Swimlane

57 stats5 reports

All Statistics

88% of security operations professionals and leaders report that AI makes their work more satisfying.

Security OperationsJob SatisfactionAI

47% of security operations professionals and leaders say AI expands their capacity to handle security activity.

Security OperationsWorkloadAI

43% of security operations professionals and leaders save time on known or repetitive threat patterns because of AI.

Security OperationsThreat DetectionAutomationAI

Only 32% of enterprises apply AI and automation to clearly different tasks based on their distinct strengths.

AIAutomationWorkflowEnterprise

92% of IT and cybersecurity decision-makers at enterprises say automation has met or exceeded operational expectations in security operations.

AutomationSecurity OperationsEnterprise

67% of C-suite leaders at enterprises report being very confident in AI’s outputs.

Leadership PerceptionAIEnterprise

67% of organizations audit user access privileges quarterly or less often.

User access privilege

66% of organizations faced a security incident in the past year.

Security incident

64% of organizations fail to continuously assess vendor and supplier security after onboarding.

Vendor security assessmentSupplier security assessmentOnboarding

Over half (54%) of organisations have developed internal cybersecurity frameworks independent of government guidance.

EnterpriseCybersecurity frameworks

81% of IT and security decision-makers believe that eroding confidence in public-private coordination will hinder threat intelligence sharing.

EnterpriseThreat intelligence sharing

52% of IT and security decision-makers say budget or resource cuts have led to increased workloads without added support.

EnterpriseBudget

Only 29% of all organisations say their compliance programmes consistently meet internal and external standards.

Compliance Compliance programGRC

On average, just 39% of the audit evidence process is automated.

Compliance AuditTool stack AutomationGRC

62% say their audit evidence-gathering process is at least occasionally error-prone.

Compliance Audit

35% of security operations professionals and leaders redirect time saved on routine casework toward investigating complex threats.

Security OperationsIncident ResponseAI

35% of security operations professionals and leaders redirect time saved on routine casework toward strategic cross-functional work.

Security OperationsAI

34% of security operations professionals and leaders redirect time saved on routine casework toward validating AI-generated findings.

Security OperationsAI ValidationAutomationAI

48% of security operations professionals and leaders prioritize their own judgment when AI recommendations conflict with evidence or risk disrupting critical business operations.

Security OperationsHuman JudgmentRisk ManagementAI

24% of security operations professionals and leaders say AI limits their skill development.

Security OperationsSkills DevelopmentWorkforceAI

91% of security operations professionals and leaders who say AI limits their skill development still report higher job satisfaction.

Job SatisfactionSecurity OperationsSkills DevelopmentAI

19% of security operations professionals and leaders cite analyst overreliance on AI-generated recommendations as the single greatest risk of expanding AI in SecOps.

Security OperationsAI RiskOperational RiskAI

29% of enterprises report transitions between teams or tools as a meaningful source of workflow delay.

Team CoordinationWorkflow BottlenecksEnterprise

87% of enterprises have deployed AI and automation in security operations simultaneously.

Security OperationsAIAutomationEnterprise

52% of C-suite leaders at enterprises report that AI exceeded expectations.

AILeadership PerceptionEnterprise

17% of managers at enterrpises report that AI exceeded expectations.

Practitioner PerceptionAIEnterprise

91% of enterprises experience workflow bottlenecks despite deploying AI and automation.

Workflow BottlenecksSecurity OperationsAIAutomationEnterprise

Only 9% of enterprises report no significant workflow delays.

Workflow BottlenecksOperational DelaysEnterprise

44% of enterprises identify decision-making and approvals as a top bottleneck in workflows.

Decision MakingWorkflow BottlenecksEnterprise

21% of managers at enterprises report being very confident in AI’s outputs.

Practitioner PerceptionAIEnterprise

39% of enterprises identify investigation and analysis as a top bottleneck in workflows.

Investigation And AnalysisWorkflow BottlenecksEnterprise

55% of teams at enterprises report that AI has met expectations in security operations.

AISecurity OperationsEnterprise

78% of IT and cybersecurity decision-makers at enterprises say AI delivers greater financial return than automation.

AIAI ROISecurity OperationsAutomationEnterprise

64% of organizations report that AI and automation have increased their focus on the basics of cyber hygiene.

AIAutomationCyber hygiene

73% of organizations take longer than 24 hours to apply critical patches.

PatchingCritical patches

41% of organizations rank expanding AI usage and expertise as the top improvement area.

AI

84% of organizations say AI and automation enhance cyber hygiene.

AIAutomationCyber hygiene

25% of organizations take between 8 and 30 days to apply critical patches.

PatchingCritical patches

92% of organizations that experienced a security incident in the past year believe stronger cyber hygiene could have prevented it.

Security incidentCyber hygiene

15% of organizations self-identify as 'leading' in cyber hygiene maturity.

Cyber hygieneMaturity

52% of organizations identify the human element, including employee training and awareness, as their greatest weakness.

Human elementEmployee trainingEmployee awareness

86% of IT and security decision-makers warn that the disbanding of the Cyber Safety Review Board will disrupt post-incident coordination.

EnterpriseCyber Safety Review Board

Nearly half (46%) of IT and security decision-makers report reducing their planned security investments for 2025 due to ongoing federal funding instability.

EnterpriseFederal defundingSecurity investment

41% of IT and security decision-makers say budget or resource cuts have led to reduced capacity for detection and monitoring.

EnterpriseBudget

79% of U.K. IT and security decision-makers say growing U.S. cybersecurity instability has made them more cautious with U.S.-based vendors.

EnterpriseUKUS cybersecurity instability

91% of organisations have taken new steps to protect operational resilience due to waning federal support.

EnterpriseOperational resilience

29% of U.K. IT and security decision-makers have delayed or cancelled contracts due to growing U.S. cybersecurity instability.

EnterpriseUKUS cybersecurity instability

85% of security teams have experienced budget or resource-related changes in the past six months.

EnterpriseBudget

48% of IT and security decision-makers say budget or resource cuts have led to team restructuring.

EnterpriseBudget

79% of IT and security decision-makers say federal defunding has increased overall cyber risk.

EnterpriseFederal defunding