Less than a third of developers take full responsibility for security

Security responsibility is shared as developers and IT managers seek to manage control and convenience.

  • 4 years ago Posted in
Research from MongoDB finds only 29% of Europe’s developers take full responsibility for security as organisations battle for control and convenience.

 

When surveyed, over 1500 developers and IT decision-makers (ITDMs) across the UK, France and Germany gave new insight into security practises in organisations today.

 

Developers (92%) and the decision-makers (88%) reassure us that they take appropriate precautions when building new applications.

 

Yet just 29% of developers take full responsibility.

 

While the remaining point to security specialists (21%), the business leaders who briefed the project (18%), the ops team (15%) and even security members they don’t know (14%). These splits are also present in the decision-maker camp.


 

All this is happening as both teams seek software to be compatible (38%) and easy to use (36%).

 

The findings lead Joe Drumgoole, Director of Developer Relations at MongoDB to call for DevSecOps as a way “to reconcile strong security with speed”. 

 

“There is no security without first having functionality, so the responsibility should be naturally distributed across different organizations. Where companies are at risk is the battle of control and convenience taking place,” adds Drumgoole.

 

“When done properly, DevSecOps can provide deeper visibility and a better understanding of how resources are being used. It should become and remain a key part of an organisation’s development strategy,” shared Lena Smart, CISO, MongoDB.

 

Research shows ‘game needs to be changed,’ with security innovation years behind that of the...
73% of organizations lack automated patch management, and 62% experienced incidents involving...
Quest Software has signed a definitive agreement with Clearlake Capital Group, L.P. (together with...
Dell EMC PowerProtect Cyber Recovery for AWS provides a fast, easy-to-deploy public cloud vault to...
Aqua’s cloud native application protection platform becomes the only solution that protects cloud...
54% of organisations working on a security transformation project now or in the next 12 months.
Node4 has released its Mid-Market IT Priorities Report 2021. The independent report reveals that...
Zscaler Zero Trust exchange cloud-based architecture enables superior green security capabilities...