-leading cyber risk data and insights, visit here.

View the full report here.

Methodology

Analyses consists of 4,149 mid to large-cap companies in public indices across Australia, Canada, France, Germany, Japan, the United Kingdom, and the United States. Diligent correlated each company’s cyber oversight structure with their corresponding security performance data, obtained from Bitsight. The correlation method involved averaging the ratings within each category to identify discernible patterns. Bitsight creates cybersecurity ratings based on externally observable measurements of an organization’s security posture. View a full report methodology here.

About Diligent

Diligent is the leading GRC SaaS company, empowering more than 1 million users and 700,000 board members and leaders to make better decisions, faster. The Diligent One Platform helps organizations connect their entire GRC practice — including governance, risk, compliance, audit and ESG — to bring clarity to complex risk, stay ahead of regulatory changes and deliver impactful insights, in one consolidated view. Learn more at diligent.com.

Follow Diligent on LinkedIn, X (Twitter) and Facebook.

About Bitsight

Bitsight is a global cyber risk management leader transforming how organizations manage exposure, performance, and risk for themselves and their third parties. Companies rely on Bitsight to prioritize their cybersecurity investments, build greater trust within their ecosystem, and reduce their chances of financial loss. Built on over a decade of market-leading innovation, Bitsight’s integrated solutions deliver value across enterprise security performance, digital supply chains, cyber insurance and data analysis. For more information, visit bitsight.com or connect with us on LinkedIn.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20240326307541/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Reply Awarded a 2025 AWS Partner of the Year Award3.12.2025 10:00:00 CET | Press release

Reply recognized as winner for EMEA Partner of the Year, Industry Energy & Utilities, one of many AWS Partners around the globe that help their customers drive innovation Reply [EXM, STAR: REY] is pleased to announce it is a recipient of a 2025 Geography and Global AWS Partner Award, recognizing leaders around the globe that are playing key roles in helping their customers drive innovation and build solutions on Amazon Web Services (AWS). Reply has been named the winner of the EMEA Partner of the Year – Industry Energy & Utilities award, which recognizes top AWS Partners with the AWS Energy Competency, which help customers build and implement advanced solutions powered by AWS across the industry value chain. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251203089630/en/ Through its specialized companies — including Airwalk Reply, Comsysto Reply, Data Reply, Sense Reply, and Storm Reply — Reply leverages AWS capabilities to

FiRa Consortium Unveils FiRa Core 4.0 Specifications and Certification Program3.12.2025 10:00:00 CET | Press release

Featuring UL-TDoA, Aliro UWB updates, and expanded certification The FiRa® Consortium announces the release of its Core 4.0 Specifications and Certification Program, notable milestones in ultra-wideband (UWB) technology development. These updates complete the work of IEEE 802.15.4-2024 features to fulfill FiRa-defined use cases. They also enhance FiRa’s capabilities, enabling seamless interoperability and unlocking new possibilities for precise and secure ranging and positioning in diverse applications. Features of the FiRa Core 4.0 Specifications and Certification Program The FiRa Core 4.0 Specifications include updates that support expanded functionality and continued ecosystem growth. UL-TDoA – This feature enables the tracking of assets (UL-TDoA tags) by an infrastructure made of UL-TDoA anchors. The design ensures interoperability between the tags and the infrastructure, which optimizes tag simplicity and power consumption. The flexible design allows easy and customized deployment

Infobip Reports Record Black Friday Interactions as Retailers Accelerate Shift to Richer Customer Experiences3.12.2025 10:00:00 CET | Press release

Black Friday interactions grow by 15% year-on-year, marking a new milestone for Infobip’s global communications platform Infobip, the leading global cloud communications platform for customer engagement, identified a remarkable upswing in its Black Friday messaging traffic, with use of Rich Communication Services (RCS) surging 277% on Black Friday 2025 compared to the previous year. Email also remained a strong channel of choice among both retailers and consumers, showing an impressive 241% year-on-year increase, signaling that promotional and transactional communications continue to drive engagement during shopping peaks. Black Friday is no longer just a single day. The search for attractive deals extends beyond Friday, with consumers from around the globe seeking products, better price offers, and reliable, easy communication channels to connect with their favourite brands. Infobip identified significant increases in interactions not only in North America, but also in other key regio

Ramify Partners with ROYC to Enrich its Private Markets OfferUnder Its Own Brand3.12.2025 10:00:00 CET | Press release

ROYC, the market-leading European B2B platform for sourcing, structuring, and distributing private-market investments, and Ramify, the next-generation private wealth management platform based in France, today announced a strategic collaboration enabling Ramify to broaden its private-markets offering through a curated range of high-quality private-market funds and programs. The partnership enables Ramify to distribute, and scale modern private-markets programs under its own brand. Bringing a curated private-markets program suite to individual investors Through the collaboration, Ramify integrates a selection of highly sought-after, institutional-grade private-markets funds distributed through Luxembourg life-insurance wrappers. These funds can be invested into individually or as part of broader private-markets investment programs, including diversified and single-strategy vehicles across private equity, private credit, infrastructure and real assets - mirroring formats traditionally res

Veeam and HPE Extend Strategic Partnership and Unveil Next-Gen Data Protection to Supercharge Enterprise Resilience3.12.2025 09:10:00 CET | Press release

Strategic Alliance Accelerates Hybrid Cloud Innovation and Eliminates Risk Across Modern Applications Veeam® Software, the #1 global leader by market share in Data Resilience, today announced a bold new chapter in its strategic alliance with HPE. Building on the partnership’s momentum earlier this year, HPE and Veeam are unleashing transformative, integrated solutions designed to empower enterprises with radically simplified data resilience for the modern enterprise. “Trust, resilience, and availability are the new currency of business,” said John Jester, Chief Revenue Officer at Veeam. “Our strengthened partnership with HPE gives customers the agility and confidence to protect, recover, and leverage their data, wherever it resides.” New innovations unveiled by Veeam and HPE include: Protection for HPE Morpheus VM Essentials Software: Veeam’s new native integration plug-in – now in beta with expected general availability in early 2026 – delivers hypervisor-based image-level backup for

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye