No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • The Business of GRC
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Cybersecurity

Gaps Emerge Between Frontline Cybersecurity Managers & C-Suite

Majority of executives predict ESG impact from tariffs

by Staff and Wire Reports
November 21, 2025
in Cybersecurity
CCI staff share recent surveys, reports and analysis on risk, compliance, governance, infosec and leadership issues. Share details of your survey with us: editor@corporatecomplianceinsights.com.

81% of cybersecurity managers say material incidents went unreported to leadership

More than four out of five frontline cybersecurity managers admit at least one material cyber incident went unreported to leadership in the past year, compared with just over half (55%) of C-suite cyber leaders who say the same, according to a survey from cybersecurity services provider VikingCloud, revealing significant perception gaps between frontline managers and C-suite cyber leaders. 

The survey indicated some 90% of frontline managers say cyberattacks are growing more frequent and 88% say they’re more severe over the past 12 months, but fewer C-suite leaders share that urgency (77% and 65%, respectively). Additionally, 79% of managers say a successful cyberattack hit their organization in the past year, compared with 65% of C-suite cyber leaders.

A capability perception gap also exists, the survey found. Some 43% of C-suite cyber leaders say modern cybercriminals are more advanced than their internal teams, compared with only 12% of managers who say the same. Deepfakes emerged as a growing concern, with the percentage of cybersecurity professionals reporting being least prepared for this type of attack rising from 3% to 21% among managers and from 6% to 28% among C-suite cyber leaders year-over-year.

56% of US executives say tariffs will force ESG compromises

More than half of US executives say tariff policies will force their organizations to compromise on sustainability or ESG priorities, with 22% expecting significant compromises and 34% anticipating compromises to some extent, according to a survey from sustainability ratings provider EcoVadis.

The survey of executives across procurement, supply chain, sustainability, risk, compliance, finance and IT functions found that 72% cite tariffs and trade wars as the most significant external supply chain risk in 2025. The findings build on earlier research showing that most US companies are maintaining sustainability investments despite regulatory uncertainty. Some 54% expect that 26% to 50% of their supply chain will require new sourcing arrangements if current US tariff policies remain in place, while 32% anticipate up to 25% of suppliers will be disrupted and 14% predict more than half of their sourcing will be affected.

Supply chain disruptions are already prevalent, with 44% of companies experiencing between four and 10 disruptions tied to third-party failures, environmental events, trade disputes or labor issues in the past year, while 22% faced 11 or more. 

Other key findings:

  • Executive perspectives diverge on risk priorities: C-suite leaders focus on extreme climate events (41%) and geopolitical conflict (40%), while VPs and directors prioritize labor disruptions (36%) and cyber threats (36%).
  • Some 21% of companies have taken no action in response to recent climate events, such as wildfires and hurricanes.
  • Top resilience actions include reformulating products with value chain partners (61%), adopting second and third sourcing strategies (56%) and engaging suppliers on ESG issues (52%).

39% of organizations experienced security incidents tied to cloud migration governance gaps

Nearly 40% of organizations experienced security or compliance incidents directly linked to governance gaps introduced during cloud migration, according to a survey from governance and identity security software company Pathlock.

The survey of 620 enterprise IT, compliance and security leaders across manufacturing, financial services, healthcare and government found that only 7% updated governance, risk and compliance controls prior to migration, while more than half (52%) failed to embed GRC strategy from the start. Additionally, 50% did not perform full segregation of duties checks when redesigning roles, and 51% of organizations take more than 24 hours to revoke access after employee termination.

Insider threats emerged as a significant concern, with 23% of organizations experiencing insider-related incidents during or after cloud migration. Some 21% reported compliance violations in the past year and 17% experienced insider fraud.

Tags: Cloud ComplianceESG
Previous Post

Advice for the AI Boom: Use the Tools, Not Too Much, Stay in Charge

Next Post

Davies to Acquire Claims & Risk Solutions Provider

Staff and Wire Reports

Staff and Wire Reports

Related Posts

recycled materials label on plastic bottle

With New EU EmpCo Rules, Greenwashing Moves From Reputation Risk to Compliance Risk

by Andreas Pyrcek
September 25, 2026

Seemingly innocuous wording could bring fines under new EU framework

Clippers ballmer leonard arena

The Clippers Scandal vs. the Corporate Enforcement Record

by Jennifer L. Gaskin
September 9, 2026

A $30 million fine, loss of years’ worth of draft picks, a one-year ban for owner Steve Ballmer and a...

uk prime minister andy burnham

Risk & Compliance Implications of New UK Government

by Jonathan Armstrong
August 28, 2026

AI policy-making is already undergoing shake-ups

greenwashing painting white bottle concept

The Greenwashing Reckoning Isn’t About Marketing

by Sandhya Sabapathy
August 24, 2026

A bold public target and a cautious financial model can contradict each other inside the same annual report

Next Post
Davies SCM M&A

Davies to Acquire Claims & Risk Solutions Provider

GGR sq
No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2026 Corporate Compliance Insights

No Result
View All Result
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • The Business of GRC
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe

© 2026 Corporate Compliance Insights