PRESS RELEASE. SAN FRANCISCO, Dec. 06, 2023 - Cycode, the leader in Application Security Posture Management, today announced the inaugural State of ASPM 2024 report, the industry's first.
The research found that AppSec chaos reigns, with 78% of CISOs responding that today's AppSec attack surfaces are unmanageable and 90% of responders confirmed relationships between their security and development teams need to improve.
Surprisingly, 77% of CISOs believe software supply chain security is a bigger blind spot for AppSec than Gen AI or open source.
The State of ASPM 2024 report was compiled from a survey of 500 U.S. CISOs, AppSec Directors and DevSecOps team members.
Prioritization of AppSec risks and activities are a significant problem for most organizations as highlighted in the State of ASPM research.
The vast majority of CISOs acknowledge dev teams suffer from vulnerability noise and alert fatigue, which strains the relationship between security and dev teams.
88% acknowledge that because of alert fatigue developers are not focused on remediating critical vulnerabilities, which increases the potential for a security breach and puts the business at risk.
Only 21% of respondents believe that both security and development are equally responsible for application security, confirming that many security professionals question whether application security is a team sport.
An overwhelming 77% majority said that understanding who owns application security is challenging, indicating that more clarity is needed about who is responsible for AppSec in most organizations.
The report also shows that alert fatigue is not the only cause of the souring relationship between security and development teams.
A staggering 75% of security professionals struggle with the complexity of managing multiple security tools.
92% of CISOs confirmed they are looking to consolidate their AppSec tools into a single platform in the next 12 months.
This comes straight off the heels of Cycode's announcement of an expanded, complete approach to ASPM that enables security and development teams to manage the burden, cost and inefficiencies of having too many siloed security tools from code to cloud - which brings order to better maintain strong application security posture.
The capstone on Cycode's complete ASPM solution was its recent ConnectorX announcement, a click and connect 3rd party ASPM integration platform that provides companies with the choice to use Cycode's native ASPM tools or maximize their investments in their existing AppSec tools.
Using ConnectorX, companies can plug in any AppSec solution and within minutes, gain accurate, real-time visibility into their security posture.
Combined with significant enhancements to its Risk Intelligence Graph for smarter, risk-based prioritization, Cycode delivers the capabilities needed for a complete approach to ASPM, enabling security and development teams to align, build trust and collaborate on maintaining strong application security posture.
Information on Cycode's complete approach to Application Security Posture Management is available online, or book a demo of Cycode's ASPM platform.
Cycode is the leading Application Security Posture Management providing Peace of Mind.
Its complete ASPM platform scales and standardizes developer security without slowing down the business.
With Cycode's complete ASPM, security teams can eliminate context switching, amplify visibility, prioritize and eliminate risk to ensure end-to-end code to cloud coverage, leaving no room for attacks to go unnoticed.
This Cyber News was published on www.darkreading.com. Publication date: Thu, 07 Dec 2023 23:30:06 +0000