Panorays has released the 2026 edition of its annual CISO Survey for Third-Party Cyber Risk Management. The survey highlights third-party cyber risk as one of thePanorays has released the 2026 edition of its annual CISO Survey for Third-Party Cyber Risk Management. The survey highlights third-party cyber risk as one of the

2026 Panorays Study: 85% of CISOs Can’t See Third-Party Threats Amid Increasing Supply Chain Attacks

2026/01/15 05:58
6 min read
For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

New York, NY, January 14th, 2026/CyberNewsWire/--Panorays, a leading provider of third-party security risk management software, has released the 2026 edition of its annual CISO Survey for Third-Party Cyber Risk Management.

The survey highlights third-party cyber risk as one of the most critical challenges facing security leaders today, driven largely by a lack of visibility. While 60% of CISOs report an increase in third-party security incidents, only 15% say they have full visibility into those risks.

These gaps are compounded by limited resources and technology stacks that weren’t designed to manage dynamic supply-chain threats at scale.

Drawing on responses from 200 CISOs of US-based companies, the 2026 Panorays CISO Survey puts a spotlight on cybersecurity executives’ continuing challenges to shore up software supply chain security, as these efforts are further undermined by resource constraints and tech stacks that fall short.

Despite growing adoption, standard Governance, Risk, and Compliance (GRC) platforms have largely failed security teams, leaving them without the ability or confidence needed to effectively address the rising tide of third-party threats.

Key Findings and Insights

  • Preparedness is dangerously low: While 77% of CISOs see third-party risk as a major threat, only 21% have tested crisis response plans in place. This suggests that organizations are increasingly susceptible to prolonged outages, exposure of sensitive systems and financial losses in the event of a security breach, as well as compliance violation penalties. Without a proper response plan in place, even minor incidents have the potential to spiral out of control.

\

  • Most organizations are blind to vendors: Although 60% report rising third-party breaches, just 41% monitor risk beyond direct suppliers. CISOs face massive observability gaps, as they’re only watching the front door. But the biggest risks are lurking in the background, largely unseen by most security teams.

\

  • Shadow AI is creating new attack paths: Despite rapid AI adoption, only 22% of CISOs have formal vetting processes, leaving unmanaged third-party AI tools embedded in core environments. Teams are adopting black-box AI tools faster than security teams can keep up, with 60% of respondents identifying shadow AI as uniquely risky. This creates a dangerous and growing blind spot for CISOs, as high-risk third-party systems are granted access to IT environments without scrutiny.

\

  • CISOs are dissatisfied with their compliance stacks. The report found that 61% of businesses have invested in GRC software solutions, yet 66% say that these platforms are ineffective in dealing with the dynamic nature of external third-party supply chain risks. As a result, security teams are forced to rely on manual workarounds instead, increasing the likelihood of vulnerabilities being missed.

\

  • Static security assessments are no longer up to the job. This is a growing consensus among CISOs, with 71% admitting that traditional questionnaires fall short of expectations, creating fatigue instead of visibility into the threat landscape. Fortunately, CISOs are quickly embracing alternatives, with 66% moving on to AI-driven assessment tools.

Left to right: Panorays Co-founders Meir Antar (COO), Matan Or-El (CEO) and Demi Ben-Ari (Chief Strategy Officer)

“Our findings show that third-party security vulnerabilities aren’t going away – in fact, they’re becoming more prevalent due to a dangerous lack of visibility and the rampant adoption of unmanaged AI tools,” said Matan Or-El, founder and CEO of Panorays. “Meanwhile, it’s especially alarming that only 15% of CISOs say they have the ability to map out their entire supply chains.”

“The rise of AI has only made supply chains more complex, and the connected nature of these data-dependent systems is expanding the attack surface,” Or-El continued. “CISOs are increasingly seeing the value of AI-driven solutions to increase clarity around the evolving threat landscape.”

Visibility Is Being Prioritized, but CISOs’ Hands Remain Tied

The new report found there’s a growing sense of urgency among CISOs due to the failure of traditional GRC platforms to manage third-party risk at scale. Almost two-thirds of organizations have invested in GRC tools, up from just 27% in the 2025 version of Panorays’ report, yet overall visibility has declined, resulting in growing dissatisfaction about the ineffectiveness of these systems.

Fortunately, there are signs that organizations can close the visibility gap as more CISOs explore the use of advanced, AI-driven tools to improve their security posture. Adoption of AI for third-party risk management has surged, up from 27% a year ago to 66% this year.

This shift has led to significant, but still alarmingly insufficient, growth in the ability of organizations to properly assess the third-party threat landscape.

