Business Wire

NY-DILIGENT

Share
Companies With Advanced Cybersecurity Performance Deliver Nearly Four Times’ Higher Shareholder Return Than Their Peers, According to Diligent and Bitsight

Companies with advanced cybersecurity performance create 372% higher shareholder return compared to their peers with basic cybersecurity performance, according to a new report from Diligent and Bitsight. The report also reveals that highly regulated industries, such as healthcare and financial services, have the highest cybersecurity ratings, and companies with either a specialized risk committee or audit committee achieve better cybersecurity performance compared to those with neither, with ratings of 710 and 650 respectively.

“These findings show that cybersecurity is not just an IT problem — it is an enterprise risk that has material impact on a company’s near-term performance and long-term health, and one that management and the board needs to be up to speed on,” said Dottie Schindlinger, Executive Director of the Diligent Institute. “With increased pressure from regulators for organizations to demonstrate how they oversee cybersecurity, now is the time for boards and leaders to build their competency around cyber risk.”

“Cybersecurity is no longer about simply mitigating risk, it's now a key indicator of financial performance. Companies must treat cybersecurity as a cornerstone of their business strategy, guided by clear, ambitious benchmarks, and backed by the full support of their boards," added Dr. Homaira Akbari, CEO of AKnowledge Partners, Board of Director member for Banco Santander and Landstar System and member of Bitsight’s Advisory Board.

In the “Cybersecurity, Audit and the Board” report, Diligent and Bitsight analyzed more than 4,000 mid to large-cap companies in public indices globally. Additional findings include:

Companies with measurably stronger cybersecurity performance deliver higher financial performance than their peers

  • The average total shareholder return (TSR) for companies with advanced security performance ratings over a five-year and three-year period was 71% and 67%, respectively, while companies in the basic performance range delivered 37% and 14% TSR over the same time frames.
  • Companies with a higher number of independent directors are more likely to have advanced security ratings. About 76% of directors on the boards of these companies with advanced security ratings are independent, compared to 66% in the basic security performance category.

Companies with specialized risk or audit committees have better cybersecurity performance

  • The median cybersecurity rating for companies with specialized risk committees is 730, compared to 720 for companies with just audit committees, indicating there is not a significant difference in the ability of the audit committee to oversee cyber risk compared to a specialized risk committee.
  • Having a cybersecurity expert on the general board is not enough – those experts need to be directly involved with cyber oversight. Companies with cybersecurity experts on either audit or specialized risk committees achieve an average security performance rating of 700, whereas companies with cybersecurity experts on the general board, but not on either committee attain a security rating of 580.

Highly regulated industries outperform other industries in cybersecurity performance

  • The healthcare sector had the highest average security ratings overall at 730. Of the companies with advanced security performance ratings, 33% came from the financial services sector, with an average rating of 720.
  • By comparison, 24% of companies with basic security performance ratings came from the industrials sector, and the sector with the lowest overall performance rating was the communications sector, at 630.

"The research shows that market leading companies that prioritize cyber risk management outperform their peers,” said Derek Vadala, Chief Risk Officer, Bitsight. “This cannot be achieved without a strong understanding of cybersecurity performance and clear benchmarks shared across the executive team and board. The role of the CISO has shifted. Cyber risk is a key component of business performance."

Learn more about how to get certified to oversee cyber risk here. For more information on how Diligent and Bitsight partner to give directors access to market-leading cyber risk data and insights, visit here.

View the full report here.

Methodology

Analyses consists of 4,149 mid to large-cap companies in public indices across Australia, Canada, France, Germany, Japan, the United Kingdom, and the United States. Diligent correlated each company’s cyber oversight structure with their corresponding security performance data, obtained from Bitsight. The correlation method involved averaging the ratings within each category to identify discernible patterns. Bitsight creates cybersecurity ratings based on externally observable measurements of an organization’s security posture. View a full report methodology here.

About Diligent

Diligent is the leading GRC SaaS company, empowering more than 1 million users and 700,000 board members and leaders to make better decisions, faster. The Diligent One Platform helps organizations connect their entire GRC practice — including governance, risk, compliance, audit and ESG — to bring clarity to complex risk, stay ahead of regulatory changes and deliver impactful insights, in one consolidated view. Learn more at diligent.com.

Follow Diligent on LinkedIn, X (Twitter) and Facebook.

