
Equipping Developers for the Generative AI Era: Our Strategic Collaboration with AWS
The wall-to-wall coverage of seismic changes to our industry and beyond is clear evidence that software development is being augmented by generative and agentic AI technology on an unprecedented scale. While the speed and productivity gains of the latest generation of AI coding assistants are undeniable, a worrying trend has emerged. These powerful autonomous tools are being rapidly deployed in enterprise environments, yet many organizations are simply not equipped to address the inherent security issues associated with their use.
As enterprises race to adopt generative AI applications, an inherent level of risk is inevitably introduced into the software development life cycle. However, this risk dramatically increases when developers are not properly trained on the new tools and platforms they use. We have reached a point where human governance is paramount, and security leaders must prioritize modernizing their programs to adequately shield against AI-generated vulnerabilities.
This is why I am proud to announce that Secure Code Warrior has signed a strategic collaboration agreement with Amazon Web Services (AWS). Given the rapid evolution of the threat landscape, this strategic collaboration could not come at a more mission-critical moment for both security leaders and future-focused developers.
Through this agreement, we have launched new interactive, hands-on training modules within the Secure Code Warrior platform designed specifically for Amazon Bedrock, a fully managed service that makes it easy to build and scale generative AI applications. These Bedrock-specific secure coding modules focus on securing infrastructure-as-code with Terraform, guiding developers in mitigating risks unique to AI- and LLM-based applications.
In my view, developers need much more than theoretical guidance to navigate this new landscape safely; they require practical experience in identifying and mitigating real-world threats. Relying on flat training exercises or anecdotal data does little to uplift a security program or build true developer proficiency. Instead, developers need controlled, direct exposure to emerging vulnerabilities such as prompt injection, excessive agency, insufficient logging, and information exposure. By delivering new content that includes 4 Coding Labs, 4 AI Challenges, and 1 Walkthrough Mission, we are providing exactly this type of rigorous, practical experience.
Agentic models have increasing autonomy, and they must be treated with the same careful management and security oversight as the humans operating them. If an enterprise tech stack lacks tools that oversee developer security proficiency and the trustworthiness of AI coding companions, security initiatives will fall short. Our strategic collaboration with AWS directly addresses this gap by helping enterprise teams learn to confidently spot and address AI red flags.
Ultimately, our overarching goal is to empower teams to build AI applications that are secure by default. By fostering Secure by Design habits and continuous risk awareness, we can safely harness the power of agentic AI. If you don’t know where your code is coming from or the security proficiency of the developer guiding the AI, it stands to reason that this code should not be going into any repository (especially one containing sensitive data). With these new Amazon Bedrock modules, we are honored to illuminate a secure path forward for AI-assisted development.
To learn more about Secure Code Warrior’s new Bedrock modules, please visit the SCW learning content guide.


I am proud to announce that Secure Code Warrior has signed a strategic collaboration agreement with Amazon Web Services (AWS). Given the rapid evolution of the threat landscape, this strategic collaboration could not come at a more mission-critical moment for both security leaders and future-focused developers.
最高経営責任者(CEO)、会長、および共同設立者

Secure Code Warrior は、ソフトウェア開発ライフサイクル全体にわたってコードを保護し、サイバーセキュリティを最優先とする企業文化を創造するために、お客様の組織を支援します。AppSec マネージャー、開発者、CISO、またはセキュリティに関わるすべての人が、安全でないコードに関連するリスクを減らすことができるよう、支援します。
デモを予約する最高経営責任者(CEO)、会長、および共同設立者
Pieter Danhieuxは、セキュリティコンサルタントとして12年以上の経験を持ち、SANSの主席講師として8年間、組織、システム、個人をターゲットにしてセキュリティの弱点を評価する方法に関する攻撃的なテクニックを教えている、世界的に有名なセキュリティエキスパートです。2016年には、オーストラリアで最もクールな技術者の一人として認められ(Business Insider)、Cyber Security Professional of the Yearを受賞(AISA - Australian Information Security Association)、GSE、CISSP、GCIH、GCFA、GSEC、GPEN、GWAPT、GCIA認定を保有している。


