Business Wire

Research Reveals Global Growth of Secure DevOps

24.3.2021 05:23:00 EET | Business Wire | Press release

Share

New research from Secure Code Warrior ®, the global secure coding company, has revealed an attitudinal shift in the software development industry, with organisations bucking traditional practices for DevOps and Secure DevOps.

The global survey of professional developers and their managers found seven in 10 organisations (70%) recognise the importance of secure coding practices, with results indicating an industry-wide shift from reaction to prevention is underway.

Dr. Matias Madou, Chief Technology Officer and Co-Founder at Secure Code Warrior, said, “We are seeing a fundamental shift in mindsets across the world, as the industry slowly moves from reactive, band-aid solutions rolled out after a breach, to the proactive and human-led practice of writing quality software that is intrinsically free from vulnerabilities right from the very first keystroke.

This research shows that ‘secure code’ is becoming synonymous with ‘quality code’ within software development, and security is becoming the responsibility of development teams and leaders—not just AppSec professionals,” he said.

Secure coding seen as ‘reactive’

Reactive practices like using tools on deployed applications and manually reviewing code for vulnerabilities were the top two practices respondents associated with coding securely. However, a proactive shift in mindset was evidenced across the globe, with more than half (55%) of the developers surveyed also recognising secure coding as the active, ongoing practice of writing software protected from vulnerabilities.

Managers and developers are misaligned

Over half (55%) of managers surveyed said secure coding was practised and integrated throughout the entire development process, compared to only 43% of developers. Conversely, 36% of developers consider secure coding during development but not the design phase, as opposed to under one-third (32%) of managers.

Secure code an increasing indicator of success

While those surveyed identified ‘application performance’ and ‘functionality and features’ as the most common success metrics within software development (67% and 62% respectively), almost four in five (79%) respondents said the importance of ‘secure code’ was growing in prominence.

Application security is shifting

Almost half of respondents (46%) said development leads and teams should be responsible for application security rather than AppSec teams (24%). Over eight in 10 (81%) developers surveyed said they were accountable for any vulnerable code produced.

Developers motivated to upskill

‘Increased productivity and efficiency’, ‘curiosity’ and ‘avoiding problems caused by insecure code’ were identified as the leading intrinsic motivators to learn secure coding (20%, 14% and 11% respectively). Despite only 10% of respondents listing career advancement as a personal motivator, four in five (81%) managers were more likely to hire talent with secure coding skills.

More training is needed

91% of managers surveyed said they faced greater than average difficulty when implementing secure coding practices within their organisation, despite the overwhelming majority of respondents (97%) believing they were sufficiently trained. Perhaps, this is because almost nine in 10 (88%) developers surveyed said coding securely was challenging.

Madou added, “With OWASP’s Top 10 software vulnerabilities causing more security breaches over the past two decades than any others, now is the time for businesses to upskill developers to gain the knowledge and skills needed to stamp out insecure code and prevent issues from occurring in the first place.

Code is at the heart of everyday interactions, and Secure Code Warrior is focused on championing security-skilled developers who can create amazing, safe software for our connected world.”

To gain early access to the report, ‘Shifting from reaction to prevention: The changing face of application security 2021’, register your interest at scw.buzz/earlyaccess

Methodology

Secure Code Warrior® commissioned Evans Data Corporation, the market intelligence leader within the IT industry, to conduct a global survey of developers and decision-makers actively engaged in software development. In August 2020, 400 respondents were surveyed across North America, India, the United Kingdom, Europe, Australia, New Zealand and South-East Asia.

About Secure Code Warrior

Secure Code Warrior is the developer-chosen solution for growing powerful secure coding skills. By making secure coding a positive and engaging experience for developers as they increase their software security skills, our human-led approach uncovers the secure developer inside every coder, helping development teams ship quality code faster.

Through inspiring a global community of security-conscious developers to embrace a preventative secure coding approach, our mission is to pioneer a people-first solution to security upskilling, stamping out poor coding patterns for good. Learn more at securecodewarrior.com.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

For media enquiries, to access the full report or arrange an interview:
Carly Ryan, Hotwire
E: securecodewarrior@hotwireglobal.com

