Header image

Businesses Continue to Lack Visibility in Supply Chains

Two-thirds prioritise security features in their development workflows.

Around a third of organisations report having full observability into their software supply chain through their artifact management solution.

According to research from Cloudsmith, 36 percent have full visibility while 61 percent of surveyed software development professionals prioritise security features in their development workflows.

Meanwhile 46 percent still describe their software delivery pipelines as having no or partial automation, with process inefficiencies and little to no use of a centralised artifact repository.

Alan Carson, Cloudsmith’s CSO and co-founder, said: “Without visibility, you can’t control your software supply chain, and without control, there’s no security.

“When we speak to enterprises, security is high up on their list of most urgent priorities, but security doesn’t have to come at the cost of speed. They may have dozens of developer teams all building different software for different purposes using different methods. DevOps leaders are crying out for a single plane to bring that together and simplify management, making security a default layer, rather than an extra obligation.”


Dan Raywood
Dan Raywood

Dan Raywood is a B2B journalist with 25 years of experience, including covering cybersecurity for the past 17 years. He has extensively covered topics from Advanced Persistent Threats and nation-state hackers to major data breaches and regulatory changes.

He has spoken at events including 44CON, Infosecurity Europe, RANT Forum, BSides Scotland, Steelcon and the National Cyber Security Show, and served as editor of SC Media UK, Infosecurity Magazine and IT Security Guru. He was also an analyst with 451 Research and a product marketing lead at Tenable.

Dan Raywood
Dan Raywood

Dan Raywood is a B2B journalist with 25 years of experience, including covering cybersecurity for the past 17 years. He has extensively covered topics from Advanced Persistent Threats and nation-state hackers to major data breaches and regulatory changes.

He has spoken at events including 44CON, Infosecurity Europe, RANT Forum, BSides Scotland, Steelcon and the National Cyber Security Show, and served as editor of SC Media UK, Infosecurity Magazine and IT Security Guru. He was also an analyst with 451 Research and a product marketing lead at Tenable.

Upcoming Events

No events found.