2018 APPLICATION SECURITY REPORT Business applications are critical business resources for companies of all sizes — and they’re increasingly under attack. To gain deeper insights into the state of application security, Cybersecurity Insiders conducted an in-depth study in partnership with the 400,000 member Information Security Community on LinkedIn.
This report is the result of a comprehensive survey of 437 cybersecurity professionals designed to reveal the latest application security trends, how organizations are protecting applications, and what tools and best practices IT cybersecurity teams are prioritizing to find, fix and prevent vulnerabilities in
INTRODUCTION next-gen applications.
Among the key findings of this research are that many organizations are fairly confident in their application security posture, but still have a ways to go to reach an appropriate level of security maturity. They’re facing a number of barriers that keep them from adequately defending against cyberthreats, and are concerned about protecting data and keeping up with the rising number of vulnerabilities.
The threat to applications is real, with malware, distributed denial-of-service, and other attacks putting applications at risk. Organizations are trying to counter by leveraging controls for securing applications, such as vulnerability scanning, anti-malware software, penetration testing, and identity and access controls. They’re also actively monitoring applications to collect and respond to threat intelligence, and using a variety of methods to monitor applications.
We would like to thank Security Innovation for supporting this unique research.
We hope you will enjoy the report.
Thank you,
Holger Schulze Holger Schulze CEO and Founder Cybersecurity Insiders [email protected]
2018 APPLICATION SECURITY REPORT 2 APPLICATION SECURITY CONFIDENCE
Survey respondents are at best moderately confident in their organization’s application security posture. (62%). Only 38% said they are very confident or extremely confident.
How confident are you in your organization’s application security pos?
of respondents are at best moderately confident in their organization's application security posture.