
Equipping Developers for the Generative AI Era: Our Strategic Collaboration with AWS
The wall-to-wall coverage of seismic changes to our industry and beyond is clear evidence that software development is being augmented by generative and agentic AI technology on an unprecedented scale. While the speed and productivity gains of the latest generation of AI coding assistants are undeniable, a worrying trend has emerged. These powerful autonomous tools are being rapidly deployed in enterprise environments, yet many organizations are simply not equipped to address the inherent security issues associated with their use.
As enterprises race to adopt generative AI applications, an inherent level of risk is inevitably introduced into the software development life cycle. However, this risk dramatically increases when developers are not properly trained on the new tools and platforms they use. We have reached a point where human governance is paramount, and security leaders must prioritize modernizing their programs to adequately shield against AI-generated vulnerabilities.
This is why I am proud to announce that Secure Code Warrior has signed a strategic collaboration agreement with Amazon Web Services (AWS). Given the rapid evolution of the threat landscape, this strategic collaboration could not come at a more mission-critical moment for both security leaders and future-focused developers.
Through this agreement, we have launched new interactive, hands-on training modules within the Secure Code Warrior platform designed specifically for Amazon Bedrock, a fully managed service that makes it easy to build and scale generative AI applications. These Bedrock-specific secure coding modules focus on securing infrastructure-as-code with Terraform, guiding developers in mitigating risks unique to AI- and LLM-based applications.
In my view, developers need much more than theoretical guidance to navigate this new landscape safely; they require practical experience in identifying and mitigating real-world threats. Relying on flat training exercises or anecdotal data does little to uplift a security program or build true developer proficiency. Instead, developers need controlled, direct exposure to emerging vulnerabilities such as prompt injection, excessive agency, insufficient logging, and information exposure. By delivering new content that includes 4 Coding Labs, 4 AI Challenges, and 1 Walkthrough Mission, we are providing exactly this type of rigorous, practical experience.
Agentic models have increasing autonomy, and they must be treated with the same careful management and security oversight as the humans operating them. If an enterprise tech stack lacks tools that oversee developer security proficiency and the trustworthiness of AI coding companions, security initiatives will fall short. Our strategic collaboration with AWS directly addresses this gap by helping enterprise teams learn to confidently spot and address AI red flags.
Ultimately, our overarching goal is to empower teams to build AI applications that are secure by default. By fostering Secure by Design habits and continuous risk awareness, we can safely harness the power of agentic AI. If you don’t know where your code is coming from or the security proficiency of the developer guiding the AI, it stands to reason that this code should not be going into any repository (especially one containing sensitive data). With these new Amazon Bedrock modules, we are honored to illuminate a secure path forward for AI-assisted development.
To learn more about Secure Code Warrior’s new Bedrock modules, please visit the SCW learning content guide.


I am proud to announce that Secure Code Warrior has signed a strategic collaboration agreement with Amazon Web Services (AWS). Given the rapid evolution of the threat landscape, this strategic collaboration could not come at a more mission-critical moment for both security leaders and future-focused developers.
Chief Executive Officer, Chairman, and Co-Founder

Secure Code Warrior is here for your organization to help you secure code across the entire software development lifecycle and create a culture in which cybersecurity is top of mind. Whether you’re an AppSec Manager, Developer, CISO, or anyone involved in security, we can help your organization reduce risks associated with insecure code.
Book a demoChief Executive Officer, Chairman, and Co-Founder
Pieter Danhieux is a globally recognized security expert, with over 12 years experience as a security consultant and 8 years as a Principal Instructor for SANS teaching offensive techniques on how to target and assess organizations, systems and individuals for security weaknesses. In 2016, he was recognized as one of the Coolest Tech people in Australia (Business Insider), awarded Cyber Security Professional of the Year (AISA - Australian Information Security Association) and holds GSE, CISSP, GCIH, GCFA, GSEC, GPEN, GWAPT, GCIA certifications.


