▾ G11 Media Network: | ChannelCity | ImpresaCity | SecurityOpenLab | Italian Channel Awards | Italian Project Awards | Italian Security Awards | ...
InnovationOpenLab

Report Finds 68% of Organizations Fail to Remediate Critical Vulnerabilities on Time

According to a newly released report from Swimlane, a concerning 68% of organizations say remediating a critical vulnerability takes more than 24 hours. The report, “Under Pressure: Is Vulnerability...

Business Wire

Swimlane study reveals fragmented data, siloed processes expose organizations to greater risk

DENVER: According to a newly released report from Swimlane, a concerning 68% of organizations say remediating a critical vulnerability takes more than 24 hours. The report, “Under Pressure: Is Vulnerability Management Keeping Up?" reveals that fragmented data from multiple scanners, siloed risk scoring and poor cross-team collaboration are leaving organizations increasingly exposed to breaches, compliance failures and costly penalties.

The relentless surge of vulnerabilities is pushing security teams to their limits, forcing them to manage overwhelming volumes of risk with tools and processes that are no longer adequate. To better understand this landscape, Swimlane surveyed 500 cybersecurity decision-makers in the United States and the United Kingdom to uncover how vulnerability management teams are coping with these challenges.

“The growing complexity of vulnerability management is pushing organizations to rethink how they approach organization-wide security, risk and compliance strategies,” said Michael Lyborg, CISO at Swimlane. “It’s no longer just about patching vulnerabilities — it’s about prioritizing the ones that matter most to your operations. With businesses losing an estimated $47,580 per employee each year due to manual tasks, organizations can no longer afford to operate in the reactive mode of the past.”

Key Takeaways

  • Lack of Context Fuels the Race Against Time: 68% of organizations leave critical vulnerabilities unresolved for over 24 hours, with 37% citing a lack of context or accurate information as the top challenge in prioritization. Similarly, 35% report this lack of context hampers their remediation efforts.
  • Vulnerability Management is a Web of Complexity: Over half (55%) of organizations still lack a comprehensive system for vulnerability prioritization. While 45% leverage a hybrid approach combining manual and automated processes, many rely on tools like cloud security posture management (71%), multiple endpoint scanners (60%), and web application scanners (59%) for vulnerability detection.
  • The Hidden Costs of Manual Effort and Inefficiency: Manual tasks consume significant resources, with 57% of security teams dedicating 25–50% of their time to vulnerability management operations. More than half (55%) spend over five hours weekly consolidating and normalizing vulnerability data, while 51% note the limited utility of scanner results, necessitating additional tools and processes.
  • Confidence Shortfall in Regulatory Compliance: Nearly two-thirds (65%) of organizations lack confidence in their vulnerability management programs' ability to meet regulatory audit requirements. Meanwhile, 73% express concern over potential fines tied to inadequate vulnerability management practices.
  • Siloed Processes Fuel Bigger Security Risks: A majority (59%) of organizations report that siloed vulnerability management practices are creating inefficiencies and exposing their systems to potential security risks.

“Smarter prioritization and automation are no longer optional — they are essential to reducing vulnerabilities, preventing breaches and ensuring continuous compliance,” said Cody Cornell, Co-Founder and Chief Strategy Officer of Swimlane. “By blending intelligent automation with human expertise, vulnerability management teams gain the clarity they need to act decisively. Centralizing data and responding in real-time isn’t a luxury — it’s a business imperative that minimizes risk and frees up time to focus on the next challenge.”

Key Resources

Methodology

The survey was conducted among 500 cybersecurity decision-makers at enterprise companies with at least 1,000 employees in the United States and United Kingdom. The interviews were conducted online by Sapio Research and under the guidance of Swimlane, Inc. in November and December 2024 using an email invitation and an online survey.

About Swimlane

At Swimlane, we believe the convergence of agentic AI and automation can solve the most challenging security, compliance and IT/OT operations problems. With Swimlane, enterprises and MSSPs benefit from the world's first and only hyperautomation platform for every security function. Only Swimlane gives you the scale and flexibility to build your own hyperautomation applications to unify security teams, tools and telemetry ensuring today’s SecOps are always a step ahead of tomorrow's threats.

Learn more: swimlane.com

Request a Demo: swimlane.com/demo

Fonte: Business Wire

If you liked this article and want to stay up to date with news from InnovationOpenLab.com subscribe to ours Free newsletter.

Related news

Last News

RSA at Cybertech Europe 2024

Alaa Abdul Nabi, Vice President, Sales International at RSA presents the innovations the vendor brings to Cybertech as part of a passwordless vision for…

Italian Security Awards 2024: G11 Media honours the best of Italian cybersecurity

G11 Media's SecurityOpenLab magazine rewards excellence in cybersecurity: the best vendors based on user votes

How Austria is making its AI ecosystem grow

Always keeping an European perspective, Austria has developed a thriving AI ecosystem that now can attract talents and companies from other countries

Sparkle and Telsy test Quantum Key Distribution in practice

Successfully completing a Proof of Concept implementation in Athens, the two Italian companies prove that QKD can be easily implemented also in pre-existing…

Most read

Keysight Launches All-In-One Solution for Network Visibility and Security

#AI--Keysight Technologies, Inc. (NYSE: KEYS) launched AppFusion, a network visibility partner program that integrates third-party security and monitoring…

Sensormatic Solutions Extends Shrink Analyzer Capabilities ‘Beyond the…

Sensormatic Solutions, the leading global retail solutions portfolio of Johnson Controls (NYSE: JCI), continues its mission of building smarter, more…

AI Solutions for Visually Impaired, AI Search and AI Agents Win ISG Startup…

#AI--AI-powered solutions for addressing visual impairments, optimizing brands for AI search and creating AI agents won the ISG Startup Challenges at…

N-Power Medicine Acquires Syapse to Expand Its Next-Generation Community-Based…

N-Power Medicine, a company leading the reinvention of the clinical trial process, today announced the acquisition of Syapse Holdings Inc. (“Syapse”),…

Newsletter signup

Join our mailing list to get weekly updates delivered to your inbox.

Sign me up!