Swimlane

33 STATS3 REPORTS

All Statistics

66% of organizations faced a security incident in the past year.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
Security incident

64% of organizations fail to continuously assess vendor and supplier security after onboarding.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
Vendor security assessmentSupplier security assessmentOnboarding

64% of organizations report that AI and automation have increased their focus on the basics of cyber hygiene.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
AIAutomationCyber hygiene

73% of organizations take longer than 24 hours to apply critical patches.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
PatchingCritical patches

41% of organizations rank expanding AI usage and expertise as the top improvement area.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
AI

67% of organizations audit user access privileges quarterly or less often.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
User access privilege

84% of organizations say AI and automation enhance cyber hygiene.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
AIAutomationCyber hygiene

25% of organizations take between 8 and 30 days to apply critical patches.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
PatchingCritical patches

92% of organizations that experienced a security incident in the past year believe stronger cyber hygiene could have prevented it.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
Security incidentCyber hygiene

15% of organizations self-identify as 'leading' in cyber hygiene maturity.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
Cyber hygieneMaturity

52% of organizations identify the human element, including employee training and awareness, as their greatest weakness.

SwimlaneCracks in the Foundation: Why Basic Security Still Fails·Nov 12, 2025
Human elementEmployee trainingEmployee awareness

41% of IT and security decision-makers say budget or resource cuts have led to reduced capacity for detection and monitoring.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseBudget

79% of U.K. IT and security decision-makers say growing U.S. cybersecurity instability has made them more cautious with U.S.-based vendors.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseUKUS cybersecurity instability

91% of organisations have taken new steps to protect operational resilience due to waning federal support.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseOperational resilience

29% of U.K. IT and security decision-makers have delayed or cancelled contracts due to growing U.S. cybersecurity instability.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseUKUS cybersecurity instability

48% of IT and security decision-makers say budget or resource cuts have led to team restructuring.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseBudget

52% of IT and security decision-makers say budget or resource cuts have led to increased workloads without added support.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseBudget

Over half (54%) of organisations have developed internal cybersecurity frameworks independent of government guidance.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseCybersecurity frameworks

85% of security teams have experienced budget or resource-related changes in the past six months.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseBudget

81% of IT and security decision-makers believe that eroding confidence in public-private coordination will hinder threat intelligence sharing.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseThreat intelligence sharing

86% of IT and security decision-makers warn that the disbanding of the Cyber Safety Review Board will disrupt post-incident coordination.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseCyber Safety Review Board

79% of IT and security decision-makers say federal defunding has increased overall cyber risk.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseFederal defunding

As a result of U.S. cybersecurity instability, 43% of U.K. IT and security decision-makers have reassessed existing partnerships.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseUKUS cybersecurity instability

63% of IT and security decision-makers state that recent or anticipated cuts are affecting team structure and staffing plans.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseFederal defunding

Nearly half (46%) of IT and security decision-makers report reducing their planned security investments for 2025 due to ongoing federal funding instability.

SwimlaneFederal Cyber Priorities Reshape Security Strategy·Aug 13, 2025
EnterpriseFederal defundingSecurity investment

Organisations cited financial penalties (39%), security breaches (36%), and reputational damage (36%) as the top risks of poor compliance management

SwimlaneGRC Chaos: The High Price of Audits and Non-Compliance·Apr 15, 2025
Compliance Compliance ManagementGRC

62% say their audit evidence-gathering process is at least occasionally error-prone.

SwimlaneGRC Chaos: The High Price of Audits and Non-Compliance·Apr 15, 2025
Compliance Audit

Over half of organisations (54%) spend more than five hours each week on manual compliance tasks.

SwimlaneGRC Chaos: The High Price of Audits and Non-Compliance·Apr 15, 2025
Compliance Manual ProcessesGRC

90% of organisations are concerned that poor collaboration between GRC and security teams is undermining audit preparation.

SwimlaneGRC Chaos: The High Price of Audits and Non-Compliance·Apr 15, 2025
Compliance GRCSecurityCollaboration

96% of organisations say it’s challenging to keep up with the growing number of industry regulations.

SwimlaneGRC Chaos: The High Price of Audits and Non-Compliance·Apr 15, 2025
Compliance RegulationsGRC

Only 29% of all organisations say their compliance programmes consistently meet internal and external standards.

SwimlaneGRC Chaos: The High Price of Audits and Non-Compliance·Apr 15, 2025
Compliance Compliance programGRC

On average, just 39% of the audit evidence process is automated.

SwimlaneGRC Chaos: The High Price of Audits and Non-Compliance·Apr 15, 2025
Compliance AuditTool stack AutomationGRC

92% of respondents rely on three or more tools to gather audit evidence.

SwimlaneGRC Chaos: The High Price of Audits and Non-Compliance·Apr 15, 2025
Compliance AuditsTool stack ToolsGRC