Business Wire

NV-ISACA

Share
9 in 10 Enterprises Report Gaps Between the Cybersecurity Culture They Have and the One They Want

With cybersecurity threats continuing to escalate worldwide, the ISACA/CMMI Institute Cybersecurity Culture Report found that just 5 percent of employees think their organization’s cybersecurity culture is as advanced as it needs to be to protect their business from internal and external threats. More than 4,800 business and technology professionals shared their insights in the global research study, conducted via online polling in June 2018. Results were released today at ISACA’s CSX North America cybersecurity conference in Las Vegas.

This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20181015005149/en/

Cybersecurity culture is a workplace culture in which security awareness and behaviors are integrated into everyone’s daily operations, as well as an executive leadership priority. In a threat-ripe environment, an effective cybersecurity culture can help employees understand their roles and responsibilities in keeping their organizations safe and customer data secure. However, just 34 percent of respondents say they understand their role in their organizations’ cyber culture.

Companies must take an all-hands-on-deck approach to counter cyberattack threats, the report summarizes.

“Enlisting the entire workforce to mitigate an enterprise’s cyber risk is an emerging practice,” says Doug Grindstaff II, SVP of Cybersecurity Solutions at CMMI Institute . “We are hearing a lot of feedback about how organizations can move the needle on employee involvement. It’s challenging, but organizations are rightly concerned by the growing sophistication of cyberattacks.”

Widespread employee involvement correlates strongly with the minority of organizations that have achieved strong satisfaction with their cybersecurity culture. Nine in ten employees (92 percent) at these organizations say that their C-level executives share an excellent understanding of the underlying issues, which may be why they loop-in their employees so well; 84 percent of employees at these organizations say they understand their role in cybersecurity.

Other critical findings include:

  • Many organizations lack the first—and all-important—step toward a cybersecurity culture: 42 percent of organizations do not have an outlined cybersecurity culture management plan or policy.
  • Aligning the entire workforce with the organization’s cybersecurity policies requires significant capital: Organizations that report a significant gap between their current and desired cybersecurity culture are spending just 19 percent of their annual cybersecurity budget on training and tools; organizations that believe their cybersecurity culture is where it is supposed to be are spending more than twice as much (43 percent).

“A key motivator for organizations delaying investing in their cybersecurity cultures is a lack of awareness about the attempted threats and ongoing risks, as well as a lack of awareness about the assets at risk to cybersecurity threats,” said Rob Clyde, NACD Board Leadership Fellow and ISACA Board Chair. “However, individuals tend to underestimate the potential damage and overestimate technology’s ability to limit such incidents. Doing so puts their organizations at serious risk.”

To view the research, visit www.isaca.org/cybersecurity-culture-study .

About ISACA

Nearing its 50th year, ISACA ® (isaca.org ) is a global association helping individuals and enterprises achieve the positive potential of technology. ISACA equips professionals with the knowledge, credentials, education and community to advance their careers and transform their organizations.

Twitter: www.twitter.com/ISACANews

About CMMI ® Institute

A subsidiary of ISACA Enterprises, CMMI Institute (cmmiinstitute.com ) is the global leader in the advancement of best practices in people, process and technology. The Institute provides the tools and support for organizations to benchmark their capabilities and maturity by comparing their operations to best practices and identifying performance gaps.

Twitter: https://twitter.com/CMMI_Institute

Contact:

ISACA Emily Van Camp, +1.847.385.7223 evcamp@isaca.org or Kristen Kessinger, +1.847.660.5512 kkessinger@isaca.org

Link:

ClickThru

Social Media:

https://www.facebook.com/ISACAHQ

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Golub Capital Continues Strong Track Record of Consistent Results in 20258.1.2026 16:00:00 CET | Press release

Another Year of “Good Boring” through SpecializationClosed $25+ Billion in Financing Commitments in 2025Raised a Firm Record $20.5 Billion of New Investment CapitalLaunched GP-Led Secondaries Strategy Golub Capital delivered another year of “good boring,” consistent results for its stakeholders in 2025, aided by its commitment to specialization. “We have long believed that specialization is a key source of competitive advantage for Golub Capital,” said David Golub, President of the Firm. “The past year validated this. Our deep relationships, scale and expertise enabled us to continue delivering strong results for investors, sponsors, portfolio companies and our team despite a muted M&A environment and high levels of credit stress across the private equity ecosystem. We are grateful for our clients’ trust and remain committed to building long-term, win-win partnerships that endure through market cycles.” 2025 Highlights, based on preliminary results:1 Delivering strong credit performanc

