ISMS.Online
2025 State of Information Security Report
Pages
9
Time to read
9 mins
Publication
Language
English
Pages
9
Time to read
9 mins
Publication
Language
English
The 2025 State of Information Security Report examines the evolving landscape of supply chain risk and its implications for organizations. It identifies the acceleration of supply chain vulnerabilities as a critical challenge, with 41% of organizations citing third-party risk management as a top concern. The report outlines how interconnected ecosystems, including cloud platforms and service providers, contribute to increased exposure to cyber threats. It presents data indicating that 61% of organizations experienced incidents related to third-party vendors in the past year, highlighting the urgency for enhanced risk management practices. The report also details the growing expectations for supplier compliance with standards such as ISO 27001 and GDPR, indicating a shift towards structured governance in managing supplier risks. Furthermore, it emphasizes the importance of integrating supplier assurance into core management systems to ensure resilience across digital supply chains. Overall, the findings underscore that effective governance of third-party risks is essential for maintaining organizational security and operational integrity.