background image
2026 Agentic AppSec Summit

AI builds it. Who secures it?

AI didn’t just change how code is written; it reshaped the entire SDLC. Get the blueprint to secure what comes next.

This Year’s Summit

AI Coding & the ADLC

Trust the Agent – Verify the Code

AI coding assistants changed what gets shipped, this session maps the control points security teams must own before vulnerabilities reach production.

AI Coding & the ADLC

DevSecOps Is Dead. Meet AgentSecOps.

AI agents outpace security reviews, this session shows how leading organizations close the velocity-to-security gap without killing the pipeline.

AI Coding & the ADLC

From IDE to Runtime: Securing Every AI Code Touchpoint

AI-generated code introduces risk at every stage — IDE, PR, and runtime. This session maps what controls are required at each point and how to make them work at AI speed.

LLMs as Offensive Weapons + Hybrid Defense

LLMs Don't Just Build. They Break.

LLMs don't just write code, they write exploits. This session profiles the emerging offensive use of AI against software supply chains and applications, drawing on threat intelligence to show how attack sophistication and speed are compounding, and what a high-fidelity defensive posture requires.

LLMs as Offensive Weapons + Hybrid Defense

Precision Under Pressure: Why Accuracy Is the New Speed in AppSec

Alert fatigue is the enemy of agentic security. When remediation is automated, false positives become business risk. This session makes the case for a hybrid model: AI speed matched with expert-tuned accuracy, and what organizations should demand before trusting automated fixes.

LLMs as Offensive Weapons + Hybrid Defense

AI vs. AI: The New AppSec Arms Race

The models that build faster also attack deeper, this session maps the offensive LLM threat landscape and what defenders must do to stay ahead.

AI Supply Chain, Governance & Risk

Who's in Your AI Stack? Supply Chain Risk No One Is Governing

You deployed it. You're liable for it. You can't trace it, this session maps the AI supply chain blind spots that governance hasn't caught up to.

AI Supply Chain, Governance & Risk

The AI-BOM Imperative: Making AI Risk Visible to the Business

Boards are asking what AI is in your software, this session maps what an AI-BOM must contain and why it's become a business risk imperative.

AI Supply Chain, Governance & Risk

AI Risk Governance: From Audit Trail to Boardroom

AI is a business risk, this session maps how leading CISOs are connecting AI code, model dependencies, and agentic pipelines to regulatory readiness.

Why It Matters to You

AI builds faster than security was designed for. The agentic development lifecycle doesn’t pause for gates, reviews, or human checkpoints — and neither should your security.

The Gap Is Growing

AI agents design, generate, test, and deploy code continuously — with little human intervention. Traditional security built for slower workflows can’t keep up with the pace of the agentic development lifecycle.

1

Agentic Security for an Agentic World

Security built for gates and pauses fails in the ADLC era. From in-IDE guardrails and AI supply chain governance to autonomous triage — the new lifecycle demands a fundamentally new security model.

2

Where the Standard Gets Set

The 2nd Annual Agentic AppSec Summit by Checkmarx unites security leaders, developers, AI innovators, analysts, and ecosystem partners to define what secure agentic development actually looks like.

3

AI Builds It. 
We Secure It.

Checkmarx delivers language-agnostic SAST and autonomous remediation purpose-built for the ADLC — so your teams can ship at the speed of AI without trading away trust or control.

4

Get Event Updates

Be the first to know when speakers, sessions, and registration go live.

Unmissable Insights From 2025

Access now for clear and authoritative guidance on Agentic AI, including how it will change the way you approach AppSec forever.