Scaling AppSec Through Humans & Agents

Mudita Khurana April 17, 2026 Every engineering organization eventually reaches a point where AppSec simply can’t keep up. Review-by-review work doesn’t scale, yet the risk continues to grow with every new feature and product launch. This session shares a practical, real-world blueprint for building an AppSec program that scales with limited headcount. We’ll walk through how to design an AppSec strategy grounded in smart tooling and thoughtful human partnerships. On the tooling side, we’ll talk about secure defaults, LLM assisted automation, and tooling hacks can amplify detection coverage. On the people side, we’ll discuss how to build trust with engineering teams, how to use security champions and office hours effectively, and how to turn developers into force-multipliers for security.