About Bitsight

Bitsight is a global cyber risk management leader transforming how organizations manage exposure, performance, and risk for themselves and their third parties. Companies rely on Bitsight to prioritize their cybersecurity investments, build greater trust within their ecosystem, and reduce their chances of financial loss. Built on over a decade of market-leading innovation, Bitsight’s integrated solutions deliver value across enterprise security performance, digital supply chains, cyber insurance and data analysis. For more information, visit bitsight.com or connect with us on LinkedIn.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20240326307541/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

CSG Xponent Sweeps Up Top-Tier Analyst, Industry Recognition for Customer Journey Management, Analytics10.12.2025 14:30:00 CET | Press release

Independent evaluations from QKS Group, FinTech Futures and CMP Research validate CSG Xponent as a driver of real-time journey orchestration and analytics CSG® (NASDAQ: CSGS) today announced that its flagship customer engagement platform, CSG Xponent, has earned multiple honors for journey management, customer analytics and personalization. This third-party recognition underscores the strength of CSG Xponent as a full-service engagement platform – one that seamlessly combines in-depth journey analytics with real-time orchestration. In the past month alone, CSG Xponent has been named: A Leader in QKS Group’s SPARK Matrix™: Customer Journey Management, 2025. Winner for “Best Personalisation and User Experience Solution” in the FinTech Futures 2025 Banking Tech Awards. A Core Performing provider in CMP Research’s Prism for Customer Analytics. “CSG Xponent moves beyond broad segmentation to pinpoint each customer’s journey state, whether stalled, at-risk or ready to convert, and then quant

AI Power Surge and Energy Transition Push Global Project Finance into a New Era10.12.2025 14:30:00 CET | Press release

70% of finance professionals expect infrastructure to drive the strongest growth, followed by renewables (48%) and TMT (43%).53% now view private equity as a primary source of equity funding, signaling a major shift in capital dynamics.80% cite KYC requirements as the top execution challenge amid rising deal complexity. Global project finance is entering a transformative era, driven by soaring demand for energy capacity, accelerated digitalization and large-scale infrastructure upgrades, reshaping investment priorities worldwide. These insights come from new research commissioned by CSC, based on responses from 200 project finance professionals, revealing a market shifting toward more complex, capital-intensive projects and a greater reliance on private capital. CSC’s latest report, Project Finance at an Inflection Point: Adapting to New Realities1, reveals a sector that is rapidly expanding in both scale and complexity driven by capital increasingly targeting long-term, strategically

Kingswood Capital Management Enters Into a Definitive Agreement to Acquire Safran Passenger Innovations10.12.2025 14:00:00 CET | Press release

SPI is a leading global provider of in-flight entertainment and connectivity solutions for airlines and airplane manufacturers worldwide Kingswood Capital Management, LP (together with its affiliates, “Kingswood”) announced today that it has entered into a definitive agreement to acquire Safran Passenger Innovations (“SPI” or the “Company”) from Safran, an international high-tech company operating in the aviation, defense, and space markets. SPI is a leading global provider of in-flight entertainment and connectivity solutions for airlines and airplane manufacturers worldwide. Matt Smith will continue to serve as SPI’s CEO, and the entire SPI leadership team will remain in place. The transaction is expected to close early next year, subject to customary legal and regulatory requirements. Headquartered in Brea, California, SPI created and designed an award-winning in-flight entertainment and connectivity platform known as RAVE, recognized for its intuitive design, reliability, and innov

Armis Partners with KODE Labs and IntelliBuild to Streamline Security Operations Across the Building Management Lifecycle10.12.2025 14:00:00 CET | Press release

Integration secures smart building systems, empowering organizations to enhance their cyber resilience and make more informed decisions Armis, the cyber exposure management & security company, today announced a strategic partnership with KODE Labs and IntelliBuild to help organizations unify cybersecurity, operational intelligence and governance for building lifecycle management. The joint offering combines Armis’ continuous asset intelligence with KODE Labs’ performance trends and analytics, which are then operationalized by IntelliBuild’s governance and reporting. By translating accurate, verified intelligence into accountable action, organizations can streamline the operations of building management systems – from thermostats, lighting and badge readers to elevator controllers and security cameras – and proactively strengthen their cyber defenses. “To achieve real security in the new age of connected environments, you must have comprehensive, real-time protection across the entire a

FiRa Unveils New Membership Tier to Fuel Industry Growth10.12.2025 14:00:00 CET | Press release

New pricing model invites more companies to join FiRa’s collaborative ecosystem. FiRa® Consortium is expanding its membership structure with a new Associate tier that opens the door to broader industry involvement. With new revenue-based pricing, organizations of all sizes can now more easily help shape the future of precise, secure wireless experiences. By reducing cost-related barriers and expanding access to FiRa resources, this new tier opens the door for innovators, developers, and emerging players to contribute to the next generation of wireless capabilities. The updated structure gives companies a more flexible and accessible path to Associate membership: $7,500 USD for companies with annual revenue below $50 million USD $30,000 USD for companies with annual revenue above $50 million USD The refreshed Associate tier maintains all existing benefits, including participation in FiRa Working Groups, access to specifications, engagement in FiRa Plugfests, product certification opport

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye