Research Reveals Global Growth of Secure DevOps
24.3.2021 05:23:00 EET | Business Wire | Press release
New research from Secure Code Warrior ®, the global secure coding company, has revealed an attitudinal shift in the software development industry, with organisations bucking traditional practices for DevOps and Secure DevOps.
The global survey of professional developers and their managers found seven in 10 organisations (70%) recognise the importance of secure coding practices, with results indicating an industry-wide shift from reaction to prevention is underway.
Dr. Matias Madou, Chief Technology Officer and Co-Founder at Secure Code Warrior, said, “We are seeing a fundamental shift in mindsets across the world, as the industry slowly moves from reactive, band-aid solutions rolled out after a breach, to the proactive and human-led practice of writing quality software that is intrinsically free from vulnerabilities right from the very first keystroke.”
“This research shows that ‘secure code’ is becoming synonymous with ‘quality code’ within software development, and security is becoming the responsibility of development teams and leaders—not just AppSec professionals,” he said.
Secure coding seen as ‘reactive’
Reactive practices like using tools on deployed applications and manually reviewing code for vulnerabilities were the top two practices respondents associated with coding securely. However, a proactive shift in mindset was evidenced across the globe, with more than half (55%) of the developers surveyed also recognising secure coding as the active, ongoing practice of writing software protected from vulnerabilities.
Managers and developers are misaligned
Over half (55%) of managers surveyed said secure coding was practised and integrated throughout the entire development process, compared to only 43% of developers. Conversely, 36% of developers consider secure coding during development but not the design phase, as opposed to under one-third (32%) of managers.
Secure code an increasing indicator of success
While those surveyed identified ‘application performance’ and ‘functionality and features’ as the most common success metrics within software development (67% and 62% respectively), almost four in five (79%) respondents said the importance of ‘secure code’ was growing in prominence.
Application security is shifting
Almost half of respondents (46%) said development leads and teams should be responsible for application security rather than AppSec teams (24%). Over eight in 10 (81%) developers surveyed said they were accountable for any vulnerable code produced.
Developers motivated to upskill
‘Increased productivity and efficiency’, ‘curiosity’ and ‘avoiding problems caused by insecure code’ were identified as the leading intrinsic motivators to learn secure coding (20%, 14% and 11% respectively). Despite only 10% of respondents listing career advancement as a personal motivator, four in five (81%) managers were more likely to hire talent with secure coding skills.
More training is needed
91% of managers surveyed said they faced greater than average difficulty when implementing secure coding practices within their organisation, despite the overwhelming majority of respondents (97%) believing they were sufficiently trained. Perhaps, this is because almost nine in 10 (88%) developers surveyed said coding securely was challenging.
Madou added, “With OWASP’s Top 10 software vulnerabilities causing more security breaches over the past two decades than any others, now is the time for businesses to upskill developers to gain the knowledge and skills needed to stamp out insecure code and prevent issues from occurring in the first place.”
“Code is at the heart of everyday interactions, and Secure Code Warrior is focused on championing security-skilled developers who can create amazing, safe software for our connected world.”
To gain early access to the report, ‘Shifting from reaction to prevention: The changing face of application security 2021’, register your interest at scw.buzz/earlyaccess
Methodology
Secure Code Warrior® commissioned Evans Data Corporation, the market intelligence leader within the IT industry, to conduct a global survey of developers and decision-makers actively engaged in software development. In August 2020, 400 respondents were surveyed across North America, India, the United Kingdom, Europe, Australia, New Zealand and South-East Asia.
About Secure Code Warrior
Secure Code Warrior is the developer-chosen solution for growing powerful secure coding skills. By making secure coding a positive and engaging experience for developers as they increase their software security skills, our human-led approach uncovers the secure developer inside every coder, helping development teams ship quality code faster.
