June 08, 2009

Poll: Companies still worried about open source security

Companies are still wary about open source security holes, but they are warming to SaaS, according to a new Forrester study

Businesses in North America and Europe remain broadly worried about the security of open source software, according to new data from Forrester Research.

Fifty-eight percent of the large companies surveyed said they had security concerns about open source, while the figure for small and midsized businesses was slightly higher, at about two-thirds. Within those groups, only 9 percent of enterprises said they were "very concerned," compared with 45 percent for the SMBs.

[ Follow the latest open source developments with InfoWorld's Open Sources blog. | Keep up with the day's big headlines with the InfoWorld Daily newsletter. ]

More than half of SMBs (57 percent) also expressed concern that open-source software would be complex and hard to adopt, but only 32 percent of enterprises expressed a similar sentiment. In addition, 68 percent of SMBs cited the availability of service and support for open-source software as a concern, compared with 47 percent of enterprises.

The findings are among a wide range of data Forrester collected for two reports, "The State of SMB Software: 2009" and "The State of Enterprise Software: 2009."

Meanwhile, security concerns over SaaS (software as a service) seem to be diminishing among companies large and small, according to Forrester.

The research firm polled a subset of SMB respondents who indicated they weren't interested in SaaS. Twenty-seven percent named security as a factor, compared to 57 percent in a 2007 survey. A similar poll of enterprises saw 31 percent cite security concerns with SaaS, down from 47 percent in an earlier study.

Overall, Forrester polled 2,227 IT executives and technology decision makers in the United States, Canada, Germany, France, and the United Kingdom between December 2008 and February this year.

Close

On Twitter now

Security

Powered by Twitter

On Twitter now

White Paper

D2D Virtual Tape Library Replication Primer

This whitepaper explains the terminology and concepts behind Data Replication technologies and establishes some sizing rules through worked examples. Learn the new paradigm in disaster tolerance—protect data anywhere.

Download now »

Trial

Free 30-Day Desktop Virtualization Trial

Download a free 30–day trial and experience how XenDesktop delivers a pristine, on–demand desktop experience to users on whatever device they choose, while cutting IT complexity and costs.

Download now »

White Paper

Why Your Firewall, VPN, and IEEE 802.11i Aren't Enough to Protect Your Network

The emergence of WLANs has created a new breed of security threats to enterprise networks.

Included in HP ProCurve WLAN solutions is security technology that alleviates threats from WLANs through:
* Monitoring wireless activity inside and out of the enterprise
* Classifying WLAN transmissions into harmful and harmless
* Preventing transmissions that pose a security threat to the enterprise network
* Locating participating devices for physical remediation

Download now »
Gray_Hair 9-Jun-09 11:43am

WoW!! Now there is a tribute to the Microsoft FUD campaign! It is just like Hitler said, tell a big enough lie often enough and most people will believe you.

Sure makes me wonder about how Forrester picked their sample though. Perhaps I should also wonder if there was MSFT funding behind the survey.

cmaurand 9-Jun-09 1:08pm
I agree with Gray_Hair. OpenSource is much more secure than closed source. There are more eyes looking at it. There are larger code review groups and many people committed to its security. We won't forget the fact that some of the largest software companies in the world are committing developers to various projects. To claim that its not secure is patently false. Who funded the report? It also sounds like a recycled press release. I worked for many years and no one ever asked me to support Open Source software even though my customers knew I was a big fan and had lots of experience with it.

Sign up to receive Security Resource Alerts

Subscribe to the Technology: Open Source Newsletter

The one-stop resource center for IT professionals.

©1994-2009 Infoworld, Inc.