You Can’t Live Without Open Source - Results from the Open Source 360 Survey

Black Duck by Synopsys
Black Duck by SynopsysBlack Duck by Synopsys
#OSS360
#OSS360
Collaborators
Platinum
CollaboratorsCollaborators
#OSS360
Black Duck Center for Open Source Research and Innovation
2016-2017	
Open	Source	Security	and	Risk	Analyses
Future	of	Open	Source	Reports
#OSS360
Agenda
• Demographics
• Open Source Adoption
• Open Source Risks
• Risk Remediation
• A Look to the Future
#OSS360
DEMOGRAPHICS
#OSS360
Global Survey Response
819 IT Professionals from 91 countries
#OSS360
2%
2%
3%
3%
4%
4%
7%
7%
11%
12%
43%
Retail
Health Care
Media
Automotive
Manufacturing
Government/Military
Banking and Financial Services
Education
Other
Consulting
Technology/ISV Telecommunications
Industry Representation
#OSS360
Open Source Awareness is Organization Wide
Legal	Professional
VP/C-Level	Executive
Development	
Manager/Director
Other
Security	Professional
Systems	Architect/CTO
IT	Operations/DevOps	
Professional
Software	Developer
65% of respondents are
developers, IT
operations, system
architects, security
professionals
#OSS360
USAGE
#OSS360
60% Increased Open Source Usage
26% Remained Constant
Momentum for Open Source Continues to Increase
86% of organizations report Open Source use
increased or remained constant
#OSS360
Organizations Use Open Source to…
16%
28%
69%
69%
77%
Embed in hardware products
Develop open source software
Power our infrastructure
Create customer applications
Build internal applications
#OSS360
Open Source Fulfills Strategic Objectives
37%
44%
55%
55%
67%
84%
Availablity of skilled developers
Code quality and security
Rate of innovation
Functionality
Freedom to customize code
Low cost with no vendor lock-in
#OSS360
Open Source is Core to IT Infrastructure
52%
53%
57%
Systems Management/Operating Systems
Containers/DevOps/Virtualization/Cloud
Computing
Development Tools/Software Development
Lifecycle
#OSS360
The Impact of Open Source is Significant
55%
61%
63%
Improves interoperability of systems
Improves quality of solutions we build
Speeds innovation
#OSS360
CONTRIBUTION
#OSS360
Organizations Recognize Benefits to Participation
34%
46%
53%
Deliver product as open source
Encourage active engagement and
contributions
Fix and enhance existing projects
#OSS360
Contributions Reduce Overall Cost of Ownership
Shift	From	2016
69%	Fix	Bugs
33%	Reduce	Costs
37%
38%
49%
55%
Gain competitive advantage
Fundamental to our product
strategy
Reduce development and
support costs
Fix bugs or add functionality
#OSS360
Open Source Community Involvement is Healthy and Growing
48%
said the number of people
contributing to open source in
their organization is increasing.
25%
have more than 50% of their
developers contributing to
one or more OSS projects
#OSS360
POLICY and
GOVERNANCE
#OSS360
Organizations Understand Open Source Risks ….
53.5%
53.7%
54.6%
Comply with open source licenses
Monitor project and version usage
Aware of known security vulnerabilities
#OSS360
…. But Open Source is Still Unmanaged in Most Organizations
60%
don’t have a formal
process for managing
open source or are
unaware of one in their
organization
OVER
Other	(please	specify)
2%
I	don’t	know
16%
No,	we	do	not	have	a	
formal	process
45%
Yes	- Multiple		
departmental	processes
10%
Yes	- standardized	
company-wide	process
27%
Other
37%
#OSS360
Respondents Highlighted Successful Open Source Policies …
33%
39%
39%
42%
Policy guidance in developer tools
Approved open source licenses
Approved open source components
Structured review process for components
#OSS360
… But Organizations Still Struggle With Enforcement
24% Policy provides recommendations
but is not reviewed or enforced
14% Code is manually reviewed but
policy is not consistently enforced
Only 15% indicated enforcement with automated controls,
while 25% review code via manual controls and
enforcement
#OSS360
RISK
#OSS360
Organizations Highlight Ongoing Open Source Risks ….
61%
64%
66%
71%
74%
Adherence to internal development policies
Exposure of internal systems to exploitation
Intellectual property concerns
Exploitation of public facing applications
Unknown quality of components
#OSS360
50% Indicated open source reviews rely primarily on developer information
38% Don’t review code for open source
…. But Open Source Reviews Aren’t Thorough
45% review for open
source code usage
during development
#OSS360
Open Source Code Review Models
23%
27%
28%
38%
String search and visual inspection
Internally developed tools
Third party tools
No open source code review
Over 60% had no
structured open source
code review process
#OSS360
Manual Vulnerability Assessments Challenge Security Orgs
25%
have no process for
identifying, tracking or
remediating known open
source vulnerabilities
OVER
50%
say internal resources
manually identify and track
remediation of known
open source vulnerabilities
OVER
#OSS360
57% Developers responsible for identifying and tracking open source vulnerabilities
40% Security Team takes ownership of tracking code usage
26% Nobody has explicit responsibility
Shift From 2016
50% revealed no team took
responsibility for tracking
open source vulnerabilities
Open Source Security Is a Shared Responsibility
#OSS360
LOOKING FORWARD
#OSS360
2017 Insights
• The world’s appetite for open source software
continues at a furious pace.
• Open source solutions reduce development
costs and increase time to market
• Awareness of security risks in open source
components is increasing
• Even if organizations aren’t aware of their open
source usage, open source is present in IT
workloads in 90% of organizations
#OSS360
Open Source is Fundamental to Modern Software
Driving Us Forward
• Default development model for new apps
• Builds on the success of others
• Shares critical expertise between orgs
• Accelerates product innovation
• Solves critical business problems
• Improves IT processes
#OSS360
Challenges Ahead
• Effective management of open source is not keeping
pace with its increased usage
• High profile vulnerabilities highlight a need for
greater security process
• Lack of automation opens the
door to increased risk
#OSS360
Own Your Success – Participate in OSS Communities
Active community engagement …
• Increases project vibrancy
• Ensures project longevity and innovation
• Reduces security risks
• Ensures bugs are fixed quickly and properly
Get involved.
Build something amazing.
Have fun.
#OSS360
ARNOLD LEUNG
@APPNOVATION
CEO
When it comes to technology, our commitment to open
source is right there in our branding…open digital delivered.
From the start, we have been proud of our ability not just do
support, but to drive pen technologies. By adopting this
progressive, collaborative approach, we have enabled our
company to go beyond being just architects, and become
digital solutions providers, harnessing all the power of open
technologies, all for the benefit of our clients" said
Appnovation CEO Arnold Leung. ”This continued commitment
