MA-SECURE-CODE-WARRIOR
24.3.2021 03:25:11 CET | Business Wire | Press release
New research from Secure Code Warrior ® , the global secure coding company, has revealed an attitudinal shift in the software development industry, with organisations bucking traditional practices for DevOps and Secure DevOps.
The global survey of professional developers and their managers found seven in 10 organisations (70%) recognise the importance of secure coding practices, with results indicating an industry-wide shift from reaction to prevention is underway.
Dr. Matias Madou, Chief Technology Officer and Co-Founder at Secure Code Warrior, said, “We are seeing a fundamental shift in mindsets across the world, as the industry slowly moves from reactive, band-aid solutions rolled out after a breach, to the proactive and human-led practice of writing quality software that is intrinsically free from vulnerabilities right from the very first keystroke. ”
“This research shows that ‘secure code’ is becoming synonymous with ‘quality code’ within software development, and security is becoming the responsibility of development teams and leaders—not just AppSec professionals, ” he said.
Secure coding seen as ‘reactive’
Reactive practices like using tools on deployed applications and manually reviewing code for vulnerabilities were the top two practices respondents associated with coding securely. However, a proactive shift in mindset was evidenced across the globe, with more than half (55%) of the developers surveyed also recognising secure coding as the active, ongoing practice of writing software protected from vulnerabilities.
Managers and developers are misaligned
Over half (55%) of managers surveyed said secure coding was practised and integrated throughout the entire development process, compared to only 43% of developers. Conversely, 36% of developers consider secure coding during development but not the design phase, as opposed to under one-third (32%) of managers.
Secure code an increasing indicator of success
While those surveyed identified ‘application performance’ and ‘functionality and features’ as the most common success metrics within software development (67% and 62% respectively), almost four in five (79%) respondents said the importance of ‘secure code’ was growing in prominence.
Application security is shifting
Almost half of respondents (46%) said development leads and teams should be responsible for application security rather than AppSec teams (24%). Over eight in 10 (81%) developers surveyed said they were accountable for any vulnerable code produced.
Developers motivated to upskill
‘Increased productivity and efficiency’, ‘curiosity’ and ‘avoiding problems caused by insecure code’ were identified as the leading intrinsic motivators to learn secure coding (20%, 14% and 11% respectively). Despite only 10% of respondents listing career advancement as a personal motivator, four in five (81%) managers were more likely to hire talent with secure coding skills.
More training is needed
91% of managers surveyed said they faced greater than average difficulty when implementing secure coding practices within their organisation, despite the overwhelming majority of respondents (97%) believing they were sufficiently trained. Perhaps, this is because almost nine in 10 (88%) developers surveyed said coding securely was challenging.
Madou added, “With OWASP’s Top 10 software vulnerabilities causing more security breaches over the past two decades than any others, now is the time for businesses to upskill developers to gain the knowledge and skills needed to stamp out insecure code and prevent issues from occurring in the first place. ”
“Code is at the heart of everyday interactions, and Secure Code Warrior is focused on championing security-skilled developers who can create amazing, safe software for our connected world .”
To gain early access to the report, ‘Shifting from reaction to prevention: The changing face of application security 2021’, register your interest at scw.buzz/earlyaccess
Methodology
Secure Code Warrior® commissioned Evans Data Corporation, the market intelligence leader within the IT industry, to conduct a global survey of developers and decision-makers actively engaged in software development. In August 2020, 400 respondents were surveyed across North America, India, the United Kingdom, Europe, Australia, New Zealand and South-East Asia.
About Secure Code Warrior
Secure Code Warrior is the developer-chosen solution for growing powerful secure coding skills. By making secure coding a positive and engaging experience for developers as they increase their software security skills, our human-led approach uncovers the secure developer inside every coder, helping development teams ship quality code faster.
Through inspiring a global community of security-conscious developers to embrace a preventative secure coding approach, our mission is to pioneer a people-first solution to security upskilling, stamping out poor coding patterns for good. Learn more at securecodewarrior.com .
