Report by SecurityScorecard
2025 Supply Chain Cybersecurity Trends
Key Findings
Only 26% of organizations incorporate incident response into their supply chain cybersecurity programs.
Nearly 40% of respondents identified data overload and the inability to prioritize issues and threats as their biggest supply chain cybersecurity challenge
79% of organizations state that less than half of their nth-party supply chain is currently covered by cybersecurity programs.
88% of cybersecurity leaders are concerned about supply chain cyber risks.
More than 70% of organizations reported experiencing at least one material third-party cybersecurity incident in the past year.
5% of organizations suffered ten or more third-party cybersecurity incidents.
Fewer than half of organizations monitor cybersecurity across even 50% of their nth-party supply chains.