Key Takeaways from the 2023 State of Code Security Report

Overview

The application security market continues to evolve as organizations recognize that security risk needs to balance with business imperatives. Fortify partnered with DarkReading to interview hundreds of AppSec professionals and developers to discover the key challenges this ever changing landscape has created.

Based off the survey and research data, it's evident that regardless of the pace of change in technology transformation (the explosion of APIs, microservices, IaC innovation and cloud technology) there’s still a lot of room for maturity and growth in most organizations.

  • Did you know, that while the majority (57%) of organizations are implementing DevSecOps, almost 3 in 10 (29%) haven’t yet but plan to in the next year. Crazy as it sounds, a full 14% are not doing so and have no plans to.
  • Static application security testing (SAST) is becoming the norm. (56% use SAST and perform appsec assessments) But dynamic analysis (DAST) is still lagging at only 45% implementation.
  • There is still over 30% of organizations looking to implement MAST and almost half (46%) of organizations we surveyed are planning implementation of SCA.

Join us as we explore the key findings, implementation challenges, factors influencing tool adoption, and key take-aways.

Special note: Martin Hell (from Debricked) will be joining us to share their research on the State of Open Source Security.

Speakers

Brent Jenkins
Brent Jenkins
OpenText
Product Marketing Director, Fortify

Sheldon Mills
Sheldon Mills
OpenText
Senior Product Marketing Manager, Fortify

Martin Hell
Martin Hell
Debricked
Security Strategist