TLDR:
- 58% of organizations find it harder to detect vulnerabilities
- Scalability of penetration testing analyzed by Synack
In a recent survey by Synack, it was found that detecting vulnerabilities is becoming more difficult for organizations as their attack surface increases in complexity, size, and rate of change. Half of the survey respondents reported difficulty managing their attack surface due to various factors such as third-party risk and increasing attacker sophistication. Most organizations only cover 47% of their business-critical applications with penetration testing.
Sixty percent of respondents reported challenges in testing frequently enough to keep up with the pace of application development. To address this issue, three in four organizations are considering platform-based testing solutions like Penetration Testing as a Service (PTaaS). The survey also revealed that 32% of organizations use penetration testing to improve overall security strategies and posture, while others use it for compliance purposes or to achieve tactical objectives.
Overall, the survey highlights the growing complexity and challenges in detecting vulnerabilities for organizations, prompting them to consider new testing solutions and strategies to enhance their security posture.