makes us not only a company that remains innovative as well
as competitive, it tangibly demonstrates the fact that we are
open source evangelists, with an unrelenting desire to spread
the open technologies message."
#OSS360
APPNOVATION
@APPNOVATION
PROBLEM
TCL (The Creative Life), the third largest TV manufacturer in the
world, needed a Drupal 8 redesign for their flagship site.
Appnovation was asked to look at the issues, and conceptualize,
then deliver a sleek aesthetic showroom, designed to afford users
an improved, and superb user experience in terms of navigation.
SOLUTION
Our solution was to use and deploy the finest elements of
Drupal 8, thus ensuring that everything was complete,
feature rich, user friendly and aesthetically outstanding.
The result was a sleek, sophisticated and user friendly site.
Appnovation is a global Digital
Solutions and Managed Services
provider delivering strategy,
application development and
enterprise integration on
leading open technologies.
#OSS360
MAIK	AUSSENDORF
@BAREOS_BACKUP
MANAGING DIRECTOR
Would you buy a new safe for your physical values
and leave the key at the vendor, who will only give
you access to your valuables as long as you
continuously pay license fees?
A lot of backup users share this experience: they
can access their digital assets in case of emergency
only as long as paying license fees for their
proprietary backup solution
Long term and sustainable data sovereignty is only
possible with an Open Source Backup solution.“
#OSS360
BAREOS
WWW.CARDTECH.DE
PROBLEM
• The increasing amount of sensible data became uncomfortable
to be backed up using the existing backup solution which
required a huge maintenance workload.
• For compliance reasons a secure erase of temporary data was
mandatory
SOLUTION
l Backing up data using Bareos, the implementation of
processes and a specific engineered backup strategy on
a high level of automation exculpate the IT-personnel
l The Bareos team implemented the missing secure
erase feature as funded development
• Cardtech is a payment
service provider
• Under supervision o f the
German Federal Financial
Supervisory Authority
(BaFin)
• Secure Backup with Bareos
• Meet Compliance
• No vendor-lock-in
#OSS360
NAVIN BUDHIRAJA
@NAVINB @INFOSYS
SVP - HEAD – ARCHITECTURE,
TECHNOLOGY & EDUCATION,
Open Source software has become the primary engine
of innovation, and should now be viewed as the key
building block of all modern enterprise architectures.
Innovation in areas like cloud computing, big data,
artificial intelligence, DevOps and modern web
frameworks are all happening in the Open Source
ecosystem, and the adoption of these technologies in
enterprises is benefiting from the foundation of Linux
that enterprise IT departments have already invested
in. Infosys is actively taking Open Source, and Open
Source based products, to all our enterprise clients.”
#OSS360
INFOSYS
@INFOSYS
PROBLEM
Payment disputes are an important reason for increased Days Sales
Outstanding (DSO), which is exacerbated by an incorrect collection
strategy, which not only increases DSO, but incorrect or aggressive
collection strategy may also result in poor customer experience. A
customer order propagates through multiple, incompatible ERP systems;
any inconsistency in information could result in a payment dispute.
**DSO is a key business metric. A large DSO can result in cash flow problems
SOLUTION
Infosys NiaTM - The Next Generation Integrated Artificial
Intelligence Platform, built leveraging Open Source -
ingests data from all the different systems – ERP, Order
management, invoicing within the organization. This data
in conjunction with external macro-economic and
behavioral data was utilized to create a customer risk
profile and aggregated to predict the total account value at
risk. This allowed the organization to customize collection
strategy for each customer, expedite resolution of disputes
and prevent disputes, improve cash-flow forecasting.
Infosys is a global leader in technology
services and consulting. We enable clients
in more than 45 countries to create and
execute strategies for their digital
transformation. From engineering to
application development, knowledge
management and business process
management, we help our clients find the
right problems to solve, and to solve
these effectively. Our team of 200,000+
innovators, across the globe, is
differentiated by the imagination,
knowledge and experience, across
industries and technologies that we bring
to every project we undertake.
#OSS360
TIM YEATON
@TBYEATON, @REDHATNEWS
EXECUTIVE VICE
PRESIDENT &CHIEF
MARKETING OFFICER
"Open	source	is	synonymous	with	innovation,	
helping organizations	around	the	world solve complex	
problems	faster	and	create modern technology	
platforms that	enable	them	to	deliver	new	services	to	
customers.	These	are	key	reasons	why	I	believe	this	
year's	survey	results	show	that	a	majority	of	respondents	
have	increased	their	use	of	open	source	solutions,	
including	in	key	areas	like	developer	tools,	machine	
learning,	IoT,	and	software-defined	networking."
#OSS360
ANDREW AITKEN
@ANDREWOLLIANCE,@WIPRO
GM & GLOBAL OPEN
SOURCE LEADER
Today,	“Open	Source	First”	is	the	new	mantra	for	
enterprises.	The	reason;	open	source	is	seen	less	as	only	
a	cost	savings	measure	but	as	a	key	tool	to	drive	
competitive	business	advantage.	Open	source	enables	
faster	thought-to-production,	innovation,	efficiency	and	a	
better	way	of	building	software.	With	the	explosion	of	
open	source	projects	that	add	massive	value	to	
enterprises,	the	Open	Source	First	mantra	will	continue	
to	gain	momentum	and	will	soon	become	the	default	way	
of	computing.
#OSS360
WIPRO
@WIPRO
PROBLEM
A leading US based financial services company realised that a large
monolithic payments application was not agile enough to address the
business growth in m-Commerce and retail sector. The client had a critical
need for a next generation platform to build innovative, agile and scalable
solutions leveraging a microservices framework.
SOLUTION
Wipro provided advisory, governance and technical
consulting services to build the next gen platform for the
client’s payment gateway.
§ Assisted in refining the enterprise open source strategy,
developed governance, community and procurement
models, and open sourcing of their own software.
§ Evaluated & recommended open source software’s to
build next gen platform
§ Delivered a scalable platform to address future growth
§ Ensured high availability to address five nines application
on three nines infrastructure stack
§ Developed the platform components and core features
Wipro is a leading information
technology, consulting business
process services company that
delivers solutions to enable its
clients to do business better.
Wipro delivers winning business
outcomes through its deep
industry experience and a 360
degree view of “Business
through Technology”.
#OSS360
Thank You!
Platinum
CollaboratorsCollaborators
1 of 44

