How cyber risk ratings can support better cyber reliance and regulatory compliance

(Credit: Unsplash)

This article is brought to you thanks to the collaboration of The European Sting with the World Economic Forum.

Author: Dan Morgan, Senior Government Affairs Director for Europe & APAC, SecurityScorecard


  • Businesses and governments face constant cyber threats, from state-sponsored cyber espionage to ransomware attacks by criminal gangs.
  • Many leading organizations have turned to cyber risk ratings to help them understand and mitigate their cyber risk exposure and better comply with regulations.
  • In France, policymakers are taking the lead globally by looking to mandate the use of cyber risk ratings.

In the digital age, cybersecurity risks are an ever-present threat. Businesses and governments face constant cyber threats, from state-sponsored cyber espionage to ransomware attacks by criminal gangs. The impact of these threats can be devastating, resulting in economic turmoil and threats to public safety.

In response, policymakers across the globe are looking at how regulation can strengthen an economy’s cyber posture, whether that be the Digital Operational Resilience Act (DORA), recently adopted by the European Parliament, which also makes financial groups accountable for the security of tech vendors they use, or The Network and Information Security Directive (NIS2), which provides legal measures to boost the overall level of cybersecurity in the EU.

Discover

What is the Forum doing to avert a cyber pandemic?

Next-generation technologies such as AI, ubiquitous connectivity and quantum computing have the potential to generate new risks for the world, and at this stage, their full impact is not well understood.

There is an urgent need for collective action, policy intervention and improved accountability for government and business in order to avert a potential cyber pandemic.

The Forum’s Centre for Cybersecurity launched the Future Series: Cybercrime 2025 initiative to identify what approaches are required to manage cyber risks in the face of the major technology trends taking place in the near future.

Find out more on how the Forum is leading over 150 global experts from business, government and research institutions, and how to get involved, in our impact story.

Businesses understand the need for regulation

Given the growing threat landscape, businesses increasingly support regulation to address and mitigate risks. The 2023 World Economic Forum Global Cybersecurity Outlook shows cyber executives are now more likely to see cybersecurity regulations as an effective tool for reducing cyber risks across a sector.

Many leading organizations have also turned to cyber risk ratings to help them understand and mitigate their cyber risk exposure and better comply with regulations. Cyber risk ratings provide an objective measure of an organization’s cybersecurity posture based on various factors, including network security, data protection and incident response capabilities. These ratings help organizations identify areas of weakness in their supply chains and cybersecurity defences and prioritise remediation efforts.

Policymakers are also starting to see the utility of cyber risk ratings across markets and how they could be an effective policy lever to support the growing number of cyber regulatory requirements and improve cyber resilience within economies.

Have you read?

Cyber risk ratings as a regulatory tool

In France, policymakers are taking the lead globally by looking to mandate the use of cyber risk ratings. The French Cyberscore Law, enacted on March 3, 2022, creates the obligation for a cybersecurity certification for digital platforms intended for the public. It comes into force on October 1, 2023.

This groundbreaking act will mandate cyberscores on the 500 largest merchants’ websites operating in France. The plan is to extend this to 10,000 strategic companies, such as the electric power grid and healthcare.

https://cdn.jwplayer.com/players/XzJNEPOV-ncRE1zO6.html

Addressing third-party risk through regulation

Much of the new cyber regulation in the EU is designed to manage digital supply chains and third-party providers.

For instance, DORA aims to ensure that all participants in the financial system have the necessary safeguards to mitigate cyber attacks and other risks. The legislation will require firms to ensure that they can withstand all types of ICT-related disruptions and threats. Like much of the economy, the financial sector is highly dependent on third-party tech vendors, both big and small.

This was highlighted recently when the CFTC postponed the publication of its weekly Commitments of Traders (CoT) report for the week ending February 17, 2023, due to a cyber attack on a third-party provider, ION Cleared Derivatives. According to data from the Futures Industry Association, this attack impacted a huge market with over $1 trillion of equity, commodity and interest rate futures open in December.

By introducing a mandatory cyber risk rating requirement, France will proactively manage how cyber risk is understood and promote greater digital resilience throughout the supply chain.

Mandate EU-wide cyber risk ratings

This law should serve as a call to action for policymakers across the EU and globally to consider similar measures to improve cybersecurity and digital resilience.

Lenders, such as banks and credit card companies, use credit scores to evaluate the potential risk of lending money to consumers and mitigate losses due to bad debt.

Similarly, cyber risk ratings can provide regulators and the market with an objective measure of an organization’s cybersecurity posture, helping to inform regulatory decisions, reduce the risk of cyber incidents and effectively comply with regulations, such as DORA in the EU.

