
Armis Research Finds One-Third of Global Organizations Experienced Multiple Security Breaches in Last 12 Months
Armis, the asset intelligence cybersecurity company, today announced the findings of its Global Attack Surface Management (ASM) Research which looked into organizational trends and challenges over the past 12 months.
Research commissioned with Vanson Bourne found that global organizations are facing an unprecedented level of cyber risk due to blind spots in their environment and that security teams are being overwhelmed with significant amounts of threat intelligence data lacking actionable insights. As a result, 61% of global organizations confirmed they had been breached at least once over the last 12 months, with 31% experiencing multiple breaches during the same period. The top four countries with organizations most likely to report being breached were the U.S., Singapore, Australia and New Zealand.
“Armis continues to warn about the evolving threat landscape and the impact of malicious cyberattacks targeting global organizations, national governments, state and local entities and society overall,” said Curtis Simpson, CISO, Armis. “Our research found that there’s much room for improvement in how global organizations can protect and manage their entire attack surface. It’s not a question of if, but when, an attack will occur – especially against critical infrastructure that society so heavily relies upon.”
Armis’ 2023 Global Attack Surface Management Research was compiled leveraging insights from IT security and IT decision-makers across the U.S., U.K., Germany, France, Singapore, Australia and New Zealand.
Key findings include:
The entire organizational attack surface is not being fully monitored, introducing significant exposures and unseen cybersecurity risks.
- On an average business day, 55,686 physical and virtual assets are connected to organizational networks. Global respondents shared that only 60% of these assets are monitored, leaving 40% unmonitored.
- Employees increasingly are using their own assets in business environments, with clear gaps in the enforcement of BYOD policies: 22% of respondents report having an official BYOD policy that is not enforced across all employees, 23% say they either have guidelines that employees are encouraged to follow or admit they don’t have any policies or guidelines around BYOD.
- Organizations, on average, can only account for around 60% of their assets when it comes to knowing things like asset location or the support status of these assets. Forgotten assets, like printers, can introduce critical security gaps – especially if security updates aren’t installed or patches applied.
An influx of data without automation and prioritization of threat intelligence is hindering security and IT pros’ ability to effectively remediate threats to protect the organization.
- Twenty-nine percent of respondents report that their cybersecurity team is overwhelmed by cyber threat information. Respondents from Germany (38%) were the most likely to report this.
- Just under half (45%) of those surveyed report using 10 or more different sources to collect data relating to threat intelligence and only between 52% and 57% of the processes relating to threat intelligence are automated on average, meaning that a lot of the work needed to make use of the intelligence is a manual effort.
- Only 58% of the information gathered from threat intelligence sources is actionable, on average. Only 2% of surveyed organizations report that all of the information they gather from threat intelligence sources is actionable.
Organizations are struggling to effectively manage physical and virtual assets connected to their network using too many tools to effectively action cybersecurity plans.
- Global respondents indicated that their organizations use 11 different tools to manage assets connected to their network, while 44% admit to still using manual spreadsheets.
- Employees are able to bypass security and download applications and software onto assets without the knowledge of IT or security teams. Three-quarters (75%) of global organizations report that this happens at least some of the time, with a quarter (25%) reporting that this is happening all the time. Without complete control, management and/or visibility over these assets, organizations are facing even more risk.
“Unfortunately, there is a correlation between the large percentage of the attack surface remaining unmonitored and the high rate of breaches experienced over the past year,” continued Simpson. “Unmanaged assets represent the growing attack surface yet organizational cyber tools and programs lack the visibility to understand and manage top cyber risks, exposures and threats. Threat actors are exploiting these material blind spots to execute today’s most impactful cyberattacks. It’s critical that IT departments modernize their approach by consolidating disjointed solutions and leveraging the latest innovative technologies to enable teams with real-time, automated insights and actionable plans to help safeguard mission-critical assets from cyber threats.”
“Our research found that there’s much room for improvement in how global organizations manage their threat landscape,” said Katie Haslett, Research Consultant, Vanson Bourne. “Respondents surveyed for this report agreed with that assessment, sharing that proactively increasing visibility into the attack surface and further defining policies and procedures surrounding virtual and physical assets is an area of growth for their organization.”
To read the full research report from Armis, including a comprehensive breakdown for each region, please visit the microsite: https://www.armis.com/attack-surface-management
To understand how the trends and challenges differ for each region read the regional press releases for the United Kingdom, France, Germany, Singapore and Australia and New Zealand.
To learn about how Armis Centrix™, the AI-powered cyber exposure management platform, is enabling organizations to address these critical cybersecurity challenges, please visit: https://www.armis.com/platform/armis-centrix/
Methodology and Demographics
Armis commissioned independent market research agency Vanson Bourne to conduct research into attack surface management within enterprise organizations. The study surveyed 900 IT security and IT decision-makers in May and June 2023 from organizations with 1,000 or more employees across the U.S., U.K., Germany, France, Singapore, Australia and New Zealand. Respondents were from organizations across all public and private sectors. All interviews were conducted using a rigorous multi-level screening process to ensure that only suitable candidates were given the opportunity to participate.
