Swimlane
Reports
All Statistics
88% of security operations professionals and leaders report that AI makes their work more satisfying.
47% of security operations professionals and leaders say AI expands their capacity to handle security activity.
43% of security operations professionals and leaders save time on known or repetitive threat patterns because of AI.
Only 32% of enterprises apply AI and automation to clearly different tasks based on their distinct strengths.
92% of IT and cybersecurity decision-makers at enterprises say automation has met or exceeded operational expectations in security operations.
67% of C-suite leaders at enterprises report being very confident in AI’s outputs.
67% of organizations audit user access privileges quarterly or less often.
66% of organizations faced a security incident in the past year.
64% of organizations fail to continuously assess vendor and supplier security after onboarding.
Over half (54%) of organisations have developed internal cybersecurity frameworks independent of government guidance.
81% of IT and security decision-makers believe that eroding confidence in public-private coordination will hinder threat intelligence sharing.
52% of IT and security decision-makers say budget or resource cuts have led to increased workloads without added support.
Only 29% of all organisations say their compliance programmes consistently meet internal and external standards.
On average, just 39% of the audit evidence process is automated.
62% say their audit evidence-gathering process is at least occasionally error-prone.
35% of security operations professionals and leaders redirect time saved on routine casework toward investigating complex threats.
35% of security operations professionals and leaders redirect time saved on routine casework toward strategic cross-functional work.
34% of security operations professionals and leaders redirect time saved on routine casework toward validating AI-generated findings.
48% of security operations professionals and leaders prioritize their own judgment when AI recommendations conflict with evidence or risk disrupting critical business operations.
24% of security operations professionals and leaders say AI limits their skill development.
91% of security operations professionals and leaders who say AI limits their skill development still report higher job satisfaction.
19% of security operations professionals and leaders cite analyst overreliance on AI-generated recommendations as the single greatest risk of expanding AI in SecOps.
29% of enterprises report transitions between teams or tools as a meaningful source of workflow delay.
87% of enterprises have deployed AI and automation in security operations simultaneously.
52% of C-suite leaders at enterprises report that AI exceeded expectations.
17% of managers at enterrpises report that AI exceeded expectations.
91% of enterprises experience workflow bottlenecks despite deploying AI and automation.
Only 9% of enterprises report no significant workflow delays.
44% of enterprises identify decision-making and approvals as a top bottleneck in workflows.
21% of managers at enterprises report being very confident in AI’s outputs.
39% of enterprises identify investigation and analysis as a top bottleneck in workflows.
55% of teams at enterprises report that AI has met expectations in security operations.
78% of IT and cybersecurity decision-makers at enterprises say AI delivers greater financial return than automation.
64% of organizations report that AI and automation have increased their focus on the basics of cyber hygiene.
73% of organizations take longer than 24 hours to apply critical patches.
41% of organizations rank expanding AI usage and expertise as the top improvement area.
84% of organizations say AI and automation enhance cyber hygiene.
25% of organizations take between 8 and 30 days to apply critical patches.
92% of organizations that experienced a security incident in the past year believe stronger cyber hygiene could have prevented it.
15% of organizations self-identify as 'leading' in cyber hygiene maturity.
52% of organizations identify the human element, including employee training and awareness, as their greatest weakness.
86% of IT and security decision-makers warn that the disbanding of the Cyber Safety Review Board will disrupt post-incident coordination.
Nearly half (46%) of IT and security decision-makers report reducing their planned security investments for 2025 due to ongoing federal funding instability.
41% of IT and security decision-makers say budget or resource cuts have led to reduced capacity for detection and monitoring.
79% of U.K. IT and security decision-makers say growing U.S. cybersecurity instability has made them more cautious with U.S.-based vendors.
91% of organisations have taken new steps to protect operational resilience due to waning federal support.
29% of U.K. IT and security decision-makers have delayed or cancelled contracts due to growing U.S. cybersecurity instability.
85% of security teams have experienced budget or resource-related changes in the past six months.
48% of IT and security decision-makers say budget or resource cuts have led to team restructuring.
79% of IT and security decision-makers say federal defunding has increased overall cyber risk.