AI Code Is Bypassing Security. Here’s How CISOs Fix the Shift Left.

Episode summary

In this episode of The Data Wire, host Shawn Rosemarin speaks with Dr. Ratinder Paul Singh Ahuja, CTO of Security at Everpure, 4-time security founder, and holder of over 70 patents. As citizen developers leverage generative AI tools to spin up enterprise apps in an afternoon, traditional DevSecOps gates are being bypassed. Discover how to execute "The Ultimate Shift Left" by embedding programmatic security harnesses, STRIDE threat modeling, and deterministic mechanical checkers directly into AI development workflows to produce provably correct, auditable software. Key Topics • The…

Chapters

  • 0:00 — – The Rise of the Citizen Developer
  • 0:43 — – Why Traditional SDLC Gates Fail with AI-Built Code
  • 3:00 — – What Makes the AI Threat Pace Different
  • 4:12 — – Supply Chain Risks in Machine-Authored Code
  • 6:02 — – Shadow AI, Autonomous Agents, and Admin Access Exposure
  • 9:08 — – Governing API Access to Critical Enterprise Systems
  • 11:18 — – Code-Level Vulnerabilities & $20,000 DoS Token Exhaustion
  • 13:15 — – The Ultimate Shift Left: Programmatic Security Wrappers
  • 19:08 — – Replacing LLM Judgment with Deterministic Mechanical Checkers
  • 22:07 — – Auditable Outcomes: Turning AI Defense into a Strategic Advantage

Leave a Reply

Discover more from ShawnRosemarin.com

Subscribe now to keep reading and get access to the full archive.

Continue reading