AUTO-UPDATED

Organizations struggle to prioritize known cyber risks

The Filigran State of Threat Management report reveals that 93% of organizations struggle to maintain accurate attack surface visibility despite collecting vast amounts of cyber risk data.

Key Points

  • Only 41% of organizations have a consolidated view of their cyber risk exposure, leaving most teams working across disconnected systems.
  • Security analysts spend an average of 17 hours per week, or 42% of their time, investigating risks that are ultimately deemed low priority or non-exploitable.
  • While 99% of security operations centers use threat intelligence, only 45% have successfully integrated and operationalized these feeds into their workflows.
  • Organizations currently use an average of 14 threat intelligence feeds, yet 97% report difficulty determining if identified exposures are actually exploitable.
  • North American organizations lead in risk visibility at 52%, significantly outpacing EMEA at 37% and APAC at 31%.
  • Adoption of Continuous Threat Exposure Management (CTEM) programs correlates with higher usage of automated security tools and more mature risk assessment practices.

Why it Matters

The inability to unify fragmented threat data creates significant operational friction and leaves organizations vulnerable to known, exploitable risks. By failing to prioritize threats effectively, companies waste valuable analyst time and remain exposed to attacks that could be mitigated through better automation and contextualized risk management.
Help Net Security Published by Anamarija Pogorelec
Read original