The 2026 survey found that 15% of CISOs now say they have full visibility into their software supply chains, up from just 3% a year ago, but much work remains to be done. While the progress is encouraging, the overall picture remains bleak, as 85% of organizations still lack a complete view of their overall threat landscape.

About the Survey

The 2026 CISO Survey was conducted in October 2025 by the independent research company Global Surveyz on behalf of Panorays. It’s based on responses from 200 Chief Information Security Officers, all of whom are full-time employees tasked with overseeing third-party cybersecurity risk management within their organizations. The sample included CISOs from the finance, insurance, professional services, technology, healthcare and software development sectors.

About Panorays

Panorays is a global provider of third-party cybersecurity management software. Adopted by leading banking, insurance, financial services, and healthcare organizations, Panorays enables businesses to optimize their defenses for each unique third-party relationship.

With personalized and adaptive third-party cyber risk management, Panorays helps businesses stay ahead of emerging threats and delivers actionable remediations with strategic advantages with over 1,000 customers worldwide.

The company serves enterprise and mid-market customers primarily in North America, the UK and the EU, Headquartered in New York and Israel, with offices around the world, Panorays is funded by numerous international investors, including Aleph VC, Oak HC/FT, Greenfield Partners, BlueRed Partners (Singapore), StepStone Group, Moneta VC, Imperva Co-Founder Amichai Shulman and former CEO of Palo Alto Networks Lane Bess. For more information, users can visit panorays.com or contact at info@panorays.com.

Contact

PR

Dan Edelstein

InboundJunction

pr@inboundjunction.com

:::tip This story was published as a press release by Cybernewswire under HackerNoon’s Business Blogging Program. Do Your Own Research before making any financial decision.

:::

\

Market Opportunity
Threshold Logo
Threshold Price(T)
$0.006625
$0.006625$0.006625
-0.46%
USD
Threshold (T) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Bitcoin World Disrupt 2025: Your Final Chance for Unprecedented Brand Exposure at a Premier Tech Summit

Bitcoin World Disrupt 2025: Your Final Chance for Unprecedented Brand Exposure at a Premier Tech Summit

