CO-OPTIV-SECURITY
With the rise of the data breach epidemic, and the imposition of comprehensive privacy regulations and significant legislation requirements, cybersecurity has become a tier-one business risk. As a result, the chief information security officer’s (CISO) role in a business has dramatically increased in value. In fact, 64 percent of businesses now prioritise cybersecurity above all else, even if it slows some users’ productivity down, according to a new research report from Optiv Security . The report, “The State of the CISO,” takes an in-depth look at the approach to cybersecurity taken by CISOs, CSOs and senior IT decision makers, the strategies they have in place and their experience of data breaches.
Cybersecurity becomes a business priority
The research found that the importance of cybersecurity is now better understood by business executives and board members. In fact, 96 percent of respondents indicated they are taking a more strategic approach to cybersecurity as a result of being greater aligned with business leaders.
“Some organisations are further along this evolutionary curve than others, but without business’ buy-in to a cybersecurity program, CISOs will undoubtedly struggle to keep their organisations safe from looming cyber threats,” said Andrzej Kawalec, Optiv’s director of strategy and technology, Europe. “We are seeing a significant shift in the industry, whereby cybersecurity is now a business issue. CISOs are being regarded as an important part of major business initiatives such as next-generation digital transformation, which has led to more funding for cyber programs. The board now understands that a major security or compliance miscue can derail a business.”
When it comes to the approach to cybersecurity, the research found that 66 percent of IT security decision makers felt greater awareness of security risks within the IT function has had a significant impact on currently existing cybersecurity policies. Compliance with external standards such as GDPR follows closely behind at 56 percent, but basic functions like vulnerability and patching is only prioritised by 32 percent of respondents. Employee education was deemed a top priority by 58 percent of respondents, as was simplifying infrastructure (54 percent) and aligning security with development operations to create a DevSecOps model (47 percent).
“It is concerning in light of the fact that, by some estimates, unpatched vulnerabilities account for more than half of all data breaches,” continued Kawalec. “By getting the basic functions of cybersecurity right, IT decision makers can drastically improve their chances of defending against a cyber-attack, since unpatched software is often cited as the most common cause of data breaches.”
The greatest security threats
The research also identified that 31 percent of respondents believe that organized crime and politically motivated acts are seen as the greatest threats to cybersecurity, while 28 percent believe this to be hacktivists. Insider threats are seen as critical by 26 percent and just 15 percent of respondents cited third parties as a threat to their cybersecurity. To deal with cybersecurity threats, 92 percent of respondents have an incident response plan in place, but rehearsing this plan is lagging, with 44 percent of businesses stating they only rehearse once a year or less.
The report finds that breaches still seem to serve as a wake-up call for organizations, with 39 percent of businesses implementing changes in their security program only after an incident. While 65 percent cited that recovery from the breach was well coordinated and successful, over a third (35 percent) reported that recovery costs were still higher than it would have cost to invest in better breach defence.
To read the full report, please visit Optiv’s website .
Methodology
Optiv launched an independent research series to discover how IT decision makers approach cybersecurity. To produce its research and resulting report, Optiv worked with London-based research agency, Loudhouse. Loudhouse is an independent agency that specializes in technology and B2B research for global brands.
Loudhouse conducted online interviews with 100 US- and 100 UK-based CISOs, CSOs and Senior IT decision makers at enterprise businesses (between 500 and 5000+ employees), to understand their approach to cybersecurity, the strategies they have in place, and their experience of data breaches.
Follow Optiv
Twitter: www.twitter.com/optiv
LinkedIn: www.linkedin.com/company/optiv-inc
Facebook: www.facebook.com/optivinc
YouTube: https://www.youtube.com/c/OptivInc
Blog: https://www.optiv.com/explore-optiv-insights/blog
Optiv Security: Who Secures Your Insecurity?
™
Optiv is a security solutions integrator – a global, “one-stop” trusted partner with a singular focus on cybersecurity. Our end-to-end cybersecurity capabilities span risk management and transformation, cyber digital transformation, threat management, cyber operations, identity and data management, and integration and innovation, helping organisations realize stronger, simpler and more cost-efficient cybersecurity programs that support business requirements and outcomes. At Optiv, we are modernizing cybersecurity to enable clients to innovate their consumption models, integrate infrastructure and technology to maximize value, achieve measurable outcomes, and realize complete solutions and business alignment. For more information about Optiv, please visit us at www.optiv.com
.
