FS Software Security & AI: Key Recommendations
Course
Chris Wysopal shares critical findings from the latest software security and AI reports for financial services, offering actionable recommendations to enhance security practices and address emerging vulnerabilities.
Financial services organizations face a critical application security paradox: while more applications are achieving secure-by-design benchmarks against the OWASP Top 10, the time required to remediate discovered flaws has increased dramatically over the past 15 years.
As development cycles accelerate and applications grow larger and more complex, security debt - unresolved vulnerabilities over a year old - has become endemic across the industry, with critical flaws disproportionately concentrated in open-source dependencies.
This session, led by Chris Wysopal, chief security evangelist at Veracode, will cover:
- The growing gap between vulnerability discovery and remediation;
- Generative AI code security findings: vulnerability rates across major LLMs and programming languages, and why AI tools have not improved over two years;
- Fixed capacity as a key metric: how organizations without security debt differ from those carrying long-term vulnerabilities.
Here is the course outline:
Top Recommendations From the Financial Services State of Software Security and AI Reports |
Completion
The following certificates are awarded when the course is completed:
![]() |
CPE Credit Certificate |
