Addressing the UK’s trust gap in cyber risk management

CyXcel's research reveals that a lack of trust in third-party vendors leaves UK businesses exposed to escalating digital threats.

  • Thursday, 17th July 2025 Posted 7 months ago in by Aaron Sandhu

New research by CyXcel, a global cybersecurity consultancy, has highlighted a worrying gap in the UK's digital risk landscape. Nearly three in ten UK risk managers claim insufficient trust in third-party vendors, escalating their risk factors and threatening their business stability.

This trust deficit is both a vendor and a visibility issue. According to CyXcel, over a quarter of UK respondents are unaware of the risks they manage, complicating vendor evaluations. As companies increasingly outsource areas like cyber incident response (26%), AI adoption (20%), and geopolitical risk management (21%), they must confront a fragile risk stance without trusted partners or internal clarity.

The challenge intensifies with converging threats: AI-driven attacks, geopolitical instability, and sophisticated cybercrime. These conditions demand more than mere contracts or one-time vendor reviews. Instead, businesses need intelligence-led, validated partnerships, alongside systems for real-time assessment, questioning, and course correction.

Compounding this, organisations investing £75,000 to £100,000 yearly in risk tools remain unsure of their effectiveness. One in four risk managers feels overwhelmed by the complexities they face. It's crucial to evaluate whether outsourcing is strategic or stems from inadequate internal risk comprehension.

CyXel's Digital Risk Management (DRM) platform addresses these challenges by offering insights into AI-related risks across all sectors, regardless of organisation size. The DRM platform aids in identifying risks and formulating appropriate policies and governance. Notably, it brings together cyber, legal, technical, and strategic insights, developed from decades of experience.

This platform provides real-time vendor assurance and remediation, assuring organisations of their third-party integrity. In light of rising supply chain attacks and stringent third-party oversight regulations, CyXcel’s DRM is shifting organisations from a reactive to a resilient posture.

Xplifi strengthens its leadership team with industry experts and advances its AI-driven platform to support growth for Managed Service Providers.

UK & Ireland community welcomes new GTIA executive leaders

Posted 7 hours ago by Sophie Milburn
GTIA introduces elected leaders for the UK & Ireland Community, promoting new initiatives and advancing community goals.
Cyrille Badeau joins Securonix as VP of EMEA, strengthening its team post-ThreatQuotient acquisition, to drive growth across Europe and MEA.
DSAF announces a new initiative and tools to enable 10,000 SMEs to join data spaces, enhancing innovation and compliance.
Digital Space strengthens its service capabilities through Fortinet's Engage Partner programme, enhancing security solutions for diverse sectors.
Orange Business and Cisco launch Post-Quantum Cryptography solutions to fortify network security against future quantum threats.

Principle Network joins Wiz partner service alliance

Posted 9 hours ago by Sophie Milburn
Principle Networks strengthens its position in cloud security by joining the Wiz Partner Service Alliance.
Sophos further enhances its cybersecurity offering by acquiring UK-based Arco Cyber, aiming to strengthen its CISO Advantage initiative.