Building cybersecurity through C-suite collaboration

2025 Global Digital Trust Insights Survey: insights for Financial Services Sector

2025 Global Digital Trust Insights Survey: insights for Retail
  • Industry
  • June 06, 2025
only 2%

of organisations have implemented cyber resilience measures across all the areas covered in the survey

< 50%

of Chief Information Security Officers (CISOs) are significantly involved in key business activities

13%

gap in confidence between CISOs/Chief Security Officers (CSOs) and CEOs when it comes to compliance with AI regulations and cyber resilience requirements

The need for stronger digital resilience and cybersecurity continues to grow as the threat landscape in Europe evolves rapidly. With the rise of AI adding new layers of complexity, businesses are focusing on enhancing their cybersecurity and modernising their systems to better prepare for future threats. At the same time, CISOs are playing a bigger role in strategic decision-making.  

PwC's report "2025 Global Digital Trust Insights" highlights crucial gaps that companies should address to attain cyber resilience.

2025 Global Digital Trust Insights Survey Insights for Financial Services Sector

Here are the key findings and insights for the financial services sector:

  • Prioritized Risks for Mitigation: cyber risks are the top priority for 59% of respondents. Concern is even higher in banking and capital markets (67%) and in insurance (62%). Digital and technology risks have a significant impact on banking and capital markets (60%). 

  • Preparedness for Threats: organisations feel least prepared to handle cloud-related threats (36%), followed by third-party breaches (33%) and the spread of deepfakes and disinformation (28%). 

  • Cyber Budget Allocation: in 2025, organisations are prioritising their cyber budgets toward data protection and data trust (46%), technology modernisation (45%), and ongoing security training for employees (35%).

  • Impact of Generative AI and Cloud Technology: Generative AI and cloud technologies have both significantly increased the potential attack surface — affecting 30% of respondents. 

  • Generative AI in Cyber Defence: organisations are prioritising the use of Generative AI for threat detection and response (41%), threat intelligence (39%), and detecting malware and phishing attacks (38%). 

  • Internal Challenges with Generative AI: the main challenges include insufficient control mechanisms and weak risk management (40%), along with difficulties in data governance and the absence of standardised policies (39%). 

  • Confidence in Compliance: only 27% of respondents feel confident about meeting consumer privacy regulations, and just 21% — about complying with AI regulations. Still, 34% are actively working to improve their compliance in cybersecurity and data privacy.  

  • Challenges in Cyber Risk Quantification: key issues include unclear definitions of risk outcomes (45%), poor data quality (43%), legal uncertainties (41%), and the complexity of the tools used to quantify cyber risks (35%).

CEE findings from the 2025 Global Digital Trust Insights Survey

Boardroom priority and cyber budgets up

Businesses are planning to increase their cyber budgets next year—in EMEA (73%) and globally (77%). We see a similar, growing trend in CEE—65% of companies in our region also plan to increase their cyber budgets. 

There is also a clear cybersecurity imperative. More organisations see cyber as a means to generate competitive advantage. Cybersecurity resilience must be a key priority, not just for tech leaders, but for the business as a whole. Prioritising cybersecurity is essential if businesses are to:

  • Safeguard their data and systems

  • Retain trust with their consumers and stakeholders

  • Mitigate the financial, operational and reputational costs of unpreparedness.

However, there is a disconnect between CISOs and CEOs about their organisations’ readiness, including its ability to comply with cyber regulations, the need for faster incident response times and progress in implementing technology for cyber defence. Less than half of CISOs in CEE are involved to a large extent in strategic planning on cyber investments and in oversight of tech deployments. 

“For many years, cybersecurity was often perceived as more of a governance and cost function. However, it is now transforming into a clear business value-add function for the customer. Our clients, particularly in financial services, are demanding stability, operational continuity and robust data protection. This shift elevates cybersecurity to a critical board-level discussion. ”

Marek Chlebicki, PwC Partner and CEE Technology Risk Assurance Leader

About the survey

The 2025 Global Digital Trust Insights is a survey of 4,042 business and technology leaders conducted from May to July 2024.

Respondents operate in a range of industries, including industrials and services (21%), tech, media, telecom (20%), financial services (19%), retail and consumer markets (17%), energy, utilities and resources (11%), health (7%), and government and public services (4%).

Respondents are based in 77 countries globally. There were 230 survey participants in Central and Eastern Europe from countries such as the Czech Republic, Poland, Hungary, Slovakia, Bulgaria, Romania, Serbia, Ukraine, Estonia, Latvia and other countries.

The Global Digital Trust Insights Survey was previously known as the Global State of Information Security Survey (GSISS). Now in its 27th year, it’s the longest-running annual survey on cybersecurity trends. It’s also the largest survey in the cybersecurity industry and the only one that draws participation from senior business executives, not just security and technology executives.

PwC Research, PwC’s global Centre of Excellence for market research and insight, conducted this survey.

Bridging the gaps to cyber resilience: The C-suite playbook

Sign up to get the full playbook and access more of the latest findings for 2025

Contact us

Alex Yankovski

Alex Yankovski

Partner, Public Sector Leader, PwC in Ukraine

Tel: +380 44 354 0404

Anton Tseshnatii

Anton Tseshnatii

Director, Risk Assurance, PwC in Ukraine

Tel: +380 44 354 0404

Yuliya Levandovska

Yuliya Levandovska

Director, Banking & Finance Industry Leader, PwC in Ukraine

Tel: +380 44 354 0404

We unite expertise and tech so you can outthink, outpace and outperform
See how
Follow us on social media