Frost and Sullivan World Applications Security Products Study

Network security is steadily gaining prominence as Web applications are emerging as vital components for business-to-customer organizations, according to Frost & Sullivan. The application security market encompasses products that scan for security weaknesses in Web applications, custom in-house applications and applications in development. Application security vendors have evolved from providing strictly consulting services to now offering strong stand-alone products.

New analysis from Frost & Sullivan, World Application Security Products Markets, finds that the market earned revenues of over $165 million in 2007 and estimates this to reach $596 million in 2014.

According to the analysis, Web applications offer innumerable benefits to enterprises because they are easy to deploy and update, operating system-independent and do not require client disk space. While necessary for any organization with a Web site, these applications remain available to the public at all times while staying connected with sensitive, critical backend systems. Web applications are not subject to testing as much as more ubiquitous applications, which can lead to a potentially dangerous situation.

"The security industry has long been centered on network security, but the security focus is shifting," explains Frost & Sullivan Research Analyst Chris Rodriguez. "Organizations are recognizing Web applications and other custom applications are not secure and represent a dangerous point of attack."

Furthermore, most organizations that have secured their network perimeter now turn to application security products to identify software security flaws and prioritize remediation efforts; however, the faltering world economy presents a major challenge for this burgeoning market. Security software is still not quite considered mission critical technology. While there is little that vendors can do to counter this directly, they can focus on improving competitive factors to expand their market share. This demands focus on increasing the availability, affordability and ease of implementation of solutions.

For now, the market is seeing increasing consolidation. Strong growth in 2006 and 2007, when revenues touched an estimated $127 million and $165.3 million respectively, enticed large multinational vendors such as IBM and HP to venture into this space. The dynamic testing segment witnessed decreased growth due to the acquisition of two leading vendors, Watchfire and SPI Dynamics. When these companies achieve complete integration with their parent companies, they are expected to contribute more to the growth of the market. In comparison, static source-code analysis vendors were responsible for a larger share of revenues than those of vendors offering dynamic testing solutions, according to the study's data.

"The recent success of static testing vendors is indicative of the eventual goal of security, which will become an integral part of the software development lifecycle," explains Rodriguez. "Customers are realizing that application security must go beyond dynamic testing and incorporate static testing in order to establish a firm foothold in the market."

Participants can improve their likelihood of success by broadening their product lines and enhancing functionality and features to offer a tandem of dynamic and static testing capabilities.

World Application Security Products Markets is part of the Network Security Growth Partnership Service program, which also includes research in the following markets: vulnerability management, network access control, data leakage prevention and endpoint security. All research services included in subscriptions provide detailed market opportunities and industry trends that have been evaluated following extensive interviews with market participants.

Featured

  • Report: Cybercriminals Abandon Tech Tricks for Personalized Email Deception Tactics

    VIPRE Security Group, a cybersecurity, privacy, and data protection company, has released its email threat landscape report for Q2 2025. Through an examination of worldwide real-world data, this report sounds the alarm on the most significant email security trends observed in the second quarter of 2025, enabling organizations to develop effective email security defenses for the remainder of the year. Read Now

  • AI-Generated Code Poses Major Security Risks in Nearly Half of All Development Tasks

    Veracode, a provider of application risk management, recently unveiled its 2025 GenAI Code Security Report, revealing critical security flaws in AI-generated code. The study analyzed 80 curated coding tasks across more than 100 large language models (LLMs), revealing that while AI produces functional code, it introduces security vulnerabilities in 45 percent of cases. Read Now

  • Unlocking the Possibilities

    Security needs continue to evolve and end users are under pressure to address emerging risks and safety concerns. For many, that focus starts with upgrading perimeter openings and layering technologies—beginning at the door. Read Now

  • Freedom of Choice

    In today's security landscape, we are witnessing a fundamental transformation in how organizations manage digital evidence. Law enforcement agencies, campus security teams, and large facility operators face increasingly complex challenges with expanding video data, tightening budget constraints and inflexible systems that limit innovation. Read Now

  • Accelerating a Pathway

    There is a new trend touting the transformational qualities of AI’s ability to deliver actionable data and predictive analysis that in many instances, seems to be a bit of an overpromise. The reality is that very few solutions in the cyber-physical security (CPS) space live up to this high expectation with the one exception being the new generation of Physical Identity and Access Management (PIAM) software – herein recategorized as PIAM+. Read Now

New Products

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

  • ResponderLink

    ResponderLink

    Shooter Detection Systems (SDS), an Alarm.com company and a global leader in gunshot detection solutions, has introduced ResponderLink, a groundbreaking new 911 notification service for gunshot events. ResponderLink completes the circle from detection to 911 notification to first responder awareness, giving law enforcement enhanced situational intelligence they urgently need to save lives. Integrating SDS’s proven gunshot detection system with Noonlight’s SendPolice platform, ResponderLink is the first solution to automatically deliver real-time gunshot detection data to 911 call centers and first responders. When shots are detected, the 911 dispatching center, also known as the Public Safety Answering Point or PSAP, is contacted based on the gunfire location, enabling faster initiation of life-saving emergency protocols.

  • PE80 Series

    PE80 Series by SARGENT / ED4000/PED5000 Series by Corbin Russwin

    ASSA ABLOY, a global leader in access solutions, has announced the launch of two next generation exit devices from long-standing leaders in the premium exit device market: the PE80 Series by SARGENT and the PED4000/PED5000 Series by Corbin Russwin. These new exit devices boast industry-first features that are specifically designed to provide enhanced safety, security and convenience, setting new standards for exit solutions. The SARGENT PE80 and Corbin Russwin PED4000/PED5000 Series exit devices are engineered to meet the ever-evolving needs of modern buildings. Featuring the high strength, security and durability that ASSA ABLOY is known for, the new exit devices deliver several innovative, industry-first features in addition to elegant design finishes for every opening.