The Filigran State of Threat Management report reveals that 93% of organizations struggle to maintain accurate attack surface visibility despite collecting vast amounts of cyber risk data.
Key Points
- Only 41% of organizations have a consolidated view of their cyber risk exposure, leaving most teams working across disconnected systems.
- Security analysts spend an average of 17 hours per week, or 42% of their time, investigating risks that are ultimately deemed low priority or non-exploitable.
- While 99% of security operations centers use threat intelligence, only 45% have successfully integrated and operationalized these feeds into their workflows.
- Organizations currently use an average of 14 threat intelligence feeds, yet 97% report difficulty determining if identified exposures are actually exploitable.
- North American organizations lead in risk visibility at 52%, significantly outpacing EMEA at 37% and APAC at 31%.
- Adoption of Continuous Threat Exposure Management (CTEM) programs correlates with higher usage of automated security tools and more mature risk assessment practices.