Accessibility Statement Skip Navigation
  • Resources
  • Investor Relations
  • Journalists
  • +44 (0)20 7454 5110
  • Client Login
  • Send a Release
Return to PR Newswire homepage
  • News
  • Products
  • Contact
When typing in this field, a list of search results will appear and be automatically updated as you type.

Searching for your content...

No results found. Please change your search terms and try again.
  • News in Focus
      • Browse News Releases

      • All Public Company News
      • All Multimedia News
      • View All News Releases

      • Regulatory News

      • D/A/CH Regulatory News
      • UK Regulatory News
      • View All Regulatory News

  • Business & Money
      • Auto & Transportation

      • Aerospace & Defense
      • Air Freight
      • Airlines & Aviation
      • Automotive
      • Maritime & Shipbuilding
      • Railroads & Intermodal Transportation
      • Supply Chain/Logistics
      • Transportation, Trucking & Railroad
      • Travel
      • Trucking & Road Transportation
      • View All Auto & Transportation

      • Business Technology

      • Blockchain
      • Broadcast Tech
      • Computer & Electronics
      • Computer Hardware
      • Computer Software
      • Data Analytics
      • Electronic Commerce
      • Electronic Components
      • Electronic Design Automation
      • Financial Technology
      • High Tech Security
      • Internet Technology
      • Nanotechnology
      • Networks
      • Peripherals
      • Semiconductors
      • View All Business Technology

      • Entertain­ment & Media

      • Advertising
      • Art
      • Books
      • Entertainment
      • Film & Motion Picture
      • Magazines
      • Music
      • Publishing & Information Services
      • Radio & Podcast
      • Television
      • View All Entertain­ment & Media

      • Financial Services & Investing

      • Accounting News & Issues
      • Acquisitions, Mergers & Takeovers
      • Banking & Financial Services
      • Bankruptcy
      • Bond & Stock Ratings
      • Conference Call Announcements
      • Contracts
      • Cryptocurrency
      • Dividends
      • Earnings
      • Earnings Forecasts & Projections
      • Financing Agreements
      • Insurance
      • Investments Opinions
      • Joint Ventures
      • Mutual Funds
      • Private Placement
      • Real Estate
      • Restructuring & Recapitalisation
      • Sales Reports
      • Shareholder Activism
      • Shareholder Meetings
      • Stock Offering
      • Stock Split
      • Venture Capital
      • View All Financial Services & Investing

      • General Business

      • Awards
      • Commercial Real Estate
      • Corporate Expansion
      • Earnings
      • Environmental, Social and Governance (ESG)
      • Human Resource & Workforce Management
      • Licensing
      • New Products & Services
      • Obituaries
      • Outsourcing Businesses
      • Overseas Real Estate (non-US)
      • Personnel Announcements
      • Real Estate Transactions
      • Residential Real Estate
      • Small Business Services
      • Socially Responsible Investing
      • Surveys, Polls & Research
      • Trade Show News
      • View All General Business

  • Science & Tech
      • Consumer Technology

      • Artificial Intelligence
      • Blockchain
      • Cloud Computing/Internet of Things
      • Computer Electronics
      • Computer Hardware
      • Computer Software
      • Consumer Electronics
      • Cryptocurrency
      • Data Analytics
      • Electronic Commerce
      • Electronic Gaming
      • Financial Technology
      • Mobile Entertainment
      • Multimedia & Internet
      • Peripherals
      • Social Media
      • STEM (Science, Tech, Engineering, Math)
      • Supply Chain/Logistics
      • Wireless Communications
      • View All Consumer Technology

      • Energy & Natural Resources

      • Alternative Energies
      • Chemical
      • Electrical Utilities
      • Gas
      • General Manufacturing
      • Mining
      • Mining & Metals
      • Oil & Energy
      • Oil & Gas Discoveries
      • Utilities
      • Water Utilities
      • View All Energy & Natural Resources

      • Environ­ment

      • Conservation & Recycling
      • Environmental Issues
      • Environmental Policy
      • Environmental Products & Services
      • Green Technology
      • Natural Disasters
      • View All Environ­ment

