Scale application security with AI-augmented vulnerability remediation
About this talk
This talk, presented by Nitish Tyagi from Gartner, delves into the transformation of vulnerability management in AI-driven development environments. It highlights how AI is reshaping application security by generating more code and introducing new vulnerabilities that organizations must address efficiently. The speaker proposes a three-step, AI-augmented remediation pipeline incorporating SCA and SAST tools to identify vulnerabilities, followed by AI-assisted coding agents offering contextual remediation suggestions, ultimately integrating human oversight based on application criticality. Additionally, the session discusses building security systems using open source components, focusing on automated remediation workflows and a platform-based approach that streamlines scanning, remediation, and validation within CI/CD pipelines, enhancing developer productivity while maintaining robust security practices.