• August 19, 2019

Annual Research from WhiteHat Security Says Remediation Rates for App Vulnerabilities Continue to Fall - Odessa American: Business

e-Edition Subscribe

Annual Research from WhiteHat Security Says Remediation Rates for App Vulnerabilities Continue to Fall

Font Size:
Default font size
Larger font size

Posted: Tuesday, August 13, 2019 8:00 am | Updated: 8:30 am, Tue Aug 13, 2019.

SAN JOSE, Calif.--(BUSINESS WIRE)--Aug 13, 2019--

Despite a significantly increased focus on application security testing, remediation rates for vulnerabilities continue to shrink, according to WhiteHat Security, an independent subsidiary of NTT Security and a leading application security provider committed to securing applications that run enterprise businesses. Today, the company released its 2019 Application Security Statistics Report, The DevSecOps Approach: Using AppSec Statistics to Drive Better Outcomes,” which identifies the latest statistics and trends regarding the biggest application security threats to organizations.

As a result of WhiteHat’s deep AppSec expertise and robust vulnerability database coupled with NTT Security’s global threat intelligence, WhiteHat’s research now offers the most comprehensive perspective on the current state of application security, as well as recommendations on how to implement DevSecOps effectively.

Setu Kulkarni, WhiteHat’s VP of Strategy and Business Development, said, “It is more critical than ever that digital transformation initiatives must include a robust application security program. The 2019 STATS report builds on the DevSecOps framework we had outlined last year and advances it with supporting metrics, to help our customers build consensus for securing applications and reducing risks, costs and complexity. We find that organizations that take this approach experience markedly better AppSec outcomes – notably a 50% drop in Window of Exposure, an important metric that represents the amount of time that an application has a serious vulnerability that can be exploited to data breaches.”

Key findings of the report include:

  1. The effort required to secure the rapidly growing volume of existing and new applications is overwhelming already short-staffed teams.
  2. AppSec investment is unbalanced across development, security and operations.
  3. Organizations that scan applications in production have a reduced risk of being breached.
  4. Organizations that embed security in DevOps are able to reduce risk, reduce cost and improve time to market.
  5. Embeddable components in the software supply chain account for 1/3 of all AppSec vulnerabilities.

WhiteHat Security has been publishing this yearly report since 2006. The study comprises statistical data and analysis gathered from continuously updated security testing information in WhiteHat Sentinel, a cloud-based application security platform.

“WhiteHat’s research offers the most comprehensive perspective on the current state of application security,” said Craig Hinkley, CEO at WhiteHat. “Applications are under constant attack, and businesses continue to struggle against this tide. However, by embedding application security testing at each stage of the software lifecycle, organizations can make demonstrable improvements while reducing the time to delivery of secure applications. WhiteHat Security’s Application Security Platform provides the foundational DevSecOps capabilities, including DAST, SAST and SCA, that organizations require at each stage of their software lifecycle – enabling innovation and security to thrive simultaneously.”

To schedule a WhiteHat demo, or to read the full report, please visit https://info.whitehatsec.com/Content-2019-StatsReport—LP.html?utm—source=website&utm—medium=0819-Website-WhiteHat2019StatisticsReport

About WhiteHat Security

WhiteHat Security has honed its 18 years of experience in the application security space to provide developers and businesses with the tools and services they need to write and deliver the most secure software at the speed of business. The award-winning WhiteHat Application Security Platform, which has been featured on the Gartner Magic Quadrant for Application Security Testing for the last five years, is empowering DevSecOps by continuously assessing the risk for organizations’ software assets and helping them to embed security throughout the software life cycle (SLC). The company is an independent, wholly-owned subsidiary of NTT Security and is based in San Jose, California, with regional offices across the U.S. and Europe. For more information on WhiteHat Security, please visit www.whitehatsec.com, and follow us on Twitter, LinkedIn and Facebook.

View source version on businesswire.com:https://www.businesswire.com/news/home/20190813005027/en/

CONTACT: Media relations for NTT Security

Paula Averley

Origin Comms

+44 (0)203 814 2941.

nttsecurity@origincomms.comMedia relations for WhiteHat Security

Emily Gallagher/Alyssa Pallotti

Touchdown PR

+1 512-373-8500




SOURCE: WhiteHat Security

Copyright Business Wire 2019.

PUB: 08/13/2019 09:00 AM/DISC: 08/13/2019 09:00 AM


© 2019 The Associated Press. All rights reserved. This material may not be published, broadcast, rewritten or redistributed.

Odessa, TX

Current Conditions

Humidity: 30%
Winds: SSE at 13mph
Feels Like: 100°

Your Extended Forecast


High 101°/Low 76°
Sunny. Highs 99 to 103F and lows in the mid 70s.


High 99°/Low 75°
Sunshine. Highs in the upper 90s and lows in the mid 70s.


High 97°/Low 73°
More sun than clouds. Highs in the upper 90s and lows in the low 70s.
Online Features

Pet Central


Having a pet is a lot of responsibility, and we’ll help by giving you lots of tips and tricks! More >>



Our fitness articles will help teach you how to work out with gym- and home-based exercises. More >>



Enjoy the crosswords challenge in our free daily puzzles, from the harder Sunday crossword to the quicker daily. More >>



Every Sudoku has a unique solution that can be reached logically. Enter numbers into the blank spaces so that each row, column and 3x3 box contains the numbers 1 to 9. More >>

  • ALL-ACCESS: Subscribe to our e-edition and premium website at myoaoa.com.
    You can read your daily newspaper without taking a walk to the driveway.
    Look back at yesterday's newspaper, or issues from months ago with our archive feature.
    Call circulation at 432-337-7670 to sign up today.