Source: Help Net Security
Author: Anamarija Pogorelec
URL: https://www.helpnetsecurity.com/2026/09/14/digicert-certificate-management-automation-report/
ONE SENTENCE SUMMARY:
DigiCert warns 47-day TLS certificates will multiply renewals, validations and outages unless enterprises rapidly gain visibility and automate lifecycles everywhere.
MAIN POINTS:
- Shifting to 47-day public TLS certificates by 2029 increases renewals eightfold and validations 40x.
- Expired certificates caused outages for 34% of firms; 40% reported downtime from mismanagement.
- Downtime severity is high: nearly three-quarters lost five hours, while 21% lost 25+.
- Financial impact is substantial, with 25% citing their worst incident exceeding $250,000.
- Operational ownership skews to infrastructure: 57% label outages IT issues versus 17% security incidents.
- Certificate sprawl is common, as over half of organizations manage more than 1,000 certificates.
- Key “very/extremely concerned” challenges include expiration, customer trust, regulatory compliance, and multi-cloud/platform management.
- Managing internal and external systems simultaneously worries 52%, highlighting fragmented environments needing central control.
- Adoption momentum is growing: ~70% are preparing for shorter lifetimes, and volumes are expected to rise.
- Automation expansion is constrained by cost, legacy incompatibility, weak executive buy-in, and limited expertise.
TAKEAWAYS:
- Inventory completeness (what, where, owner) becomes mandatory when lifecycles shrink to 47 days.
- Eliminating manual tracking reduces outage risk more effectively than relying on reminders and spreadsheets.
- Building an ROI case should emphasize avoided downtime and remediation labor, not just tooling costs.
- Integrating certificate management into DevOps pipelines is the top near-term improvement priority.
- Addressing “very/extremely concerned” areas requires lifecycle-wide automation across clouds, platforms, and compliance workflows.