[Workshop] Securing the Agentic SDLC: Governance, Trust & AI-Powered Security Remediation
Session Overview

AI is moving into software development faster than many engineering teams are ready for. While AI can accelerate coding, testing, and delivery, concerns around security, governance, compliance, reliability, and loss of control are holding many organizations back from adopting it more deeply across the SDLC.
So how do you move forward without taking unnecessary risks?
In this session, Andrew Haschka, Field CTO, Asia Pacific & Japan at GitLab, and Ethan Cao, CTO of Kaopiz Global, will explore how organizations can adopt AI across the SDLC while maintaining the governance, security, and human oversight needed for enterprise environments. From agentic AI governance and intelligent orchestration to shift-left security and AI-powered remediation, they will share both the strategic direction of modern DevSecOps and practical lessons from Kaopiz Global’s own AI adoption journey.
Through real-world examples, you’ll see how AI can be applied across requirements, architecture, development, testing, security, and delivery, and where organizations should introduce guardrails, human oversight, and governance before giving AI greater autonomy.
“The question is no longer whether AI belongs in the SDLC. It’s how to adopt it in a way your engineering and security teams can trust.”
Join in person or online:
- In person: Kaopiz Hanoi Office, 4F, CT1 – C14 Bac Ha Building, To Huu Street, Dai Mo Ward, Hanoi. Seats are limited — register early to secure a spot.
- Online: Join live via Zoom from anywhere. The meeting link is active for all registered attendees.
Speakers & Host
Andrew Haschka
Field CTO, Asia Pacific & Japan at GitLab
Why Join Kaopiz Events
AI can accelerate development, but not every task should be automated. Understand where AI can create value across requirements, architecture, development, testing, security, and delivery, and where human expertise should remain in control.
Security, compliance, and reliability concerns can hold teams back from deeper AI adoption. Explore how shift-left security, governance, human oversight, and AI-powered remediation can help teams adopt AI with greater confidence.
As AI moves from assisting developers to planning, orchestrating, and executing tasks, traditional controls may no longer be enough. Learn how to approach agentic AI governance, access, accountability, and human-in-the-loop controls.
More AI does not automatically mean better engineering. Learn how to measure whether AI is actually improving development speed, quality, security, reliability, and delivery performance.
Go beyond the success stories. Hear what worked, what created friction, what failed to scale, and what Kaopiz Global learned from applying AI across its own software delivery workflows.
Agenda
4:00 – 4:05 PM
Welcome & IntroductionSetting the stage for the agentic shift in software development.
Why security, governance, and trust are becoming critical as AI takes on more responsibility
4:05 – 4:30 PM
The AI-Driven DevSecOps FrontierHow AI agents and intelligent orchestration are reshaping software delivery
The evolution of shift-left security, agentic AI governance, and unified DevSecOps
4:30 – 4:55 PM
AI Across the Software Development Life CycleHow Kaopiz Global is applying AI across development, testing, security, and delivery
Real-world use cases, the Kari case study, and lessons from moving AI beyond experimentation
4:55 – 5:25 PM
Securing the Agentic Software Development Life CycleHow do we protect, control, and trust AI agents as they gain more autonomy?
- Securing AI-generated code and AI-driven workflows
- Managing agent access and autonomy
- Human oversight and governance
- AI-powered security detection and remediation
- Turning security and compliance into continuous guardrails
5:25 – 6:00 PM
Q&A & ClosingOpen Q&A with Andrew Haschka and Ethan Cao, followed by key takeaways and practical next steps for adopting AI securely across the SDLC.
Secure Your Spot
Please complete the form below to register.