Checkmarx Developer Assist launch brings AI security into coding

Checkmarx is expanding its application security strategy with Checkmarx Developer Assist, an autonomous AI capability designed to detect, fix and validate vulnerabilities while developers are still writing code. Rather than adding another security checkpoint, the company is embedding remediation directly into the development workflow.
The move comes as AI-generated code becomes the norm, creating new pressure on security teams to keep pace without slowing software delivery.
Why Checkmarx Developer Assist matters for secure software development
According to Checkmarx, almost every developer now uses AI coding tools, yet only a small fraction applies security continuously during development. The company argues that separating vulnerability detection from remediation is no longer practical in AI-driven development.
Integrated into the Checkmarx One platform, Developer Assist automatically identifies vulnerabilities, retrieves security context, generates fixes and validates them before code is committed. Developers using modern AI coding environments or command-line interfaces can access the same workflow without changing their existing tools.
AI-powered application security moves beyond detection
Beyond pre-commit security, Checkmarx Assist extends automation into vulnerability triage and remediation. Once code reaches the backlog, AI agents prioritise exploitable risks instead of simply ranking vulnerabilities by severity. They then generate merge-ready pull requests, allowing developers to review and approve fixes while application security teams maintain policy control and traceability.
The approach shifts security from reactive scanning to continuous remediation, reducing manual effort without removing developer oversight.
Read More:
Why managed AI services are replacing one-time AI projects
Sophos Threat Research flags surge in identity-based ransomware
Akamai Cybersecurity research reveals 63% surge in APAC AI bot attacks






