Webinar Description
Key Takeaways
- Virtual workshop exploring autonomous security agents for triaging and remediation in software development
- Designed for security professionals, DevSecOps teams, CISOs and application security engineers
- Covers agentic workflows, deterministic orchestration and human-in-control security models
- Addresses scaling challenges in application security without proportional headcount increases
- Includes practical demonstrations of workflow configuration and token efficiency optimisation
Introduction
The Agentic Workflow Workshop: How to Put Agents to Work for Autonomous Triaging, Remediation and More is a virtual, on-demand session hosted by Cycode, scheduled for 27 August 2026. The workshop targets security professionals and technical leaders seeking to understand how autonomous agents can transform security operations within the software development lifecycle. As organisations increasingly adopt AI-assisted development tools, the velocity at which new code enters production has accelerated dramatically, creating corresponding pressure on security teams to identify and remediate vulnerabilities at scale.
The Shift Toward Agent-Driven Security
Traditional application security models rely heavily on human analysts to triage alerts, investigate findings and coordinate remediation efforts. This approach struggles to keep pace when development teams deploy code continuously and AI coding assistants generate substantial volumes of new functionality. The workshop examines an alternative model where autonomous agents handle routine security tasks while humans retain strategic oversight and approval authority.
This represents a meaningful shift in how security operations are structured. Rather than agents simply assisting human analysts, the model positions agents as primary actors that reason over contextual information and execute predefined workflows independently. Human involvement becomes focused on scoping agent permissions, approving high-impact actions and reviewing audit trails rather than performing repetitive analytical tasks.
Technical Focus Areas
The session covers several interconnected technical concepts central to implementing agentic security workflows. Agentic reasoning refers to the capacity of AI agents to analyse security findings within their broader context, considering factors such as code ownership, deployment environment and historical patterns when determining appropriate responses. This contrasts with rule-based automation that applies identical logic regardless of circumstances.
Deterministic orchestration ensures that despite the flexibility of agentic reasoning, workflows execute predictably according to defined parameters. This addresses a common concern with autonomous systems: the need for consistent, auditable behaviour in security-critical processes.
The workshop also addresses token efficiency, an increasingly relevant consideration as organisations scale their use of large language models. Optimising how agents consume computational resources directly affects operational costs and response latency in production environments.
Practical Workshop Content
Attendees will observe demonstrations of three distinct workflow implementations, providing concrete examples of how agentic systems handle real security scenarios. The session covers the mechanics of defining triggers that initiate agent activity, constructing multi-agent flows where specialised agents collaborate on complex tasks, and configuring the control mechanisms that maintain human oversight.
The workshop draws on implementation experience from production deployments, offering guidance on common pitfalls and effective configuration patterns. This practical orientation distinguishes the session from purely conceptual discussions of agentic AI.
Relevance for Security Teams
The challenges addressed by agentic workflows reflect broader pressures facing application security programmes. Security teams frequently encounter alert volumes that exceed their capacity for thorough investigation, forcing difficult prioritisation decisions. Meanwhile, the adoption of AI coding tools in development organisations has compressed timelines further, with generated code requiring the same security scrutiny as human-written code but arriving at greater velocity.
For organisations unable to scale security headcount proportionally to development output, automation represents a necessary adaptation. The workshop explores how this automation can be implemented without sacrificing the contextual judgement that experienced security professionals provide.
Who Should Attend
The workshop is suited to security professionals responsible for application security programmes, DevSecOps practitioners integrating security into continuous delivery pipelines, product managers overseeing security tooling decisions, and technical leaders evaluating automation strategies. The content assumes familiarity with software development lifecycle security concepts and application security posture management principles.

