-

84% of Security and Development Professionals Believe ‘Security Champions’ Programs Can Improve Relationship Between Security and DevOps Teams

New Survey Highlights Current State of Security Champions Programs, Value They Provide to Organizations During Digital Transformation

BOSTON--(BUSINESS WIRE)--At OWASP Global AppSec Virtual, ZeroNorth, the only company to unite security, DevOps and the business for the good of software, announced today the results of a new survey report examining the state of ‘Security Champions’ programs. According to the survey, 84% of security and development professionals believe that Security Champions efforts can both bolster application security (AppSec) and improve relationships between Security and DevOps teams.

As organizations embrace DevOps and accelerate software delivery, the notion of centralized control is fading away as DevOps teams are gaining increasing AppSec responsibilities. A recent Ponemon Institute Research report revealed the challenges these shifts are creating, indicating that 71% of AppSec professionals believe security is undermined by developers who don’t include proper security functionality early in the software development life cycle (SDLC).

In an effort to better prepare DevOps teams for their AppSec remit, Security Champions programs are being implemented by organizations looking to create a culture of security across the development process. The report, conducted by ZeroNorth, surveyed security and development professionals to learn about the state of Security Champions programs at their individual organizations.

The survey found that while the notion of a Security Champions program is not a new one, 67% of these programs have existed for less than two years, with almost 40% being in place less than one year. For organizations that have implemented a Security Champions Program, 78% of respondents said the program has strengthened security skills and knowledge of developers, and 77% said it improved the company’s overall AppSec posture.

“The challenge of securing applications against increasingly sophisticated attacks is larger than any single organization,” said ZeroNorth CEO, John Worrall. “The most successful approaches to creating a culture focused on security begin at the top, with CISOs and security leaders working to bridge internal divides and demonstrate that the security of applications is everyone’s responsibility.”

Among the key findings of the survey:

  • Security champions have the power to improve AppSec, with 84% of respondents agreeing or strongly agreeing.
  • Passion for security gives strength to a Security Champion, with 50% of respondents naming it the characteristic for a successful Security Champion.
  • Security Champions are a unifying force with 56% of respondents saying Corporate Security leadership was a top requirement for the success of Security Champion and 47% saying Engineering leadership support.
  • Corporate Security teams are vital to the success of security champions programs, with 57% of respondents saying they should play a role in defining security priorities and 47% saying they should be involved in training best practices.

To download a copy of the Security Champions: Empowering Heroes to Unite Security & DevOps report, visit here.

About ZeroNorth

ZeroNorth brings security, DevOps and the business together to improve application security performance and reduce organizational risk. The company’s application security automation and orchestration platform unites enterprises to rapidly identify, prioritize and remove the vulnerabilities standing in the way of software excellence. In an age where the security of applications needs to be everyone’s responsibility, ZeroNorth is where organizations come together for the good of software.

Learn more at www.zeronorth.io

Contacts

Media Contact:
Dustin Rausa
Guyer Group
Dustin.Rausa@guyergroup.com
203-470-0251

ZeroNorth


Release Versions

Contacts

Media Contact:
Dustin Rausa
Guyer Group
Dustin.Rausa@guyergroup.com
203-470-0251

More News From ZeroNorth

ZeroNorth Achieves Key Corporate Milestones in H1 2021

BOSTON--(BUSINESS WIRE)--ZeroNorth, the only company to unite security, DevOps and the business for the good of software, today announced a series of milestones the company achieved in the first half of 2021, including the filing of two patents related to application security (AppSec) and vulnerability management. These milestones underscore the increased importance of AppSec as organizations of all sizes work to bolster their security postures. Key milestones achieved in the first half of the...

ZeroNorth Delivers “DevSecOps for Dummies” Book

BOSTON--(BUSINESS WIRE)--ZeroNorth, the only company to unite security, DevOps and the business for the good of software, today announced the publishing of DevSecOps for Dummies, ZeroNorth Special Edition book by Wiley publishing. The book informs enterprise organizations on the evolution of DevSecOps, an essential approach to modern software development and delivery, and explains why security is essential in that mix. “If you ever wanted proof that ‘the whole is more than the sum of its parts’...

ZeroNorth Unveils Two Trial Program Options to Launch Customers’ Journey to True DevSecOps

BOSTON--(BUSINESS WIRE)--ZeroNorth, the only company to unite security, DevOps and the business for the good of software, today announced two trial offerings, its 60-Day AppSec Visualization trial and its 90-Day AppSec Quick Start trial. “Today’s organizations know AppSec is not optional, and many are also exploring how to integrate AppSec into their DevOps processes in order to improve security and increase their competitive advantage,” said John Worrall, CEO at ZeroNorth. “The new trial progr...
Back to Newsroom