Report by AuditBoard

Risk trends to stay ahead in 2026

12 FINDINGSPublished Oct 15, 2025
View Original Report →

Key Findings

45% of enterprises are updating existing frameworks.

EnterpriseFramework

35% of enterprises are adopting new frameworks.

EnterpriseFramework

40% of enterprises plan to increase cybersecurity staffing.

EnterpriseStaffBudget

The median enterprise maps its controls to about seven frameworks.

EnterpriseFramework

The median enterprise maps its controls to about 2,700 requirements.

EnterpriseFramework

The GDPR is one of the top 5 frameworks adopted by organizations.

EnterpriseFrameworkGDPR

Fewer than 30% of enterprises feel prepared for upcoming AI governance requirements.

EnterpriseAIAI governance

ISO 27001 is one of the top 5 frameworks adopted by organizations.

EnterpriseFrameworkISO 27001

NIST Cybersecurity Framework (CSF) 2.0 is one of the top 5 frameworks adopted by organizations.

EnterpriseFrameworkNIST CSF

Enterprises conducting six or more risk assessments per year report stronger overall risk discipline and telemetry scores.

EnterpriseRisk assessment

The Secure Controls Framework (SCF) is one of the top 5 frameworks adopted by organizations.

EnterpriseFrameworkSCF

SOC 2 is one of the top 5 frameworks adopted by organizations.

EnterpriseFrameworkSOC 2