The wall-to-wall coverage of seismic changes to our industry and beyond is clear evidence that software development is being augmented by generative and agentic AI technology on an unprecedented scale. While the speed and productivity gains of the latest generation of AI coding assistants are undeniable, a worrying trend has emerged. These powerful autonomous tools are being rapidly deployed in enterprise environments, yet many organizations are simply not equipped to address the inherent security issues associated with their use.
As enterprises race to adopt generative AI applications, an inherent level of risk is inevitably introduced into the software development life cycle. However, this risk dramatically increases when developers are not properly trained on the new tools and platforms they use. We have reached a point where human governance is paramount, and security leaders must prioritize modernizing their programs to adequately shield against AI-generated vulnerabilities.
This is why I am proud to announce that Secure Code Warrior has signed a strategic collaboration agreement with Amazon Web Services (AWS). Given the rapid evolution of the threat landscape, this strategic collaboration could not come at a more mission-critical moment for both security leaders and future-focused developers.
Through this agreement, we have launched new interactive, hands-on training modules within the Secure Code Warrior platform designed specifically for Amazon Bedrock, a fully managed service that makes it easy to build and scale generative AI applications. These Bedrock-specific secure coding modules focus on securing infrastructure-as-code with Terraform, guiding developers in mitigating risks unique to AI- and LLM-based applications.
In my view, developers need much more than theoretical guidance to navigate this new landscape safely; they require practical experience in identifying and mitigating real-world threats. Relying on flat training exercises or anecdotal data does little to uplift a security program or build true developer proficiency. Instead, developers need controlled, direct exposure to emerging vulnerabilities such as prompt injection, excessive agency, insufficient logging, and information exposure. By delivering new content that includes 4 Coding Labs, 4 AI Challenges, and 1 Walkthrough Mission, we are providing exactly this type of rigorous, practical experience.
Agentic models have increasing autonomy, and they must be treated with the same careful management and security oversight as the humans operating them. If an enterprise tech stack lacks tools that oversee developer security proficiency and the trustworthiness of AI coding companions, security initiatives will fall short. Our strategic collaboration with AWS directly addresses this gap by helping enterprise teams learn to confidently spot and address AI red flags.
Ultimately, our overarching goal is to empower teams to build AI applications that are secure by default. By fostering Secure by Design habits and continuous risk awareness, we can safely harness the power of agentic AI. If you don’t know where your code is coming from or the security proficiency of the developer guiding the AI, it stands to reason that this code should not be going into any repository (especially one containing sensitive data). With these new Amazon Bedrock modules, we are honored to illuminate a secure path forward for AI-assisted development.
To learn more about Secure Code Warrior’s new Bedrock modules, please visit the SCW learning content guide.

The wall-to-wall coverage of seismic changes to our industry and beyond is clear evidence that software development is being augmented by generative and agentic AI technology on an unprecedented scale. While the speed and productivity gains of the latest generation of AI coding assistants are undeniable, a worrying trend has emerged. These powerful autonomous tools are being rapidly deployed in enterprise environments, yet many organizations are simply not equipped to address the inherent security issues associated with their use.
As enterprises race to adopt generative AI applications, an inherent level of risk is inevitably introduced into the software development life cycle. However, this risk dramatically increases when developers are not properly trained on the new tools and platforms they use. We have reached a point where human governance is paramount, and security leaders must prioritize modernizing their programs to adequately shield against AI-generated vulnerabilities.
This is why I am proud to announce that Secure Code Warrior has signed a strategic collaboration agreement with Amazon Web Services (AWS). Given the rapid evolution of the threat landscape, this strategic collaboration could not come at a more mission-critical moment for both security leaders and future-focused developers.
Through this agreement, we have launched new interactive, hands-on training modules within the Secure Code Warrior platform designed specifically for Amazon Bedrock, a fully managed service that makes it easy to build and scale generative AI applications. These Bedrock-specific secure coding modules focus on securing infrastructure-as-code with Terraform, guiding developers in mitigating risks unique to AI- and LLM-based applications.
In my view, developers need much more than theoretical guidance to navigate this new landscape safely; they require practical experience in identifying and mitigating real-world threats. Relying on flat training exercises or anecdotal data does little to uplift a security program or build true developer proficiency. Instead, developers need controlled, direct exposure to emerging vulnerabilities such as prompt injection, excessive agency, insufficient logging, and information exposure. By delivering new content that includes 4 Coding Labs, 4 AI Challenges, and 1 Walkthrough Mission, we are providing exactly this type of rigorous, practical experience.
Agentic models have increasing autonomy, and they must be treated with the same careful management and security oversight as the humans operating them. If an enterprise tech stack lacks tools that oversee developer security proficiency and the trustworthiness of AI coding companions, security initiatives will fall short. Our strategic collaboration with AWS directly addresses this gap by helping enterprise teams learn to confidently spot and address AI red flags.
Ultimately, our overarching goal is to empower teams to build AI applications that are secure by default. By fostering Secure by Design habits and continuous risk awareness, we can safely harness the power of agentic AI. If you don’t know where your code is coming from or the security proficiency of the developer guiding the AI, it stands to reason that this code should not be going into any repository (especially one containing sensitive data). With these new Amazon Bedrock modules, we are honored to illuminate a secure path forward for AI-assisted development.
To learn more about Secure Code Warrior’s new Bedrock modules, please visit the SCW learning content guide.