Recommended

Open Source 360° Survey Key Takeaways by
Open Source 360° Survey Key TakeawaysOpen Source 360° Survey Key Takeaways
Open Source 360° Survey Key TakeawaysBlack Duck by Synopsys
489 views1 slide
Open Source Insight: Open Source 360 Survey, DockerCon 2017, & More on the Cl... by
Open Source Insight: Open Source 360 Survey, DockerCon 2017, & More on the Cl...Open Source Insight: Open Source 360 Survey, DockerCon 2017, & More on the Cl...
Open Source Insight: Open Source 360 Survey, DockerCon 2017, & More on the Cl...Black Duck by Synopsys
295 views12 slides
Open Source Insight: Global Response to COSRI 2017 Open Source Security and R... by
Open Source Insight: Global Response to COSRI 2017 Open Source Security and R...Open Source Insight: Global Response to COSRI 2017 Open Source Security and R...
Open Source Insight: Global Response to COSRI 2017 Open Source Security and R...Black Duck by Synopsys
429 views18 slides
Open Source Insight: 2017 Top 10 IT Security Stories, Breaches, and Predictio... by
Open Source Insight:2017 Top 10 IT Security Stories, Breaches, and Predictio...Open Source Insight:2017 Top 10 IT Security Stories, Breaches, and Predictio...
Open Source Insight: 2017 Top 10 IT Security Stories, Breaches, and Predictio...Black Duck by Synopsys
231 views16 slides
2016 Future of Open Source Survey Results by
2016 Future of Open Source Survey Results2016 Future of Open Source Survey Results
2016 Future of Open Source Survey ResultsBlack Duck by Synopsys
42.1K views70 slides
2009 North Bridge Future of Open Source Study by
2009 North Bridge Future of Open Source Study2009 North Bridge Future of Open Source Study
2009 North Bridge Future of Open Source StudyNorth Bridge
849 views30 slides

More Related Content

What's hot

2014 North Bridge Future of Open Source Study by
2014 North Bridge Future of Open Source Study2014 North Bridge Future of Open Source Study
2014 North Bridge Future of Open Source StudyNorth Bridge
1.8K views86 slides
2008 North Bridge Future of Open Source Study by
2008 North Bridge Future of Open Source Study2008 North Bridge Future of Open Source Study
2008 North Bridge Future of Open Source StudyNorth Bridge
908 views16 slides
2014 Future of Open Source - 8th Annual Survey results by
2014 Future of Open Source - 8th Annual Survey results2014 Future of Open Source - 8th Annual Survey results
2014 Future of Open Source - 8th Annual Survey resultsMichael Skok
62.8K views86 slides
Open Source Insight: Struts in VMware, Law Firm Cybersecurity, Hospital Data ... by
Open Source Insight: Struts in VMware, Law Firm Cybersecurity, Hospital Data ...Open Source Insight: Struts in VMware, Law Firm Cybersecurity, Hospital Data ...
Open Source Insight: Struts in VMware, Law Firm Cybersecurity, Hospital Data ...Black Duck by Synopsys
429 views19 slides
Auto Solutions | Reference Point from T. Rowe Price by
Auto Solutions | Reference Point from T. Rowe Price Auto Solutions | Reference Point from T. Rowe Price
Auto Solutions | Reference Point from T. Rowe Price The 401k Study Group ®
2.1K views8 slides
11 Principles of Applied Analytics by
11 Principles of Applied Analytics11 Principles of Applied Analytics
11 Principles of Applied AnalyticsGeorgian
10.6K views49 slides

What's hot(20)

