
Cybersecurity seen by 85% of CEOs as critical for business growth
A new global survey has found that 85% of CEOs consider cybersecurity a critical factor for business growth.
The Gartner CEO and Senior Business Executive Survey, conducted with 456 CEOs and senior executives worldwide between June and November 2024, highlights the shifting view of cybersecurity from a solely defensive measure to a key enabler of strategic business objectives.
According to the survey, 61% of CEOs expressed concern about cybersecurity threats.
This concern is attributed in large part to the increased presence of artificial intelligence in commercial activities and ongoing political debates regarding the sourcing and use of advanced technologies.
David Furlonger, Distinguished Vice President Analyst and Gartner Fellow, said: "Cybersecurity is no longer just about protection; it's a critical driver for business growth. With 85% of CEOs recognising its importance, security leaders have a unique opportunity to demonstrate the value of cybersecurity investments not only in safeguarding assets but also in enabling strategic business objectives."
Furlonger further commented on the importance of communication between CEOs and security leadership. "Effective communication is key," said Furlonger. "CEOs should highlight the role of security leaders in both protecting the business and enhancing cybersecurity to drive growth."
"This involves, for example, assessing risks in foreign markets and intellectual property protection. Security leaders are positioned to significantly influence value generation, and they should communicate how cybersecurity aids enterprise growth."
The findings indicate a shift in the perceived risk threshold among business leaders, who now see direct links between robust cybersecurity capabilities and the ability to compete and grow in the market.
Recent regulatory changes and the escalating threat landscape are contributing factors behind this correlation, with CEOs viewing strong cybersecurity as essential for maintaining competitiveness.
The survey data also revealed that CEOs are increasingly expected to address cybersecurity issues in the context of business expansion, including evaluating risks tied to foreign markets and the protection of intellectual property. This reflects a growing awareness of how digital security risks can impact a company's trajectory and market position.
Gartner's analysis suggests that the evolving role of security leaders is becoming more deeply integrated with core business strategy.
The research notes that security is now being reframed as both a protective measure and a means to generate business value, influencing decisions around market expansion and safeguarding innovation.
The survey findings are further outlined in Gartner's publication, '2025 CEO Survey — The Year of Dynamic Capacity'. The report explores the new responsibilities of cybersecurity leaders and emphasises the necessity of aligning security strategy with overall business objectives to support company growth.
Gartner's research also highlights the growing complexity CEOs face as regulatory environments evolve and advanced threats emerge.
Companies are responding by investing not only in traditional protection measures but also in security strategies designed to enable operational flexibility and facilitate new business opportunities.
The survey results underscore a broader trend in which cybersecurity is treated as a foundational element for market strategy, particularly as technology and data management issues rise to the forefront of corporate agendas worldwide.
The full findings, including further analysis and guidance for organisations, are available through Gartner's resources for cybersecurity and business leaders.
Hashtags

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles


Scoop
3 days ago
- Scoop
Bitdefender Launches Powerful Compliance Management Solution Unified With Endpoint Security
Designed as an add-on to Bitdefender GravityZone, the companys flagship unified security and risk analytics platform, GravityZone Compliance Manager minimises complexity by unifying compliance, risk, and security operations in a single platform. GravityZone Compliance Manager Reduces the Cost and Complexity of Regulatory Compliance Requirements Across All Environments and Industries Bitdefender, a global cybersecurity leader, today announced GravityZone Compliance Manager, a new addition to its GravityZone platform that helps organisations reduce the burden of compliance and streamline audit readiness. Designed specifically for today's complex regulatory landscape, the solution provides real-time visibility, automated remediation, audit-ready reports, and one-click compliance documentation fully integrated with Bitdefender endpoint security and risk analytics. 