GuidePoint Security and FAIR Institute Release 2025 State of Cyber Risk Management Report

GuidePoint Security released a 2025 State of Cyber Risk Management (CRM) Report, revealing that CRM has evolved from a siloed compliance function into a strategic discipline that informs executive decision-making.

Key findings include:

  • Quantification has gone mainstream. Factor Analysis of Information Risk (FAIR) and cyber risk quantification (CRQ) are gaining momentum. Nearly 45% of organizations use or plan to use FAIR. Among adopters, 90% report success. 
  • Automation, AI, and data are foundational. 72% of organizations have mostly or completely automated their CRM systems, and 48% are utilizing AI for CRM. Both CRM automation and the use of AI are strongly correlated with maturity and improved outcomes.
  • Demand for CRM is growing, especially for those with mature programs. Nearly all (95%) respondents said internal demand for CRM is growing. Among those reporting high or very high CRM maturity, 23% indicate that demand will increase significantly. 

You can get more details here:  guidepointsecurity.com/resources/2025-state-of-cyber-risk-management-report

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading