Connect with us

Technology

New Research From Legit Security and TechTarget’s Enterprise Strategy Group Shows Outdated Application Security Approaches Do Not Work With Modern Development Trends

Published

on

Comprehensive study shows an urgent need for organizations to adopt a modernized approach to their application security processes

BOSTON, Aug. 16, 2024 /PRNewswire/ — Legit Security, the definitive application security posture management (ASPM) leader providing end-to-end visibility and protection across the entire software factory, and TechTarget’s Enterprise Strategy Group (ESG), a leading IT analyst, research, and strategy firm, today announced the publication of Modernizing Application Security to Scale for Cloud-native Development. The report delves into the development trends driving the need to modernize application security programs and evaluates pressing challenges that application security teams encounter with their current tools. The findings underscore the urgency for organizations to modernize their application security practices so that they can support growth and mitigate risks.

“Organizations are increasingly adopting new technologies so that they can bolster their software development, and as modern development has changed, so have attacker tactics,” said Joe Nicastro, Field CTO, Legit Security. “Development teams are using cloud-native technologies to drive efficiency and optimize innovation, but this often leads to a larger attack surface due to misconfigurations, vulnerable plug-ins, and excessive permissions throughout the SDLC. In today’s environment, organizations must adopt security solutions that can protect their software factory from end-to-end while providing developers with the guardrails they need to do their best work safely.”

The report found that application teams face a number of challenges, such as keeping up with the speed and volume of releases and prioritizing remediation. These challenges highlight the importance of a modernized approach and alignment with development and DevOps teams for improved collaboration. Additionally, nearly all organizations reported difficulties in fixing vulnerabilities after applications are deployed, reinforcing the significance of incorporating security processes and tools in the build process.

The report’s key findings include:

60% of organizations use IaC to simplify infrastructure provisioning and easily deploy software applications. However, with increased IaC adoption, misconfigurations can be magnified because flaws are easily proliferated if not addressed. Of particular concern, 67% of respondents report an increase in IaC misconfigurations.45% of security teams supporting cloud-native development processes said understanding and managing risks related to usage of generative AI is their biggest challenge, followed by measuring and improving AppSec program effectiveness, and understanding developer environments and assets to effectively manage security.The majority of organizations experienced a cybersecurity event involving their cloud-native application stack in the last 12 months, with secrets stolen from a source code repository (32%) coming in as the most common incident.Only 39% of organizations report that their security teams have visibility for certain applications, reinforcing the necessity for visibility into security testing in development.

“Our research calls attention to how traditional application security teams need solutions that support modern development processes as they scale to drive productivity and business growth,” said Melinda Marks, Practice Director, Cybersecurity, Enterprise Security Group. “The research showed that in addition to securing the applications, security teams need to address security related to how developers work, including secrets, pipeline tools, containers, and source code repositories. While these elements enable developers to work quickly and collaborate, the added attack surfaces and chance for mistakes become greater as development scales. By understanding and addressing these areas, organizations can improve their security programs. This is important as we have seen all too often that just one incident can have severe ramifications on the business, including data loss, business disruption, application downtime, customer data loss, malware, and compliance fines.”

To download the report, visit http://info.legitsecurity.com/esg-modernizing-application-security-to-scale-for-cloud-native-development.

To read our latest blog and perspective on the report, visit https://www.legitsecurity.com/blog/esg-survey-report-finds-ai-secrets-and-misconfigurations-plague-appsec-teams

Methodology
TechTarget’s Enterprise Strategy Group surveyed 350 IT, cybersecurity, and application development professionals in North America (US and Canada) responsible for evaluating, purchasing, and utilizing developer-focused security products (i.e., application/code security testing tools, software composition analysis, policy-setting tools, remediation tools, etc.). 

About Legit Security
Legit is a new way to manage your application security posture for security, product, and compliance teams. With Legit, enterprises get a cleaner, easier way to manage and scale application security and address risks from code to cloud. Built for the modern SDLC, Legit tackles the most challenging problems facing security teams, including GenAI usage, proliferation of secrets, and an uncontrolled dev environment. Fast to implement and easy to use, Legit lets security teams protect their software factory from end to end, gives developers guardrails that let them do their best work safely, and delivers metrics that prove the security program’s success. This new approach means teams can control risk across the business – and prove it.

About ESG
Enterprise Strategy Group is an integrated technology analysis, research, and strategy firm providing market intelligence, actionable insight, and go-to-market content services to the global technology community. It is increasingly recognized as one of the world’s leading analyst firms in helping technology vendors make strategic decisions across their go-to-market programs through factual, peer-based research. ESG is a division of TechTarget, Inc. (Nasdaq: TTGT), the global leader in purchase intent-driven marketing and sales services focused on delivering business impact for enterprise technology companies.

Media Contact for Legit Security:
Michelle Yusupov
Hi-Touch PR
443-857-9468
yusupov@hi-touchpr.com

SOURCE Legit Security

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Technology

Asian Hall of Fame Heritage Gala Highlights Impactful Legacy

Published

on

By

Benefit supported Women In Tech, Entertainment, Science & Sports Scholars

LOS ANGELES, May 13, 2026 /PRNewswire/ — Global ambassador Asian Hall of Fame highlighted positive messages of interracial synergy with its Heritage Gala on May 1, 2026 at the iconic Biltmore Los Angeles. CBS LA Anchor Suzie Suh served as Master of Ceremonies of the festive Asian Heritage Month celebration brought to life by vibrant heritage costumes representing Asia, Latin America, and the U.S. Virgin Islands. The intergenerational benefit funded Women In Tech, Entertainment, Science & Sports (WinTESS) scholarships for 103 applicants from all racial backgrounds.

Guests from California, Washington, Oregon, Hawaii, and New York applauded the Class of 2026 Official Announcement, including Asian Hall of Fame’s first-ever Major League Baseball Inductee Hideo Nomo, nominated by the Los Angeles Dodgers, and DTLA muralist Robert Vargas as Goodwill Ambassador.

Dedicated San Marino philanthropist and Board of Governors Chairwoman Melinda Rogers was honored as the 2026 Woman of the Year, with a moving speech presented by her younger brother William Rogers. Chairwoman Rogers highlighted the endearing impact of family, and delighted audiences with her custom Korean hanbok, designed alongside Anna Kim at her Koreatown boutique.

Distinguished philanthropist Loida Nicolas Lewis (Inductee 2007) shared an inspiring fireside chat with stories of family legacy and community empowerment. Guests received commemorative autographed memoirs, and complimentary gifts from Nan Yang Delight and SUP. Inductees in attendance were Marc Anthony Nicolas, Kristen Lui, incoming Inductees Kitty Lo and Maggie Tseng, Official Design Partner of the 2026 Season.

The dramatic Heritage Costume Show, sponsored by Meridien Vacation Homes, presented pageant holders including a Rose Pageant Princess, Miss Asia USA, Miss Teen Latina Global, Hi-Teen USA, Miss International U.S. Virgin Islands, Miss Taiwanese American, and Mrs. Asia Glamour.

Maki Mae performed from her upcoming album release with pianist Jason Lo and cellist Ryan Phipps. Walter Nishinaka and Los Angeles Taiko Collective kicked off raffle drawings, including an 18-carat gold ring donated by long-standing supporter Vartan Kazanjian, owner of Estate Jewelers of South Pasadena.

ABOUT ASIAN HALL OF FAME
Established in 2004, Asian Hall of Fame strengthens interracial synergy by advancing mainstream recognition of Asian and Native legacy. Inductees include Connie Chung, Kristi Yamaguchi, Margaret Cho, amongst others. Contact: press@asianhalloffame.org, (626) 600-9418, www.asianhalloffame.org.

View original content to download multimedia:https://www.prnewswire.com/news-releases/asian-hall-of-fame-heritage-gala-highlights-impactful-legacy-302771594.html

SOURCE Asian Hall of Fame

Continue Reading

Technology

Notice of Data Privacy Incident

Published

on

By

MOUNT STERLING, Ill., May 13, 2026 /PRNewswire/ — Brown County

Brown County, Illinois provides notice of a data privacy incident involving personal information of certain county constituents and staff.

What Happened? On April 3, 2025, we received alerts of unusual activity in one of our email accounts. We launched an immediate investigation, and retained independent cyber incident response specialists to assist. The investigation determined that two email accounts experienced unauthorized access. We have no evidence of fraud or identity theft from this incident.

What Information Was Involved. The information involved varied by individual, and may have included a first and last name along with a Social Security number, driver’s license number, government issued identification number, medical information, or health insurance information.

What We Are Doing. In addition to the above, we are offering complimentary credit monitoring and identity protection services to individuals whose Social Security numbers were believed to be involved.

What You Can Do. Generally, it is best practice to remain vigilant for incidents of identity theft and fraud from any source by reviewing your account statements and credit reports for suspicious activity and errors. If you discover any suspicious or unusual activity, promptly contact your financial institution or service provider.

Individuals are entitled to one free credit report annually from each of the three major credit reporting bureaus, TransUnion, Experian, and Equifax. To order a free credit report, visit www.annualcreditreport.com or call 1-877-322-8228.

Individuals may further learn about identity theft, fraud alerts, credit freezes, and the steps to take to protect personal information by contacting the credit reporting bureaus, the Federal Trade Commission (FTC), or state Attorneys General. The FTC encourages those who discover that their information has been misused to file a complaint with them. It may be reached at 600 Pennsylvania Ave. NW, Washington, D.C. 20580; www.identitytheft.gov; 1-877-ID-THEFT (1-877-438-4338); and TTY: 1-866-653-4261.

For More Information, you may contact us at 1-800-405-6108, Monday through Friday, 8:00 a.m. to 8:00 p.m. EST for further assistance.

View original content:https://www.prnewswire.com/news-releases/notice-of-data-privacy-incident-302771596.html

SOURCE Kennedys CMK LLP

Continue Reading

Technology

SharkNinja Set to Join S&P MidCap 400; Flowers Foods and F&G Annuities & Life to Join S&P SmallCap 600

Published

on

By

NEW YORK, May 13, 2026 /PRNewswire/ — S&P Dow Jones Indices will make the following changes to the S&P MidCap 400, S&P SmallCap 600: 

SharkNinja (NYSE: SN) will replace Flowers Foods Inc. (NYSE: FLO) in the S&P MidCap 400, and Flowers Foods will replace CSG Systems Intl Inc. (NASD: CSGS) in the S&P SmallCap 600 effective prior to the opening of trading on Monday, May 18. NEC Corporation (TSE: 6701) is acquiring CSG Systems Intl in a deal expected to close soon, pending final closing conditions.F&G Annuities & Life Inc. (NYSE: FG) will replace Mister Car Wash Inc. (NASD: MCW) in the S&P SmallCap 600 effective prior to the opening of trading on Tuesday, May 19. Leonard Green & Partners L.P. is acquiring Mister Car Wash in a deal expected to close soon, pending final closing conditions.

Following is a summary of the changes that will take place prior to the open of trading on the effective date:

Effective Date

Index Name

Action

Company Name

Ticker

GICS Sector

May 18, 2026

S&P MidCap 400

Addition

SharkNinja

SN

Consumer Discretionary

May 18, 2026

S&P MidCap 400

Deletion

Flowers Foods

FLO

Consumer Staples

May 18, 2026

S&P SmallCap 600

Addition

Flowers Foods

FLO

Consumer Staples

May 18, 2026

S&P SmallCap 600

Deletion

CSG Systems Intl

CSGS

Industrials

May 19, 2026

S&P SmallCap 600

Addition

F&G Annuities & Life

FG

Financials

May 19, 2026

S&P SmallCap 600

Deletion

Mister Car Wash

MCW

Consumer Discretionary

ABOUT S&P DOW JONES INDICES

S&P Dow Jones Indices is the largest global resource for essential index-based concepts, data and research, and home to iconic financial market indicators, such as the S&P 500® and the Dow Jones Industrial Average®. More assets are invested in products based on our indices than products based on indices from any other provider in the world. Since Charles Dow invented the first index in 1884, S&P DJI has been innovating and developing indices across the spectrum of asset classes helping to define the way investors measure and trade the markets.

S&P Dow Jones Indices is a division of S&P Global (NYSE: SPGI), which provides essential intelligence for individuals, companies, and governments to make decisions with confidence. For more information, visit www.spglobal.com/spdji/en/

FOR MORE INFORMATION:

S&P Dow Jones Indices
index_services@spglobal.com

Media Inquiries
spdji.comms@spglobal.com

View original content:https://www.prnewswire.com/news-releases/sharkninja-set-to-join-sp-midcap-400-flowers-foods-and-fg-annuities–life-to-join-sp-smallcap-600-302771602.html

SOURCE S&P Dow Jones Indices

Continue Reading

Trending