'GravityZone Compliance Manager performed well for us during early access. The continuous monitoring and assessment feature reduced our reliance on manual scans, saving valuable time. Because it's integrated into our existing security stack, we've avoided the additional cost and complexity of using external tools. It has simplified our operations by eliminating the need for multiple point solutions,' stated Alin Paunescu, chief information security officer at Patria Bank. In recent research, Gartner® recommends that organisations, 'Combine compliance and risk management effectively by prioritising the implementation of impact-based assessments and automated, continuous monitoring capabilities¹.' With regulations like GDPR, PCI DSS, NIS2 and DORA introducing stricter penalties, organisations can no longer afford fragmented or manual compliance approaches. The financial consequences of non-compliance are severe with fines up to €20 million or four per cent of global annual turnover under GDPR and US$100 thousand per month under PCI DSS. These penalties come in addition to significant reputational damage organisations face that often follows regulatory violations. Regulatory demands are increasing, but most organisations still rely on fragmented tools and manual processes. Designed as an add-on to Bitdefender GravityZone, the company's flagship unified security and risk analytics platform, GravityZone Compliance Manager minimises complexity by unifying compliance, risk, and security operations in a single platform. It delivers real-time compliance scoring, automated reporting, and guided remediation, all without the need for specialised in-house expertise. Key Benefits of GravityZone Compliance Manager: Automated Audit-Ready Reports in Seconds –Instantly generate compliance reports aligned with auditor requirements using existing Bitdefender tooling. GravityZone Compliance Manager simplifies audit preparation by automating evidence collection and removing reporting complexity. Reports are structured for auditor review and include an executive summary of the organisation's overall compliance score, a breakdown of compliant versus non-compliant checks, and a risk overview detailing the severity of high, medium, and low risks. One Platform for Security, Risk Management, and Compliance – GravityZone Compliance Manager builds on Bitdefender's unified platform by adding compliance management to a foundation that already includes prevention, detection, response, and risk analytics. Combined with Bitdefender Proactive Hardening and Attack Surface Reduction (PHASR), which proactively reduces exposure by disabling unused or risky system tools, organisations can both harden their environments and stay continuously aligned with compliance requirements. When risks are resolved, compliance status updates automatically which streamlines operations and improves organisations' cybersecurity posture. Supports Major Industry and Geo Specific Compliance Standards – GravityZone Compliance Manager provides immediate visibility into endpoint compliance posture and streamlines regulatory alignment with out-of-the-box support for major frameworks—including region and industry-specific standards such as GDPR, HIPAA, DORA, NIS 2 Directive, PCI DSS, SOC 2, ISO 27001, CISv8, CMMC 2.0 and more. Businesses quickly identify and remediate compliance gaps with a single click and can drill down further into specific standards or benchmarks to view detailed information on associated risks and affected assets. 'The consequences of non-compliance, including financial loss, operational disruption, and reputational damage, rival those of a data breach or ransomware attack, yet most businesses lack the resources or specialised talent needed to manage compliance with confidence,' said Andrei Florescu, president and general manager of Bitdefender Business Solutions Group. 'GravityZone Compliance Manager is a game-changer that consolidates compliance, risk management, and endpoint security on a single platform, enabling businesses to meet regulatory demands effortlessly and reduce complexity to strengthen cyber resilience.' Availability Bitdefender GravityZone Compliance Manager is available now for new and existing customers. All Risk Management users receive automatic access to a basic standard with real-time insights and best-practice guidelines. A full Compliance Manager add-on license unlocks support for advanced compliance frameworks, detailed scoring, full compliance visibility, and exportable reports. For more information visit here. Notes: ¹Gartner, 2025 Strategic Roadmap for Cyber GRC, Jie Zhang, Michael Kranawetter, October 4, 2024. Gartner is a registered trademark of Gartner, Inc. and/or its affiliates and is used herein with permission. All rights reserved. * Legal Notice Bitdefender GravityZone Compliance Manager features and reports are designed to help organisations with compliance-related security activities, in particular with assessing and helping maintain compliance with its listed standards and baselines but can neither fully replace internal efforts nor guarantee that an organisation will pass a compliance audit. Bitdefender recommends working with an approved auditor to obtain any official compliance certifications. About Bitdefender Bitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide. Guardian over millions of consumers, enterprises, and government environments, Bitdefender is one of the industry's most trusted experts for eliminating threats, protecting privacy, digital identity and data, and enabling cyber resilience. With deep investments in research and development, Bitdefender Labs discovers hundreds of new threats each minute and validates billions of threat queries daily. The company has pioneered breakthrough innovations in antimalware, IoT security, behavioural analytics, and artificial intelligence and its technology is licensed by more than 180 of the world's most recognised technology brands. Founded in 2001, Bitdefender has customers in 170+ countries with offices around the world. For more information, visit


Scoop
3 days ago
- Scoop