SecurityScorecard believes the EU should consider mandating a cyber risk rating system similar to the French model across all member states. This would create a level playing field for organizations across the EU and ensure that cybersecurity is taken seriously by all actors in the digital ecosystem. This may come in different forms across the various cyber-focused regulatory requirements and may not always be in law, it could come through guidance, regulatory interpretation or, indeed, certification. DORA regulators are developing common draft regulatory technical standards for ICT risk management tools that could include cyber risk ratings.

This is not a one size fits all, but moving towards ensuring cyber risk ratings are a must-have, not a nice to have, will improve cyber reliance and support the EU’s digital ambitions.


Discover more from The European Sting - Critical News & Insights on European Politics, Economy, Foreign Affairs, Business & Technology - europeansting.com

Subscribe to get the latest posts sent to your email.

Interesting reads

© UNICEF A damaged ambulance in Tebnine in southern Lebanon.

In Lebanon, the same fears and dangers persist despite ceasefire: UNHCR

This article is published in association with United Nations. Death and destruction have continued unabated in Lebanon while communities are still unable to return to their homes despite a ceasefire that began on 17 April, humanitarians said on Tuesday. “Civilians in the south of Lebanon and parts of the Bekaa [Valley] are really living with the […]
© Unsplash/Planet Volumes A computer-generated image shows the Strait of Hormuz.

Uncertainty continues over safety in the Strait of Hormuz

This article is published in association with United Nations. Amid claims and counter-claims of strikes and confrontations in the crucial Strait of Hormuz between Iran and the United States, UN maritime officials continue to urge vessels to exercise “maximum caution”. “We are aware of the reports but do not have further details. We continue to urge […]
© ADB/Ariel Javellana Women farmers in India sell wheat grain and buy fertilizer with the proceeds.

Middle East crisis puts aid, food, fuel further out of reach for millions already struggling – UN agencies

This article is published in association with United Nations. As the Middle East crisis continues the humanitarian fallout is worsening, with aid route disruptions and food and fuel price hikes wrecking the lives and the rights of the most vulnerable people worldwide, UN agencies warned on Friday. Heightened insecurity and instability around key Gulf routes, including […]
© Unsplash/Angus Gray Ship transits through the Strait of Hormuz have dropped by over 90 per cent since the crisis escalated in late February 2026.

Hormuz crisis strangling global economy, Guterres warns, demanding solutions to end stalemate

This article is published in association with United Nations. The escalating crisis in the Strait of Hormuz could push tens of millions into poverty, trigger a surge in global hunger and even tip the world towards recession, the UN Secretary-General warned on Thursday. António Guterres decried the restrictions on free passage through the crucial chokepoint which […]
This article is published in association with United Nations.

AI in advertising risks fuelling information crisis, UN warns

This article is published in association with United Nations. With spending on advertising topping $1 trillion a year worldwide, the United Nations on Wednesday highlighted the untapped power of major brands to shape the future of Artificial Intelligence, warning that a failure to act could deepen a global information integrity crisis. In a new brief titled […]
This article is published in association with United Nations.

2015 nuclear deal ‘no basis’ for any new agreement with Iran

This article is published in association with United Nations. The 2015 nuclear accord with Iran cannot be the starting point for a new agreement with the country, the head of the International Atomic Energy Agency (IAEA) said on Wednesday in New York.  Rafael Mariano Grossi was speaking during a press conference at UN Headquarters held on […]
Credit:Unsplash)

From Hormuz to Lebanon, crisis reverberates through trade routes, upending humanitarian networks

© WHO/Hanan Balkhy In Gaza displaced families are living in overcrowded tents and makeshift shelters, surrounded by waste and debris, with limited access to safe water and sanitation services. This article is published in association with United Nations. Disruptions in the Strait of Hormuz continue to send shockwaves through global food systems, the UN Food and Agriculture […]
© UNICEF/Mohamed Zakaria A displacement centre in El Fasher, North Darfur (file).

World News in Brief: Sudan drone attacks condemned, South Sudan violence, airstrikes in Ukraine, South Africa Freedom Day

This article is published in association with United Nations. The United Nations has condemned two recent drone attacks in Sudan, one of which left seven dead, Spokesperson Stéphane Dujarric said on Monday during his regular media briefing in New York. An aid truck from the UN refugee agency (UNHCR) that was carrying emergency shelter kits came under attack by […]
© IMO/Cihancan Tunay A ship makes its way across an ocean.

Chokepoints and conflict: How the Hormuz crisis is exposing global shipping vulnerabilities

This article is published in association with United Nations. The blockading of ships in the Strait of Hormuz as a result of the conflict between the United States and Iran has demonstrated how ships and seafarers have become “leverage in geopolitical disputes,” according to the head of the UN’s International Maritime Organization (IMO). Since conflict began […]
Middle East war: After oil and gas, concerns grow over minerals crunch

Middle East war: After oil and gas, concerns grow over minerals crunch

This article is published in association with United Nations. The shipping crisis in the Strait of Hormuz caused by war in the Middle East has exposed a new threat: a looming shortage of strategic minerals that drive economies all over the world – and a race by countries to obtain them. Until war erupted on 28 […]
This article is published in association with United Nations.