About Armis
Armis, the asset intelligence cybersecurity company, protects the entire attack surface and manages the organization's cyber risk exposure in real time. In a rapidly evolving, perimeter-less world Armis ensures that organizations continuously see, protect and manage all critical assets. Armis secures Fortune 100, 200 and 500 companies as well as national governments, state and local entities to help keep critical infrastructure, economies and society stay safe and secure 24/7. Armis is a privately held company headquartered in California.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20231107075848/en/
Contact information
Rebecca Cradick
Senior Director, Global Communications
Armis
pr@armis.com
About Business Wire
(c) 2018 Business Wire, Inc., All rights reserved.
Business Wire, a Berkshire Hathaway company, is the global leader in multiplatform press release distribution.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
H.I.G. Capital Announces the Sale of DGS S.p.A.11.6.2024 12:00:00 CEST | Press release
H.I.G. Capital (“H.I.G.”), a leading global alternative investment firm with $62 billion of capital under management, is pleased to announce that an affiliate has signed a definitive agreement to sell its portfolio company, DGS S.p.A. (“DGS” or the “Group”), a leading firm in the Italian Information Technology market, to DGS Co-Founders and management team in partnership with ICG, a global alternative asset manager. Since its inception in 1997, DGShas supported blue-chip customers in the design, integration, and maintenance of complex IT systems, with a specialization in digital transformation and cybersecurity services. The Group currently has over 1,900 employees, revenues of approximately €300 million, and maintains a group of highly loyal clientele. During H.I.G.’s ownership, DGS has tripled in size and consolidated its position as a leading Italian firm in cybersecurity services and digital transformation. DGS offers its clients sophisticated and proprietary digital transformation
Evertas Names Nick Selby Head of European Underwriting11.6.2024 12:00:00 CEST | Press release
Evertas, the world’s first crypto insurance company, has named Nick Selby as its new Head of European Underwriting. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20240611141887/en/ Nick Selby, Executive Vice President and Head of European Underwriting at Evertas (Photo: Business Wire) Selby, an accomplished information and physical security professional, brings two decades of expertise in public and private sector information security, physical security, and complex incident handling, as well as seven years of experience leading teams securing billions of dollars in cryptoassets. Previously, his roles included VP of the Software Assurance Practice at Trail of Bits, Chief Security Officer at Paxos Trust Company, and Director of Cyber Intelligence and Investigations at the NYPD Intelligence Bureau. “Nick is an extremely valuable addition to our European team,” said Evertas CEO and Co-Founder J. Gdanski. “His public and private
Owlet utvider globalt fotavtrykk med lanseringen av medisinsk-sertifisert Dream Sock™ i Storbritannia og over hele Europa11.6.2024 11:00:00 CEST | Pressemelding
Owlet, Inc. («Owlet» or the «Company») (NYSE:OWLT), pioneren innen smart spedbarnsovervåking, kunngjør i dag den britiske og europeiske lanseringen av Dream Sock. Dette er en smart babymonitor med levende helseavlesninger og varsler for friske spedbarn mellom 0-18 måneder og 2,5-13,6 kg. Dette innovative medisinske utstyret gir foreldre helse og viktig informasjon i sanntid, noe som gir uovertruffen trygghet. Denne pressemeldingen inneholder multimedia. Se hele pressemeldingen her: https://www.businesswire.com/news/home/20240611820341/no/ (Photo: Business Wire) «Vi er svært stolte over å lansere Dream Sock til omsorgspersoner over hele Storbritannia og Europa og gi millioner av foreldre mer trygghet mens babyen sover,» sa Kurt Workman, Owlets administrerende direktør og medgründer. «Dream Sock er nå et globalt produkt som er anerkjent som medisinsk nøyaktig og trygt, etter å ha gjennomgått regulatoriske autorisasjoner og sertifiseringer innenfor flere geografier. I dag er misjonen vår
V-Nova Surpasses 1000 Patent Milestone in Media Technology Innovation11.6.2024 10:00:00 CEST | Press release
V-Nova, a leading provider of data compression solutions, video compression technology, XR technology, AI acceleration and parallel processing for a multitude of industries including media and entertainment, today announced its milestone achievement of 1000 active technology patents. This accomplishment underscores V-Nova’s dedication to research and development and its commitment to protecting its intellectual property globally. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20240611724561/en/ V-Nova’s patent portfolio spans more than 50 different jurisdictions. Including over 400 patents in Europe, over 200 in the Americas, over 100 in the United States specifically, and over 200 in Asia. V-Nova forged new directions in data processing to enhance digital experiences, maximize efficiency, reduce costs, and increase sustainability. The company leads the way with key international data compression standards for the video indust
Alipay+ Reveals Top Scorer Trophy Design for UEFA EURO 2024™11.6.2024 09:24:00 CEST | Press release
Alipay+, a suite of cross-border mobile payment and digitalization technology solutions operated by Ant International and an Official Partner of UEFA EURO 2024™, today revealed the trophy that will be awarded to the most prolific marksman at the UEFA EURO 2024™ finale on July 14 in Berlin, Germany. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20240610328619/en/ The UEFA Top Scorer Trophy presented by Alipay+ is unveiled for UEFA EURO 2024™ (Photo: Business Wire) Sculpted in the shape of the Chinese character “支” (pronounced zhi, and meaning payment as well as support), the trophy reflects Alipay+’s dedication to supporting consumers to enjoy seamless payment and a broad choice of deals using their preferred payment methods while traveling abroad. The character also resembles the fleeting moment of a barefooted striker poised to shoot, evoking the original beauty and power of football – a game that united people across the wo