Travel & HospitalitySoftware Engineering

How Cathay Reduced Security Fix Time by 63% with GitHub Copilot and Advanced Security

Cathay, the Hong Kong-based premium travel brand that operates Cathay Pacific airline across 100 destinations with 30,000+ employees, unified its development and security toolchain on GitHub Enterprise, deployed GitHub Copilot to 1,000+ developers, and embedded security scanning into daily workflows through GitHub Advanced Security. The result was a 63% reduction in mean time to remediate security vulnerabilities and a 40% year-over-year improvement in tech debt fixes.

Outcomes

63%Reduction in mean time to remediate security fixes
40%Year-over-year improvement in tech debt fixes
4.4/5Developer satisfaction NPS score
1,000+ developers in one weekCopilot rollout speed
4 million+Lines of code accepted from Copilot

Tools & Technologies

1GA
GitHub Advanced Security
Security scanning tool by GitHub for detecting code vulnerabilities and exposed secrets across the SDLC.
2GC
GitHub Copilot
AI coding assistant by GitHub suggesting code completions and generating functions within developer IDEs.
3GA
GitHub Actions
CI/CD automation platform integrated into GitHub for building, testing, and deploying code workflows.
4GE
GitHub Enterprise
Self-hosted DevOps platform by GitHub for enterprise-scale code collaboration with advanced security controls.

AI Categories

Challenge

Cathay’s fragmented toolchains and late-stage security fix processes were slowing delivery, frustrating developers, and creating compliance risks for a global airline where software failures have direct operational consequences.

Solution

Cathay consolidated development on GitHub Enterprise with GitHub Copilot for AI-assisted coding and GitHub Advanced Security for embedded vulnerability detection, shifting security left into the development workflow and eliminating the handoffs caused by late-stage security reviews.

Full Story

Cathay operates one of Asia’s most recognized airlines, connecting more than 100 destinations with a workforce of over 30,000 people. Its software systems underpin critical operations — from flight management and crew scheduling to customer-facing booking and loyalty platforms. The stakes of a failed deployment or unpatched vulnerability are not abstract: they affect passengers, crew, and revenue in real time.

Access 449+ AI use cases, 414+ tools, and adoption signal rankings.

Source

GITHUB
March 2026
Original case study

Similar Cases

1E
How Engine Uses Salesforce Agentforce to Cut Handle Time 15% and Save $2M
Engine
15%Average handle time reduction
2W
How WEX Achieved 30% Developer Productivity Gains with GitHub Copilot
WEX
~30%Developer productivity increase with GitHub Copilot
3TH
How Hertz Cuts Roadside Resolution Time 15% with Microsoft Copilot Studio
The Hertz Corporation
>15%Customer issue resolution time reduction
4A
How AstraZeneca Accelerates Drug Discovery with GitHub Copilot and Actions
AstraZeneca
40%Developer velocity increase with GitHub Copilot
5LS
How Lodging Solutions Uses Samsara to Power Disaster Recovery Fleet Operations
Lodging Solutions
300–500+ hoursStaff time saved per storm season
6GM
General Motors accelerates builds 87% and unifies 19,000 engineers with GitHub Enterprise and Copilot
General Motors
99%Source code standardized on GitHub
7HG
How HBX Group Uses Google Gemini to Automate 30% of B2B Travel Support Cases
HBX Group
32.5%Repetitive support cases handled autonomously
8IU
How Itaú Unibanco Uses GitHub Copilot to Ship 93% Faster
Itaú Unibanco
93%Code commit time reduction
9S
How SIXT Uses IBM Instana to Cut Problem Resolution Time by 70%
SIXT
70%Problem detection and resolution time decrease
10CG
How Carlsberg Uses GitHub Enterprise and Copilot to Unify Its Developer Platform
Carlsberg Group
600Secrets detected in source code via Secret Scanning
See all use cases →