Research Reveals Global Growth of Secure DevOps
24.3.2021 05:23:00 EET | Business Wire | Press release
New research from Secure Code Warrior ®, the global secure coding company, has revealed an attitudinal shift in the software development industry, with organisations bucking traditional practices for DevOps and Secure DevOps.
The global survey of professional developers and their managers found seven in 10 organisations (70%) recognise the importance of secure coding practices, with results indicating an industry-wide shift from reaction to prevention is underway.
Dr. Matias Madou, Chief Technology Officer and Co-Founder at Secure Code Warrior, said, “We are seeing a fundamental shift in mindsets across the world, as the industry slowly moves from reactive, band-aid solutions rolled out after a breach, to the proactive and human-led practice of writing quality software that is intrinsically free from vulnerabilities right from the very first keystroke.”
“This research shows that ‘secure code’ is becoming synonymous with ‘quality code’ within software development, and security is becoming the responsibility of development teams and leaders—not just AppSec professionals,” he said.
Secure coding seen as ‘reactive’
Reactive practices like using tools on deployed applications and manually reviewing code for vulnerabilities were the top two practices respondents associated with coding securely. However, a proactive shift in mindset was evidenced across the globe, with more than half (55%) of the developers surveyed also recognising secure coding as the active, ongoing practice of writing software protected from vulnerabilities.
Managers and developers are misaligned
Over half (55%) of managers surveyed said secure coding was practised and integrated throughout the entire development process, compared to only 43% of developers. Conversely, 36% of developers consider secure coding during development but not the design phase, as opposed to under one-third (32%) of managers.
Secure code an increasing indicator of success
While those surveyed identified ‘application performance’ and ‘functionality and features’ as the most common success metrics within software development (67% and 62% respectively), almost four in five (79%) respondents said the importance of ‘secure code’ was growing in prominence.
Application security is shifting
Almost half of respondents (46%) said development leads and teams should be responsible for application security rather than AppSec teams (24%). Over eight in 10 (81%) developers surveyed said they were accountable for any vulnerable code produced.
Developers motivated to upskill
‘Increased productivity and efficiency’, ‘curiosity’ and ‘avoiding problems caused by insecure code’ were identified as the leading intrinsic motivators to learn secure coding (20%, 14% and 11% respectively). Despite only 10% of respondents listing career advancement as a personal motivator, four in five (81%) managers were more likely to hire talent with secure coding skills.
More training is needed
91% of managers surveyed said they faced greater than average difficulty when implementing secure coding practices within their organisation, despite the overwhelming majority of respondents (97%) believing they were sufficiently trained. Perhaps, this is because almost nine in 10 (88%) developers surveyed said coding securely was challenging.
Madou added, “With OWASP’s Top 10 software vulnerabilities causing more security breaches over the past two decades than any others, now is the time for businesses to upskill developers to gain the knowledge and skills needed to stamp out insecure code and prevent issues from occurring in the first place.”
“Code is at the heart of everyday interactions, and Secure Code Warrior is focused on championing security-skilled developers who can create amazing, safe software for our connected world.”
To gain early access to the report, ‘Shifting from reaction to prevention: The changing face of application security 2021’, register your interest at scw.buzz/earlyaccess
Methodology
Secure Code Warrior® commissioned Evans Data Corporation, the market intelligence leader within the IT industry, to conduct a global survey of developers and decision-makers actively engaged in software development. In August 2020, 400 respondents were surveyed across North America, India, the United Kingdom, Europe, Australia, New Zealand and South-East Asia.
About Secure Code Warrior
Secure Code Warrior is the developer-chosen solution for growing powerful secure coding skills. By making secure coding a positive and engaging experience for developers as they increase their software security skills, our human-led approach uncovers the secure developer inside every coder, helping development teams ship quality code faster.
