NotableotherCognition

Cognition Launches Devin Security Vulnerability Remediation Program

Published
Sep 17, 2026 — 14:49 UTC

Cognition Launches Devin Security Vulnerability Remediation Program

Cognition has unveiled the Devin Security Vulnerability Remediation Program, designed to clear existing vulnerability backlogs. This program utilizes the AI software Devin, which specializes in identifying, validating, and fixing security vulnerabilities.

The engagement typically spans approximately six weeks, divided into three phases:

  1. Weeks 1-2: Inventory high-risk applications, align on scope and priorities, configure Devin, and map remediation workflows.
  2. Weeks 3-4: Execute remediation at scale on the highest-priority repositories, while monitoring pull request (PR) velocity, merge rates, and backlog reduction.
  3. Weeks 5-6: Analyze initial results to forecast Devin's capacity and finalize a broad rollout plan.

The program aims to transition organizations from reactive to proactive security measures, addressing the growing threat posed by attackers leveraging AI to exploit vulnerabilities faster than traditional remediation methods can respond.

Devin's capabilities include uncovering and remediating threats such as business logic flaws and context-dependent exploit paths before they escalate into breaches. The program integrates with existing scanning tools like Snyk, SonarQube, Checkmarx, Semgrep, Wiz, and Veracode, enhancing their effectiveness with a continuous discovery and remediation system known as Devin Security Swarm.

This initiative follows a broader trend in the industry toward automated vulnerability management, emphasizing the need for rapid response mechanisms in the face of evolving cyber threats.

Summarised from Cognition Labs Blog's original report by the Turing Wire Newsdesk. Read the original for the full story.

Source: Cognition Labs Blog