Today marks the much-anticipated release of the 2021 Gartner Magic Quadrant for Application Security Testing (AST), and we’re thrilled to announce that Checkmarx has been named a Leader for the fourth consecutive year based on our ability to execute and completeness of vision.
Checkmarx continues to maintain its strong position in the AST market and we’re very proud of that. More and more organizations are embedding AST throughout their modern application development initiatives, driving rapid AST market growth that trends alongside the proliferation of software amidst worldwide digital transformation. In fact, according to the report authors, “Gartner estimates end-user spending in this expanded AST market reached $2.2 billion worldwide in 2020.”
This year, Gartner decided to expand the scope of AST to include API and Infrastructure as Code (IaC) testing, among others. According to the report, “By 2023, 90% of web-enabled applications will have more surface area for attack in the form of exposed APIs rather than the user interface (UI), up from 50% in 2020.” In addition, “By 2022, API abuses will move from an infrequent to the most frequent attack vector, resulting in data breaches for enterprise web applications.” *1
We believe that the observations made by Gartner support the need for enterprises to not only implement a strong foundation of testing proprietary code and open source libraries via SAST, SCA, and IAST scans, but to also account for emerging cloud-native technologies including APIs, containers, microservices, and IaC. Enterprise and government cloud-based initiatives are in overdrive and that’s only going to continue. The digitally modernized world runs on software, making the importance of software security undisputable, and the ability to embed security throughout modern application development approaches are even more essential today.
Application security testing solutions that address the broadening risk landscape are no longer a ‘nice to have,’ but rather a ‘must have,’ and today, it’s imperative to leverage modern solutions that address all components and risks within modern applications. As a result, Checkmarx is laser-focused on helping our customers navigate software complexity and expand their test coverage to address the way applications are being developed and deployed, so they can improve the security and quality of their software without slowing down development. With 15+ years of innovation in AST, we remain committed and intensely passionate about delivering powerful solutions to serve the entire software security market.
As we celebrate being named a Leader in the 2021 Gartner Magic Quadrant for Application Security Testing, we’d like to thank our incredible customers, partners, and employees who have been, and will continue to be, the cornerstone of our success.
For Fourth Consecutive Year, Checkmarx Named a Leader in the 2021 Gartner Magic Quadrant for AST
Share on facebook
Share on twitter
Share on linkedin
Stephen Gates
Stephen Gates is an experienced writer, blogger, and published author who brings 15+ years of hands-on knowledge in information security to the Checkmarx team. Stephen is dedicated to conveying facts, figures, and information that brings awareness to the cybersecurity issues all organizations and consumers face. Aligning with Checkmarx mission of improving software security for all organizations, he is an advocate and promoter of their solutions worldwide.
View All Posts
Latest Blog Posts
CTparental Vulnerabilities Enabled Filter Bypassing
August 19, 2021
Checkmarx – Making Waves Once Again
August 18, 2021
Follow Us

How API Use Cases Have Evolved, and What It Means for API Security
APIs are like telephones: they have been around for quite a while, yet they have changed tremendously in recent years.
August 25, 2021
Checkmarx Launches New Global Partner Program
Empowers partners and distributors to grow and retain customer bases while meeting accelerating demand for AST solutions NEW YORK &
August 24, 2021

CTparental Vulnerabilities Enabled Filter Bypassing
For those who don’t know me, I am a mother to two brilliant children who are better at the game
August 19, 2021

Checkmarx – Making Waves Once Again
In organizations that encourage the usage of modern application development techniques to expedite the development, delivery, and deployment of custom
August 18, 2021
Checkmarx Named a Strong Performer in Software Composition Analysis by Leading Analyst Firm
NEW YORK & RAMAT GAN, ISRAEL – August 18, 2021 – Checkmarx, the global leader in developer-centric application security testing (AST) solutions, today announced
August 18, 2021

Why Developers Worldwide Benefit from Secure Coding Education
Global Developers think secure coding education can save time and money while adding personal and organizational value. The impact of
August 16, 2021

Why Centralized Risk Management and Governance Are Key to Modernizing Legacy Applications
A Mandate from Federal Government Today, security is an absolute requirement. The Federal Government knows that security is a critical
August 11, 2021

The Magic of GitLab’s Templates: What’s New with Checkmarx GitLab Integration
Last year at GitLab Commit, I presented our integration with GitLab to initiate Checkmarx security scans within your GitLab CI/CD
August 9, 2021
Checkmarx Acquires Software Supply Chain Security Provider, Dustico
Acquisition brings behavioral source code analysis to Checkmarx customers to defend against open source software supply chain attacks RAMAT GAN,
August 5, 2021

KICS is Exceeding All Expectations
KICS (Keeping Infrastructure as Code Secure) has had an incredibly successful launch with over 273k downloads as of date! As
August 3, 2021

What’s Lurking Within: Stopping Malicious Actors in Software Supply Chains
What’s Lurking Within? Malicious Code. Supply chain attacks occur when cyberthreat actors insert malicious code into trusted software, creating a
August 3, 2021

Business Benefits of Buying Your Application Security Solution on AWS Marketplace
The rise of cloud technology has revolutionized the way we think about software and how organizations buy it. Long procurement
July 29, 2021

Chained RaspAP Vulnerabilities Grant Root Level Access
According to its official documentation, “RaspAP” is a wireless router software for many popular Debian-based devices, including the Raspberry Pi. It
July 29, 2021

Not All AppSec Scanning Is Created Equal
You no doubt know the phrase, “if you don’t have anything nice to say, don’t say anything at all.” A
July 27, 2021

Developing Digital Citizen Services: Our Duty to Keep Digital Government Secure
Cybersecurity is top of mind right now as President Biden’s Executive Order sets a new, more urgent tone around the
July 20, 2021