The wall-to-wall coverage of seismic changes to our industry and beyond is clear evidence that software development is being augmented by generative and agentic AI technology on an unprecedented scale. While the speed and productivity gains of the latest generation of AI coding assistants are undeniable, a worrying trend has emerged. These powerful autonomous tools are being rapidly deployed in enterprise environments, yet many organizations are simply not equipped to address the inherent security issues associated with their use.
As enterprises race to adopt generative AI applications, an inherent level of risk is inevitably introduced into the software development life cycle. However, this risk dramatically increases when developers are not properly trained on the new tools and platforms they use. We have reached a point where human governance is paramount, and security leaders must prioritize modernizing their programs to adequately shield against AI-generated vulnerabilities.
This is why I am proud to announce that Secure Code Warrior has signed a strategic collaboration agreement with Amazon Web Services (AWS). Given the rapid evolution of the threat landscape, this strategic collaboration could not come at a more mission-critical moment for both security leaders and future-focused developers.
Through this agreement, we have launched new interactive, hands-on training modules within the Secure Code Warrior platform designed specifically for Amazon Bedrock, a fully managed service that makes it easy to build and scale generative AI applications. These Bedrock-specific secure coding modules focus on securing infrastructure-as-code with Terraform, guiding developers in mitigating risks unique to AI- and LLM-based applications.
In my view, developers need much more than theoretical guidance to navigate this new landscape safely; they require practical experience in identifying and mitigating real-world threats. Relying on flat training exercises or anecdotal data does little to uplift a security program or build true developer proficiency. Instead, developers need controlled, direct exposure to emerging vulnerabilities such as prompt injection, excessive agency, insufficient logging, and information exposure. By delivering new content that includes 4 Coding Labs, 4 AI Challenges, and 1 Walkthrough Mission, we are providing exactly this type of rigorous, practical experience.
Agentic models have increasing autonomy, and they must be treated with the same careful management and security oversight as the humans operating them. If an enterprise tech stack lacks tools that oversee developer security proficiency and the trustworthiness of AI coding companions, security initiatives will fall short. Our strategic collaboration with AWS directly addresses this gap by helping enterprise teams learn to confidently spot and address AI red flags.
Ultimately, our overarching goal is to empower teams to build AI applications that are secure by default. By fostering Secure by Design habits and continuous risk awareness, we can safely harness the power of agentic AI. If you don’t know where your code is coming from or the security proficiency of the developer guiding the AI, it stands to reason that this code should not be going into any repository (especially one containing sensitive data). With these new Amazon Bedrock modules, we are honored to illuminate a secure path forward for AI-assisted development.
To learn more about Secure Code Warrior’s new Bedrock modules, please visit the SCW learning content guide.

The wall-to-wall coverage of seismic changes to our industry and beyond is clear evidence that software development is being augmented by generative and agentic AI technology on an unprecedented scale. While the speed and productivity gains of the latest generation of AI coding assistants are undeniable, a worrying trend has emerged. These powerful autonomous tools are being rapidly deployed in enterprise environments, yet many organizations are simply not equipped to address the inherent security issues associated with their use.
As enterprises race to adopt generative AI applications, an inherent level of risk is inevitably introduced into the software development life cycle. However, this risk dramatically increases when developers are not properly trained on the new tools and platforms they use. We have reached a point where human governance is paramount, and security leaders must prioritize modernizing their programs to adequately shield against AI-generated vulnerabilities.
This is why I am proud to announce that Secure Code Warrior has signed a strategic collaboration agreement with Amazon Web Services (AWS). Given the rapid evolution of the threat landscape, this strategic collaboration could not come at a more mission-critical moment for both security leaders and future-focused developers.
Through this agreement, we have launched new interactive, hands-on training modules within the Secure Code Warrior platform designed specifically for Amazon Bedrock, a fully managed service that makes it easy to build and scale generative AI applications. These Bedrock-specific secure coding modules focus on securing infrastructure-as-code with Terraform, guiding developers in mitigating risks unique to AI- and LLM-based applications.
In my view, developers need much more than theoretical guidance to navigate this new landscape safely; they require practical experience in identifying and mitigating real-world threats. Relying on flat training exercises or anecdotal data does little to uplift a security program or build true developer proficiency. Instead, developers need controlled, direct exposure to emerging vulnerabilities such as prompt injection, excessive agency, insufficient logging, and information exposure. By delivering new content that includes 4 Coding Labs, 4 AI Challenges, and 1 Walkthrough Mission, we are providing exactly this type of rigorous, practical experience.
Agentic models have increasing autonomy, and they must be treated with the same careful management and security oversight as the humans operating them. If an enterprise tech stack lacks tools that oversee developer security proficiency and the trustworthiness of AI coding companions, security initiatives will fall short. Our strategic collaboration with AWS directly addresses this gap by helping enterprise teams learn to confidently spot and address AI red flags.
Ultimately, our overarching goal is to empower teams to build AI applications that are secure by default. By fostering Secure by Design habits and continuous risk awareness, we can safely harness the power of agentic AI. If you don’t know where your code is coming from or the security proficiency of the developer guiding the AI, it stands to reason that this code should not be going into any repository (especially one containing sensitive data). With these new Amazon Bedrock modules, we are honored to illuminate a secure path forward for AI-assisted development.
To learn more about Secure Code Warrior’s new Bedrock modules, please visit the SCW learning content guide.