View source version on businesswire.com: https://www.businesswire.com/news/home/20210323006113/en/
Link:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Mindbreeze InSpire Reduces Token Maxxing, Turning Runaway AI Costs Into Predictable Enterprise Value28.7.2026 15:03:00 CEST | Press release
By grounding generative AI in precise, governed enterprise knowledge, Mindbreeze InSpire cuts the wasted tokens that inflate AI budgets and erode answer quality. Mindbreeze, a leading global provider of AI-based knowledge management solutions, today announced that Mindbreeze InSpire reduces token maxxing, the costly overconsumption of large language model (LLM) tokens that is straining enterprise AI budgets. By retrieving only the most relevant, grounded content and passing it to LLMs with precision, Mindbreeze InSpire lowers the tokens required per answer while improving accuracy, giving enterprises a path to scalable AI with predictable economics. Token maxxing has become one of the most underestimated risks in enterprise AI. As organizations connect generative AI to their data, many default to injecting large volumes of undifferentiated context into every prompt, repeatedly, across thousands of queries. Industry analysis has warned that tokens are becoming the true unit of AI cost,
Uptime Institute 16th Annual 2026 Global Data Center Survey: Deployment of High Density Racks Rising Fast, Operators Face Continued Recruiting and Retention Pressures28.7.2026 15:02:00 CEST | Press release
Uptime Institute today released the findings of its 16th Annual Global Data Center Survey, the most comprehensive study of the digital infrastructure sector. The 2026 results reveal an industry navigating workforce constraints, escalating outage expenses, even as rising costs remain the top concern for management teams. Financial Pressure and Resource Constraints Intensify: While high costs continue to be a primary concern for data center leaders, the 2026 survey also highlights escalating concerns over capacity forecasting, power availability, and supply chain disruptions. Power efficiency gains remain gradual. The industry saw minor improvements in average Power Usage Effectiveness (PUE) levels this year. While newer facilities may boast highly efficient designs, overall global progress is slowed by legacy infrastructure. The AI and Density Reality Check: Despite market enthusiasm for Artificial Intelligence, expectations for AI in data center operations cooled slightly in 2026. Oper
Torq Unveils the SOC Brain: The AI SOC That Learns, Not Just Remembers28.7.2026 15:00:00 CEST | Press release
New Torq AI SOC Platform layer’s innovative capabilities learn from every security decision and historical incident, drawing conclusions from precedents and team judgments from day zero Torq, the established agentic security operations leader, today introduced Torq SOC Brain™, a new layer of the Torq AI SOC Platform that continuously learns from historical investigations, analyst decisions, and organization-specific security operations to create a unified, self-learning AI SOC. While most autonomous investigation systems claim to be self-learning, they are, in reality, memory systems—they simply retrieve past cases and pass them to a language model at decision time. Torq SOC Brain is fundamentally different. It reasons from precedent, adapts to how each SOC evaluates risk, and continuously refines its judgment with every completed investigation. The result is an AI SOC that grows more accurate over time—not a thin wrapper around a generic AI model. This press release features multimedi
AUTOBACS SEVEN Marks 10 Years of System Stability and Self-Funded Innovation with Rimini Street28.7.2026 15:00:00 CEST | Press release
Japan’s leading automotive aftermarket retailer uses Rimini Smart Path™ to accelerate innovation without disrupting its core SAP ECC and Oracle Database systems Rimini Street, Inc. (Nasdaq: RMNI), the Software Support and Agentic AI ERP Company™ and the leading third-party support provider for Oracle, SAP and VMware software, today announced that AUTOBACS SEVEN Co., Ltd. celebrates its 10-year partnership with Rimini Street, marking a decade of stable core operations and reinvestment in innovation. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260728266493/en/ AUTOBACS SEVEN Marks 10 Years of System Stability and Self-Funded Innovation with Rimini Street Since switching to Rimini Support™ for SAP ECC 6 in 2016, AUTOBACS SEVEN has expanded its partnership to include Oracle Database, helping the company stabilize mission-critical systems, reduce maintenance burden and free resources for innovation. “At AUTOBACS SEVEN, our lea
Abnormal AI Extends its Behavioral Security Platform to Identity and AI Security28.7.2026 15:00:00 CEST | Press release
Abnormal launches three new products: Identity Threat Protection, AI Governance, and Infiltration Prevention to secure the modern identity attack surface Abnormal AI, the AI-native behavior security company trusted by more than 25% of the Fortune 5001, today announced the expansion of its Behavioral Security Platform across the enterprise, introducing three new products: Identity Threat Protection, AI Governance, and Infiltration Prevention. Together, the launch extends the behavioral AI that already secures over 4,500 customers1 to the identities, AI systems and onboarding pipeline that attackers increasingly exploit. Additionally, customers can now activate products from the AI App Store, a new interface to turn on Abnormal products in a single click. For nearly a decade, Abnormal has protected organizations by understanding behavior, learning what normal looks like for every identity and detecting the deviations that signal anomalous activity or an attack. That behavioral foundation
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