Through inspiring a global community of security-conscious developers to embrace a preventative secure coding approach, our mission is to pioneer a people-first solution to security upskilling, stamping out poor coding patterns for good. Learn more at securecodewarrior.com.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20210323006113/en/
Contact information
For media enquiries, to access the full report or arrange an interview:
Carly Ryan, Hotwire
E: securecodewarrior@hotwireglobal.com
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Armis Centrix™ Named “Best Solution” for Cyber Exposure Management as Armis Wins Multiple Global InfoSec Awards at RSAC 202623.3.2026 18:00:00 EET | Press release
Armis, the cyber exposure management & security company, today announced that it has won multiple Global InfoSec Awards from Cyber Defense Magazine at this year’s RSAC™ Conference. Armis received the following accolades: Armis Centrix™ won “Best Solution” for Cyber Exposure Management Armis named “Publisher’s Choice Cybersecurity Company” Yevgeny Dibrov, Armis’ CEO and Co-Founder, awarded “Industry Pioneering CEO” “We cannot safeguard modern infrastructure with yesterday’s tactics; the extended attack surface demands a unified, AI-driven approach that sees, protects and manages all assets (IT, OT, IoT, IoMT, applications, code, cloud and AI) in real time,” said Yevgeny Dibrov, CEO and Co-Founder of Armis. “Armis secures the most complex environments of organizations and governments worldwide to protect society from the destruction cybercriminals seek to cause. These awards reinforce our dedication to fundamentally redefining cyber exposure management for the era of hyper-connectivity.”
STOKR Appoints Subhankar Sinha as Senior Advisor23.3.2026 16:00:00 EET | Press release
STOKR has appointed Subhankar Sinha as Senior Advisor. Sinha will work directly with STOKR's leadership team on fund tokenization with particular focus on money market fund (MMF) tokenization and on expanding STOKR's institutional presence in the U.S. market. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260323315236/en/ Image, Subhankar Sinha A New York-based digital assets executive, Sinha brings deep expertise across blockchain infrastructure, capital markets, and institutional business development. He previously served as Head of Blockchain at BNY, the world's largest custody and asset servicing business. Earlier in his career, he was a Director at PwC, where he co-founded and co-led the firm's blockchain consulting practice in the U.S. "Subhankar brings the institutional depth that this stage of STOKR's growth demands," said Arnab Naskar, Co-Founder of STOKR. "His experience leading blockchain at BNY and co-building Pw
Exein Unveils Next-Generation Runtime Security to Protect the AI-Native World23.3.2026 15:00:00 EET | Press release
Exein, the global leader in runtime cybersecurity, today unveiled Photon, a preemptive breakthrough solution that blocks cyberattacks at the point of execution. Designed for the AI-native world - where digital and physical systems are now inseparable - Photon marks a fundamental shift in how critical infrastructure protects itself. Unlike traditional cybersecurity solutions that detect threats after compromise - typically operating in user space and relying on a cloud network - Exein’s Photon operates directly inside the kernel, preventing malicious execution paths before they can run. By blocking attacks before the point of execution, the technology dramatically reduces latency and eliminates entire classes of threats before damage occurs. If malicious instructions cannot execute, the attack itself cannot take place. This advancement establishes a new category of runtime security designed for systems that cannot be disconnected: physical AI and IoT environments, autonomous AI agents,
Xsolla Partners With Cyprus Game Makers Association (CYGMA) as the Island Emerges as a Game Development Hub23.3.2026 15:00:00 EET | Press release
Xsolla, a global video game commerce company that helps developers launch, grow, and monetize their games, today announced a strategic partnership with the Cyprus Game Makers Association (CYGMA). The collaboration will provide creators and studios within the CYGMA network with hands-on support, industry expertise, and access to world-class commerce tools, helping Cyprus-based studios bring their titles to players worldwide. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260323570679/en/ Graphic: Xsolla The partnership comes as Cyprus continues to attract game development talent, fueled by favorable business conditions and a growing creative community. Through its collaboration with CYGMA, Xsolla aims to accelerate momentum and expand opportunities for developers by removing commerce and distribution barriers that often prevent emerging studios from reaching global markets. As part of the agreement, Xsolla will sponsor a seri
Manhattan Associates’ 2026 Unified Commerce Benchmark Reveals the High Price of Standing Still in Retail23.3.2026 14:30:00 EET | Press release
Manhattan Associates Inc. (NASDAQ: MANH), today announced the findings of its 2026 Global Unified Commerce Benchmark for Specialty Retail, the industry’s most comprehensive assessment of how well retailers connect digital and physical experiences to drive growth, profitability and loyalty. Conducted by Incisiv, a leading retail research firm, the Benchmark is based on real-world purchases and returns. It analyzes more than 400 specialty retailers across EMEA, LATAM and North America on 330 capabilities spanning four key experience areas: Shopping, Checkout, Fulfillment, and Service. The 2026 Benchmark reveals that while the industry has made steady progress in unified commerce maturity since 2023 when it was first launched, only 7% of retailers have achieved true unified commerce leadership while 33% are still stuck in the Basic category. Leaders are translating connected, data‑driven yet customer-centric experiences into nearly 2X higher growth rates than their basic peers. The Benchm
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
