This whitepaper presents findings from an independent survey conducted among 237 IT and cybersecurity leaders in Spain, focusing on ransomware incidents experienced by their organizations in the past year. The survey, commissioned by Sophos and conducted by a third-party specialist, aims to provide insights into the current state of ransomware threats in Spain. Key findings reveal that the median ransom demand was $911,600, with 50% of demands exceeding $1 million. The report highlights that exploited vulnerabilities were the most common technical root cause, while a known security gap was the leading operational cause. Notably, 47% of attacks resulted in data encryption, and 36% of organizations paid the ransom to recover their data. The average cost incurred by organizations to recover from ransomware attacks was $1.15 million, indicating a significant decrease from previous years. The report concludes with recommendations for prevention, protection, detection, response, and planning to enhance defenses against ransomware threats.