Will there be more security engineers in the future, or fewer?
Blog post from Semgrep
A private event featuring Anthropic's Deputy CISO Jason Clinton and ex-OpenAI CISO Matt Knight sparked a conversation about the future of application security (AppSec) in the age of foundation models, which are increasingly adept at discovering vulnerabilities. Despite the asymmetry in vulnerability discovery between attackers and defenders, recent advancements, such as Anthropic's Opus 4.6, have enabled significant findings without specialized tools, suggesting a shift in the security landscape. While some AppSec vendors criticize the security of code generated by large language models (LLMs) like Claude Code Security, others, including Meta and OpenAI, are already using tools like Semgrep to enhance model outputs, signaling potential for LLMs to surpass average developers in writing secure code. The evolution of Semgrep into a multimodal tool for agents demonstrates a move towards integrating LLMs with deterministic tools, aiming to reduce vulnerabilities and enhance security engineering. This shift is likely to create opportunities for independent security vendors and ensure continued demand for security engineers as code generation becomes more prevalent and cost-effective.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| LLM | 6 | 6,078 | 960 | 218 | +18% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.