Bitdefender Launches Powerful Compliance Management Solution Unified With Endpoint Security
GravityZone Compliance Manager Reduces the Cost and Complexity of Regulatory Compliance Requirements Across All Environments and Industries Bitdefender, a global cybersecurity leader, today announced GravityZone Compliance Manager, a new addition to its GravityZone platform that helps organisations reduce the burden of compliance and streamline audit readiness. Designed specifically for today's complex regulatory landscape, the solution provides real-time visibility, automated remediation, audit-ready reports, and one-click compliance documentation fully integrated with Bitdefender endpoint security and risk analytics. 'GravityZone Compliance Manager performed well for us during early access. The continuous monitoring and assessment feature reduced our reliance on manual scans, saving valuable time. Because it's integrated into our existing security stack, we've avoided the additional cost and complexity of using external tools. It has simplified our operations by eliminating the need for multiple point solutions,' stated Alin Paunescu, chief information security officer at Patria Bank. In recent research, Gartner® recommends that organisations, 'Combine compliance and risk management effectively by prioritising the implementation of impact-based assessments and automated, continuous monitoring capabilities¹.' With regulations like GDPR, PCI DSS, NIS2 and DORA introducing stricter penalties, organisations can no longer afford fragmented or manual compliance approaches. The financial consequences of non-compliance are severe with fines up to €20 million or four per cent of global annual turnover under GDPR and US$100 thousand per month under PCI DSS. These penalties come in addition to significant reputational damage organisations face that often follows regulatory violations. Regulatory demands are increasing, but most organisations still rely on fragmented tools and manual processes. Designed as an add-on to Bitdefender GravityZone, the company's flagship unified security and risk analytics platform, GravityZone Compliance Manager minimises complexity by unifying compliance, risk, and security operations in a single platform. It delivers real-time compliance scoring, automated reporting, and guided remediation, all without the need for specialised in-house expertise. Key Benefits of GravityZone Compliance Manager: Automated Audit-Ready Reports in Seconds –Instantly generate compliance reports aligned with auditor requirements using existing Bitdefender tooling. GravityZone Compliance Manager simplifies audit preparation by automating evidence collection and removing reporting complexity. Reports are structured for auditor review and include an executive summary of the organisation's overall compliance score, a breakdown of compliant versus non-compliant checks, and a risk overview detailing the severity of high, medium, and low risks. One Platform for Security, Risk Management, and Compliance – GravityZone Compliance Manager builds on Bitdefender's unified platform by adding compliance management to a foundation that already includes prevention, detection, response, and risk analytics. Combined with Bitdefender Proactive Hardening and Attack Surface Reduction (PHASR), which proactively reduces exposure by disabling unused or risky system tools, organisations can both harden their environments and stay continuously aligned with compliance requirements. When risks are resolved, compliance status updates automatically which streamlines operations and improves organisations' cybersecurity posture. Supports Major Industry and Geo Specific Compliance Standards – GravityZone Compliance Manager provides immediate visibility into endpoint compliance posture and streamlines regulatory alignment with out-of-the-box support for major frameworks—including region and industry-specific standards such as GDPR, HIPAA, DORA, NIS 2 Directive, PCI DSS, SOC 2, ISO 27001, CISv8, CMMC 2.0 and more. Businesses quickly identify and remediate compliance gaps with a single click and can drill down further into specific standards or benchmarks to view detailed information on associated risks and affected assets. 'The consequences of non-compliance, including financial loss, operational disruption, and reputational damage, rival those of a data breach or ransomware attack, yet most businesses lack the resources or specialised talent needed to manage compliance with confidence,' said Andrei Florescu, president and general manager of Bitdefender Business Solutions Group. 'GravityZone Compliance Manager is a game-changer that consolidates compliance, risk management, and endpoint security on a single platform, enabling businesses to meet regulatory demands effortlessly and reduce complexity to strengthen cyber resilience.' Availability Bitdefender GravityZone Compliance Manager is available now for new and existing customers. All Risk Management users receive automatic access to a basic standard with real-time insights and best-practice guidelines. A full Compliance Manager add-on license unlocks support for advanced compliance frameworks, detailed scoring, full compliance visibility, and exportable reports. For more information visit here. Notes: ¹Gartner, 2025 Strategic Roadmap for Cyber GRC, Jie Zhang, Michael Kranawetter, October 4, 2024. Gartner is a registered trademark of Gartner, Inc. and/or its affiliates and is used herein with permission. All