Chief Information Officers (CIOs) and Chief Information Security Officers (CISOs) are facing unprecedented challenges as they prepare for 2025, with cybersecurity emerging as the top concern for 41% of CIOs according to the Experis Future Forward: CIO 2025 Outlook report. Organizations are responding by planning significant increases in cybersecurity budgets, with 77% of surveyed companies intending to boost security spending in the coming year. Alongside this, there is a parallel push to expand cloud infrastructure (68%) and accelerate artificial intelligence (AI) capabilities (67%), reflecting the dual imperative to innovate while defending against evolving threats. However, the Bitdefender 2025 Cybersecurity Assessment Report reveals a troubling trend: 58% of security professionals have been instructed to keep breaches confidential, a 38% increase since 2023, raising concerns about transparency, compliance, and stakeholder trust. The pressure to remain silent is particularly acute for CISOs and CIOs, highlighting a growing disconnect between leadership and frontline security teams. The reports also underscore a critical skills gap, with 76% of IT employers struggling to find qualified tech talent, prompting 52% of tech leaders to embed AI skills into existing roles rather than create new positions. Attack surface management has become a top priority for 68% of organizations, driven by the rise of Living Off the Land (LOTL) attacks, which now account for 84% of high-severity incidents and exploit legitimate tools within enterprise environments to evade detection. Proactive measures such as disabling unnecessary services, removing unused applications, and limiting lateral movement are increasingly seen as essential. The relationship between CIOs and other C-suite executives, particularly the COO, is identified as crucial for effective risk management and operational alignment. Despite increased investment, 56% of IT leaders believe that senior leadership lacks sufficient understanding of the CIO role and its responsibilities, potentially hindering effective cybersecurity governance. AI is both a source of optimism and concern, with 67% of leaders believing in its transformative potential, but there remains a gap between perception and practical implementation. Internal audit teams are adapting to these risks by reassessing their approaches to cybersecurity, AI, and economic uncertainty. Burnout among middle management and the need for improved board-level engagement are also highlighted as factors influencing organizational resilience. The combined findings from Experis and Bitdefender illustrate a landscape where technology leaders must balance innovation, risk management, and transparency to safeguard their organizations in an era of relentless cyber threats and rapid digital transformation.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
1 event from the most recent confirmed update back to the earliest known activity.
Initial story creation
2 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcethehackernews.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.