The economics of application security have fundamentally shifted. With agentic AI models now able to uncover and chain complex, zero-day logic flaws at machine speed, the window between vulnerability and active exploit has collapsed. Traditional SAST tools that rely on rigid syntax matching and regex signatures may not be sufficient on their own. These tools can lack semantic context and can miss the complex business logic flaws that modern AI-driven attackers easily exploit. To close this gap, organizations must transition toward context-aware, agentic scanning. But putting this into practice requires cutting through the marketing hype.
On September 24, 2026 at 1:00 p.m. Eastern/10:00 a.m. Pacific, Sponsor Google Cloud and Host, ISC2 share a grounded, pragmatic approach to adopting AI-driven application security. We break down the real-world mechanics of integrating AI-based scanners into CI/CD workflows, balancing token economics at scale, and strategies for mitigating model hallucinations.
1 Group A CPE
Ponentes: Victoria Geronimo, Cloud Security Architect & Amanda Chen, Cloud Security Architect, Google Cloud; Brandon Dunlap, Moderator
