Business Wire

NY-SECURITYSCORECARD

18.1.2023 08:01:36 CET | Business Wire | Press release

Share
SecurityScorecard Research Finds 48% of Global Critical Manufacturing At Significant Risk of Breach

SecurityScorecard, the global leader in cybersecurity ratings, today announced the results of its new report, Addressing the Trust Deficit In Critical Infrastructure, which revealed 48% of critical manufacturing organizations ranked “C,” “D,” or “F” on SecurityScorecard’s security ratings platform. Published during the World Economic Forum (WEF) Annual Meeting, the report analyzed the current state of cyber resilience in the critical infrastructure sectors such as Energy, Chemical, Healthcare, and others, as designated by the Cybersecurity and Infrastructure Security Agency (CISA). Organizations with an “A” security rating are 7.7 times less likely to sustain a breach than those with an “F” rating.

“Security ratings are a trusted barometer of cyber resilience and the time is now for policymakers and organizations to make cyber risk measurement mandatory,” said Aleksandr Yampolskiy, co-founder and CEO of SecurityScorecard. “Cyberattacks in the last 10 years have gotten much worse, more complex, and increasingly have targeted critical infrastructure, thereby undermining the public’s trust in the cyber resilience of our global economy.”

SecurityScorecard provides comprehensive security ratings, automated assessments, and guidance from industry experts, providing a patented and easy-to-understand A-F graded scorecards for improved communication, effective compliance reporting, and more informed decision-making.

According to the World Economic Forum, only 19% of cyber leaders feel confident that their organizations are cyber resilient. SecurityScorecard recently joined the World Economic Forum Global Innovators Community, contributing to WEF’s Centre for Cybersecurity’s initiative to address systemic challenges, improve trust, and build cyber resilience. Yampolskiy is attending the WEF Annual Meeting in Davos to engage with the world’s foremost public- and private-sector leaders on mitigating global cyber risk, including within critical infrastructure.

Critical Manufacturing Patching Cadence Falls Amid Escalating Attack Cadence

Cyber incidents affecting critical infrastructure, once comparatively rare, have become far more frequent in recent years as nation-states and their proxies escalate their pursuit of geopolitical objectives. Data from the Federal Bureau of Investigation showed that 14 of the 16 sectors considered critical infrastructure by the U.S. government experienced at least one ransomware attack in 2021.

SecurityScorecard assessed these industries to measure their current state of cyber resilience. It found that critical manufacturing is highly vulnerable based on analysis of all organizations under that category in The Forbes Global 2000 list. SecurityScorecard considers 10 factors when developing an organization’s security rating. Of those 10, the patching cadence ‘factor’ for critical manufacturing experienced a significant drop from 2021 to 2022, moving from 88 (B) to 76 (C).

High and Medium-Severity CVEs Strain Resources

The decline in patching is likely due to an increased volume of vulnerabilities. Critical manufacturing experienced a 38% year-over-year increase in high severity vulnerabilities. In 2022 alone, 76% of critical manufacturing organizations have high and medium-severity CVEs.

These CVEs may, in some cases, facilitate ransomware groups’ targeting of organizations in the sector. Manufacturers experienced an increase in malware infections from 2021 to 2022. In 2022, 37% of critical manufacturing organizations had malware infections.

“While investing in more technology might seem burdensome to resource-constrained critical infrastructure operators, the reality is that cybersecurity ratings technology is extremely cost-effective, especially when you consider the catastrophic cost of a breach is $9.44 million on average for U.S. organizations,” continued Yampolskiy. “By leveraging security ratings, these organizations have a simple way to build resilience and make more informed decisions to strengthen their cyber defenses by confidently measuring risk and quantifying the trustworthiness of their partners, contractors, third-and fourth-party vendors, and supply chains.”

To view the full research paper, please visit: https://resources.securityscorecard.com/davos-2023/addressing-the-trust-deficit

About SecurityScorecard

Funded by world-class investors including Evolution Equity Partners, Silver Lake Waterman, Sequoia Capital, GV, Riverwood Capital, and others, SecurityScorecard is the global leader in cybersecurity ratings with more than 12 million companies continuously rated. Founded in 2013 by security and risk experts Dr. Aleksandr Yampolskiy and Sam Kassoumeh, SecurityScorecard's patented rating technology is used by over 30,000 organizations for enterprise risk management, third-party risk management, board reporting, due diligence, cyber insurance underwriting, and regulatory oversight. SecurityScorecard is the first cybersecurity ratings company to offer digital forensics and incident response services, providing a 360-degree approach to security prevention and response for its worldwide customer and partner base. SecurityScorecard continues to make the world a safer place by transforming the way companies understand, improve and communicate cybersecurity risk to their boards, employees and vendors. Every organization has the universal right to their trusted and transparent Instant SecurityScorecard rating. For more information, visit securityscorecard.com or connect with us on LinkedIn.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20230117005416/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Actiphy Inc. Unveils Actiphy ImageReplicator™15.6.2026 17:00:00 CEST | Press release

