IT Leaders May Underestimate the Risk of Shadow SaaS, Finds New Snow Software Survey
17.11.2022 17:00:00 EET | Business Wire | Press release
Snow Software, the global leader in technology intelligence, today unveiled new data highlighting the challenges facing IT leaders due to expanded software as a service (SaaS) usage. While a huge majority of IT leaders (96%) indicated they were ‘confident or very confident’ in their organization’s SaaS security measures, the top challenge for leaders managing SaaS was ‘employees adding new SaaS applications without notifying IT,’ suggesting that leaders may underestimate the importance of visibility in security.
According to IDC, SaaS is the top source for cloud spend in 2022, accounting for $177.8 billion of the market. In the new Snow survey examining the state of SaaS management, which surveyed 1,000 IT leaders from large organizations of 500+ employees in the United States and United Kingdom, 44% said ‘employees adding new SaaS applications without notifying IT’ is their top challenge to managing SaaS applications at their organization, closely followed by managing SaaS security (42%). When asked why these issues were so challenging, IT leaders indicated the impact to other IT programs (47%), organizational dynamics (38%), lack of time and resources (37%) and lack of visibility (36%).
“Post-pandemic IT teams are seeing a large increase in SaaS applications procured without the knowledge of IT,” said Becky Trevino, Executive Vice President of Products at Snow. “Amid increasing cybersecurity risks and mounting pressure to cut costs, IT leaders realize they need to better govern unknown and unsanctioned SaaS usage. CIOs are ultimately responsible for the security and management of SaaS applications regardless of where they are procured, and to do this effectively IT needs complete visibility into what it is they need to secure.”
Views on budget and security ownership depends on your leadership level
Cybersecurity is a major focus for IT decision-makers right now, particularly as business leaders navigate market uncertainty and plan 2023 budgets in anticipation of a recession. However, ownership is not clear among IT leaders, which can put organizations at risk for elevated costs and gaps in security.
- IT leaders ranked ‘managing the security of SaaS applications’ as the #1 most important issue to managing SaaS applications at their organization, followed by ‘identifying usage of all SaaS applications within our organization.’
- Ninety-six percent of those surveyed reported feeling ‘confident’ or ‘very confident’ in their organization’s SaaS security measures.
- According to the survey, SaaS purchasing power and IT/security responsibility rests firmly within two groups: CIOs/IT leadership and IT asset management (ITAM) or software asset management (SAM) teams.
- Senior leaders (41% of vice presidents, 45% of sr. vice presidents and 52% of C-level executives) look to the CIO and/or IT leadership to take responsibility for SaaS purchasing and security issues over other departments and roles, while more mid-level management (50% of managers and 44% of directors) put the onus of SaaS management and security on peers within ITAM/SAM.
- Forty-eight percent of IT leaders surveyed said that if budget, resources and time were not a factor, they’d like to pivot all SaaS application spending to IT to address SaaS sprawl.
Economic uncertainty is elevating cost concerns among IT leaders – though it’s not the top priority
Market conditions are driving increased scrutiny across all areas of cost in most organizations and optimizing spend while eliminating waste is an ongoing priority for IT teams. However, of those surveyed, IT leaders are currently more focused on cybersecurity of SaaS applications than costs.
- Despite continued uncertainty across the global markets, reining in the total cost of SaaS applications was ranked 5th on respondents’ priorities.
- If global uncertainty persists, more than three quarters of all respondents (77%) believe IT spend will decrease by as much as 50% to 75%.
- If IT spending decreases, IT leaders believe that the two core areas impacted will be IT staffing (20%) and strategic IT initiatives or programs (19%).