rights reserved. * Legal Notice Bitdefender GravityZone Compliance Manager features and reports are designed to help organisations with compliance-related security activities, in particular with assessing and helping maintain compliance with its listed standards and baselines but can neither fully replace internal efforts nor guarantee that an organisation will pass a compliance audit. Bitdefender recommends working with an approved auditor to obtain any official compliance certifications. About Bitdefender Bitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide. Guardian over millions of consumers, enterprises, and government environments, Bitdefender is one of the industry's most trusted experts for eliminating threats, protecting privacy, digital identity and data, and enabling cyber resilience. With deep investments in research and development, Bitdefender Labs discovers hundreds of new threats each minute and validates billions of threat queries daily. The company has pioneered breakthrough innovations in antimalware, IoT security, behavioural analytics, and artificial intelligence and its technology is licensed by more than 180 of the world's most recognised technology brands. Founded in 2001, Bitdefender has customers in 170+ countries with offices around the world. For more information, visit


Techday NZ
3 days ago
- Techday NZ
Claroty adds business-centred risk tools to xDome platform
Claroty has introduced new capabilities to its Claroty xDome platform designed to offer organisations an impact-centric perspective of their cyber-physical systems (CPS) environment. The Claroty xDome platform now features Device Purpose and Risk Benchmarking, additions that enable users to assess how the risks within their CPS environment are influenced by the function of each device, such as those deployed across production lines, building floors, or hospital wings. These functionalities are intended to help organisations prioritise risk reduction by evaluating potential impacts on critical business outcomes and facilitate greater collaboration between CPS personnel and other business units. Research from Gartner highlights the shifting focus in this area. According to the firm, "Organisations are becoming aware of their blind spots. Asset-intensive organisations increasingly realise that CPS environments are value creation centres. A manufacturing company makes money by producing goods, for instance. Once largely 'out of sight, out of mind,' boards and C-suite executives increasingly want to know how their CPS production and mission-critical environments are protected." Historically, the CPS protection sector has concentrated on an asset-centric approach, offering detailed visibility into individual assets and their respective risks. Although developing a comprehensive asset inventory is considered a core component of any cybersecurity programme, Claroty points out that an exclusive focus on assets might inadvertently prompt security teams to invest resources in protecting devices whose compromise would have minimal or no direct business impact. The company notes the need for organisations to align remediation efforts with the business importance of each asset, whether it relates to critical public services or the company's largest revenue-generating systems. Claroty emphasises scenarios such as a security analyst and operational technology (OT) engineer evaluating two identical devices, where understanding each device's business function is crucial for determining which to address first. The Device Purpose and Risk Benchmarking features in Claroty xDome aim to enable this shift from asset-centricity to impact-driven risk mitigation. These tools furnish maintenance teams with the business context necessary to avoid process disruption, operational downtime, and financial loss. Integrating business context with technical risk profiles creates a shared framework for dialogue between security teams and CPS operators, and also links their activities with broader organisational Business Impact Analysis initiatives. Yoram Gronich, Chief Product Officer at Claroty, commented on recent challenges facing the sector, stating: "The security of critical infrastructures are under growing scrutiny as adversaries increasingly target these systems of the greatest criticality. The teams managing these environments are facing mounting pressure from multiple fronts in their organisations and need tools that exponentially make their jobs easier so they can focus on protecting the mission-critical infrastructures that sustain societal operations - that means having the business context to meaningfully reduce risk." Among the key features of Device Purpose, users can categorise assets according to a hierarchical model and taxonomy aligned with their specific industry sector. The setup allows refinement from an established baseline that includes business impact scoring. This, in turn, enables measurement of how device-level and overall risk scores are affected when assets are reprioritised based on business importance. Risk Benchmarking, the second core capability, gives organisations the ability to compare their CPS risk environment against those of similar organisations. With these analytics, users can observe how protection measures for their most critical assets stack up against industry peers, and track the effectiveness of risk mitigation strategies across a range of risk factors and multiple network segments over time.