AIW-306Cybersecurity & Threat
AI-Assisted Vulnerability Remediation: SAST, Secrets and SCA
What you leave with
An AI-assisted remediation standard: decision tables per finding type, versioned rules and skills, validation gates, a golden set with pass criteria for model changes, and a suppression policy with a person approving every allowlist change.
Same obligation, two realities
Early-stage and SMESmall team: one engineer writes the rules and reviews the output, so scope stays narrow and every suppression is manual.
Enterprisea triage team, several scanners and a platform team that swaps models, so a golden set, shadow runs and named suppression approvers carry the load.
How the course runs
- The obligation: where the responsibility comes from, cited by section.
- Two realities: how it is met in a small organisation and in an enterprise.
- The method: step-by-step practice with templates and edge cases.
- Paired labs: complete the one matching your work, read the other.
- Artefact and assessment: submit the artefact; a rubric and a short scenario quiz decide the certificate.