2014 North Bridge Future of Open Source Study by North Bridge
2014 North Bridge Future of Open Source Study2014 North Bridge Future of Open Source Study
2014 North Bridge Future of Open Source Study
North Bridge 1.8K views
2008 North Bridge Future of Open Source Study by North Bridge
2008 North Bridge Future of Open Source Study2008 North Bridge Future of Open Source Study
2008 North Bridge Future of Open Source Study
North Bridge 908 views
2014 Future of Open Source - 8th Annual Survey results by Michael Skok
2014 Future of Open Source - 8th Annual Survey results2014 Future of Open Source - 8th Annual Survey results
2014 Future of Open Source - 8th Annual Survey results
Michael Skok62.8K views
Open Source Insight: Struts in VMware, Law Firm Cybersecurity, Hospital Data ... by Black Duck by Synopsys
Open Source Insight: Struts in VMware, Law Firm Cybersecurity, Hospital Data ...Open Source Insight: Struts in VMware, Law Firm Cybersecurity, Hospital Data ...
Open Source Insight: Struts in VMware, Law Firm Cybersecurity, Hospital Data ...
11 Principles of Applied Analytics by Georgian
11 Principles of Applied Analytics11 Principles of Applied Analytics
11 Principles of Applied Analytics
Georgian10.6K views
Open Source Insight: Happy Birthday Open Source and Application Security for ... by Black Duck by Synopsys
Open Source Insight: Happy Birthday Open Source and Application Security for ...Open Source Insight: Happy Birthday Open Source and Application Security for ...
Open Source Insight: Happy Birthday Open Source and Application Security for ...
2019 04-18 -DevSecOps-software supply chain by Cameron Townshend
2019 04-18 -DevSecOps-software supply chain2019 04-18 -DevSecOps-software supply chain
2019 04-18 -DevSecOps-software supply chain
Mobile Security: Apps are our digital lives. by Veracode
Mobile Security: Apps are our digital lives.Mobile Security: Apps are our digital lives.
Mobile Security: Apps are our digital lives.
Veracode2.3K views
Technology Trends 2014 and Beyond by IMC Institute
Technology Trends 2014 and BeyondTechnology Trends 2014 and Beyond
Technology Trends 2014 and Beyond
IMC Institute3.3K views
Cybercrime and the developer 2021 style by Steve Poole
Cybercrime and the developer 2021 styleCybercrime and the developer 2021 style
Cybercrime and the developer 2021 style
Steve Poole142 views
2010 Future of Open Source Survey Results by Acquia
2010 Future of Open Source Survey Results2010 Future of Open Source Survey Results
2010 Future of Open Source Survey Results
Acquia2.4K views
Secunia Vulnerability Review 2014 by Kim Jensen
Secunia Vulnerability Review 2014Secunia Vulnerability Review 2014
Secunia Vulnerability Review 2014
Kim Jensen676 views
Web Application Security Statistics Report 2016 by Jeremiah Grossman
Web Application Security Statistics Report 2016Web Application Security Statistics Report 2016
Web Application Security Statistics Report 2016
Jeremiah Grossman1.5K views
The Four(ish) Appsec Metrics You Can’t Ignore by Veracode
The Four(ish) Appsec Metrics You Can’t IgnoreThe Four(ish) Appsec Metrics You Can’t Ignore
The Four(ish) Appsec Metrics You Can’t Ignore
Veracode3.7K views
The top challenges to expect in network security in 2019 survey report by Bricata, Inc.
The top challenges to expect in network security in 2019  survey report The top challenges to expect in network security in 2019  survey report
The top challenges to expect in network security in 2019 survey report
Bricata, Inc.3.1K views
Veracode Corporate Overview - Print by Andrew Kanikuru
Veracode Corporate Overview - PrintVeracode Corporate Overview - Print
Veracode Corporate Overview - Print
Andrew Kanikuru144 views
Trustwave: 7 Experts on Transforming Your Threat Detection & Response Strategy by Mighty Guides, Inc.
Trustwave: 7 Experts on Transforming Your Threat Detection & Response StrategyTrustwave: 7 Experts on Transforming Your Threat Detection & Response Strategy
Trustwave: 7 Experts on Transforming Your Threat Detection & Response Strategy
WhiteHat 2014 Website Security Statistics Report by Jeremiah Grossman
WhiteHat 2014 Website Security Statistics ReportWhiteHat 2014 Website Security Statistics Report
WhiteHat 2014 Website Security Statistics Report
Jeremiah Grossman3.1K views

Similar to You Can’t Live Without Open Source - Results from the Open Source 360 Survey

WhiteSource Webinar-New Research Reveals Key Strategy to Manage Open Source S... by
WhiteSource Webinar-New Research Reveals Key Strategy to Manage Open Source S...WhiteSource Webinar-New Research Reveals Key Strategy to Manage Open Source S...
WhiteSource Webinar-New Research Reveals Key Strategy to Manage Open Source S...WhiteSource
125 views31 slides
ISACA 2016 Annual Conference SA_State of Risk_Tunde Ogunkoya_DeltaGRiC_Consul... by
ISACA 2016 Annual Conference SA_State of Risk_Tunde Ogunkoya_DeltaGRiC_Consul...ISACA 2016 Annual Conference SA_State of Risk_Tunde Ogunkoya_DeltaGRiC_Consul...
ISACA 2016 Annual Conference SA_State of Risk_Tunde Ogunkoya_DeltaGRiC_Consul...Tunde Ogunkoya
267 views30 slides
How to add security in dataops and devops by
How to add security in dataops and devopsHow to add security in dataops and devops
How to add security in dataops and devopsUlf Mattsson
149 views61 slides
Dzr guide to_enterprise_integration by
Dzr guide to_enterprise_integrationDzr guide to_enterprise_integration
Dzr guide to_enterprise_integrationHamed Hatami
3.2K views36 slides
The Top 3 Strategies To Reduce Your Open Source Security Risks - A WhiteSour... by
 The Top 3 Strategies To Reduce Your Open Source Security Risks - A WhiteSour... The Top 3 Strategies To Reduce Your Open Source Security Risks - A WhiteSour...
The Top 3 Strategies To Reduce Your Open Source Security Risks - A WhiteSour...WhiteSource
66 views23 slides
Insights success the 10 best performing software solution providers 11th dec ... by
Insights success the 10 best performing software solution providers 11th dec ...Insights success the 10 best performing software solution providers 11th dec ...
Insights success the 10 best performing software solution providers 11th dec ...Insights success media and technology pvt ltd
237 views48 slides

Similar to You Can’t Live Without Open Source - Results from the Open Source 360 Survey(20)

WhiteSource Webinar-New Research Reveals Key Strategy to Manage Open Source S... by WhiteSource
WhiteSource Webinar-New Research Reveals Key Strategy to Manage Open Source S...WhiteSource Webinar-New Research Reveals Key Strategy to Manage Open Source S...
WhiteSource Webinar-New Research Reveals Key Strategy to Manage Open Source S...
WhiteSource125 views
ISACA 2016 Annual Conference SA_State of Risk_Tunde Ogunkoya_DeltaGRiC_Consul... by Tunde Ogunkoya
ISACA 2016 Annual Conference SA_State of Risk_Tunde Ogunkoya_DeltaGRiC_Consul...ISACA 2016 Annual Conference SA_State of Risk_Tunde Ogunkoya_DeltaGRiC_Consul...
ISACA 2016 Annual Conference SA_State of Risk_Tunde Ogunkoya_DeltaGRiC_Consul...
Tunde Ogunkoya267 views
How to add security in dataops and devops by Ulf Mattsson
How to add security in dataops and devopsHow to add security in dataops and devops
How to add security in dataops and devops
Ulf Mattsson149 views
Dzr guide to_enterprise_integration by Hamed Hatami
Dzr guide to_enterprise_integrationDzr guide to_enterprise_integration
Dzr guide to_enterprise_integration
Hamed Hatami3.2K views
The Top 3 Strategies To Reduce Your Open Source Security Risks - A WhiteSour... by WhiteSource
 The Top 3 Strategies To Reduce Your Open Source Security Risks - A WhiteSour... The Top 3 Strategies To Reduce Your Open Source Security Risks - A WhiteSour...
The Top 3 Strategies To Reduce Your Open Source Security Risks - A WhiteSour...
WhiteSource66 views
Rise of the Open Source Program Office for LinuxCon 2016 by Gil Yehuda
Rise of the Open Source Program Office for LinuxCon 2016Rise of the Open Source Program Office for LinuxCon 2016
Rise of the Open Source Program Office for LinuxCon 2016
Gil Yehuda2K views
Harness Your Code, Unleash Your Creativity: Your Team's Pragmatic Guide to Se... by Aggregage
Harness Your Code, Unleash Your Creativity: Your Team's Pragmatic Guide to Se...Harness Your Code, Unleash Your Creativity: Your Team's Pragmatic Guide to Se...
Harness Your Code, Unleash Your Creativity: Your Team's Pragmatic Guide to Se...
Aggregage72 views
Software Security Assurance for Devops by Jerika Phelps
Software Security Assurance for DevopsSoftware Security Assurance for Devops
Software Security Assurance for Devops
Jerika Phelps203 views
WhiteSource and FINOS: Empowering Financial Institutions to use Open Source W... by DevOps.com
WhiteSource and FINOS: Empowering Financial Institutions to use Open Source W...WhiteSource and FINOS: Empowering Financial Institutions to use Open Source W...
WhiteSource and FINOS: Empowering Financial Institutions to use Open Source W...
DevOps.com166 views
Empowering Financial Institutions to Use Open Source With Confidence by WhiteSource
Empowering Financial Institutions to Use Open Source With ConfidenceEmpowering Financial Institutions to Use Open Source With Confidence
Empowering Financial Institutions to Use Open Source With Confidence
WhiteSource135 views
Establishing an Open Source Program Office by Lee Calcote
Establishing an Open Source Program OfficeEstablishing an Open Source Program Office
Establishing an Open Source Program Office
Lee Calcote267 views
Delivery of Things World USA 2016 - Post Event Report by Ramona Kohrs
Delivery of Things World USA 2016 - Post Event ReportDelivery of Things World USA 2016 - Post Event Report
Delivery of Things World USA 2016 - Post Event Report
Ramona Kohrs368 views
The Growing Research that Open Source Owns the Future in Cloud by All Things Open
The Growing Research that Open Source Owns the Future in CloudThe Growing Research that Open Source Owns the Future in Cloud
The Growing Research that Open Source Owns the Future in Cloud
All Things Open141 views
IIA4: Open Source and the Enterprise ( Predix Transform 2016) by Predix
IIA4: Open Source and the Enterprise ( Predix Transform 2016)IIA4: Open Source and the Enterprise ( Predix Transform 2016)
IIA4: Open Source and the Enterprise ( Predix Transform 2016)
Predix966 views
OSS has taken over the enterprise: The top five OSS trends of 2015 by Rogue Wave Software
OSS has taken over the enterprise: The top five OSS trends of 2015OSS has taken over the enterprise: The top five OSS trends of 2015
OSS has taken over the enterprise: The top five OSS trends of 2015
The Product Dev Conundrum: To Build or Buy in a Digital World? by Aggregage
The Product Dev Conundrum: To Build or Buy in a Digital World?The Product Dev Conundrum: To Build or Buy in a Digital World?
The Product Dev Conundrum: To Build or Buy in a Digital World?
Aggregage210 views

More from Black Duck by Synopsys

Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na... by
Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na...Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na...
Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na...Black Duck by Synopsys
3.7K views49 slides
FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen... by
FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen...FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen...
FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen...Black Duck by Synopsys
840 views13 slides
FLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck Hub by
FLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck HubFLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck Hub
FLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck HubBlack Duck by Synopsys
912 views15 slides
FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security... by
FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security...FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security...
FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security...Black Duck by Synopsys
632 views20 slides
FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an... by
FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an...FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an...
FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an...Black Duck by Synopsys
766 views26 slides
Open-Source- Sicherheits- und Risikoanalyse 2018 by
Open-Source- Sicherheits- und Risikoanalyse 2018Open-Source- Sicherheits- und Risikoanalyse 2018
Open-Source- Sicherheits- und Risikoanalyse 2018Black Duck by Synopsys
548 views1 slide

More from Black Duck by Synopsys(20)

Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na... by Black Duck by Synopsys
Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na...Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na...
Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na...
FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen... by Black Duck by Synopsys
FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen...FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen...
FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen...
FLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck Hub by Black Duck by Synopsys
FLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck HubFLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck Hub
FLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck Hub
FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security... by Black Duck by Synopsys
FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security...FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security...
FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security...
FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an... by Black Duck by Synopsys
FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an...FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an...
FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an...
FLIGHT Amsterdam Presentation - Open Source, IP and Trade Secrets: An Impossi... by Black Duck by Synopsys
FLIGHT Amsterdam Presentation - Open Source, IP and Trade Secrets: An Impossi...FLIGHT Amsterdam Presentation - Open Source, IP and Trade Secrets: An Impossi...
FLIGHT Amsterdam Presentation - Open Source, IP and Trade Secrets: An Impossi...
FLIGHT Amsterdam Presentation - Data Breaches and the Law: A Practical Guide by Black Duck by Synopsys
FLIGHT Amsterdam Presentation - Data Breaches and the Law: A Practical GuideFLIGHT Amsterdam Presentation - Data Breaches and the Law: A Practical Guide
FLIGHT Amsterdam Presentation - Data Breaches and the Law: A Practical Guide
FLIGHT Amsterdam Presentation - Don’t Let Open Source Software Kill Your Deal by Black Duck by Synopsys
FLIGHT Amsterdam Presentation - Don’t Let Open Source Software Kill Your DealFLIGHT Amsterdam Presentation - Don’t Let Open Source Software Kill Your Deal
FLIGHT Amsterdam Presentation - Don’t Let Open Source Software Kill Your Deal
FLIGHT Amsterdam Presentation - Open Source License Management in the Black D... by Black Duck by Synopsys
FLIGHT Amsterdam Presentation - Open Source License Management in the Black D...FLIGHT Amsterdam Presentation - Open Source License Management in the Black D...
FLIGHT Amsterdam Presentation - Open Source License Management in the Black D...
Open Source Insight: Securing IoT, Atlanta Ransomware Attack, Congress on Cyb... by Black Duck by Synopsys
Open Source Insight: Securing IoT, Atlanta Ransomware Attack, Congress on Cyb...Open Source Insight: Securing IoT, Atlanta Ransomware Attack, Congress on Cyb...
Open Source Insight: Securing IoT, Atlanta Ransomware Attack, Congress on Cyb...
Open Source Insight: GitHub Finds 4M Flaws, IAST Magic Quadrant, 2018 Open So... by Black Duck by Synopsys
Open Source Insight:GitHub Finds 4M Flaws, IAST Magic Quadrant, 2018 Open So...Open Source Insight:GitHub Finds 4M Flaws, IAST Magic Quadrant, 2018 Open So...
Open Source Insight: GitHub Finds 4M Flaws, IAST Magic Quadrant, 2018 Open So...
Open Source Insight: Who Owns Linux? TRITON Attack, App Security Testing, Fut... by Black Duck by Synopsys
Open Source Insight: Who Owns Linux? TRITON Attack, App Security Testing, Fut...Open Source Insight: Who Owns Linux? TRITON Attack, App Security Testing, Fut...
Open Source Insight: Who Owns Linux? TRITON Attack, App Security Testing, Fut...
Open Source Insight: SCA for DevOps, DHS Security, Securing Open Source for G... by Black Duck by Synopsys
Open Source Insight: SCA for DevOps, DHS Security, Securing Open Source for G...Open Source Insight: SCA for DevOps, DHS Security, Securing Open Source for G...
Open Source Insight: SCA for DevOps, DHS Security, Securing Open Source for G...
Open Source Insight: AppSec for DevOps, Open Source vs Proprietary, Malicious... by Black Duck by Synopsys
Open Source Insight: AppSec for DevOps, Open Source vs Proprietary, Malicious...Open Source Insight: AppSec for DevOps, Open Source vs Proprietary, Malicious...
Open Source Insight: AppSec for DevOps, Open Source vs Proprietary, Malicious...
Open Source Insight: Big Data Breaches, Costly Cyberattacks, Vuln Detection f... by Black Duck by Synopsys
Open Source Insight: Big Data Breaches, Costly Cyberattacks, Vuln Detection f...Open Source Insight: Big Data Breaches, Costly Cyberattacks, Vuln Detection f...
Open Source Insight: Big Data Breaches, Costly Cyberattacks, Vuln Detection f...
Open Source Insight: Security Breaches and Cryptocurrency Dominating News by Black Duck by Synopsys
Open Source Insight: Security Breaches and Cryptocurrency Dominating NewsOpen Source Insight: Security Breaches and Cryptocurrency Dominating News
Open Source Insight: Security Breaches and Cryptocurrency Dominating News

Recently uploaded

Microsoft Power Platform.pptx by
Microsoft Power Platform.pptxMicrosoft Power Platform.pptx
Microsoft Power Platform.pptxUni Systems S.M.S.A.
52 views38 slides
Melek BEN MAHMOUD.pdf by
Melek BEN MAHMOUD.pdfMelek BEN MAHMOUD.pdf
Melek BEN MAHMOUD.pdfMelekBenMahmoud
14 views1 slide
6g - REPORT.pdf by
6g - REPORT.pdf6g - REPORT.pdf
6g - REPORT.pdfLiveplex
10 views23 slides
【USB韌體設計課程】精選講義節錄-USB的列舉過程_艾鍗學院 by
【USB韌體設計課程】精選講義節錄-USB的列舉過程_艾鍗學院【USB韌體設計課程】精選講義節錄-USB的列舉過程_艾鍗學院
【USB韌體設計課程】精選講義節錄-USB的列舉過程_艾鍗學院IttrainingIttraining
41 views8 slides
The Research Portal of Catalonia: Growing more (information) & more (services) by
The Research Portal of Catalonia: Growing more (information) & more (services)The Research Portal of Catalonia: Growing more (information) & more (services)
The Research Portal of Catalonia: Growing more (information) & more (services)CSUC - Consorci de Serveis Universitaris de Catalunya
79 views25 slides

Recently uploaded(20)

6g - REPORT.pdf by Liveplex
6g - REPORT.pdf6g - REPORT.pdf
6g - REPORT.pdf
Liveplex10 views
【USB韌體設計課程】精選講義節錄-USB的列舉過程_艾鍗學院 by IttrainingIttraining
【USB韌體設計課程】精選講義節錄-USB的列舉過程_艾鍗學院【USB韌體設計課程】精選講義節錄-USB的列舉過程_艾鍗學院
【USB韌體設計課程】精選講義節錄-USB的列舉過程_艾鍗學院
From chaos to control: Managing migrations and Microsoft 365 with ShareGate! by sammart93
From chaos to control: Managing migrations and Microsoft 365 with ShareGate!From chaos to control: Managing migrations and Microsoft 365 with ShareGate!
From chaos to control: Managing migrations and Microsoft 365 with ShareGate!
sammart939 views
Empathic Computing: Delivering the Potential of the Metaverse by Mark Billinghurst
Empathic Computing: Delivering  the Potential of the MetaverseEmpathic Computing: Delivering  the Potential of the Metaverse
Empathic Computing: Delivering the Potential of the Metaverse
Mark Billinghurst476 views
Spesifikasi Lengkap ASUS Vivobook Go 14 by Dot Semarang
Spesifikasi Lengkap ASUS Vivobook Go 14Spesifikasi Lengkap ASUS Vivobook Go 14
Spesifikasi Lengkap ASUS Vivobook Go 14
Dot Semarang37 views
Five Things You SHOULD Know About Postman by Postman
Five Things You SHOULD Know About PostmanFive Things You SHOULD Know About Postman
Five Things You SHOULD Know About Postman
Postman30 views
Black and White Modern Science Presentation.pptx by maryamkhalid2916
Black and White Modern Science Presentation.pptxBlack and White Modern Science Presentation.pptx
Black and White Modern Science Presentation.pptx
maryamkhalid291616 views
HTTP headers that make your website go faster - devs.gent November 2023 by Thijs Feryn
HTTP headers that make your website go faster - devs.gent November 2023HTTP headers that make your website go faster - devs.gent November 2023
HTTP headers that make your website go faster - devs.gent November 2023
Thijs Feryn21 views
Piloting & Scaling Successfully With Microsoft Viva by Richard Harbridge
Piloting & Scaling Successfully With Microsoft VivaPiloting & Scaling Successfully With Microsoft Viva
Piloting & Scaling Successfully With Microsoft Viva
Web Dev - 1 PPT.pdf by gdsczhcet
Web Dev - 1 PPT.pdfWeb Dev - 1 PPT.pdf
Web Dev - 1 PPT.pdf
gdsczhcet60 views
Perth MeetUp November 2023 by Michael Price
Perth MeetUp November 2023 Perth MeetUp November 2023
Perth MeetUp November 2023
Michael Price19 views
GDG Cloud Southlake 28 Brad Taylor and Shawn Augenstein Old Problems in the N... by James Anderson
GDG Cloud Southlake 28 Brad Taylor and Shawn Augenstein Old Problems in the N...GDG Cloud Southlake 28 Brad Taylor and Shawn Augenstein Old Problems in the N...
GDG Cloud Southlake 28 Brad Taylor and Shawn Augenstein Old Problems in the N...
James Anderson66 views