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

comforte Launches TAMUNIO Assure to Modernize HPE Nonstop Cryptography for the Post-Quantum Era2.6.2026 11:10:00 EEST | Press release

comforte AG, a global leader in data-centric security for HPE Nonstop environments, today announced the launch of TAMUNIO Assure, a purpose-built solution for HPE Nonstop that helps organizations modernize cryptographic security without application rewrites or disruption to mission-critical systems. TAMUNIO Assure helps organizations enhance SSH & SSL/TLS security, centralizing keys, credentials, certificates, and secrets, and automating certificate and key lifecycle management across HPE Nonstop systems. The result is stronger security, more cost-effective operations, and a quantum-safe security posture without rewriting critical applications or introducing high-risk platform changes. The crypto operating model for HPE Nonstop is changing HPE Nonstop systems power some of the world’s most demanding transaction environments, including payment networks and financial infrastructure, where continuous availability is essential. As security and compliance requirements evolve, organizations

NIPPON KINZOKU Launches Sample Supply of “Internally Polished Capillary Tubes” for High-Performance Analytical Instruments2.6.2026 11:01:00 EEST | Press release

NIPPON KINZOKU CO., LTD. (TOKYO: 5491) (Headquarters: Minato-ku, Tokyo) announces the launch of a sample supply system for its "Internally Polished Capillary Tubes." This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260602111592/en/ Cross-section of the tube after polishing These tubes feature significantly enhanced internal smoothness in ultra-small sizes, realized through the development of the company’s proprietary internal polishing technology. We are currently proceeding with the design and construction of manufacturing equipment, aiming for mass production within fiscal year 2027. Background: Rising Demand for "Ultra-Small Diameter x Ultra-Smooth Internal Surfaces" We have previously developed high-precision, small-diameter tubes made of austenitic stainless steel with an internal diameter (ID) of 0.50mm and internal surface roughness of ≤ 0.5μm, which have been highly evaluated across various industries. In recent years,

OPEX ® Honored with Warehouse Automation Solution of the Year Award for First-of-its-Kind Cold Storage Solution2.6.2026 11:00:00 EEST | Press release

OPEX® Corporation, a global leader in Next Generation Automation providing innovative solutions for warehouse, document and mail automation, has been honored by Logistics Matters magazine with the 2026 Warehouse Solution of the Year Award. OPEX was recognized for the company’s first-of-its-kind, multi-temperature zone, multi-deep cold storage solution for automated warehouse fulfillment systems, enabled through a strategic technology partnership with cold chain commerce innovator Peltier. The collaboration introduced advanced, multi-temperature capabilities to OPEX’s industry-leading Perfect Pick® and Infinity® automated storage and retrieval systems (AS/RS) through the addition of the Peltier Tote™. “We’re deeply honored to receive such distinguished recognition by Logistics Matters magazine,” said Monty McVaugh, Head of Product, Warehouse Automation, OPEX. “By integrating Peltier’s tote technology into the existing framework of Perfect Pick and Infinity, OPEX can deliver a flexible,

Smartstream Launches Smart Agents for Back-Office Operations, Proven Across Tier 1 Pilots2.6.2026 10:55:00 EEST | Press release

Smartstream, a trusted data solutions provider for leading global financial institutions and enterprises, today announced the availability of Smart Agents, its agentic AI solution designed for bank operations. Proven in Tier 1 pilot deployments and natively integrated with Smart Reconciliations, it can be deployed immediately without changes to client infrastructure and is purpose built for regulated environments. Financial institutions dedicate up to 70% of operational effort to exception workflows fragmented across disconnected systems. Smart Agents transforms this dynamic: instead of analysts going to the data, the data comes to them, surfacing only the workflow steps that require human action, while everything else is handled autonomously end-to-end. This includes counterparty and internal communications that eliminate the manual effort consuming significant operational time. Thomas Steinborn, Chief Product and Technology Officer, Smartstream, commented: “The Pilot results demonstr

ThetaRay Gamifies Financial Defense at Money20/20 Europe with a Compliance Twist on “Where’s Waldo”2.6.2026 10:30:00 EEST | Press release

ThetaRay, a leader in AI infrastructure for financial crime compliance, today unveiledSpot The Money Mule at Money20/20 Europe. The high-speed online game is a compliance twist on "Where’s Waldo" for the AI age, designed to bridge the gap between complex banking infrastructure and the public’s role in stopping global crime. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260602629234/en/ The game challenges players to find a money mule hidden in plain sight across five buzzing everyday scenes, from the morning rush at an airport to the vibrant rows of a Dutch Tulip Festival. “In the AI age, the most dangerous threats are those that blend perfectly into the speed of our digital lives,” said Garima Chaudhary, VP Financial Crime & Compliance AI at ThetaRay. “In the game, you look for a 'Known' face. In the real world, there is no obvious profile. While humans struggle to spot one person in a crowd, our AI monitors behavioral bas

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye