BitSight
Cybersecurity Control Insights Analysis Report
Pages
1
Time to read
6 mins
Publication
Language
English
Pages
1
Time to read
6 mins
Publication
Language
English
This report presents an analysis of organizational performance in cybersecurity, focusing on the Minimum Viable Secure Product (MVSP) framework. The study evaluates 23 cyber risk vectors, including aspects such as patching cadence and software updating practices, across various industries. Each organization is assigned one of three grades per MVSP control, allowing for a comparative understanding of cybersecurity performance. The report indicates that a high pass rate was observed for ten of the sixteen MVSP controls studied, while certain controls, particularly related to dependency patching and time to fix vulnerabilities, showed low pass rates and high fail rates. The findings are based on telemetry data collected by Bitsight, which measures cybersecurity performance globally. The report aims to inform security professionals, board members, and executives about current challenges and improvements in cybersecurity practices, helping them prioritize strategies and resources effectively.