Firms that want to secure applications are challenged by understaffed security teams and lack of security awareness among developers. Developer security champions are developers who act as a security point of contact within their team and embed application security where it’s needed most. Programs to create and support champions require investment and planning. Security pros should use this report to make the case for a developer security champions program, put the right leadership in place, identify and train developer security champions, support and reward their champions, and measure success.