For more information about Snow’s latest survey, please visit: https://www.snowsoftware.com/blog/survey-anxiety-over-saas-security-plagues-it-leaders/
About Snow Software
Snow Software is changing the way organizations understand and manage their technology consumption. Our technology intelligence platform provides comprehensive visibility and contextual insight across software, SaaS, hardware and cloud. With Snow, IT leaders can effectively optimize resources, enhance performance and enable operational agility in a hybrid world. To learn more, visit www.snowsoftware.com.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20221117005232/en/
Contact information
Rachel Austin
Snow Software
press@snowsoftware.com
Taylor Donatell
PAN Communications
snow@pancomm.com
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Horizon3 Earns Cyber Essentials Certification Covering NodeZero EU Network28.9.2026 11:00:00 EEST | Press release
Horizon3, the AI-Native Proactive Security Company, today announced that it has earned Cyber Essentials Plus certification covering its NodeZero AWS EU network. The network supports Horizon3’s EU data sovereignty site in Germany. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260928143792/en/ Horizon3 Earns Cyber Essentials Certification Covering NodeZero EU Network Organizations use NodeZero® to test production environments and find weaknesses attackers can exploit. When customers and partners assess the platform itself, they also need to understand the security standards applied to its supporting infrastructure. The Cyber Essentials certificate identifies a defined portion of that infrastructure and the baseline against which it was assessed. Developed by the UK’s National Cyber Security Centre, Cyber Essentials addresses five foundational controls: firewalls, secure configuration, security updates, user access control, an
Thales Expands Collaboration with Google Cloud to Help Secure Agentic AI Workflows28.9.2026 10:03:00 EEST | Press release
Thales today announced an expanded collaboration with Google Cloud to help enterprises address emerging security and governance challenges associated with agentic AI, bringing integrated protection, visibility, and policy enforcement to AI-driven workflows on Google Cloud. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260928647188/en/ ©Thales The integration of Thales AI Security Fabric with Google Cloud Gemini Enterprise helps organizations apply security, governance, and visibility across interactions among users, agents, models, and tools in real time. “Enterprises are moving from AI assistants to AI agents that can autonomously take action, make decisions, and interact with critical business systems. This requires a fundamentally different approach to security,” Eva Rudin, Senior Vice President, Cybersecurity Products, at Thales, said.“By expanding our collaboration with Google Cloud, we are helping organizations build
SPORVIGILANCE Targets Safer Medicines and Billion-Euro Savings for Global Pharma Facing EU IDMP Fines28.9.2026 09:13:00 EEST | Press release
British regulatory technology company SPORVIGILANCE is targeting one of global pharma’s major compliance challenges with a platform offering a faster route to IDMP and SPOR readiness, compliance and governance. As the European Medicines Agency advances structured medicinal product data, companies face pressure to keep regulatory data accurate, standardised and aligned with EMA requirements. SPORVIGILANCE replaces fragmented manual assessment with a regulatory intelligence layer built around IDMP, SPOR and Product Management Service (PMS) requirements. At its core is an IDMP Business Rule Validation Engine that assesses medicinal product data at scale and at field level, identifying missing, inconsistent and non-compliant data. SPORVIGILANCE is the only platform to translate IDMP business rules directly into automated validation logic, enabling companies to test data against the rules rather than rely on manual interpretation. Its PMS Alignment capability reconciles internal RIM data ag
Sofinnova Partners Closes Oversubscribed €82 Million Sofinnova MD Start IV Fund to Create the Next Generation of Medtech Companies28.9.2026 09:00:00 EEST | Press release
Sofinnova Partners ("Sofinnova"), a leading European life sciences venture capital firm based in Paris, London, and Milan, today announced the final close of Sofinnova MD Start IV at €82 million. The fund, which was oversubscribed, will help expand Sofinnova's medtech company-creation strategy across Europe and the US with greater capacity to launch new ventures and support them through key stages of development. With plans to launch six to eight new medtech companies over the next five years, Sofinnova MD Start IV will support ventures from inception through key clinical and operational milestones, providing founders with both capital and hands-on support. Sofinnova MD Start's approach combines clinical insight, entrepreneurial talent, and operational expertise to tackle significant unmet medical needs. The previous fund, Sofinnova MD Start III, a €63 million fund, invested across six companies that have collectively raised more than €140 million in follow-on financing. Sofinnova MD S
Ant International’s Antom Upgrades Southeast Asia Leadership Structure to Drive Regional Synergy in the AI Era28.9.2026 08:18:00 EEST | Press release
Antom, a leading merchant payment and digitisation services provider under Ant International, today announced a series of key appointments for its operations in Southeast Asia to further strengthen the synergy among its regional brands and better serve regional merchants with streamlined full-stack AI-native solutions. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260927431282/en/ Nabilah Alsagoff, co-founder and former chief operating officer of DOKU, Indonesia's leading payment fintech company, has been appointed as Head of Product, Antom SEA. In her new role, the payment veteran will oversee product development and innovation and drive a unified product roadmap for the overall SEA region. Chris Yeo, former chief executive officer (CEO) of DOKU, will take on the role as Head of Antom Philippines, and Country Head of 2C2P Philippines. With his long experience at DOKU, Grab and PayPal, Chris will also oversee the execution
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