Ceasefire extension offers diplomatic opening, but tensions persist in Strait of Hormuz

This article is published in association with United Nations. The United States’ decision to extend a fragile ceasefire with Iran has kept a narrow window open for diplomacy, but fresh security incidents in the Strait of Hormuz on Wednesday underscore the volatility of the situation and the risks to global shipping and regional stability. The UN […]
UN News Moreira da Silva (right), Executive Director of UNOPS on a visit to the Gaza Strip.

Strait of Hormuz: With hunger looming, life-saving fertiliser shipments cannot wait, head of UN task force says

This article is published in association with United Nations. As the Persian Gulf crisis continues, time is ticking for farmers who rely on fertilizer shipped via the Strait of Hormuz – and millions worldwide who depend on their crops, particularly in vulnerable countries such as war-torn Sudan.  In normal times, one third of global fertiliser trade […]
UN News A popular market in Khan Younis, southern Gaza Strip.

Economic collapse pushes highly educated Gazans into the ‘survival economy’

This article is published in association with United Nations. Young Palestinians in Gaza with university-level educations are setting aside dreams of putting their hard-won skills into practice and doing whatever they can to survive.  Abdullah al-Khawaja, an electrical engineering graduate displaced from Rafah to Khan Younis, now stands behind a small spice stall, having lost the […]
MONUSCO/Didier Vignon Dossou-Gbakon MONUSCO peacekeepers protect civilians in Ituri, eastern DRC.

World News in Brief: AI diagnostics, humanitarian deal for DR Congo, rights abuse allegations in Belarus, Ukraine children bear heaviest burden

This article is published in association with United Nations. New data shows that nearly three in four countries in Europe now use Artificial Intelligence in their health services to make a diagnosis. According to the UN World Health Organization (WHO) joint report with the European Union, 74% of countries in the bloc use AI tools in medical […]
© WFP The conflict in the Middle East is impacting the cost of food in many parts of the world.

Time running out on development goals as finance dries up, UN warns

This article is published in association with United Nations. Rising conflicts, the climate crisis and shrinking development finance are putting growing pressure on the poorest and most vulnerable countries – pushing development goals further off track. The warning comes in the Financing for Sustainable Development Report 2026 (FSDR), a new UN report launched on Monday, which finds […]
Ukraine’s women at breaking point after four years of war as attacks on energy, healthcare continue – UN humanitarians

World News in Brief: Myanmar amnesty, rising needs in Afghanistan, another power loss at Ukraine nuclear plant

This article is published in association with United Nations. Authorities in Myanmar released the country’s ousted president from prison on Friday, along with some 4,000 other people, as part of an amnesty to mark the traditional New Year festival. President Win Myint had been in jail since February 2021 when the military overthrew Myanmar’s democratically elected […]
UN Photo/Eskinder Debebe Siobhán Mullally, Special Rapporteur on Trafficking in Persons, especially women and children, one of the UN independent human rights experts calling for more accountability for the alleged trafficking victims in the Epstein files.

The Epstein files: Rights experts demand accountability, call for probe into trafficking allegations

This article is published in association with United Nations. UN independent human rights experts called on Thursday for justice and accountability for young women and girls who were trafficked systematically as part of allegations contained in the so-called Epstein files. The Human Rights Council-appointed experts also issued a general warning over the “continuing violence of patriarchal power systems” revealed […]
© World Bank A ship offloads its cargo at the port in Nuku'alofa, Tonga.

Middle East conflict chokes end of supply chain as lights go out in the Pacific

This article is published in association with United Nations. For Pacific Island countries, the Middle East crisis is not a distant geopolitical event. It is already showing up in higher fuel prices, electricity uncertainty and fears that communities sitting at the far end of global supply chains could be pushed into deeper economic insecurity. “We are […]
© UNICEF/Fouad Choufany The Basta neighbourhood in Beirut, Lebanon, lies in ruins.

‘Time for diplomacy over escalation’ in Middle East war: Guterres

This article is published in association with United Nations. As the war in the Middle East continues, the United Nations Secretary-General issued a passionate call for “serious negotiations” between the US and Iran to resume, warning that respect for international law “is being trampled” underfoot.  Addressing journalists at UN Headquarters in New York outside the Security […]

Why don't you drop your comment here?

Go back up

Discover more from The European Sting - Critical News & Insights on European Politics, Economy, Foreign Affairs, Business & Technology - europeansting.com

Subscribe now to keep reading and get access to the full archive.

Continue reading

Discover more from The European Sting - Critical News & Insights on European Politics, Economy, Foreign Affairs, Business & Technology - europeansting.com

Subscribe now to keep reading and get access to the full archive.

Continue reading

The European Sting – Critical News & Insights on European Politics, Economy, Foreign Affairs, Business & Technology – europeansting.com