      • Heavy Industry & Manufacturing

      • Aerospace & Defence
      • Agriculture
      • Chemical
      • Construction & Building
      • General Manufacturing
      • HVAC (Heating, Ventilation & Air-Conditioning)
      • Machinery
      • Machine Tools, Metalworking & Metallurgy
      • Mining
      • Mining & Metals
      • Paper, Forest Products & Containers
      • Precious Metals
      • Textiles
      • Tobacco
      • View All Heavy Industry & Manufacturing

      • Telecomm­unications

      • Carriers & Services
      • Mobile Entertainment
      • Networks
      • Peripherals
      • Telecommunications Equipment
      • Telecommunications Industry
      • VoIP (Voice over Internet Protocol)
      • Wireless Communications
      • View All Telecomm­unications

  • Lifestyle & Health
      • Consumer Products & Retail

      • Animals & Pets
      • Beers, Wines & Spirits
      • Beverages
      • Bridal Services
      • Cannabis
      • Cosmetics & Personal Care
      • Fashion
      • Food & Beverages
      • Furniture & Furnishings
      • Home Improvement
      • Household, Consumer & Cosmetics
      • Household Products
      • Jewellery
      • Non-Alcoholic Beverages
      • Office Products
      • Organic Food
      • Product Recalls
      • Restaurants
      • Retail
      • Supermarkets
      • Toys
      • View All Consumer Products & Retail

      • Entertain­ment & Media

      • Advertising
      • Art
      • Books
      • Entertainment
      • Film & Motion Picture
      • Magazines
      • Music
      • Publishing & Information Services
      • Radio & Podcast
      • Television
      • View All Entertain­ment & Media

      • Health

      • Biometrics
      • Biotechnology
      • Clinical Trials & Medical Discoveries
      • Dentistry
      • FDA Approval
      • Fitness/Wellness
      • Health Care & Hospitals
      • Health Insurance
      • Infection Control
      • International Medical Approval
      • Medical Equipment
      • Medical Pharmaceuticals
      • Mental Health
      • Pharmaceuticals
      • Supplementary Medicine
      • View All Health

      • Sports

      • General Sports
      • Outdoors, Camping & Hiking
      • Sporting Events
      • Sports Equipment & Accessories
      • View All Sports

      • Travel

      • Amusement Parks & Tourist Attractions
      • Gambling & Casinos
      • Hotels & Resorts
      • Leisure & Tourism
      • Outdoors, Camping & Hiking
      • Passenger Aviation
      • Travel Industry
      • View All Travel

  • Policy & Public Interest
      • Policy & Public Interest

      • Animal Welfare
      • Corporate Social Responsibility
      • Economic News, Trends & Analysis
      • Education
      • Environmental
      • European Government
      • Labour & Union
      • Natural Disasters
      • Not For Profit
      • Public Safety
      • View All Policy & Public Interest

  • People & Culture
      • People & Culture

      • Aboriginal, First Nations & Native American
      • African American
      • Asian American
      • Children
      • Diversity, Equity & Inclusion
      • Hispanic
      • Lesbian, Gay & Bisexual
      • Men's Interest
      • People with Disabilities
      • Religion
      • Senior Citizens
      • Veterans
      • Women
      • View All People & Culture

  • Explore Our Platform
  • Plan Campaigns
  • Create with AI
  • Distribute Press Releases
  • Amplify Content
  • All Products
  • General Enquiries
  • Media Enquiries
  • Partnerships
  • Hamburger menu
  • Cision PR Newswire UK provides press release distribution, targeting, monitoring, and marketing services
  • Send a Release
    • Phone

    • +44 (0)20 7454 5110 from 8 AM - 5:30 PM GMT

    • ALL CONTACT INFO
    • Contact Us

      +44 (0)20 7454 5110
      from 8 AM - 5:30 PM GMT

  • Client Login
  • Send a Release
  • Resources
  • Blog
  • Journalists
  • News in Focus
    • Browse News Releases
    • Regulatory News
  • Business & Money
    • Auto & Transportation
    • Business Technology
    • Entertain­ment & Media
    • Financial Services & Investing
    • General Business
  • Science & Tech
    • Consumer Technology
    • Energy & Natural Resources
    • Environ­ment
    • Heavy Industry & Manufacturing
    • Telecomm­unications
  • Lifestyle & Health
    • Consumer Products & Retail
    • Entertain­ment & Media
    • Health
    • Sports
    • Travel
  • Policy & Public Interest
    • Policy & Public Interest
  • People & Culture
    • People & Culture
  • Client Login
  • Send a Release
  • Resources
  • Blog
  • Journalists
  • Explore Our Platform
  • Plan Campaigns
  • Create with AI
  • Distribute Press Releases
  • Amplify Content
  • All Products
  • Client Login
  • Send a Release
  • Resources
  • Blog
  • Journalists
  • General Enquiries
  • Media Enquiries
  • Partnerships
  • Worldwide Offices
  • Client Login
  • Send a Release
  • Resources
  • Blog
  • Journalists

