{"id":137868,"date":"2026-04-20T17:07:07","date_gmt":"2026-04-20T16:07:07","guid":{"rendered":"https:\/\/www.intelligentcio.com\/me\/2026\/04\/20\/71-of-businesses-in-the-middle-east-ready-to-share-security-costs-with-contractors-to-boost-cyber-resilience\/"},"modified":"2026-04-20T17:07:08","modified_gmt":"2026-04-20T16:07:08","slug":"71-of-businesses-in-the-middle-east-ready-to-share-security-costs-with-contractors-to-boost-cyber-resilience","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/me\/2026\/04\/20\/71-of-businesses-in-the-middle-east-ready-to-share-security-costs-with-contractors-to-boost-cyber-resilience\/","title":{"rendered":"71% of businesses in the Middle East ready to share security costs with contractors to boost cyber resilience"},"content":{"rendered":"\n<p><em><a href=\"https:\/\/lp.kaspersky.com\/global\/report-supply-chain-reaction\/\" target=\"_blank\" rel=\"noreferrer noopener\">A new Kaspersky study<\/a><\/em> has revealed that more than two-thirds of companies in the Middle East are willing to invest in the security of their contractors and suppliers to guarantee invulnerability to cyberattacks, while a further quarter is already doing so.\u00a0<\/p>\n\n\n\n<p>This shift signals that contractors are now considered by businesses as part of a single, interconnected security ecosystem. Amid a surge in supply chain attacks, hitting nearly every third company and trusted relationship attacks affecting a quarter of companies globally over the past year,&nbsp;organisations&nbsp;reconsider their approaches to internal security,&nbsp;recognising&nbsp;that their own cyber risk hinges on the security posture of any contractor or partner with access to their infrastructure and systems, and are prepared to act accordingly.&nbsp;<\/p>\n\n\n\n<p>According to the Kaspersky survey, 69% of respondents globally (71% in the Middle East) are considering investing in the security of their contractors to strengthen their own cyber resilience. At the same time, 26% of businesses globally (26% in the Middle East) have already begun sharing security costs with their contractors, moving from intention to action.&nbsp;<\/p>\n\n\n\n<p>Sergey Soldatov, Head of Security Operations Center at Kaspersky, said:&nbsp;\u201cToday businesses&nbsp;realise&nbsp;that security cannot end at the borders of their own&nbsp;organisation, it must extend across the entire ecosystem. Smaller companies often lack the security capabilities of the enterprises they serve, posing extra risks to the latter. By sharing resources and&nbsp;expertise, larger companies can close this gap, strengthening weak points throughout the entire dependency chain.\u201d&nbsp;<\/p>\n\n\n\n<p>To reduce supply chain risks, Kaspersky recommends that companies strengthen their security through&nbsp;organisational&nbsp;measures, including rigorous and evidence-based evaluation of software providers. By assessing vendors\u2019 security practices, reviewing software development&nbsp;processes&nbsp;and applying structured evaluation&nbsp;frameworks,&nbsp;companies can ensure that only secure, resilient products work in their internal infrastructure.&nbsp;<\/p>\n\n\n\n<p>For mitigating supply chain and trusted relationship risks, Kaspersky also recommends the following:&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Collaborate with suppliers on security issues.\u00a0It\u2019s\u00a0vital to work closely with suppliers to improve their security measures\u00a0\u2013 such collaboration strengthens mutual trust and makes protection a shared priority.\u00a0<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Thoroughly evaluate suppliers before entering a deal.\u00a0It\u2019s\u00a0crucial to assess the security level of potential suppliers before beginning collaboration. This includes requesting a review of their cybersecurity policies, information about past\u00a0incidents\u00a0and compliance with industry security standards.\u00a0<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li>For software products and cloud services,\u00a0it\u2019s\u00a0recommended to collect data on vulnerabilities, and penetration tests, and sometimes it\u2019s advised\u00a0to conduct\u00a0dynamic application security testing (DAST).\u00a0<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Implement contractual security requirements. Contracts with suppliers should include specific information security requirements, such as regular security audits, compliance with your\u00a0organisation\u2019s\u00a0relevant security\u00a0policies\u00a0and incident notification protocols.\u00a0<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Adopt preventive technological measures. The risk of\u00a0serious damage\u00a0from supplier compromise is significantly reduced if your\u00a0organisation\u00a0implements security practices such as the principle of least privilege, zero trust and mature identity management.\u00a0<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>A new Kaspersky study has revealed that more than two-thirds of companies in the Middle East are willing to invest in the security of their contractors and suppliers to guarantee invulnerability to cyberattacks, while a further quarter is already doing so.\u00a0 This shift signals that contractors are now considered by businesses as part of a [&hellip;]<\/p>\n","protected":false},"author":2418,"featured_media":137869,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[15994,809,54,18888,13],"tags":[6001,1530,364,562,267,21528],"class_list":["post-137868","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-middle-east","category-more-news","category-research","category-surveys","category-top-stories","tag-cyber-resilience","tag-cybersecurity","tag-kaspersky","tag-middle-east","tag-risk-management","tag-supply-chain-security"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/137868","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/users\/2418"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/comments?post=137868"}],"version-history":[{"count":0,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/137868\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media\/137869"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media?parent=137868"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/categories?post=137868"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/tags?post=137868"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}