BSIMM
BSIMM SSDL Touchpoints (Architecture Analysis, Code Review, Security Testing)

BSIMM ST1.4: Integrate opportunistic security testing into the pipeline

Security Testing. Security testing tools (DAST/IAST) are integrated into the pipeline so applications are tested as they are built.

Other controls in BSIMM SSDL Touchpoints (Architecture Analysis, Code Review, Security Testing)

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.