Why open source makes enterprises more secure and innovative

Open source for faster innovation and security

When you purchase through links on our site, we may earn an affiliate commission.Here’s how it works.

Open source softwareis everywhere. It is pervasive, in every sector, with 99% of software projects containing an open source component. And the reason is that open source is an enabler of innovation. It helps developers collaborate and build better software, faster. Innovation is table stakes for every industry and developing software that can help businesses thrive is an imperative, not a nice-to-do.

Nigel Abbott is Regional Director North EMEA atGitHub.

Added to that, at risk of stating the obvious,securityis a major - and urgent - priority. A recent PwC report reveals that, in part due to the rapid shift to digital technologies expedited by the pandemic, security has taken on a new emphasis. It found that 50% of UK organizations said “cybersecuritywill be baked into every business decision”.

With companies turning to open source in huge numbers to spur innovation, while ensuring this is done securely, it therefore seems counter-intuitive that there is still a misconception that open source is less secure than proprietary software because it is open to anyone that wants to use it.

However, as recently as last year Red Hat research showed that the biggest barrier to enterprise adoption of open source is perceived security issues.

In reality, this couldn’t be further from the truth.

Open source security

Open source security

In fact, further research from this year actually found that security is regarded as a top benefit for enterprises using open source. The open source community’s collective responsibility for developing and maintaining secure code makes it more securable than proprietary code, not less. With open source not only are there more developers involved in identifying and fixing security issues, but they are eager to advertise their contributions and incentivized to find and fix flaws before going live. The adage that “many eyes make for shallow bugs” really rings true.

Whether businesses know it or not, they are almost definitely using open source in their development process. It’s vital that they know what software their organization is consuming, and embrace enhancing the security of their entire operation - and putting in place the right development processes to support them.

Are you a pro? Subscribe to our newsletter

Are you a pro? Subscribe to our newsletter

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

While open source offers major security advantages, it is true that organizations can take a more progressive approach to integrating security into open source development, and increase their speed of innovation in the process.

When businesses take the mindset decision to adopt an integrated approach to open source security, they put themselves in the driving seat. Putting in place a progressive and inclusive inclusive “DevSecOps” process – that is, integrating security into every step of theDevOpsjourney rather than bolting security on to the end of the development cycle – means they are not only in a better position to protect the entire business, butproductivityand efficiency increase markedly. For example:

Open source should be viewed as a route to helping organizations boost software security. But there is much more to be gained from a forward-looking DevSecOps strategy. A progressive and integrated approach to security helps organizations make a cultural shift that increases transparency, makes problem solving easier and boostscollaboration. As well as protecting a business, it can rapidly increase the pace of innovation.

Nigel Abbott is Regional Director, North EMEA at GitHub. A Business Development Professional with 27+ years of experience in the software industry, team leader & MVP.

Phishing attacks surge in 2024 as cybercriminals adopt AI tools and multi-channel tactics

This new phishing strategy utilizes GitHub comments to distribute malware

Smeg Combi Steam Oven review: a multi-functional countertop oven that looks stunning and cooks well