Xsolla Kicks Off Two Weeks of Industry Programming, Community Events, and Expanding Support for Global Developers Across the UK at the Industry’s Biggest Winter Event8.1.2026 16:00:00 CET | Press release

Coordinated Activations in the UK Underscore Xsolla’s Ongoing Commitment to Building All The Things for the Video Community in Europe Xsolla, a global video game commerce company that helps developers launch, grow, and monetize their games, today announces a comprehensive program of events and activations across the United Kingdom taking place from January 10 to 22, 2026. This coordinated programming schedule reflects Xsolla’s continued investment in the UK and European games ecosystem. Capitalizing on a pivotal moment in the global games calendar, Xsolla is bringing developers, partners, and creators together through partnerships, live events, thought leadership, and community building. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260108943976/en/ (Graphic: Xsolla) “Pocket Gamer Connects London brings together one of the most diverse and forward-thinking communities in the mobile global games industry,” said Berkley Egene

AMRA Medical Introduces AMRA® BCP Scan in the Netherlands Through a Strategic Partnership with Prescan, a National Preventative Health Leader8.1.2026 15:31:00 CET | Press release

AMRA Medical, the global leader in MRI-based fat distribution and muscle composition analytics, alongside Dutch preventative healthcare leader Prescan, are pleased to announce the official launch of our cutting-edge AMRA® BCP Scan service, powered by AMRA® Profiler (CE, NB 2862), in the Netherlands. The launch, which marks BCP Scan’s third new market entry of 2025 (Sweden & Germany), expands the availability of our service within the EU into the Netherlands through an exclusive partnership with Prescan, an independent health & wellness clinic in Baarn which specializes in preventive health screenings and care. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260108381985/en/ AMRA® BCP Scan available at Prescan AMRA’s CEO, Olof Dahlqvist Leinhard, stated, “This is another important step in bringing our mission of driving scientific breakthroughs into the clinic by enabling deeper understanding of health and disease through MRI-

Nexo Unveils Zero-interest Credit with 0% APR and No Fees8.1.2026 15:00:00 CET | Press release

A new, zero-cost way to unlock liquidity without selling your crypto or facing premature liquidation. Zero-interest Credit offers a clear repayment path from day one, with built-in downside protection for added confidence. Nexo, the premier digital assets wealth platform, today announced the launch of Zero-interest Credit (ZiC), now joining the Nexo Credit Line as a flagship borrowing solution. ZiC enables Bitcoin and Ethereum holders to access liquidity at 0% interest through a fixed-duration term, free from the risk of premature forced liquidation. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260108785934/en/ Zero-interest Credit by Nexo Previously available through Nexo’s Private and OTC services, structured zero-interest borrowing has been used by Nexo’s private channels and is now broadly available through Zero-interest Credit. In 2025, it has enabled access to more than $140 million in liquidity. A broad solution for

ITRS Acquires IP-Label to Strengthen Digital Experience Monitoring Capabilities and Expand European Presence8.1.2026 15:00:00 CET | Press release

Strategic acquisition adds 310+ enterprise customers and proven Ekara DEM platform, solidifying ITRS's position as the leading observability platform for financial services and regulated enterprises ITRS, a leading provider of real-time IT monitoring and observability solutions for financial services and regulated industries, today announced it has signed a definitive agreement to acquire IP-Label, a premier Digital Experience Monitoring (DEM) provider headquartered in France. The acquisition strengthens ITRS's DEM capabilities and significantly expands its European market presence. IP-Label serves 310+ enterprise customers across 25 countries through its AI-powered Ekara platform, which provides comprehensive synthetic transaction monitoring (STM), Real User Monitoring (RUM), and AI-driven incident triage to proactively identify and resolve performance issues before they affect customers or employees. The Ekara platform's unique capabilities include monitoring of complex web applicati

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye