No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
    • Great Women in Compliance
    • Unless: The Podcast (Hemma Lomax)
  • Research
  • Webinars
  • Events
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Risk

AI Risk Management Consumes 37% More Time As Governance Gaps Emerge

Most cybersecurity leaders fear nation-state attacks; multiple PFAS chemicals found in 82% of studied supply chains

by Staff and Wire Reports
September 19, 2025
in Risk

CCI staff share recent surveys, reports and analysis on risk, compliance, governance, infosec and leadership issues. Share details of your survey with us: editor@corporatecomplianceinsights.com.

Organizations spend more time on AI risk management as governance gaps widen

Organizations are dedicating 37% more time to managing AI-related risks compared to 12 months ago, as rapid AI adoption exposes critical gaps in traditional oversight processes, according to a survey by governance platform provider OneTrust. The study of 1,250 governance executives from North America and Europe found that 73% report AI has revealed gaps in visibility, collaboration and policy enforcement.

Advanced AI adopters spend twice as much time managing AI risk as organizations still experimenting with the technology, reflecting the increased oversight requirements that come with mature AI deployments. Meanwhile, 82% of leaders say AI risks have accelerated timelines for modernizing governance processes.

Nearly half of respondents (44%) cite governance reviews happening too late in the process as the primary barrier to effective AI oversight. Manual compliance reviews (42%) and approval bottlenecks (36%) also rank among top challenges.

Other key findings:

  • 60% of organizations report advanced or mature AI usage across operations.
  • 98% plan to increase governance budgets next year, with an average increase of 24%.

Most cybersecurity leaders fear nation-state attacks in next 12 months

Nearly 80% of cybersecurity leaders are concerned their organizations could be targeted by nation-state cyberattacks in the next 12 months, reflecting heightened anxiety about geopolitical cyber risks, according to a survey by cybersecurity provider VikingCloud. The survey of 200 cybersecurity professionals found that 76% believe recent or proposed cuts to US federal cybersecurity programs could increase their organization’s risk exposure.

Organizations report that both attack frequency (71%) and severity (61%) have increased in the past year, with 59% experiencing at least one successful cyberattack during that period. Among those targeted, 58% suspect attackers used AI, while 36% say over a quarter of their incidents were caused by insider threats, either accidental or malicious.

A notable finding reveals significant underreporting of cybersecurity incidents. Nearly half (48%) of cybersecurity leaders didn’t report material incidents to executive leadership or boards in the past year, with 86% of these leaders failing to report multiple breaches. The primary reasons cited were concerns about punitive leadership reactions (40%) and potential financial or reputational damage if incidents became public (44%).

Other key findings:

  • 68% of organizations express only moderate confidence in detecting AI-driven threats in real time.
  • 51% have increased security training in the past year, up 46% from 2024.
  • 96% report using AI to automate routine cybersecurity tasks.

Multiple PFAS chemicals detected in 82% of affected manufacturer supply chains

Supply chain management company Assent has identified 695 unique PFAS chemicals across global manufacturing supply chains, marking a 30% increase over six months as regulations around “forever chemicals” continue to expand worldwide. The analysis of 4.5 million supplier declarations found that 3% of analyzed parts contain at least one intentionally added PFAS.

More than 80% of Assent’s clients have detected PFAS in their supply chains, with PTFE (Polytetrafluoroethylene) appearing in over 50% of positive PFAS declarations due to its non-stick properties valuable in manufacturing processes and consumer products. Among businesses with PFAS already present, 82% have received declarations containing multiple PFAS chemicals, highlighting compound risk for manufacturers.

The findings come as hundreds of PFAS regulations have been proposed or enacted globally due to health and environmental concerns. The EU and US states including California, New York, Colorado and Maine have enacted bans on PFAS use in consumer goods, while companies have settled related lawsuits for amounts exceeding $11 billion. The EPA this week upheld regulations keeping polluters responsible for PFAS cleanup costs under Superfund law, despite chemical industry opposition and internal pressure to reverse the rule, the New York Times reported.

Other key findings:

  • The top three most declared PFAS are PTFE (53.7%), PVDF polymer (15%), and tridecafluorooctyl methacrylate (6.9%).
  • PFOA salt ranks fourth at 3.3% of positive declarations.

“The business consequences of using PFAS, whether in the past or present, are unprecedented in terms of chemical regulations,” said Cally Edgren, vice president of regulatory and sustainability at Assent. 


Tags: Artificial Intelligence (AI)Cyber RiskSupply Chain
Previous Post

No Longer Optional: The Future of AI in Third Party Risk Management

Next Post

Why Your Third-Party Risk Assessment Has an Expiration Date

Staff and Wire Reports

Staff and Wire Reports

Related Posts

robot with wrenches in both hands

Advice for the AI Boom: Use the Tools, Not Too Much, Stay in Charge

by Vera Cherepanova
November 19, 2025

How can ethics and compliance leaders call for prudence without being seen as resistant to progress?

news roundup data grungy

Almost Half of Compliance Leaders Cite Time Crunch as Barrier to Tech Adoption

by Staff and Wire Reports
November 19, 2025

AI adoption surges in audit; 37% of life sciences, consumer product companies missed a regulatory requirement in past year

data abstract green purple

Gartner: Low-Growth Economic Environment Emerges as Top Risk

by Staff and Wire Reports
November 14, 2025

M&A market projected for expansion; finserv firms cite regulation as key challenge, earn high marks for cyber policy

news roundup bw

Boards Seeking AI Specialists

by Staff and Wire Reports
November 13, 2025

73% of CISOs report significant cyber incident in past year; AI implementation on par with economy on list of business...

Next Post
expiration date on product

Why Your Third-Party Risk Assessment Has an Expiration Date

reminder to speak up
No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2025 Corporate Compliance Insights

Welcome to CCI. This site uses cookies. Please click OK to accept. Privacy Policy
Cookie settingsACCEPT
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
CookieDurationDescription
cookielawinfo-checbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
cookielawinfo-checbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
cookielawinfo-checbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
Functional
Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
Performance
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
Advertisement
Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
Others
Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
SAVE & ACCEPT
No Result
View All Result
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
    • Great Women in Compliance
    • Unless: The Podcast (Hemma Lomax)
  • Research
  • Webinars
  • Events
  • Subscribe

© 2025 Corporate Compliance Insights