96% of surveyed companies use open-source applications due to wide selection, customization options, and zero licensing costs.
Over half of firms surveyed face challenges with ongoing maintenance, with 63% struggling to keep solutions updated and apply patches.
Key considerations when selecting open-source software include frequency and scope of updates, security-related updates, and complexity of installing updates.
Assessing engineering culture and cybersecurity hygiene, examining vulnerabilities, and monitoring dependencies are crucial to predicting cybersecurity issues.
Dependencies on third-party open-source components require assessment to determine the speed of patched component updates integration.
Compliance with internal and regulatory requirements, license compliance audits, and developing plans for compliance audits are essential.
Support costs for in-house teams, outsourced technical support, and organizational readiness for open source adoption impact the cost and complexity of technical support.
Considerations like vulnerability scanners, risk management tools, IT asset tracking support, and CI/CD pipeline inclusion are important for open-source adoption readiness.
Addressing risks such as project discontinuation, minor dependencies proliferation, and other supply-chain risks is crucial.