以下のリンクをクリックし、この資料のPDFをダウンロードしてください。
Secure Code Warrior は、ソフトウェア開発ライフサイクル全体にわたってコードを保護し、サイバーセキュリティを最優先とする企業文化を創造するために、お客様の組織を支援します。AppSec マネージャー、開発者、CISO、またはセキュリティに関わるすべての人が、安全でないコードに関連するリスクを減らすことができるよう、支援します。
レポートを見るデモを予約する最高経営責任者(CEO)、会長、および共同設立者
Pieter Danhieuxは、セキュリティコンサルタントとして12年以上の経験を持ち、SANSの主席講師として8年間、組織、システム、個人をターゲットにしてセキュリティの弱点を評価する方法に関する攻撃的なテクニックを教えている、世界的に有名なセキュリティエキスパートです。2016年には、オーストラリアで最もクールな技術者の一人として認められ(Business Insider)、Cyber Security Professional of the Yearを受賞(AISA - Australian Information Security Association)、GSE、CISSP、GCIH、GCFA、GSEC、GPEN、GWAPT、GCIA認定を保有している。
The wall-to-wall coverage of seismic changes to our industry and beyond is clear evidence that software development is being augmented by generative and agentic AI technology on an unprecedented scale. While the speed and productivity gains of the latest generation of AI coding assistants are undeniable, a worrying trend has emerged. These powerful autonomous tools are being rapidly deployed in enterprise environments, yet many organizations are simply not equipped to address the inherent security issues associated with their use.
As enterprises race to adopt generative AI applications, an inherent level of risk is inevitably introduced into the software development life cycle. However, this risk dramatically increases when developers are not properly trained on the new tools and platforms they use. We have reached a point where human governance is paramount, and security leaders must prioritize modernizing their programs to adequately shield against AI-generated vulnerabilities.
This is why I am proud to announce that Secure Code Warrior has signed a strategic collaboration agreement with Amazon Web Services (AWS). Given the rapid evolution of the threat landscape, this strategic collaboration could not come at a more mission-critical moment for both security leaders and future-focused developers.
Through this agreement, we have launched new interactive, hands-on training modules within the Secure Code Warrior platform designed specifically for Amazon Bedrock, a fully managed service that makes it easy to build and scale generative AI applications. These Bedrock-specific secure coding modules focus on securing infrastructure-as-code with Terraform, guiding developers in mitigating risks unique to AI- and LLM-based applications.
In my view, developers need much more than theoretical guidance to navigate this new landscape safely; they require practical experience in identifying and mitigating real-world threats. Relying on flat training exercises or anecdotal data does little to uplift a security program or build true developer proficiency. Instead, developers need controlled, direct exposure to emerging vulnerabilities such as prompt injection, excessive agency, insufficient logging, and information exposure. By delivering new content that includes 4 Coding Labs, 4 AI Challenges, and 1 Walkthrough Mission, we are providing exactly this type of rigorous, practical experience.
Agentic models have increasing autonomy, and they must be treated with the same careful management and security oversight as the humans operating them. If an enterprise tech stack lacks tools that oversee developer security proficiency and the trustworthiness of AI coding companions, security initiatives will fall short. Our strategic collaboration with AWS directly addresses this gap by helping enterprise teams learn to confidently spot and address AI red flags.
Ultimately, our overarching goal is to empower teams to build AI applications that are secure by default. By fostering Secure by Design habits and continuous risk awareness, we can safely harness the power of agentic AI. If you don’t know where your code is coming from or the security proficiency of the developer guiding the AI, it stands to reason that this code should not be going into any repository (especially one containing sensitive data). With these new Amazon Bedrock modules, we are honored to illuminate a secure path forward for AI-assisted development.
To learn more about Secure Code Warrior’s new Bedrock modules, please visit the SCW learning content guide.
始めるためのリソース
Trust Agent:AI - Secure and scale AI-Drive development
AI is writing code. Who’s governing it? With up to 50% of AI-generated code containing security weaknesses, managing AI risk is critical. Discover how SCW's Trust Agent: AI provides the real-time visibility, proactive governance, and targeted upskilling needed to scale AI-driven development securely.
OpenText アプリケーションセキュリティのパワー + Secure Code Warrior
OpenText Application Security and Secure Code Warrior combine vulnerability detection with AI Software Governance and developer capability. Together, they help organizations reduce risk, strengthen secure coding practices, and confidently adopt AI-driven development.
Secure Code Warrior corporate overview
Secure Code Warrior is an AI Software Governance platform designed to enable organizations to safely adopt AI-driven development by bridging the gap between development velocity and enterprise security. The platform addresses the "Visibility Gap," where security teams often lack insights into shadow AI coding tools and the origins of production code.
始めるためのリソース
Securing the Future of Software: Why Secure Code Warrior and KnowBe4 Are Joining Forces
I am thrilled to announce today an upcoming strategic partnership between Secure Code Warrior and KnowBe4. KnowBe4 is a world-renowned leader in comprehensively managing human and agentic AI risk, making them the perfect partner to help us distribute foundational security awareness to organizations across the globe.
Post-Quantum Cryptography: Quantum Computers Will Break Today’s Encryption – Are You Ready?
Post-quantum cryptography (PQC) is critical for protecting data from quantum computing threats. Learn how “harvest now, decrypt later” exposes risk and how developers can prepare for quantum-safe security.





.png)