Through inspiring a global community of security-conscious developers to embrace a preventative secure coding approach, our mission is to pioneer a people-first solution to security upskilling, stamping out poor coding patterns for good. Learn more at securecodewarrior.com.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20210323006113/en/
Contact information
For media enquiries, to access the full report or arrange an interview:
Carly Ryan, Hotwire
E: securecodewarrior@hotwireglobal.com
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Kinaxis Goes All-In on Innovation at Upcoming Kinexions in Las Vegas9.3.2026 20:00:00 EET | Press release
Registration is officially open for Kinexions North America, the premier global supply chain orchestration conference hosted by Kinaxis® Inc. (TSX: KXS). Taking place June 1–3 in Las Vegas, Nevada, the event brings together supply chain leaders, innovators and practitioners from around the world to explore how organizations can leverage AI-driven strategies and technologies to connect data, people and decisions. After a year defined by market volatility, geopolitical risk and disruption, this year’s conference will focus on how intelligent supply chain orchestration enables organizations to move beyond reactive planning to building true enterprise adaptability. The program promises to be the most immersive and future-forward Kinexions yet, with renowned author, entrepreneur and innovation expert, Peter Hinssen confirmed as a featured keynote address. “Kinexions has always been the place where the best in supply chain come together to calibrate and share ideas, rethink what’s possible a
Radial Selects Riskified to Power Payment Fraud and Refund/Return Protection for Merchant Client Portfolio9.3.2026 16:00:00 EET | Press release
Riskified (NYSE: RSKD), a leader in ecommerce fraud and risk intelligence, today announced a strategic partnership with Radial, a leading 3PL set to become Paxon later this year. Radial will integrate with Riskified’s AI-powered platform to help its merchants approve more legitimate orders and reduce losses from payment fraud, including many merchants that use Shopify as their ecommerce platform. Radial supports many of the world’s most recognized retail brands with a global ecommerce fulfillment network of more than 20 centers across North America, helping merchants deliver orders quickly and cost effectively. By bringing Riskified’s AI-powered fraud decisioning into its commerce ecosystem, Radial gives merchants the surgical ability to calibrate the checkout experience according to risk—without slowing fulfillment. This also supports brands seeking to expand into new markets. Riskified empowers Radial's customers with accurate, real-time fraud decisions at checkout, approving or decl
Andersen to Announce Fourth-Quarter and Full-Year 2025 Financial Results9.3.2026 16:00:00 EET | Press release
Andersen Group Inc. (NYSE: ANDG) (“Andersen”), a leading provider of independent tax, valuation and financial advisory services to individuals and family offices, businesses and funds in the United States, will announce its financial results for the full year and fourth quarter 2025 after the market closes on Tuesday, March 17, 2026. Andersen CEO and Chairman, Mark L. Vorsatz, and Andersen Chief Financial Officer, Neal Livingston, will host a conference call to discuss Andersen’s financial results on Tuesday, March 17, 2026 at 5PM ET. Participants can join the webcast at https://event.choruscall.com/mediaframe/webcast.html?webcastid=J3Hvslre. The webcast replay link will be archived on Andersen’s Investor Relations website at investor.andersen.com within a few hours of the event and will remain on the website for six months. About Andersen Andersen is a leading provider of independent tax, valuation and financial advisory services to individuals, family offices, businesses and alternat
Safe Software Announces the Peak of Data and AI 2027, a Premier Global Conference, in London, UK9.3.2026 15:00:00 EET | Press release
Safe Software (Safe) officially announced today the return of its global user conference, the Peak of Data and AI, taking place March 9–11, 2027, at the QEII Centre in London, UK. A Partner Summit will kick off the event on March 8, 2027, bringing together Safe’s global partner community ahead of the main conference. Hosted every two years, the Peak of Data and AI has evolved from Safe Software’s long-running user conference into a premier global event for data and AI professionals. The conference alternates between North America and international locations, with previous events held in Bonn, Germany (2023) and Seattle, Washington (2025). “At the Peak of Data and AI, we bring together the people who are shaping how organizations use data to drive real-world outcomes,” said Don Murray, CEO of Safe Software. “With London as our host city in 2027, we’re excited to connect with the global community to learn, listen, and share what’s next for data and AI.” The three-day conference will feat
Boomi Activates Data for the Enterprise9.3.2026 15:00:00 EET | Press release
Boomi™, the data activation company, today announced new capabilities within the Boomi Enterprise Platform. Data activation brings data to life across systems and processes, delivering it with the right context and timing to power everything from AI to BI. The Boomi Enterprise Platform, the foundation that puts data in motion, now adds new semantic context to help AI agents operate on grounded business realities, expands governed SAP data movement with change data capture, enhances transparency and oversight across agentic workflows, and introduces a dedicated European platform instance for localized data control. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260309682526/en/ Boomi Activates Data for the Enterprise “Last year, Boomi helped enterprises move from experimentation to execution. What we’re seeing now is clear: AI only delivers value when data is properly activated, trusted and governed first,” said Steve Lucas,
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
