Checkmarx Focuses AppSec on AI Development
Briefly

Checkmarx Focuses AppSec on AI Development
"Traditional AppSec no longer keeps pace with the speed and scale of software development today. Whereas development cycles used to take months, AI can now generate large amounts of code in a short time. This creates a situation in which security is often applied only when the code is already further along in the chain-for example, in CI/CD processes-by which time the risk has increased."
"If AI-generated code is added or merged with existing legacy systems without verification, vulnerabilities can quickly spread throughout the rest of the development chain. This leads to a continuous process in which code is passed along, further and further, while risks accumulate if there is no direct oversight."
"The updated Checkmarx One platform is designed to manage this dynamic. It combines AI-driven security with an architecture that uses autonomous agents to monitor code, dependencies, AI components, and runtime environments. The platform uses multiple checkpoints throughout the development cycle, ensuring risks are identified and addressed earlier."
Checkmarx has released an updated version of its application security platform, Checkmarx One, to address challenges posed by agentic development. Traditional security approaches no longer match the speed of AI-generated code, which can produce large volumes of code quickly. Security applied late in development cycles, such as during CI/CD processes, allows vulnerabilities to accumulate and spread through legacy systems. Checkmarx One implements continuous security throughout the development environment using autonomous agents that monitor code, dependencies, AI components, and runtime environments. This approach establishes multiple checkpoints to identify and address risks earlier, bridging the gap between development speed and security requirements.
Read at Techzine Global
Unable to calculate read time
[
|
]