Bug Bounty Programs As Security & Compliance Strategies

Are companies such as Facebook getting more reliant on bug bounty programs as security and compliance strategy?