Insights & Analysis
Expert perspectives on federal cybersecurity, application security tools, and DevSecOps best practices

Software Composition Analysis for AI-Generated Code: Challenges, Lessons, and Best Practices
AI coding assistants accelerate dependency decisions as well as code. Learn how to combine software composition analysis, SBOMs, provenance checks, contextual triage, and human review to manage the resulting supply-chain risk.
Aug 6, 2026
The Hidden Risk in AI-Generated Code: Why Static Analysis is Your First Line of Defense
AI coding assistants are changing how software gets built — but the code they generate carries hidden security risks. Learn how static analysis tools like Semgrep, CodeQL, and Snyk Code help teams catch vulnerabilities before they reach production.
Aug 6, 2026

Building Secure Government and Compliance Software in the Age of AI
Jun 5, 2026
