One of the challenges my team faces is the large number of duplicate findings across different scanners. For example, the same SQL Injection vulnerability may be reported by SAST and DAST scanners, which may result in duplicate work being passed on to developers. With the advent of new AI capabilities, there’s a big potential in leveraging AI to correlate vulnerability findings to reduce duplication of work, and that’s exactly what my team is exploring with ArmorCode’s new AI Correlation capabilities. We believe AI can solve many of the long-standing problems in AppSec and we’re excited to expand on our adoption of ArmorCode to explore their AI offerings.

Renan Dias
Engineering Manager, Security Engineering, VTS