You Can’t Live Without Open Source - Results from the Open Source 360 Survey

  • 3. #OSS360 Black Duck Center for Open Source Research and Innovation 2016-2017 Open Source Security and Risk Analyses Future of Open Source Reports
  • 4. #OSS360 Agenda • Demographics • Open Source Adoption • Open Source Risks • Risk Remediation • A Look to the Future
  • 6. #OSS360 Global Survey Response 819 IT Professionals from 91 countries
  • 7. #OSS360 2% 2% 3% 3% 4% 4% 7% 7% 11% 12% 43% Retail Health Care Media Automotive Manufacturing Government/Military Banking and Financial Services Education Other Consulting Technology/ISV Telecommunications Industry Representation
  • 8. #OSS360 Open Source Awareness is Organization Wide Legal Professional VP/C-Level Executive Development Manager/Director Other Security Professional Systems Architect/CTO IT Operations/DevOps Professional Software Developer 65% of respondents are developers, IT operations, system architects, security professionals
  • 10. #OSS360 60% Increased Open Source Usage 26% Remained Constant Momentum for Open Source Continues to Increase 86% of organizations report Open Source use increased or remained constant
  • 11. #OSS360 Organizations Use Open Source to… 16% 28% 69% 69% 77% Embed in hardware products Develop open source software Power our infrastructure Create customer applications Build internal applications
  • 12. #OSS360 Open Source Fulfills Strategic Objectives 37% 44% 55% 55% 67% 84% Availablity of skilled developers Code quality and security Rate of innovation Functionality Freedom to customize code Low cost with no vendor lock-in
  • 13. #OSS360 Open Source is Core to IT Infrastructure 52% 53% 57% Systems Management/Operating Systems Containers/DevOps/Virtualization/Cloud Computing Development Tools/Software Development Lifecycle
  • 14. #OSS360 The Impact of Open Source is Significant 55% 61% 63% Improves interoperability of systems Improves quality of solutions we build Speeds innovation
  • 16. #OSS360 Organizations Recognize Benefits to Participation 34% 46% 53% Deliver product as open source Encourage active engagement and contributions Fix and enhance existing projects
  • 17. #OSS360 Contributions Reduce Overall Cost of Ownership Shift From 2016 69% Fix Bugs 33% Reduce Costs 37% 38% 49% 55% Gain competitive advantage Fundamental to our product strategy Reduce development and support costs Fix bugs or add functionality
  • 18. #OSS360 Open Source Community Involvement is Healthy and Growing 48% said the number of people contributing to open source in their organization is increasing. 25% have more than 50% of their developers contributing to one or more OSS projects
  • 20. #OSS360 Organizations Understand Open Source Risks …. 53.5% 53.7% 54.6% Comply with open source licenses Monitor project and version usage Aware of known security vulnerabilities
  • 21. #OSS360 …. But Open Source is Still Unmanaged in Most Organizations 60% don’t have a formal process for managing open source or are unaware of one in their organization OVER Other (please specify) 2% I don’t know 16% No, we do not have a formal process 45% Yes - Multiple departmental processes 10% Yes - standardized company-wide process 27% Other 37%
  • 22. #OSS360 Respondents Highlighted Successful Open Source Policies … 33% 39% 39% 42% Policy guidance in developer tools Approved open source licenses Approved open source components Structured review process for components
  • 23. #OSS360 … But Organizations Still Struggle With Enforcement 24% Policy provides recommendations but is not reviewed or enforced 14% Code is manually reviewed but policy is not consistently enforced Only 15% indicated enforcement with automated controls, while 25% review code via manual controls and enforcement
  • 25. #OSS360 Organizations Highlight Ongoing Open Source Risks …. 61% 64% 66% 71% 74% Adherence to internal development policies Exposure of internal systems to exploitation Intellectual property concerns Exploitation of public facing applications Unknown quality of components
  • 26. #OSS360 50% Indicated open source reviews rely primarily on developer information 38% Don’t review code for open source …. But Open Source Reviews Aren’t Thorough 45% review for open source code usage during development
  • 27. #OSS360 Open Source Code Review Models 23% 27% 28% 38% String search and visual inspection Internally developed tools Third party tools No open source code review Over 60% had no structured open source code review process
  • 28. #OSS360 Manual Vulnerability Assessments Challenge Security Orgs 25% have no process for identifying, tracking or remediating known open source vulnerabilities OVER 50% say internal resources manually identify and track remediation of known open source vulnerabilities OVER
  • 29. #OSS360 57% Developers responsible for identifying and tracking open source vulnerabilities 40% Security Team takes ownership of tracking code usage 26% Nobody has explicit responsibility Shift From 2016 50% revealed no team took responsibility for tracking open source vulnerabilities Open Source Security Is a Shared Responsibility
  • 31. #OSS360 2017 Insights • The world’s appetite for open source software continues at a furious pace. • Open source solutions reduce development costs and increase time to market • Awareness of security risks in open source components is increasing • Even if organizations aren’t aware of their open source usage, open source is present in IT workloads in 90% of organizations
  • 32. #OSS360 Open Source is Fundamental to Modern Software Driving Us Forward • Default development model for new apps • Builds on the success of others • Shares critical expertise between orgs • Accelerates product innovation • Solves critical business problems • Improves IT processes
  • 33. #OSS360 Challenges Ahead • Effective management of open source is not keeping pace with its increased usage • High profile vulnerabilities highlight a need for greater security process • Lack of automation opens the door to increased risk
  • 34. #OSS360 Own Your Success – Participate in OSS Communities Active community engagement … • Increases project vibrancy • Ensures project longevity and innovation • Reduces security risks • Ensures bugs are fixed quickly and properly Get involved. Build something amazing. Have fun.
  • 35. #OSS360 ARNOLD LEUNG @APPNOVATION CEO When it comes to technology, our commitment to open source is right there in our branding…open digital delivered. From the start, we have been proud of our ability not just do support, but to drive pen technologies. By adopting this progressive, collaborative approach, we have enabled our company to go beyond being just architects, and become digital solutions providers, harnessing all the power of open technologies, all for the benefit of our clients" said Appnovation CEO Arnold Leung. ”This continued commitment makes us not only a company that remains innovative as well as competitive, it tangibly demonstrates the fact that we are open source evangelists, with an unrelenting desire to spread the open technologies message."