Misalignment and Risk Tolerance Gaps Undermine Business Resilience, Kroll Study Finds

This image opens in the lightbox

News provided by

Kroll Associates

18 Mar, 2026, 08:00 GMT

Share this article

Share toX

Share this article

Share toX

Key Takeaways

  • Cyber risk is widely acknowledged, but alignment is lacking. While 94% of organizations view cybersecurity as a primary business risk, 72% report frequent misalignment between cybersecurity efforts and broader business priorities.
  • Budget decisions are increasingly centralized, despite a knowledge gap. Nearly half of businesses (48%) say the CEO now makes the final decision on cyber budgets, however 43% reported limited cyber literacy amongst executives.
  • Investment in cloud and third-party security is set to rise by 59%, yet there are no planned increases, and in some cases declines, in funding for the most frequent and fastest-growing areas of risk: people and identity.

NEW YORK, March 18, 2026 /PRNewswire/ -- Kroll, the leading independent provider of global financial and risk advisory solutions, today released global cyber resilience research findings revealing a critical gap between organizations' perception of their cyber preparedness and their actual capability to defend against, and recover from, sophisticated attacks. This gap is being driven by misalignment between the C-suite and cyber decision-makers. This disconnect is costly, as organizations face a yearly average of $2.2 million in recovery costs and downtime from cyber incidents.

The Misalignment Problem: Strategy vs. Execution

Investment in cybersecurity is rising across the board as the majority (80%) of organizations have increased budgets in 2026. However, the bulk of the investment is not set to prioritize the technology that will protect against the most common attack vectors which target people, credentials and internal processes.

  • 59% of organizations are increasing spending on cloud and third-party security. Yet identity-based tactics like phishing (39%) and business email compromise (28%) are experienced most by businesses.
  • Crucial proactive security measures appear to be dropping in the order of priority with organizations cutting, or not investing further budget, in red and purple teaming (55%), identity access management (IAM) controls and zero-trust architecture (52%).
  • Nearly half (48%) of businesses say the CEO now makes the final decision on cyber budgets. However, limited cyber literacy among executives (43%) is reported as a barrier for aligning business strategy with cyber priorities.

Overestimation of Resilience

While most organizations believe they are prepared for cyber threats, their actions tell a different story:

  • While 99% of organizations have an incident response plan, 3% only update them after a cyber incident. Plans become static documents, not living tools refined by experience.
  • Only 10% of organizations have achieved "very high" cyber maturity. However, those with higher maturity experience 50% less financial impact per dollar of revenue when cyber incidents occur.
  • 36% of organizations acknowledge gaps in how threats are prioritized, with differing risk tolerance (51%) cited as the leading cause.
  • 72% of organizations believe they can respond to an incident within 1-24 hours. Independent research from CrowdStrike shows that attackers establish a foothold in just 29 minutes. By the time most organizations mobilize a response, attackers have already moved laterally through the network.

Tiernan Connolly, Managing Director of Cyber Risk, Security Advisory at Kroll, says, "Board-level executives are often shocked by how one vulnerability or compromised system can cascade into a company-wide business interruption. They may understand the risk intellectually, but it rarely resonates operationally until they experience the impact firsthand. Until an actual incident forces that awareness, cyber budget line items tend to be treated as checking a box rather than being a strategic priority to protect, restore and maximize business value. Understanding business interruption as a core consequence, and directly linking it back to proactive controls, is how CISOs and security teams avoid reaching that costly breaking point."

Dave Burg, Global Group Head of Cyber and Data Resilience at Kroll, says, "In today's increasingly turbulent threat landscape, organizations face compounding cyber pressures, from more sophisticated threat actors to widening supply chain vulnerabilities. That pressure is amplified by geopolitical activity, such as the situation in the Middle East. Strategic decisions and execution realities can shift without warning. In an environment defined by uncertainty, businesses need to adapt quickly and confidently, even as the risk picture evolves in real time."

