
Nowadays, one of the most widespread problems in the technological world is security breaches . And while a large share of the blame belongs to errors that can lead to a breach, programmers who write insecure code are also responsible
A recent survey conducted by GitLabrevealed that 69% of developers believe they write secure code. However, 49% of security professionals surveyed admitted to having a hard time getting developers to patch and address a serious vulnerability.
In fact, 68% of security professionals believe that less than half of developers are capable of detecting security issues that may arise later. Nearly half of security experts said they discovered a bugafter the code was merged while they were testing.
The report was published by GitLab after the participation of 4,000 respondents. It also found that creating security teams as part of DevOps is a good practice. In such cases, the likelihood of discovering bugs increases threefold and they are identified even before the code is merged.

A very important factor in system is that it must be taken into account at all stages of the system's life, which is not always the case. GitLab's research brings this fact to the surface and confirms once again the rivalry between developers and security experts.
Another big problem is that many software companies do not take security seriously. Only 25% of the developers who participated in the survey were rated as good for their security practices.
About 44% of participants reported that they were not judged based on the security weaknesses present in the code.
This practice is not surprising, especially in companies that have to create and deliver code on a specific timeline. No one pays much attention to security in order to save time.
The GitLab report makes it clear that the majority of companies still have a long way to go before they manage to bridge the gap between developers and security specialists.