  • 36. #OSS360 APPNOVATION @APPNOVATION PROBLEM TCL (The Creative Life), the third largest TV manufacturer in the world, needed a Drupal 8 redesign for their flagship site. Appnovation was asked to look at the issues, and conceptualize, then deliver a sleek aesthetic showroom, designed to afford users an improved, and superb user experience in terms of navigation. SOLUTION Our solution was to use and deploy the finest elements of Drupal 8, thus ensuring that everything was complete, feature rich, user friendly and aesthetically outstanding. The result was a sleek, sophisticated and user friendly site. Appnovation is a global Digital Solutions and Managed Services provider delivering strategy, application development and enterprise integration on leading open technologies.
  • 37. #OSS360 MAIK AUSSENDORF @BAREOS_BACKUP MANAGING DIRECTOR Would you buy a new safe for your physical values and leave the key at the vendor, who will only give you access to your valuables as long as you continuously pay license fees? A lot of backup users share this experience: they can access their digital assets in case of emergency only as long as paying license fees for their proprietary backup solution Long term and sustainable data sovereignty is only possible with an Open Source Backup solution.“
  • 38. #OSS360 BAREOS WWW.CARDTECH.DE PROBLEM • The increasing amount of sensible data became uncomfortable to be backed up using the existing backup solution which required a huge maintenance workload. • For compliance reasons a secure erase of temporary data was mandatory SOLUTION l Backing up data using Bareos, the implementation of processes and a specific engineered backup strategy on a high level of automation exculpate the IT-personnel l The Bareos team implemented the missing secure erase feature as funded development • Cardtech is a payment service provider • Under supervision o f the German Federal Financial Supervisory Authority (BaFin) • Secure Backup with Bareos • Meet Compliance • No vendor-lock-in
  • 39. #OSS360 NAVIN BUDHIRAJA @NAVINB @INFOSYS SVP - HEAD – ARCHITECTURE, TECHNOLOGY & EDUCATION, Open Source software has become the primary engine of innovation, and should now be viewed as the key building block of all modern enterprise architectures. Innovation in areas like cloud computing, big data, artificial intelligence, DevOps and modern web frameworks are all happening in the Open Source ecosystem, and the adoption of these technologies in enterprises is benefiting from the foundation of Linux that enterprise IT departments have already invested in. Infosys is actively taking Open Source, and Open Source based products, to all our enterprise clients.”
  • 40. #OSS360 INFOSYS @INFOSYS PROBLEM Payment disputes are an important reason for increased Days Sales Outstanding (DSO), which is exacerbated by an incorrect collection strategy, which not only increases DSO, but incorrect or aggressive collection strategy may also result in poor customer experience. A customer order propagates through multiple, incompatible ERP systems; any inconsistency in information could result in a payment dispute. **DSO is a key business metric. A large DSO can result in cash flow problems SOLUTION Infosys NiaTM - The Next Generation Integrated Artificial Intelligence Platform, built leveraging Open Source - ingests data from all the different systems – ERP, Order management, invoicing within the organization. This data in conjunction with external macro-economic and behavioral data was utilized to create a customer risk profile and aggregated to predict the total account value at risk. This allowed the organization to customize collection strategy for each customer, expedite resolution of disputes and prevent disputes, improve cash-flow forecasting. Infosys is a global leader in technology services and consulting. We enable clients in more than 45 countries to create and execute strategies for their digital transformation. From engineering to application development, knowledge management and business process management, we help our clients find the right problems to solve, and to solve these effectively. Our team of 200,000+ innovators, across the globe, is differentiated by the imagination, knowledge and experience, across industries and technologies that we bring to every project we undertake.
  • 41. #OSS360 TIM YEATON @TBYEATON, @REDHATNEWS EXECUTIVE VICE PRESIDENT &CHIEF MARKETING OFFICER "Open source is synonymous with innovation, helping organizations around the world solve complex problems faster and create modern technology platforms that enable them to deliver new services to customers. These are key reasons why I believe this year's survey results show that a majority of respondents have increased their use of open source solutions, including in key areas like developer tools, machine learning, IoT, and software-defined networking."
  • 42. #OSS360 ANDREW AITKEN @ANDREWOLLIANCE,@WIPRO GM & GLOBAL OPEN SOURCE LEADER Today, “Open Source First” is the new mantra for enterprises. The reason; open source is seen less as only a cost savings measure but as a key tool to drive competitive business advantage. Open source enables faster thought-to-production, innovation, efficiency and a better way of building software. With the explosion of open source projects that add massive value to enterprises, the Open Source First mantra will continue to gain momentum and will soon become the default way of computing.
  • 43. #OSS360 WIPRO @WIPRO PROBLEM A leading US based financial services company realised that a large monolithic payments application was not agile enough to address the business growth in m-Commerce and retail sector. The client had a critical need for a next generation platform to build innovative, agile and scalable solutions leveraging a microservices framework. SOLUTION Wipro provided advisory, governance and technical consulting services to build the next gen platform for the client’s payment gateway. § Assisted in refining the enterprise open source strategy, developed governance, community and procurement models, and open sourcing of their own software. § Evaluated & recommended open source software’s to build next gen platform § Delivered a scalable platform to address future growth § Ensured high availability to address five nines application on three nines infrastructure stack § Developed the platform components and core features Wipro is a leading information technology, consulting business process services company that delivers solutions to enable its clients to do business better. Wipro delivers winning business outcomes through its deep industry experience and a 360 degree view of “Business through Technology”.