Q: 9
Integrating AI-powered Static Application Security Testing (SAST) tools into a modern
DevSecOps pipeline aims to reduce the high volume of false positives typically generated
by legacy rule-based engines. A security team observes that while the new AI model
identifies complex data-flow vulnerabilities, it frequently flags deprecated libraries as
critical risks without considering the deployment context in virtual containers.
Which of the following approaches BEST utilizes AI to optimize the code scanning process
in this scenario?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.