2025 Public Company Board Practices Oversight Survey

Data Pack: Cybersecurity

07/28/2025

 

How important is it that your board improves in the following areas related to cyber-risk oversight?

 

Areas Related to Cyber-Risk Oversight

Not at all important

Slightly important

Moderately important

Very important

Extremely important

n

Alignment of compensation incentives with corporate cybersecurity objectives

30.57%

21.02%

28.66%

15.29%

4.46%

157

Quality of board-CISO relationship

15.58%

18.83%

28.57%

29.22%

7.79%

154

Board cybersecurity expertise

8.70%

24.22%

33.54%

28.57%

4.97%

161

Linking cybersecurity to strategic priorities

12.18%

21.79%

29.49%

27.56%

8.97%

156

Quality of cybersecurity education plans and access to outside expertise

12.58%

20.75%

28.30%

30.19%

8.18%

159

Committee oversight responsibility

11.39%

19.62%

29.11%

30.38%

9.49%

158

Quality of management reporting

9.49%

18.99%

28.48%

34.18%

8.86%

158

Acquiring metrics to accurately measure and assess cybersecurity

10.76%

16.46%

26.58%

33.54%

12.66%

158

 

This table comes from the Cybersecurity section of the 2025 NACD Public Company Board Practices and Oversight Survey.