The average dwell time is nine weeks.
LANDSCAPE
While only 53% of security teams (down from 66% last year) say it's harder to keep up with security requirements, everyone struggles to escape a purely reactive mode:
GOALS
Few organizations have a holistic approach to resilience, but it’s clearly what they’re aiming for:
Just 31% of orgs have an enterprise-wide approach to resilience.
Dwell time for successful penetrations averages nine weeks.
THREATS
Fifty-two percent of orgs report suffering a recent data breach, up from 49% last year, and 39% the year before. Ransomware is ubiquitous: This year, 87% of orgs say they were targets of ransomware attacks (up from 79% last year). Effects include:
See the report for details on supply chain attacks, business email compromise, malicious insiders and DDoS attacks.
LESSONS
To meet new and persistent challenges, 51% of respondents plan investments that combine cyber resilience with traditional business continuity/disaster recovery preparation.
Leading security orgs in our survey also: