MA-SECURE-CODE-WARRIOR
New research from Secure Code Warrior ® , the global secure coding company, has revealed an attitudinal shift in the software development industry, with organisations bucking traditional practices for DevOps and Secure DevOps.
The global survey of professional developers and their managers found seven in 10 organisations (70%) recognise the importance of secure coding practices, with results indicating an industry-wide shift from reaction to prevention is underway.
Dr. Matias Madou, Chief Technology Officer and Co-Founder at Secure Code Warrior, said, “We are seeing a fundamental shift in mindsets across the world, as the industry slowly moves from reactive, band-aid solutions rolled out after a breach, to the proactive and human-led practice of writing quality software that is intrinsically free from vulnerabilities right from the very first keystroke. ”
“This research shows that ‘secure code’ is becoming synonymous with ‘quality code’ within software development, and security is becoming the responsibility of development teams and leaders—not just AppSec professionals, ” he said.
Secure coding seen as ‘reactive’
Reactive practices like using tools on deployed applications and manually reviewing code for vulnerabilities were the top two practices respondents associated with coding securely. However, a proactive shift in mindset was evidenced across the globe, with more than half (55%) of the developers surveyed also recognising secure coding as the active, ongoing practice of writing software protected from vulnerabilities.
Managers and developers are misaligned
Over half (55%) of managers surveyed said secure coding was practised and integrated throughout the entire development process, compared to only 43% of developers. Conversely, 36% of developers consider secure coding during development but not the design phase, as opposed to under one-third (32%) of managers.
Secure code an increasing indicator of success
While those surveyed identified ‘application performance’ and ‘functionality and features’ as the most common success metrics within software development (67% and 62% respectively), almost four in five (79%) respondents said the importance of ‘secure code’ was growing in prominence.
Application security is shifting
Almost half of respondents (46%) said development leads and teams should be responsible for application security rather than AppSec teams (24%). Over eight in 10 (81%) developers surveyed said they were accountable for any vulnerable code produced.
Developers motivated to upskill
‘Increased productivity and efficiency’, ‘curiosity’ and ‘avoiding problems caused by insecure code’ were identified as the leading intrinsic motivators to learn secure coding (20%, 14% and 11% respectively). Despite only 10% of respondents listing career advancement as a personal motivator, four in five (81%) managers were more likely to hire talent with secure coding skills.
More training is needed
91% of managers surveyed said they faced greater than average difficulty when implementing secure coding practices within their organisation, despite the overwhelming majority of respondents (97%) believing they were sufficiently trained. Perhaps, this is because almost nine in 10 (88%) developers surveyed said coding securely was challenging.
Madou added, “With OWASP’s Top 10 software vulnerabilities causing more security breaches over the past two decades than any others, now is the time for businesses to upskill developers to gain the knowledge and skills needed to stamp out insecure code and prevent issues from occurring in the first place. ”
“Code is at the heart of everyday interactions, and Secure Code Warrior is focused on championing security-skilled developers who can create amazing, safe software for our connected world .”
To gain early access to the report, ‘Shifting from reaction to prevention: The changing face of application security 2021’, register your interest at scw.buzz/earlyaccess
Methodology
Secure Code Warrior® commissioned Evans Data Corporation, the market intelligence leader within the IT industry, to conduct a global survey of developers and decision-makers actively engaged in software development. In August 2020, 400 respondents were surveyed across North America, India, the United Kingdom, Europe, Australia, New Zealand and South-East Asia.
About Secure Code Warrior
Secure Code Warrior is the developer-chosen solution for growing powerful secure coding skills. By making secure coding a positive and engaging experience for developers as they increase their software security skills, our human-led approach uncovers the secure developer inside every coder, helping development teams ship quality code faster.
Through inspiring a global community of security-conscious developers to embrace a preventative secure coding approach, our mission is to pioneer a people-first solution to security upskilling, stamping out poor coding patterns for good. Learn more at securecodewarrior.com .
View source version on businesswire.com: https://www.businesswire.com/news/home/20210323006113/en/
Link:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Andersen Consulting styrker sine kompetencer med BMA27.11.2025 22:48:00 CET | Pressemeddelelse
Andersen Consulting udvider sine kompetencer inden for bæredygtighed og virksomhedsforandring gennem en samarbejdsaftale med BMA, der er et sydafrikansk firma, som arbejder for at styrke konkurrenceevnen i fremstillingsindustrien og fremme inkluderende industriel vækst. BMA, der blev etableret for mere end to årtier siden, arbejder på tværs af produktionsværdikæder – fra producenter til deres kunder – sammen med myndigheder og udviklingsagenturer for at fremme bæredygtig industriel konkurrenceevne. Gennem sine sektorfokuserede industrielle klynger leverer firmaet integrerede tjenester inden for industriel politik og strategisk udvikling, værdikædestrategi, produktionskonkurrenceevne og lean-rådgivning, reduktion af CO2-udledning samt udvikling af små og mellemstore virksomheder og samler interessenter omkring fælles prioriteter og skalerbare, langsigtede løsninger. "Bæredygtig produktion handler om mere end effektivitet. Det drejer sig om at skabe økosystemer, der er regenerative, resi
Stronghold’s SHx Token Lists on Uphold27.11.2025 16:00:00 CET | Press release
Multi-Chain Expansion Accelerates With New Listing on a Trusted Platform Supporting Both Stellar and Ethereum Stronghold announced that its SHx token is now available for retail users to trade on Uphold, the global multi-asset digital money platform known for its transparency, regulatory alignment, and seamless support for assets across both the Stellar and Ethereum networks. The listing marks a major milestone for SHx, expanding access for users and businesses who rely on Stronghold’s token for payments, settlements, and governance participation. "Uphold is one of the only platforms that provides seamless support for both Stellar and Ethereum-based tokens, making it a perfect fit for SHx as we grow our multi-chain ecosystem. This listing was championed by our community, and we’re thrilled to deliver on a request that so many SHx holders have been asking for." — Tammy Camp, CEO & Co-Founder, Stronghold SHx is Stronghold’s native utility token, powering interoperable payments, DeFi-base
Wipro to Power Odido’s Digital Future Through AI-enabled End-to-End IT Modernization27.11.2025 14:22:00 CET | Press release
The multi-year engagement marks a significant shift in Odido’s IT strategywith Wipro bringing deep domain expertise, AI-powered delivery, and a design-led approach to drive innovation Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO), a leading AI-powered technology services and consulting company, today announced a multi-year engagement with Odido Netherlands B.V.* to transform its IT landscape and enhance customer experience across their enterprise and consumer segments. By combining AI and deep consulting expertise, Wipro will help Odido improve customer engagement and satisfaction, improve productivity, and streamline operations to reduce costs. A key highlight of this multi-year engagement is the use of a self-funded model, where productivity-driven savings are reinvested to continuously fund new digital initiatives, ensuring that innovation remains both sustainable and scalable. As part of the engagement, Wipro will lead a full-scale modernization of Odido’s digital and enterpri
Klarna Set to Take off With Lufthansa Group, Bringing Flexible Payments to Travellers Across Europe and the U.S.27.11.2025 14:00:00 CET | Press release
Klarna, the global digital bank and flexible payments provider, today announces a new multi-market partnership with Lufthansa Group, Europe’s leading airline group. The new agreement is facilitated by Klarna’s integration with Adyen, the financial technology platform of choice for leading businesses. From November, Lufthansa Group customers will be able to choose Klarna’s flexible payment options at checkout when booking travel experiences. This new integration gives travellers greater control and convenience by offering the choice to pay in full, pay later, or spread the cost of their journey over time. The new options will be available first to customers in Austria, Belgium, Denmark, Finland, Germany, the Netherlands, Norway, Sweden, Switzerland, and the United States. “Travel is one of the most meaningful investments people make,” said David Sykes, Chief Commercial Officer at Klarna. “Together, we’re giving travellers the confidence to book their trips their way—with more flexibilit
GE HealthCare announces CE Mark for new digital 4D SPECT/CT system, StarGuide GX27.11.2025 12:06:00 CET | Press release
FOR USE IN CE-MARK EUROPEAN COUNTRIES ONLY StarGuide GXi empowers personalized care and research innovation as nuclear medicine expands into new applications The system doubles volume sensitivity,ii maintains high resolution and enables clinicians to virtually scan all energies fast – including the acquisition of investigational alpha emitters like Actinium-225 – with exceptional clarity and quantitation GE HealthCare today announced CE Mark for its new StarGuide™ GX system,i a new digital 4D SPECT/CT designed with excellent precision, clinical efficiency and impressive versatility. This milestone marks a significant moment in molecular imaging’s evolution, helping empower clinicians to expand research and help personalize care across a growing range of nuclear medicine applications and tracers – including the acquisition of alpha emitters. StarGuide GX comes at a pivotal time for the field of nuclear medicine. As complex diseases such as cancer, Alzheimer’s and cardiovascular disease
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
