Swimlane

47 stats4 reports

All Statistics

29% of enterprises report transitions between teams or tools as a meaningful source of workflow delay.

Team CoordinationWorkflow BottlenecksEnterprise

87% of enterprises have deployed AI and automation in security operations simultaneously.

Security OperationsAIAutomationEnterprise

52% of C-suite leaders at enterprises report that AI exceeded expectations.

AILeadership PerceptionEnterprise

66% of organizations faced a security incident in the past year.

Security incident

67% of organizations audit user access privileges quarterly or less often.

User access privilege

64% of organizations fail to continuously assess vendor and supplier security after onboarding.

Vendor security assessmentSupplier security assessmentOnboarding

Nearly half (46%) of IT and security decision-makers report reducing their planned security investments for 2025 due to ongoing federal funding instability.

EnterpriseFederal defundingSecurity investment

41% of IT and security decision-makers say budget or resource cuts have led to reduced capacity for detection and monitoring.

EnterpriseBudget

79% of U.K. IT and security decision-makers say growing U.S. cybersecurity instability has made them more cautious with U.S.-based vendors.

EnterpriseUKUS cybersecurity instability

62% say their audit evidence-gathering process is at least occasionally error-prone.

Compliance Audit

Over half of organisations (54%) spend more than five hours each week on manual compliance tasks.

Compliance Manual ProcessesGRC

90% of organisations are concerned that poor collaboration between GRC and security teams is undermining audit preparation.

Compliance GRCSecurityCollaboration

Only 32% of enterprises apply AI and automation to clearly different tasks based on their distinct strengths.

AIAutomationWorkflowEnterprise

17% of managers at enterrpises report that AI exceeded expectations.

Practitioner PerceptionAIEnterprise

91% of enterprises experience workflow bottlenecks despite deploying AI and automation.

Workflow BottlenecksSecurity OperationsAIAutomationEnterprise

Only 9% of enterprises report no significant workflow delays.

Workflow BottlenecksOperational DelaysEnterprise

44% of enterprises identify decision-making and approvals as a top bottleneck in workflows.

Decision MakingWorkflow BottlenecksEnterprise

92% of IT and cybersecurity decision-makers at enterprises say automation has met or exceeded operational expectations in security operations.

AutomationSecurity OperationsEnterprise

67% of C-suite leaders at enterprises report being very confident in AI’s outputs.

Leadership PerceptionAIEnterprise

21% of managers at enterprises report being very confident in AI’s outputs.

Practitioner PerceptionAIEnterprise

39% of enterprises identify investigation and analysis as a top bottleneck in workflows.

Investigation And AnalysisWorkflow BottlenecksEnterprise

55% of teams at enterprises report that AI has met expectations in security operations.

AISecurity OperationsEnterprise

78% of IT and cybersecurity decision-makers at enterprises say AI delivers greater financial return than automation.

AIAI ROISecurity OperationsAutomationEnterprise

64% of organizations report that AI and automation have increased their focus on the basics of cyber hygiene.

AIAutomationCyber hygiene

73% of organizations take longer than 24 hours to apply critical patches.

PatchingCritical patches

41% of organizations rank expanding AI usage and expertise as the top improvement area.

AI

84% of organizations say AI and automation enhance cyber hygiene.

AIAutomationCyber hygiene

25% of organizations take between 8 and 30 days to apply critical patches.

PatchingCritical patches

92% of organizations that experienced a security incident in the past year believe stronger cyber hygiene could have prevented it.

Security incidentCyber hygiene

15% of organizations self-identify as 'leading' in cyber hygiene maturity.

Cyber hygieneMaturity

52% of organizations identify the human element, including employee training and awareness, as their greatest weakness.

Human elementEmployee trainingEmployee awareness

91% of organisations have taken new steps to protect operational resilience due to waning federal support.

EnterpriseOperational resilience

29% of U.K. IT and security decision-makers have delayed or cancelled contracts due to growing U.S. cybersecurity instability.

EnterpriseUKUS cybersecurity instability

85% of security teams have experienced budget or resource-related changes in the past six months.

EnterpriseBudget

48% of IT and security decision-makers say budget or resource cuts have led to team restructuring.

EnterpriseBudget

79% of IT and security decision-makers say federal defunding has increased overall cyber risk.

EnterpriseFederal defunding

52% of IT and security decision-makers say budget or resource cuts have led to increased workloads without added support.

EnterpriseBudget

86% of IT and security decision-makers warn that the disbanding of the Cyber Safety Review Board will disrupt post-incident coordination.

EnterpriseCyber Safety Review Board

As a result of U.S. cybersecurity instability, 43% of U.K. IT and security decision-makers have reassessed existing partnerships.

EnterpriseUKUS cybersecurity instability

63% of IT and security decision-makers state that recent or anticipated cuts are affecting team structure and staffing plans.

EnterpriseFederal defunding

81% of IT and security decision-makers believe that eroding confidence in public-private coordination will hinder threat intelligence sharing.

EnterpriseThreat intelligence sharing

Over half (54%) of organisations have developed internal cybersecurity frameworks independent of government guidance.

EnterpriseCybersecurity frameworks

96% of organisations say it’s challenging to keep up with the growing number of industry regulations.

Compliance RegulationsGRC

Organisations cited financial penalties (39%), security breaches (36%), and reputational damage (36%) as the top risks of poor compliance management

Compliance Compliance ManagementGRC

Only 29% of all organisations say their compliance programmes consistently meet internal and external standards.

Compliance Compliance programGRC

92% of respondents rely on three or more tools to gather audit evidence.

Compliance AuditsTool stack ToolsGRC

On average, just 39% of the audit evidence process is automated.

Compliance AuditTool stack AutomationGRC