"Cyber resilience and security aren't simply technology challenges, they are fundamental to overall business resilience. Too often, cyber leaders are pulled between the drive to innovate and a hard truth: basic cyber hygiene failures remain the most common point of entry."

"Our strategic partner CrowdStrike reports an average breakout time of just 29 minutes for attackers to move from initial access to broader infiltration. Yet many companies are pouring investment into advanced tools and threat intelligence while underinvesting in identity management, effective threat prioritization, and incident response readiness – gaps that can significantly increase exposure. Organizations that strengthen their cyber foundations will be better positioned to align strategy with execution, focus investments where they matter most and deliver stronger, more consistent defense."

You can access the full report on the Kroll website.

About the Research

Kroll commissioned independent research firm Sapio Research to conduct a comprehensive study into cybersecurity resilience and risk alignment in enterprise organizations. The research surveyed 1,000 cybersecurity decision-makers at companies with annual revenues from $50 million to more than $5 billion across 10 countries: the United Kingdom and Ireland (150), Germany (50), Switzerland (50), the United States (450), Japan (125), Singapore (50), Australia (25), the United Arab Emirates (50) and Saudi Arabia (50). The survey was conducted in November and December 2025.

About Kroll

As the leading independent provider of financial and risk advisory solutions, Kroll leverages our unique insights, data and technology to help clients stay ahead of complex valuation demands. Kroll's team of more than 6,500 professionals worldwide continues the firm's nearly 100-year history of trusted expertise spanning risk, governance, transactions and valuation. Our advanced solutions and intelligence provide clients the foresight they need to create an enduring competitive advantage. At Kroll, our values define who we are and how we partner with clients and communities. Learn more at kroll.com.

Logo - https://mma.prnewswire.com/media/478418/Kroll_v2_Logo.jpg 

Modal title

Also from this source

Kroll and StepStone Group Launch Private Credit Benchmarks

Kroll and StepStone Group Launch Private Credit Benchmarks

Kroll, the leading independent provider of global financial and risk advisory solutions, and StepStone Group (Nasdaq: STEP), a global private markets ...

Kroll Doubles Restructuring Presence in Ireland with Acquisition of Kirby Healy

Kroll Doubles Restructuring Presence in Ireland with Acquisition of Kirby Healy

Kroll, the leading independent provider of global financial and risk advisory solutions, has acquired Kirby Healy, a specialist corporate insolvency...

More Releases From This Source

Explore

High Tech Security

High Tech Security

Computer & Electronics

Computer & Electronics

Banking & Financial Services

Banking & Financial Services

News Releases in Similar Topics

Contact PR Newswire

  • +44 (0)20 7454 5110
    from 8 AM - 5:30 PM GMT
  • General Enquiries
  • Media Enquiries
  • Partnerships

Products

  • Content Distribution
  • Multimedia Services
  • Disclosure Services
  • Cision Communications Cloud®

About

  • About PR Newswire
  • About Cision
  • Partnering Opportunities
  • Careers
  • Accessibility Statement
  • APAC
  • APAC - Simplified Chinese
  • APAC - Traditional Chinese
  • Brazil
  • Canada
  • Czech
  • Denmark
  • Finland
  • France
  • Germany
  • India
  • Indonesia
  • Israel
  • Japan
  • Korea
  • Mexico
  • Middle East
  • Middle East - Arabic
  • Netherlands
  • Norway
  • Poland
  • Portugal
  • Russia
  • Slovakia
  • Spain
  • Sweden
  • United States
  • Vietnam

My Services

  • All News Releases
  • PR Newswire Amplify™
  • Resources
  • Blog
  • Journalists
  • Data Privacy

Do not sell or share my personal information:

  • Submit via Privacy@cision.com 
  • Call Privacy toll-free: 877-297-8921

Contact PR Newswire

Products

About

My Services
  • All News Releases
  • Customer Portal
  • Resources
  • Blog
  • Journalists
+44 (0)20 7454 5110
from 8 AM - 5:30 PM GMT
  • Terms of Use
  • Privacy Policy
  • Information Security Policy
  • Site Map
  • RSS
  • Cookie Settings
Copyright © 2025 PR Newswire Europe Limited. All Rights Reserved. A Cision company.