View source version on businesswire.com: https://www.businesswire.com/news/home/20190923005132/en/
Link:
Social Media:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
UAE announces Google Gemini Is Now the Most Culturally Accurate AI for Arabs28.11.2025 22:31:00 CET | Press release
The world’s first assessment to assess AI models’ alignment with Emirati identity and values The UAE’s Artificial Intelligence, Digital Economy, and Remote Work Applications Office announced that Google Gemini has ranked first in the “AI in the Ring” Index, the world’s first benchmark designed to evaluate how effectively AI language models reflect Emirati culture, dialects, traditions, and national values through a challenge centered on cultural intelligence within the UAE context. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251128785463/en/ UAE announces Google Gemini Is Now the Most Culturally Accurate AI for Arabs (Photo: AETOSWire) Gemini earned the top ranking following a review of over 400 questions across 7 cultural dimensions and 5,200 generated responses from 11 major language models. A Committee of Emirati experts evaluated the outputs to identify which models demonstrated the strongest cultural understanding. F
GE HealthCare announces CE Mark for the Omni 128cm total body PET/CT system28.11.2025 12:00:00 CET | Press release
FOR USE IN CE-MARK EUROPEAN COUNTRIES ONLY GE HealthCare announces CE Mark for its Omni 128cm total body PET/CT,i a next-generation imaging system designed to advance precision care as well as cancer diagnosis, staging and treatment planning The new system is designed to accommodate head-to-thigh imaging in a single bed to improve workflow and efficiency, and enable a significant reduction in dose/scan time – all important factors, especially for populations like pediatric patients Built for both clinical and research excellence, the system may support the development and evaluation of new clinical pathways, novel PET tracers and emerging theranostic agents GE HealthCare today announced CE Mark for its next-generation Omni 128cm total body positron emission tomography / computed tomography (PET/CT) system,i a major milestone in its mission to advance precision care. Designed to advance cancer diagnosis, staging, therapeutic planning and treatment response monitoring, this innovative sy
King Abdulaziz Foundation Organizes the First Edition of the Forum on the “History of Hajj and the Two Holy Mosques” in Jeddah28.11.2025 10:53:00 CET | Press release
King Abdulaziz Foundation (Darah) held the first edition of the Forum on the “History of Hajj and the Two Holy Mosques”, convened as part of the program of the “Hajj Conference and Exhibition 2025” at the Super Dome Hall in Jeddah, in cooperation with the Ministry of Hajj and Umrah and the Guests of God Service Program, during the period from 9–12 November 2025. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251128600368/en/ King Abdulaziz Foundation Organizes the First Edition of the Forum on the “History of Hajj and the Two Holy Mosques” in Jeddah (Photo: AETOSWire) The forum’s activities were inaugurated following the announcement by His Royal Highness Prince Faisal bin Salman bin Abdulaziz Al Saud, Special Advisor to the Custodian of the Two Holy Mosques and Chairman of the Board of Directors of the King Abdulaziz Foundation, who declared the launch of the forum during the opening ceremony of the “Hajj Conference and Exh
VSO Unveils VCP v1.0, a First-of-Its-Kind Cryptographic Audit Protocol to Restore Trust in AI-Driven Markets28.11.2025 06:30:00 CET | Press release
New open standard replaces opaque server logs with mathematically verifiable evidence, helping market participants meet EU AI Act and MiFID II transparency requirements The VeritasChain Standards Organization (VSO), an independent international standards body, today announced the global release of VeritasChain Protocol (VCP) v1.0, an open cryptographic audit protocol designed to provide mathematically provable transparency for AI‑driven and algorithmic trading systems. VCP replaces mutable server logs with a tamper‑evident chain of cryptographic evidence, enabling regulators, brokers, exchanges and trading firms to move from trust‑based oversight to verification‑based supervision. Why This Matters Now The launch of VCP v1.0 comes at a pivotal moment for global market infrastructure: More than 80 proprietary trading firms collapsed between 2024 and 2025 amid regulatory scrutiny, opaque execution models and frozen payout disputes, leaving a trust gap between traders and platforms. Regula
Andersen Consulting styrker sine kompetencer med BMA27.11.2025 22:48:00 CET | Pressemeddelelse
Andersen Consulting udvider sine kompetencer inden for bæredygtighed og virksomhedsforandring gennem en samarbejdsaftale med BMA, der er et sydafrikansk firma, som arbejder for at styrke konkurrenceevnen i fremstillingsindustrien og fremme inkluderende industriel vækst. BMA, der blev etableret for mere end to årtier siden, arbejder på tværs af produktionsværdikæder – fra producenter til deres kunder – sammen med myndigheder og udviklingsagenturer for at fremme bæredygtig industriel konkurrenceevne. Gennem sine sektorfokuserede industrielle klynger leverer firmaet integrerede tjenester inden for industriel politik og strategisk udvikling, værdikædestrategi, produktionskonkurrenceevne og lean-rådgivning, reduktion af CO2-udledning samt udvikling af små og mellemstore virksomheder og samler interessenter omkring fælles prioriteter og skalerbare, langsigtede løsninger. "Bæredygtig produktion handler om mere end effektivitet. Det drejer sig om at skabe økosystemer, der er regenerative, resi
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
