The Verizon 2019 report outlines that true nature of security risks faced by organizations today. A staggering 52% of breaches were the results of hacking related activities.
It is vital for information security professionals to move away from just looking at security compliance and general security controls, and start to look under the "hood" of security risks.
We have incorporated the MITRE ATT&CK framework into our ISMS toolkit, to help you understand you true exposure to external threats.
Further reading: https://enterprise.verizon.com/resources/reports/dbir/