Cybersecurity Budgets Shift to Risk-Based Models Amid Rising Threats

Cybersecurity Budgets Shift to Risk-Based Models Amid Rising Threats

First seen 22 May 2026, 07:56 UTC Kpmg 79% similarity 39.9

Article Content

Browse articles
ThreatCluster

Cybersecurity budgeting is evolving as organisations face increasing cyber risks while budgets stagnate. Traditional budgeting methods often rely on historical spending, failing to address current threats effectively. The articles advocate for a risk-based approach to budgeting, emphasizing the need for cyber risk quantification (CRQ) to inform investment decisions. This shift aims to align spending with measurable outcomes that reduce actual risks rather than merely maintaining existing tools and personnel. The call for flexibility in budgeting processes is crucial, as cyber threats evolve rapidly. Leaders are encouraged to justify expenditures based on risk reduction rather than historical allocations. The emphasis is on transparency and adaptability in budget management to enhance overall cybersecurity resilience.

Key Points: • Cybersecurity budgets are often misaligned with actual risk levels. • A risk-based budgeting approach can improve resilience and investment returns. • Cyber risk quantification (CRQ) is essential for making informed budgeting decisions.

ThreatCluster AI

Timeline

2026-05-19
Reinventing Cyber Budgeting report published
KPMG and TAG Infosphere released a report advocating for a risk-led investment approach in cybersecurity budgeting.
Kpmg
2026-05-22
A risk-based approach to cyber budgets published
KPMG article outlines a framework for aligning cybersecurity budgets with quantifiable risks to enhance resilience.
Kpmg

Community

Browse all →

Tracked Entities in This Story