AI-Powered AppSec: 10x Your Security Team Without Scaling Headcount

Anshuman Bhartiya

BSidesSF 2026 · Day 1 · AMC Theatre 10

Anshuman Bhartiya, AppSec Tech Lead at Lyft, presented a compelling talk on leveraging Artificial Intelligence to dramatically enhance application security capabilities without the need for proportional headcount increases. Titled "AI-Powered AppSec: 10x Your Security Team Without Scaling Headcount," the session at BSides SF delved into how AI can serve as a force multiplier, tackling the pervasive "security scaling crisis" that plagues modern software development. Bhartiya introduced **Priscia**, an internal platform developed at Lyft, showcasing its practical application in three critical AppSec domains: automated pull request (PR) security analysis, intelligent Static Application Security Testing (SAST) triage, and AI-powered AppSec design review automation.

AI review

Bhartiya is doing real work at Lyft and isn't bullshitting — Priscia exists, the numbers are concrete, and the open-sourced run_vibes tool gives attendees something to actually touch. For a BSides SF slot aimed at AppSec practitioners, this earns its keep. It's not novel research; it's a practitioner sharing what worked, which is exactly what a case study lane is supposed to deliver.

Watch on YouTube