ETFOptimize | High-performance ETF-based Investment Strategies

Quantitative strategies, Wall Street-caliber research, and insightful market analysis since 1998.


ETFOptimize | HOME
Close Window

LevelBlue Research Reveals Urgent Need for Software Supply Chain Transparency

80% of organizations that report very low visibility across the software supply chain have suffered a security breach in the past 12 months

LevelBlue, a leading provider of managed security services, strategic consulting, and threat intelligence, today released the LevelBlue Data Accelerator: Software Supply Chain and Cybersecurity, which found only 23% of organizations are confident that they have very high visibility of their software supply chain. The limited visibility reported by organizations significantly impacts their cyber resilience, revealing the lack of transparency as a critical and often overlooked risk facing global organizations.

This Accelerator is an in-depth analysis into data from the 2025 LevelBlue Futures Report, comparing risk appetites, investment gaps, and overall preparedness to help organizations secure their end-to-end software supplier ecosystem. It shows software supply chain security as a growing business concern in 2025. This is partly due to regional regulatory framework demands, and because the attack surface is expanding in response to artificial intelligence (AI) adoption and the integration of complex third-party ecosystems.

Research shows that companies are unnecessarily vulnerable to software supply chain threats, with about half (49%) saying they lack the visibility to fully understand – or even identify – the risks. This lack of transparency causes 80% of organizations with "very low visibility" to have suffered a security breach in the past 12 months, a stark contrast to just 6% of those with "very high visibility." Additionally, 80% of organizations with low visibility view critical factors like custom code, commercial off-the-shelf software, and API integrations as "very risky" or "somewhat risky."

“Our Accelerator underscores an immediate need for organizations to prioritize a transparent and secure software supply chain,” said Theresa Lanowitz, Chief Evangelist of LevelBlue. "In an era of increasing AI disruption and evolving threats from nation-states and cybercriminal groups, the ability to withstand and recover from cyberattacks is directly tied to a clear understanding of an organization's software ecosystem."

A total of 68% of organizations report that media attention has elevated cybersecurity on the C-suite agenda, with organizations indicating that third-party risk management is one of the biggest threats they face. Despite this, only a quarter (25%) of organizations plan to prioritize engaging with software suppliers about security credentials in the next 12 months.

Additional key findings include:

  • 40% of CEOs believe that the biggest security risk the organization faces today is from the software supply chain - compared with 29% of CIOs and 27% of CTOs.
  • 39% of CEOs say AI adoption presents a greater risk to the software supply chain.
  • In North America, the top three risks for organizations are third-party software distribution channels (49%), third-party risk management (48%), and unsupported software (48%).
  • 57% of North American organizations say they are prepared for software supply chain attacks, compared to 44% in APAC. In Europe and Latin America, 51% and 50% say they are prepared, respectively.
  • 67% of European organizations are investing in enhanced software supply chain security, the highest of all regions.
  • While software supply chain investment is highest in Europe, the region ranks lowest at 23% in prioritizing engaging with software suppliers about security credentials.

The LevelBlue Data Accelerator provides actionable insights for organizations striving to secure their software supply chain. This includes taking the following four steps:

  1. Leverage C-suite Awareness: Capitalize on leadership's understanding of risks to secure budgets for enhanced security measures.
  2. Identify Vulnerabilities: Work internally to pinpoint major vulnerabilities and understand their potential business impact to prioritize shorter-term visibility improvements.
  3. Proactive Investment: Continuously invest in cybersecurity measures such as advanced threat detection and response alongside exposure and vulnerability management technologies to stay prepared for emerging and evolving cyber risks.
  4. Demand Supplier Credentials: Request and regularly assess evidence of suppliers’ cybersecurity credentials to build confidence and maintain organizational resilience.

Dive further into the LevelBlue Data Accelerator: Software Supply Chain and Cybersecurity here. This study follows the release of the 2025 LevelBlue Futures Report which can be found here.

For more information on LevelBlue and its managed security, consulting, and threat intelligence services, please visit www.levelblue.com

Methodology

The research is based on a quantitative survey that was carried out by FT Longitude in January 2025. There were a total of 1,500 C-suite and senior executives surveyed across 16 countries and seven industries: energy and utilities, financial services, healthcare, manufacturing, retail, transportation, and US SLED (state, local government, and higher education).

About LevelBlue

We simplify cybersecurity through award-winning managed services, experienced strategic consulting, threat intelligence, and renowned research. Our team is a seamless extension of yours, providing transparency and visibility into security posture and continuously working to strengthen it.

We harness security data from numerous sources and enrich it with artificial intelligence to deliver real-time threat intelligence- this enables more accurate and precise decision making. With a large, always-on global presence, LevelBlue sets the standard for cybersecurity today and tomorrow. We easily and effectively manage risks so you can focus on your business.

Welcome to LevelBlue. Cybersecurity. Simplified. Learn more at www.levelblue.com.

Contacts

Recent Quotes

View More
Symbol Price Change (%)
AMZN  230.82
-1.71 (-0.74%)
AAPL  271.86
-1.22 (-0.45%)
AMD  214.16
-1.18 (-0.55%)
BAC  55.00
-0.28 (-0.51%)
GOOG  313.80
-0.75 (-0.24%)
META  660.09
-5.86 (-0.88%)
MSFT  483.62
-3.86 (-0.79%)
NVDA  186.50
-1.04 (-0.55%)
ORCL  194.91
-2.30 (-1.17%)
TSLA  449.72
-4.71 (-1.04%)
Stock Quote API & Stock News API supplied by www.cloudquote.io
Quotes delayed at least 20 minutes.
By accessing this page, you agree to the Privacy Policy and Terms Of Service.


 

IntelligentValue Home
Close Window

DISCLAIMER

All content herein is issued solely for informational purposes and is not to be construed as an offer to sell or the solicitation of an offer to buy, nor should it be interpreted as a recommendation to buy, hold or sell (short or otherwise) any security.  All opinions, analyses, and information included herein are based on sources believed to be reliable, but no representation or warranty of any kind, expressed or implied, is made including but not limited to any representation or warranty concerning accuracy, completeness, correctness, timeliness or appropriateness. We undertake no obligation to update such opinions, analysis or information. You should independently verify all information contained on this website. Some information is based on analysis of past performance or hypothetical performance results, which have inherent limitations. We make no representation that any particular equity or strategy will or is likely to achieve profits or losses similar to those shown. Shareholders, employees, writers, contractors, and affiliates associated with ETFOptimize.com may have ownership positions in the securities that are mentioned. If you are not sure if ETFs, algorithmic investing, or a particular investment is right for you, you are urged to consult with a Registered Investment Advisor (RIA). Neither this website nor anyone associated with producing its content are Registered Investment Advisors, and no attempt is made herein to substitute for personalized, professional investment advice. Neither ETFOptimize.com, Global Alpha Investments, Inc., nor its employees, service providers, associates, or affiliates are responsible for any investment losses you may incur as a result of using the information provided herein. Remember that past investment returns may not be indicative of future returns.

Copyright © 1998-2017 ETFOptimize.com, a publication of Optimized Investments, Inc. All rights reserved.