AI and Security in AV Source Code
The landscape of AV Programming is evolving. Learn about the industry trends, standards based methodologies, and
the skills to bridge the gap.
This session will define how modern tools and languages provides new ways of working and new value to the AV Industry. Such as Automated Testing, AI chat/Agents, and Continuous Development. These tools and practices also require robust practices and systems to ensure systems remain secure.
We'll key in on Security in AV Source Code, and Compliance and Risk Mitigation. We'll define these terms and educate their relevance and increasing importance.
Secret scanning will scan code repositories and other data sources for sensitive information, such as passwords and access keys, tokens.
Static Application Security Testing (SAST) checks source code for weaknesses & vulnerabilities. Custom and Known.
Dependency Scanning Analyze external dependencies for known Vulnerabilities.
License Compliance Projects are searched for approved and blacklisted licenses defined by policies.
SBOM is a list of all the components. Including libraries, dependencies, and modules
We'll review several well know "hacks" with a fun guessing-game challenge as warm up. This will raise awareness to real word incidents and how a few already have impacted the AV Industry and forewarn of new potential risks.
We'll touch on AI tools and how they can be used in AV Source Code.
Top 10 ways to use AI tools to develop software. How can programmers embrace these tools successfully.
We'll demystify AI as a productivity tool and creating new machine learning algorithms. We'll share some examples and tips for how these can be deployed in real applications.

