
| Characteristic | High: understanding from formal, enterprise-wide assessment | Moderate: limited understanding from ad hoc assessments | Low: anecdotal understanding, no assessments | No understanding |
|---|---|---|---|---|
| Cloud risks | 44% | 40% | 14% | 2% |
| Data breaches | 41% | 38% | 18% | 3% |
| Privacy violations | 37% | 40% | 19% | 4% |
| Software supply chain risks | 31% | 45% | 23% | 2% |
| IoT/technology vendors | 30% | 43% | 25% | 2% |
| Nth party risks | 28% | 41% | 27% | 4% |
The chart is not accessible to screen readers. Please switch to the table view to access the data.
Loading statistic...
Download
Source
Release date
November 2021
Region
Canada
Survey time period
October 2021
Number of respondents
114 respondents
Special properties
risks arising from third parties or suppliers
Supplementary notes
The original question was formed as follows: "What is the level of understanding within your organization of the cyber and privacy risks arising from your third parties or suppliers across the following areas?"
Respondents operate in a range of industries: tech, media and telecom; industrial manufacturing; financial services; retail and consumer markets; energy, utilities and resources; health; and government and public services.
Citation formats