Click on the link below and download the PDF of this resource.
Secure Code Warrior is here for your organization to help you secure code across the entire software development lifecycle and create a culture in which cybersecurity is top of mind. Whether you’re an AppSec Manager, Developer, CISO, or anyone involved in security, we can help your organization reduce risks associated with insecure code.
View reportBook a demoChief Executive Officer, Chairman, and Co-Founder
Pieter Danhieux is a globally recognized security expert, with over 12 years experience as a security consultant and 8 years as a Principal Instructor for SANS teaching offensive techniques on how to target and assess organizations, systems and individuals for security weaknesses. In 2016, he was recognized as one of the Coolest Tech people in Australia (Business Insider), awarded Cyber Security Professional of the Year (AISA - Australian Information Security Association) and holds GSE, CISSP, GCIH, GCFA, GSEC, GPEN, GWAPT, GCIA certifications.
The wall-to-wall coverage of seismic changes to our industry and beyond is clear evidence that software development is being augmented by generative and agentic AI technology on an unprecedented scale. While the speed and productivity gains of the latest generation of AI coding assistants are undeniable, a worrying trend has emerged. These powerful autonomous tools are being rapidly deployed in enterprise environments, yet many organizations are simply not equipped to address the inherent security issues associated with their use.
As enterprises race to adopt generative AI applications, an inherent level of risk is inevitably introduced into the software development life cycle. However, this risk dramatically increases when developers are not properly trained on the new tools and platforms they use. We have reached a point where human governance is paramount, and security leaders must prioritize modernizing their programs to adequately shield against AI-generated vulnerabilities.
This is why I am proud to announce that Secure Code Warrior has signed a strategic collaboration agreement with Amazon Web Services (AWS). Given the rapid evolution of the threat landscape, this strategic collaboration could not come at a more mission-critical moment for both security leaders and future-focused developers.
Through this agreement, we have launched new interactive, hands-on training modules within the Secure Code Warrior platform designed specifically for Amazon Bedrock, a fully managed service that makes it easy to build and scale generative AI applications. These Bedrock-specific secure coding modules focus on securing infrastructure-as-code with Terraform, guiding developers in mitigating risks unique to AI- and LLM-based applications.
In my view, developers need much more than theoretical guidance to navigate this new landscape safely; they require practical experience in identifying and mitigating real-world threats. Relying on flat training exercises or anecdotal data does little to uplift a security program or build true developer proficiency. Instead, developers need controlled, direct exposure to emerging vulnerabilities such as prompt injection, excessive agency, insufficient logging, and information exposure. By delivering new content that includes 4 Coding Labs, 4 AI Challenges, and 1 Walkthrough Mission, we are providing exactly this type of rigorous, practical experience.
Agentic models have increasing autonomy, and they must be treated with the same careful management and security oversight as the humans operating them. If an enterprise tech stack lacks tools that oversee developer security proficiency and the trustworthiness of AI coding companions, security initiatives will fall short. Our strategic collaboration with AWS directly addresses this gap by helping enterprise teams learn to confidently spot and address AI red flags.
Ultimately, our overarching goal is to empower teams to build AI applications that are secure by default. By fostering Secure by Design habits and continuous risk awareness, we can safely harness the power of agentic AI. If you don’t know where your code is coming from or the security proficiency of the developer guiding the AI, it stands to reason that this code should not be going into any repository (especially one containing sensitive data). With these new Amazon Bedrock modules, we are honored to illuminate a secure path forward for AI-assisted development.
To learn more about Secure Code Warrior’s new Bedrock modules, please visit the SCW learning content guide.
Table of contents
Chief Executive Officer, Chairman, and Co-Founder

Secure Code Warrior is here for your organization to help you secure code across the entire software development lifecycle and create a culture in which cybersecurity is top of mind. Whether you’re an AppSec Manager, Developer, CISO, or anyone involved in security, we can help your organization reduce risks associated with insecure code.
Book a demoDownloadResources to get you started
Trust Agent:AI - Secure and scale AI-Drive development
AI is writing code. Who’s governing it? With up to 50% of AI-generated code containing security weaknesses, managing AI risk is critical. Discover how SCW's Trust Agent: AI provides the real-time visibility, proactive governance, and targeted upskilling needed to scale AI-driven development securely.
The Power of OpenText Application Security + Secure Code Warrior
OpenText Application Security and Secure Code Warrior combine vulnerability detection with AI Software Governance and developer capability. Together, they help organizations reduce risk, strengthen secure coding practices, and confidently adopt AI-driven development.
Secure Code Warrior corporate overview
Secure Code Warrior is an AI Software Governance platform designed to enable organizations to safely adopt AI-driven development by bridging the gap between development velocity and enterprise security. The platform addresses the "Visibility Gap," where security teams often lack insights into shadow AI coding tools and the origins of production code.
Resources to get you started
Securing the Future of Software: Why Secure Code Warrior and KnowBe4 Are Joining Forces
I am thrilled to announce today an upcoming strategic partnership between Secure Code Warrior and KnowBe4. KnowBe4 is a world-renowned leader in comprehensively managing human and agentic AI risk, making them the perfect partner to help us distribute foundational security awareness to organizations across the globe.
Post-Quantum Cryptography: Quantum Computers Will Break Today’s Encryption – Are You Ready?
Post-quantum cryptography (PQC) is critical for protecting data from quantum computing threats. Learn how “harvest now, decrypt later” exposes risk and how developers can prepare for quantum-safe security.





.png)