New Synopsys Research Reveals Vast Majority of Organizations Report DevOps Delays Due to Critical Security Issues
- Over 80% of survey respondents faced delays in DevOps delivery due to security issues
- Majority of organizations have adopted DevSecOps practices
- Concerns about potential errors or issues with AI-based cybersecurity solutions
- Remediation timelines for critical security risks can take weeks
- Application security testing tools are seen as useful by most respondents
- Security testing responsibilities are shared between internal teams and external consultants
- None.
Over
Over
"While a vast majority [
Key findings from the report include:
- Most security professionals are already using AI –and even more are wary of its risks. A majority (
- Remediation timelines for most organizations can span weeks. Twenty-eight percent of respondents said their organizations take as long as three weeks to patch critical security risks/vulnerabilities in deployed applications. Another
- Application security testing tools are seen as useful to at least two-thirds of respondents. When asked to gauge the usefulness of security tools and practices – including dynamic application security testing (DAST), interactive application security testing (IAST), static application security testing (SAST), and software composition analysis (SCA) – each tool included in the survey was regarded as useful by at least two-thirds of respondents. The report identifies SAST as the highest-regarded AST tool, with
- Security testing responsibilities are equally shared between internal security and development/engineering teams. Software developers and engineers (
To learn more, download a copy of the "Global State of DevSecOps 2023" report or read the detailed blog post.
About the Synopsys Software Integrity Group
Synopsys Software Integrity Group provides integrated solutions that transform the way development teams build and deliver software, accelerating innovation while addressing business risk. Our industry-leading portfolio of software security products and services is the most comprehensive in the world and interoperates with third-party and open source tools, allowing organizations to leverage existing investments to build the security program that's best for them. Only Synopsys offers everything you need to build trust in your software. Learn more at www.synopsys.com/software.
About Synopsys
Synopsys, Inc. (Nasdaq: SNPS) is the Silicon to Software™ partner for innovative companies developing the electronic products and software applications we rely on every day. As an S&P 500 company, Synopsys has a long history of being a global leader in electronic design automation (EDA) and semiconductor IP and offers the industry's broadest portfolio of application security testing tools and services. Whether you're a system-on-chip (SoC) designer creating advanced semiconductors, or a software developer writing more secure, high-quality code, Synopsys has the solutions needed to deliver innovative products. Learn more at www.synopsys.com.
Editorial Contact:
Liz Samet
Synopsys, Inc.
336-414-6753
esamet@synopsys.com
View original content to download multimedia:https://www.prnewswire.com/news-releases/new-synopsys-research-reveals-vast-majority-of-organizations-report-devops-delays-due-to-critical-security-issues-301952211.html
SOURCE Synopsys, Inc.
FAQ
What percentage of survey respondents faced delays in DevOps delivery due to security issues?
What percentage of organizations have adopted DevSecOps practices?
What are the concerns about AI-based cybersecurity solutions?
How long can remediation timelines for critical security risks take?
How are application security testing tools perceived by respondents?
Who is responsible for security testing?