Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

PlushDaemon Hackers Unleash New Malware in China-Aligned Spy Campaigns

November 19, 2025

Hyper-V Malware, Malicious AI Bots, RDP Exploits, WhatsApp Lockdown and More

November 19, 2025

China-Linked Operation “WrtHug” Hijacks Thousands of ASUS Routers

November 19, 2025
Facebook X (Twitter) Instagram
Wednesday, November 19
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»Cyber Security»Cyber Readiness Stalls Despite Confidence in Incident Response
Cyber Security

Cyber Readiness Stalls Despite Confidence in Incident Response

Team-CWDBy Team-CWDNovember 18, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


Cyber readiness is stalling as over-confident teams ignore the reality that incident response times have not improved despite more spending and oversight, according to Immersive.

The cyber-training vendor’s Cyber Workforce Benchmark Report 2025 is based on anonymized data collected from the Immersive One platform, simulated exercises across technical and business functions, and a readiness perception survey.

A resilience score quantifies organizational readiness across skills, practices, decision-making performance, framework coverage and adaptability to new threats.

The study found that, while 91% of leaders now say their organization could handle a major incident, resilience scores have remained flat since 2023, and the median response time to complete critical “labs” or exercises remains 17 days.

Read more on cyber readiness: #Infosec2024: Cyber Resilience Means Being Willing to Learn From a Crisis

When running Immersive’s “Orchid Corp” crisis scenario, participants averaged just 22% decision accuracy and took 29 hours to containment.

Part of the reason for the lack of progress on cyber readiness is that only two-fifths (41%) of organizations include non-technical roles in their simulations, meaning critical business decisions go untested until the real thing, Immersive claimed.

The firm added that 60% of training activity focuses on vulnerabilities that are more than two years old, meaning teams are unprepared to deal with today’s threats.

How to Improve Cyber Readiness

The Immersive report had several recommendations for improving cyber resilience and readiness.

It urged organizations to:

  • Establish regular readiness training and rotate scenario types
  • Ensure training is fully completed and not just attempted
  • Involve senior leadership directly, through executive simulations, readiness briefings and the appointment of a readiness oversight sponsor
  • Expand readiness efforts beyond IT to include representatives from legal, comms, HR and elsewhere
  • Focus on current CVEs and integrate threat intelligence feeds into the training roadmap
  • Focus readiness efforts on the three pillars of: “prove, improve, report”

“Readiness isn’t a box to tick, it’s a skill that’s earned under pressure,” said James Hadley, founder of Immersive.

“Organizations aren’t failing to practice; they’re failing to practice the right things. True resilience comes from continuously proving and improving readiness across every level of the business, so when a real crisis hits, your confidence is backed by evidence, not assumption.”



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleEnterprise Credentials at Risk – Same Old, Same Old?
Next Article Hidden Logic Bombs in Malware-Laced NuGet Packages Set to Detonate Years After Installation
Team-CWD
  • Website

Related Posts

Cyber Security

Half a Million Stolen FTSE 100 Credentials Found on Criminal Sites

November 19, 2025
Cyber Security

Best Practices for SAP Identity Framework Migration

November 13, 2025
Cyber Security

UK Government Finally Introduces Cyber Security and Resilience Bill

November 13, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest News

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202512 Views

North Korean Hackers Exploit Threat Intel Platforms For Phishing

September 7, 20256 Views

U.S. Treasury Sanctions DPRK IT-Worker Scheme, Exposing $600K Crypto Transfers and $1M+ Profits

September 5, 20256 Views

Ukrainian Ransomware Fugitive Added to Europe’s Most Wanted

September 11, 20255 Views

The risks of unsupported IoT tech

September 11, 20255 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202512 Views

North Korean Hackers Exploit Threat Intel Platforms For Phishing

September 7, 20256 Views

U.S. Treasury Sanctions DPRK IT-Worker Scheme, Exposing $600K Crypto Transfers and $1M+ Profits

September 5, 20256 Views
Our Picks

Watch out for SVG files booby-trapped with malware

September 22, 2025

What is it, and how do I get it off my device?

September 11, 2025

The hidden risks of browser extensions – and how to avoid them

September 13, 2025

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2025 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.