2022 OnRisk Report

Page 30

THE RISKS

CYBERSECURITY KNOWLEDGE AND CAPABILITY

Denition:

Percentage who gave a rating of 6 or 7 on a scale of 1 to 7

The growing sophistication and variety of cyberattacks continue to wreak havoc on organizations’ brands and epu r tations,oftenesu r ltingindisastousr financialimpacts. Thisriskexamineswhethergan or izationsaresufficiently prepared to manage cyber threats that could cause disruption and reputational harm.

Analysis: Nearly every member of executive management sees Cybersecurity as being highly relevant to their gan or ization.Hwever,personalknowledgeofthishighly impactful risk remains particularly low amongst all players, particularlyCEs.Thislowevelofknowledgelikelystems fromtheever-evolvingnateur ofcybereat thr s.Overall,a low percentage of respondents across all groups rated the capability of their organizations to manage Cybersecurity as high. In particular, few board members perceive their organization as being highly capable of managing Cybersecurity.

RISK STAGE

Quotes: “Cybersecurity risk is an ever-evolving risk. The architecture and planning processes that have been used to deal with [cybersecurity] have become more complex as technology has become more prevalent.” –Board, Finance “As we have witnessed with the pipeline hack this year, these cybersecurity attacks can have a huge trickle-down effect. All industries are susceptible to cybersecurity risk to some extent.” –Board, Manufacturing Remained in Develop

RISK RELEVANCE Percentage who gave a rating of 6 or 7 on a scale of 1 to 7 – Cybersecurity

77%

87%

97%

C-suite

Board

CAE

www.theiia.org 30


Turn static files into dynamic content formats.

Create a flipbook

Articles inside

Supply Chain Disruption

1min
page 41

Social Sustainability

1min
page 40

Environmental Sustainability

2min
pages 42-44

Disruptive Innovation

1min
page 39

Supplier and Vendor Management

1min
page 38

Change in Regulatory Environment

1min
page 37

Economic and Political Volatility

1min
page 36

Culture

1min
page 35

Data Privacy

0
pages 33-34

Organizational Governance

1min
page 32

Talent Management

1min
page 31

Cybersecurity

1min
page 30

The Risks

0
pages 28-29

Risk Stages Model

2min
pages 26-27

How to Use This Report

2min
page 25

Senior executives and boards desire broader scope for internal audit services

5min
pages 18-19

Methodology

1min
page 24

Perceptions of risk relevance vary greatly across ESG components

3min
pages 14-15

Pandemic revealed opportunities to improve organizational risk management

2min
pages 16-17

Insights and Actions – C-suite

1min
page 22

Insights and Actions – Board

1min
pages 20-21

Insights and Actions – CAEs

1min
page 23

Top Risks, 2022

3min
page 5

Introduction

1min
page 3

Key Observations Explained

0
page 7

several risks

1min
page 10

The OnRisk Approach

1min
page 4

Key Observations

1min
page 6

Notable variations in capability and relevance for certain risks

2min
pages 8-9
Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.