Session
Agentic DevSecOps: Autonomous Security Pipelines with AI Agents & Agentic Workflows
What if your security pipeline could find vulnerabilities, file issues, write fixes, run CI, and request human approval — all autonomously? In this hands-on session, we start with a polyglot microservices repo that has zero security tooling and progressively build a fully autonomous agentic DevSecOps pipeline using GitHub Copilot. You'll see how AI agents perform repo-wide security assessments, how custom instructions shape agent behavior across the SDLC, and how agentic workflows chain dependency scanning, SAST, and test coverage checks into a self-driving loop: scan → auto-create issues → Coding Agent fixes → CI validates → AI code review → human approves. We'll also build custom Copilot agents for IaC security scanning and use GitHub's agentic workflow capabilities to generate recurring security reports — no human trigger required. Walk away with a working, repeatable pattern for embedding autonomous AI agents and agentic workflows into every stage of your DevSecOps lifecycle.
Soham Dasgupta
Cloud Solution Architect @ Microsoft
Utrecht, The Netherlands
Links
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top