Earlier quoted context omitted.
You have the right level of cynicism, but you should instead direct it at the field of DevSecOps as a whole. 98% of "SecOps" is utterly pointless boxchecking for ass-covering security certifications which waste immense amounts of time and enforce nothing meaningful. You could ABSOLUTELY 10x workflow efficiency there by plumbing the codebase for questions like: "What are all the OSS libraries you use, and the licenses…
Do you really need AI for that or a grep? Lol
Now excuse me because I have to finish my startup deck.