BitcoinWorld Bitcoin World Disrupt 2025: Your Final Chance for Unprecedented Brand Exposure at a Premier Tech Summit In the rapidly evolving world of blockchain and technology, opportunities to truly stand out are rare. But one such moment is slipping away. Today marks the final call for an extraordinary chance to elevate your presence at Bitcoin World Disrupt 2025, the premier gathering for innovators and investors. If you’ve been contemplating making a significant impact, the time to act is now. Hosting a Side Event isn’t just an option; it’s a strategic move to position your brand at the epicenter of innovation. Seize Your Moment: Why a Side Event at Bitcoin World Disrupt is Crucial The energy of Disrupt Week, from October 25–31, 2025, in San Francisco, promises to be electric. This isn’t just another conference; it’s a crucible for future-defining ideas and partnerships. By hosting your own Side Event, you move beyond being a passive attendee. You become a catalyst, a convener of critical discussions, and a beacon for those seeking the next big thing. Imagine shaping the very dialogues that define the conference, attracting an audience eager to engage with your vision. This exclusive opportunity allows you to craft an experience that directly reflects your brand’s values and objectives, away from the general hustle and bustle of the main expo floor. Unlocking Unprecedented Brand Exposure and Influence How do you ensure your message cuts through the noise? At Bitcoin World Disrupt 2025, hosting a Side Event provides unparalleled brand exposure. With over 10,000 founders, investors, and key players from the Bay Area tech ecosystem converging, your event becomes a direct conduit to a highly targeted and influential audience. We handle the heavy lifting of promotion, listing your event alongside official Disrupt programming and leveraging the extensive Bitcoin World audience. This credibility and amplification ensure your message reaches the right ears, positioning your brand as a thought leader and innovator. Instead of merely participating, you are leading, making your mark on a global stage. Direct Pathways to Tech Founders and Investor Connections One of the most significant advantages of hosting a Side Event is the unique access it provides to tech founders and critical investor connections. The main expo floor can be crowded, making deep, meaningful conversations challenging. Your Side Event offers an intimate, focused environment where you can engage directly with potential partners, collaborators, and funders. This direct deal flow is invaluable. You’re not just hoping to bump into the right person; you’re creating the magnet that draws them to you. This targeted interaction fosters genuine relationships, paving the way for future collaborations and investments that can propel your venture forward. What You Stand to Gain (and Lose) by Hosting a Side Event Still weighing your options? Consider the distinct advantages that come with stepping into the host’s role versus remaining an attendee. This isn’t just about visibility; it’s about strategic positioning. Benefit of Hosting a Side Event Missed Opportunity if Not Hosting Influence Where It Matters: Shape the agenda and discussions around Disrupt 2025, establishing your thought leadership. Passively consume content; miss the chance to steer critical conversations. Direct Deal Flow: Engage in focused, high-value conversations with founders and investors outside the crowded main event. Navigate a vast expo floor, competing for attention in a less intimate setting. Audience Leverage: Utilize exclusive host discount codes to bring your network directly to your event and to Disrupt. Limit your reach to organic networking within the general attendee pool. Competitive Edge: Stand out as a convener of ideas and people, differentiating your brand from the multitude of attendees. Blend into the crowd, making it harder to leave a lasting impression. Amplification with Credibility: Gain significant signal-boost from Bitcoin World, lending weight and reach to your initiative. Relinquish the powerful endorsement and promotional support of a major media platform. This stark contrast highlights that hosting is not just an added feature; it’s a fundamental shift in how you experience and benefit from Bitcoin World Disrupt 2025. It’s an investment in your brand’s future, ensuring maximum impact and return. Don’t Miss Out: Your Final Hours for Strategic Investor Connections The clock is ticking. Tonight, applications for hosting a Side Event at Bitcoin World Disrupt 2025 close. There will be no extensions, no late entries. This is your final opportunity to secure a platform that facilitates unparalleled investor connections and propels your brand into the spotlight. The application process is straightforward, designed to get your compelling proposal in front of the organizers quickly. Imagine the conversations you could start, the partnerships you could forge, and the investments you could attract by making this decisive move. This isn’t just about attending; it’s about defining your role in the future of tech and blockchain. Seize this rare chance to not only participate but to lead and innovate. The opportunity to host a Side Event at Bitcoin World Disrupt 2025 is a game-changer for any brand, startup, or individual aiming to make a significant impact in the tech and crypto space. It’s a chance for unparalleled brand exposure, direct engagement with tech founders, and the cultivation of vital investor connections. The benefits extend far beyond the event itself, creating lasting impressions and opening doors to future growth. As the deadline approaches tonight, the choice is clear: blend in, or stand out as a pivotal force at one of the most anticipated tech gatherings of the year. Don’t let this moment pass. Apply now and ensure your brand shines brightly at Bitcoin World Disrupt 2025. To learn more about the latest AI market trends, explore our article on key developments shaping AI features. This post Bitcoin World Disrupt 2025: Your Final Chance for Unprecedented Brand Exposure at a Premier Tech Summit first appeared on BitcoinWorld.
Share
Coinstats2025/09/19 23:30
Hypurr NFT Floor Hits $100,000

Hypurr NFT Floor Hits $100,000

The post Hypurr NFT Floor Hits $100,000 appeared on BitcoinEthereumNews.com. The unreleased Hyperliquid NFTs’ asking price has reached six figures on permissionless OTC markets, with multiple sales above $80,000 this month. Hypurr NFTs, the official Hyperliquid NFTs, are the best-performing NFTs of 2025, and they haven’t even officially launched yet. The Hypurr collection was awarded to the perpetuals trading platform’s top 5000 accounts prior to its token launch in November 2024, and OTC desks traded the unreleased NFTs for between $30,000 and $60,000 throughout most of 2025. However, demand for the collection has skyrocketed as the HYPE token hits new highs, and the floor currently sits at $100,000 on DripTrade, a Hyperliquid-based NFT platform. Hypurr OTC Interface – Drip.Trade There have not been any six-figure sales yet, but there were five sales in September for over $80,000 per NFT, with the highest being $88,000, or roughly 1585 HYPE tokens. Speculation is the main driver behind the intense demand for the Hypurr NFTs, with buyers hoping that NFT holders will receive benefits such as additional HYPE airdrops, ecosystem token distributions, trading fee reductions, or even revenue sharing. Neither Jeff Yan, the founder of Hyperliquid, nor any of the Hyperliquid team has publicly addressed such speculation, remaining tight-lipped over any potential utility the collection may have within the Hyperliquid ecosystem. They also have not revealed why the NFTs haven’t been distributed to eligible users after almost ten months. Source: https://thedefiant.io/news/nfts-and-web3/hypurr-nft-floor-hits-usd100-000
Share
BitcoinEthereumNews2025/09/20 05:00
This is Trump's tell that all isn't well

This is Trump's tell that all isn't well

Years ago, I was drinking with friends in a dive bar with a jukebox. I went over, quarters in hand, and noticed “It’s the Same Old Song” by the Four Tops, sitting
Share
Rawstory2026/03/10 17:30