Insights into Supply Chain Cyber Risk Management
More than 80% of organizations have faced cyber breaches in their supply chains within the past year, with an average of 3.7 breaches reported.
BlueVoyant, a leader in the cyber defense arena, has launched its fifth annual global survey focusing on supply chain cyber risk management. The findings reflect significant strides in how organizations are approaching Third-Party Risk Management (TPRM). The latest study indicates that organizations are moving beyond merely recognizing the problem and are now taking active steps towards enforcement and compliance regarding TPRM.
This year's survey revealed that 81% of respondents experienced adverse effects from supply chain breaches in the last year, a decrease from 94% in 2023. While the reduction in reported breaches indicates progress, many organizations still grapple with the issue.
According to Joel Molinoff, the global head of Supply Chain Defense at BlueVoyant, there is a noticeable shift in enterprise focus. "More organizations are prioritizing the day-to-day management of effective TPRM programs rather than just raising awareness or adopting basic frameworks. This evolution demonstrates a positive trend compared to the previous years, where many businesses lacked oversight and collaboration in tackling cyber threats effectively."
Despite increased investments and collaboration with suppliers, many organizations continue to encounter significant challenges when addressing supply chain risks. The report highlights several key areas of concern:
Key Findings from the Report
- Increased Budgets and Resources: 86% of organizations confirmed that their TPRM budgets have increased, allowing for better allocation of resources towards enhancing cyber defenses.
- Collaboration with Suppliers: Over 36% of organizations have stepped up their engagement with suppliers, a notable rise from 19% the previous year, ensuring thorough remediation of identified cyber threats.
- Healthcare Sector Vulnerability: The healthcare and pharmaceutical sectors reported the highest impact from breaches, with 87% of organizations encountering issues. Alarmingly, 36% of these organizations lack methods to detect threats amid their third-party relationships.
- Need for Regular Monitoring: The survey found that only 32% of third-party vendors are routinely monitored, indicating a gap in active threat detection practices that must be addressed.
Brendan Conlon, Global Director of Supply Chain Defense at BlueVoyant, emphasized the ongoing advancements in third-party monitoring, yet pointed out persistent difficulties in effectively reporting security metrics to senior management. He noted, "As the field of information security evolves, the integration of various security operations will enhance the focus on third-party risk, embedding it more effectively into daily operations and broader risk management strategies."
Global Perspectives on Cyber Risk
This extensive study was conducted by an independent research firm, which engaged over 2,100 C-suite leaders who are responsible for managing supply chains and cyber risks across different industries. The global nature of the research included participation from 11 countries across North America, Europe, and Asia Pacific, allowing for a well-rounded understanding of the current state of supply chain cyber risk management.
About BlueVoyant
BlueVoyant specializes in providing an advanced cloud-native security operations platform that ensures real-time threat monitoring for networks, endpoints, and supply chains. By leveraging state-of-the-art AI technology complemented by expert insights, BlueVoyant delivers comprehensive cyber threat protection and quick mitigation services. With over 1,000 clients globally, the company has earned recognition as the 2024 Microsoft Worldwide Partner of the Year, setting a high benchmark for modern cyber defense solutions.
Frequently Asked Questions
What was the main finding of BlueVoyant's recent study?
The study indicated that 81% of organizations faced negative impacts from supply chain breaches, but this figure has decreased from 94% in the previous year.
Why are budgets for TPRM increasing?
Organizations are boosting their TPRM budgets to enhance their capabilities in addressing cyber threats linked to third-party vendors.
What challenges do healthcare organizations face?
Healthcare companies reported the highest breach rates, with many lacking the means to detect third-party vulnerabilities.
How many organizations prioritize collaboration with suppliers?
36% of organizations have adopted a more proactive stance on working closely with suppliers, compared to only 19% the year before.
What role does BlueVoyant play in cybersecurity?
BlueVoyant provides a robust platform designed for real-time monitoring and threat mitigation, leveraging advanced technology and expert insights in the cybersecurity landscape.