Skip to main content
HomeTopicsRisk

Risk

We've curated 53 cybersecurity statistics about Risk to help you understand how organizations are identifying, assessing, and mitigating potential threats to their data and systems in 2025. Stay informed on best practices and evolving challenges!

Showing 1-20 of 53 results

82% of CISOs feel confident quantifying risk.

Nagomi Security11/9/2025
Cyber incidentCISO

Boards most often ask CISOs for the following metrics: risk-reduction trendlines (51%), quantified business impact (47%), and incident-response performance metrics (40%).

Nagomi Security11/9/2025
Cyber incidentCISO

72% of organizations across the U.S., U.K., France, Germany, and Australia reported that the security risks for their company have never been higher in 2025, marking a 17 point increase from 2024.

Vanta11/1/2025
AIrisk

38% of risk leaders express concern over unintended actions from runaway processes, such as unauthorized transactions or incorrect pricing changes, as a risk from deploying agentic AI

Riskonnect10/22/2025
agentic AI.

15% of risk leaders are unaware if their organization is considering incorporating agentic AI into its operations or products.

Riskonnect10/22/2025
Agentic AI

In 2025, 40% of companies reported that they mostly or only use spreadsheets to manage risk, a decrease from 53% in 2024, indicating a significant shift towards software use in risk management.

Riskonnect10/22/2025
Risk Management

In a comparison of executive roles, 34% of VP and C-level risk executives are not considering incorporating agentic AI into their operations, while only 20% of directors, managers, and below share this view, indicating a disconnect in AI adoption strategies.

Riskonnect10/22/2025

Nearly two-thirds of risk leaders reported that their budgets have not changed at all this year.

Riskonnect10/22/2025
Budget

Only 28% of risk leaders reported an increase in technology budgets in 2024, a figure that has remained unchanged over the past three years.

Riskonnect10/22/2025

26% of companies globally report having no policies, formal training, budgets, or dedicated plans to address AI risks in 2025.

Riskonnect10/22/2025
AIPlans

The percentage of companies globally that felt very prepared to manage AI risks has remained relatively flat over the past three years, with 9% in 2023, 8% in 2024, and 12% in 2025.

Riskonnect10/22/2025
AI Risks

Only 15% of companies globally have a budget specifically directed at mitigating AI-related risks in 2025, which is about the same percentage as last year.

Riskonnect10/22/2025
AIBudget

75% of companies globally report not having a dedicated plan to specifically address generative AI risks, including deepfakes and AI-driven fraud attacks in 2025.

Riskonnect10/22/2025
AIDeepfakes

Nearly 60% of risk leaders report that their companies are considering incorporating agentic AI solutions into their operations or products.

Riskonnect10/22/2025

16% of risk leaders admitted they cannot monitor and assess the risks of their critical third-party tech partners at all in 2024.

Riskonnect10/22/2025
Third party

60% of companies globally now have a chief risk officer as of 2024, an increase from 52% over the past two years, indicating a growing recognition of risk management as a priority.

Riskonnect10/22/2025
Risk Management

8% of risk leaders indicated they can assess and monitor their tier 1 partners, their suppliers, and their suppliers’ suppliers in 2024.

Riskonnect10/22/2025

Only 12% of companies globally feel very prepared to assess, manage, and recover from AI and AI governance risks in 2025, according to a recent study.

Riskonnect10/22/2025
AI

32% of companies globally have formally trained or briefed the entire company on risks related to generative AI in 2025, up from 19% in 2024 and 17% in 2023.

Riskonnect10/22/2025
AITraining

Thirty-nine percent of companies are not conducting worst-case scenario simulations, highlighting a critical gap in risk management practices that needs to be addressed.

Riskonnect10/22/2025
risk management