The state of cyber resilience: overcoming operational disruptions

Enterprises face challenges post-cyberattack, with operational disruptions lasting days. Absolute Security's study reveals insights and strategies for improving Cyber Resilience.

  • Monday, 12th January 2026 Posted 1 month ago in by Sophie Milburn

Almost a fifth of organisations experienced operational disruptions lasting up to two weeks, with many others losing nearly five days' productivity following a cyberattack. This was revealed in Absolute Security's research into enterprise Cyber Resilience.

Cyber Resilience involves ensuring critical cyber defences are functional and quickly restoring operations post-incident. This global study, surveying 750 Chief Information Security Officers (CISOs) in the US and UK, offers insight into the current state of Cyber Resilience, highlighting challenges and recovery strategies.

Over the past year, 55% of CISOs reported their organisations were victims of cyberattacks or data breaches that incapacitated various endpoints. Recovery times exceeded 4.5 days for the majority, while 19% of organisations took up to two weeks to resume normal operations. The implied financial burden isn't trivial either, with costs per incident averaging $2.5 million.

CISOs find themselves in key roles, having evolved from just being security managers to leading recovery operations post-attack. They are now expected to ensure business continuity, with 72% acknowledging this expanded responsibility. Alongside this, 61% highlight that boards demand assurance against breaches.

The challenges of downtime, job losses, and potential legal repercussions are all significant worries for 59% of CISOs.

A shift in focus is evident, with 65% of CISOs prioritising Cyber Resilience over traditional strategies like threat prevention and detection. This is indicative of an evolving mindset, contrasting with previous figures where 90% had resilience strategies implemented.

Absolute Security’s new initiative, The Resilient CISO Inner Circle, aims to support CISOs. This community, aimed at supporting CISOs worldwide, features insights from industry CISOs and interactive sessions via LinkedIn Live.

To explore the detailed survey findings, join The Resilient CISO Inner Circle.

With identity fraud impacting UK businesses, Signicat appoints Ray Ryan to lead its operations in a key market.
Zenoo integrates Signicat's ReadID technology, aiding European businesses in tackling fraud amidst rising regulatory expectations.
Securonix launches Sam, the AI SOC Analyst, and Agentic Mesh with AWS, introducing a new AI-driven operating model for security operations.
Xplifi strengthens its leadership team with industry experts and advances its AI-driven platform to support growth for Managed Service Providers.
GTIA introduces elected leaders for the UK & Ireland Community, promoting new initiatives and advancing community goals.
Cyrille Badeau joins Securonix as VP of EMEA, strengthening its team post-ThreatQuotient acquisition, to drive growth across Europe and MEA.
DSAF announces a new initiative and tools to enable 10,000 SMEs to join data spaces, enhancing innovation and compliance.
Digital Space strengthens its service capabilities through Fortinet's Engage Partner programme, enhancing security solutions for diverse sectors.