Articles

Cyber Risk Benchmarking for SEC-Ready Oversight

Below is an excerpt from ISS-Corporate’s recently released article “Cyber Risk Benchmarking for SEC-Ready Oversight”.

The full article is available on ISS-Corporate’s resources page.   

The cybersecurity disclosure rules issued by the U.S. Securities and Exchange Commission (SEC) in 2023 marked a turning point in how organizations approach cyber risk governance. By requiring public companies to not only disclose material cyber incidents, but to also describe the way they oversee and manage cyber risk, the SEC effectively elevated cybersecurity from a technical concern to a matter of formal accountability for corporate leadership and board members. 

Learn More

Authored By

Douglas Clare, Head of Cyber Risk Services, ISS-Corporate

The products and services described on this website are provided by entities within the ISS STOXX group and may be subject to different regulatory frameworks. These entities are separate, but affiliated, subsidiaries of ISS STOXX GmbH.

Stewardship Solutions, which consists of ISS STOXX Governance and ISS STOXX Sustainability, are provided exclusively by Institutional Shareholder Services Inc. (“ISS Inc.”) an Investment Adviser registered with the US Securities and Exchange Commission (“SEC”) under the Investment Advisers Act of 1940. ISS Inc. provides its investment advisory services exclusively to institutional clients and does not serve the retail marketplace at this time. Additional information about ISS Inc., including its advisory services, fees, and conflict mitigation practices, is available in ISS’ Form ADV which is accessible through the SEC’s website at sec.gov and also our Compliance page.

All solutions under Indices including STOXX services, such as indices and benchmark data, are provided by STOXX Ltd. and are governed by the EU Benchmark Regulation.

The solutions listed below, which are offered by ISS Market Intelligence, are provided by Asset International Inc and/or its subsidiaries, and are not considered investment advisory services under the Investment Advisers Act of 1940.

ISS Market Intelligence’s class action solutions are provided by Securities Class Action Services, LLC and are not considered investment advisory services under the Investment Advisers Act of 1940.

ISS-Corporate services are provided by ISS Corporate Solutions, Inc. These services are not considered investment advisory services under the Investment Advisers Act of 1940.

This communication and all of the information contained in it, including without limitation all text, data, graphs and charts, is the property of ISS STOXX GmbH and/or its subsidiaries and is provided for informational purposes only. The information may not be modified, reproduced or redisseminated, in whole or in part, without prior written permission from ISS STOXX. All statistics referenced in this document are approximate and updated on an annual basis and, unless otherwise noted, relate to the year ending December 31, 2025.

None of the information included in this communication constitutes an offer to sell (or a solicitation of an offer to buy), or a promotion or recommendation of, any security, financial product or other investment vehicle, and ISS STOXX does not endorse or approve any issuer, securities, financial products.

ISS STOXX MAKES NO EXPRESS OR IMPLIED WARRANTIES OR REPRESENTATIONS WITH RESPECT TO THE INFORMATION.

©2026 ISS STOXX and/or its subsidiaries. All rights reserved.