A Dedicated Tool for Secure Offsite Backup Replication Actiphy Inc., a leading provider of backup, disaster recovery, and virtualization software, today announced the release of Actiphy ImageReplicator, a dedicated replication solution for ActiveImage Protector backup images. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260615886945/en/ Actiphy ImageReplicator dashboard displaying centralized replication management, job status, replication history, and retention monitoring across protected backup images. As ransomware attacks, cyber threats, and infrastructure failures continue to grow in frequency and sophistication, organizations need reliable ways to protect backup data from loss, corruption, and unauthorized access. When primary systems are compromised, backup data becomes the final line of defense for maintaining business continuity and ensuring rapid recovery. Organizations increasingly rely on 3-2-1 backup strategie

Andersen Consulting styrker sine tilbud inden for digital transformation og cybersikkerhed med HeadMind Partners15.6.2026 15:47:00 CEST | Pressemeddelelse

Andersen Consulting styrker sin platform gennem en samarbejdsaftale med HeadMind Partners, et førende europæisk konsulenthus med speciale i cybersikkerhed, digital transformation og ai. Med sin unikke kombination af 25 års erhvervserfaring og ekspertise inden for teknologi og data hjælper HeadMind Partners sine klienter – store virksomheder fra både den private og offentlige sektor – med at styrke deres digitale modstandskraft og cybersikkerhed, forbedre deres operationelle effektivitet og opbygge robuste og uafhængige ai-løsninger. Virksomheden har hovedsæde i Paris og opererer i dag i Frankrig og Belgien, hvor den trækker på multidisciplinære teams bestående af 500 cybersikkerhedseksperter, 70 ai-ingeniører og 400 specialister i digital transformation for at levere værdiskabende og friktionsfrie løsninger inden for cybersikkerhed, ai og digital transformation. HeadMind Partners betjener en mangfoldig og velanset kundeportefølje på tværs af industri-, energi- og luksusvaresektoren sam

Energy Dome and SRP to Add Long-Duration Energy Storage Project to the Grid, Expand Google Collaboration15.6.2026 15:30:00 CEST | Press release

The pilot will be part of Google and SRP’s effort to advance new non-lithium-ion long-duration energy storage technologies Energy Dome, a leading provider of innovative capacity solutions for utilities and AI infrastructure, and Salt River Project (SRP), a not-for-profit public power utility serving the greater Phoenix metropolitan area, today announced an agreement to add a 19 megawatt (MW), 10-hour carbon dioxide-based (CO2) battery system to the grid. The project is planned to be co-located on the site of SRP’s Coronado Generating Station (CGS) in St. Johns, Arizona, and it will be developed under a 20-year tolling agreement, with Energy Dome owning and operating the facility and SRP dispatching its output. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260615027901/en/ Image: Rendering of Energy Dome’s energy storage system located at the Coronado Generating Station site The project is also part of Google and SRP’s innov

SLB Launches Digital Marketplace to Scale AI and Digital Innovation Across Energy15.6.2026 14:15:00 CEST | Press release

Curated marketplace connects energy professionals, developers and partners to discover, deploy and scale trusted AI agents, domain models and digital applications Global energy technology company SLB (NYSE: SLB) today announced the launch of the SLB Digital Marketplace, a curated digital destination designed to help energy companies rapidly discover and deploy specialized AI agents, domain models, skills, tools, data connectors and digital applications within their existing digital environments. The SLB Digital Marketplace extends the company’s open platform strategy to its Tela™ agentic AI assistant by enabling SLB, partners, independent software vendors (ISVs), developers and customers to bring purpose-built digital capabilities to the energy industry through a single, governed channel. All marketplace offerings are certified against SLB standards for security, interoperability and compatibility before listing. The launch comes as the industry moves toward agentic AI — where software

Thales at Eurosatory 2026: Ready today. Ready tomorrow15.6.2026 14:01:00 CEST | Press release

Thales pavilion (stand C247),Parc des Expositions, Paris Nord Villepinte, FranceMonday 15 to Friday 19 June, 2026. As Eurosatory 2026 opens its doors, Thales is pleased to share with you a complete overview of the announcements that will be made during the first day of this international defense and security show. This document centralises all our news, innovations and partnerships, released on June, 15th, 2026 with direct links to the associated press releases: This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260615204020/en/ Thales at Eurosatory 2026: Ready today. Ready tomorrow.Thales unveils new AI-powered training data analytics platform to enhance military training.Thales launches next-generation 70mm laser-guided rocket dedicated for counter-drone operations.Thales unveils next-generation Bushmaster Mulga Utility Variant.Thales launches RapidStriker, a complete system for protection against drones.Renault Group and Thal

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye