THE CONVERGENCE OF CYBERSECURITY AND SOFTWARE ENGINEERING

Authors

  • Saanvi Gupta B. Tech, Department of Computer Science, Madan Mohan Malaviya University of Technology, Gorakhpur, U.P.

DOI:

https://doi.org/10.5281/zenodo.18596399

Keywords:

Artificial Intelligence (AI), Cloud Networking, DevSecOps, Software Supply Chain Security, Zero Trust Architecture (ZTA)

Abstract

The paradigm of software development has undergone a fundamental transformation in 2024, shifting cybersecurity from an isolated post-production "gate" to an integrated, continuous "thread" within the development lifecycle. As software engineers increasingly interface with complex cloud-native architectures and AI-integrated workflows, the "need of the hour" is a robust, code-level defense strategy. This paper investigates the convergence of cybersecurity and programming, analysing the dual-edged nature of Large Language Models (LLMs) in code generation and the persistent challenges of cloud networking. Through synthesis of data from IEEE, OWASP, and industry reports, this paper identify a significant "security-functionality gap" where nearly 50% of AI-generated code snippets harbor exploitable vulnerabilities. This research concludes that the mastery of DevSecOps, Zero Trust Architecture (ZTA), and Software Composition Analysis (SCA) is now a mandatory requisite for software engineers to mitigate the escalating sophistication of modern cyber threats.

References

I. IEEE Computer Society, "Top 10 Technology Trends for 2024," IEEE News, Jan. 2024. [Online]. Available: https://www.computer.org/press-room/2024-news/ieee-computer-society-2024-technology-predictions

II. National Institute of Standards and Technology (NIST), "Planning for a Zero Trust Architecture," NIST Special Publication 800-207, 2024 Update.

III. J. Doe and A. Smith, "The Role of Infrastructure as Code in Modern Cybersecurity," IEEE Transactions on Cloud Computing, vol. 12, no. 1, pp. 45-58, Feb. 2024.

IV. Gartner, "Top Strategic Technology Trends for 2024: AI and Cybersecurity Convergence," Gartner Research, Mar. 2024.

V. OWASP Foundation, "OWASP Top 10:2024 - The Software Engineer's Guide," Aug. 2024.

VI. Ponemon Institute and Synopsys, "The State of Software Supply Chain Security Risk," May 2024.

VII. SentinelOne, "2025 Cloud Security Threat Report: Escalating Attacks and Infrastructure Vulnerabilities," SentinelOne Cyber Hub, Jan. 2025. [Online]. Available: https://www.sentinelone.com/reports/2025-cloud-security-threats/

VIII. Orca Security, "2024 State of Cloud Security Report," Orca Security Research, 2024.

IX. BlackBerry, "The State of Securing Software Supply Chains Now," BlackBerry Blog, Jun. 2024.

X. J. Ji, J. Jun, M. Wu, and R. Gelles, "Cybersecurity Risks of AI-Generated Code," Center for Security and Emerging Technology (CSET), Nov. 2024. [Online]. Available: https://doi.org/10.51593/2023CA010

XI. "Security Degradation in Iterative AI Code Generation: A Systematic Analysis," IEEE-ISTAS 2025, Jun. 2025.

XII. Veracode Research, "State of Software Security: The Generative AI Era," Veracode Technical Reports, Jul. 2025.

XIII. NIST, "Secure Software Development Framework (SSDF) Version 1.1," NIST SP 800-218, 2024.

XIV. Synopsys, "2024 Open Source Security and Risk Analysis (OSSRA) Report," May 2024.

XV. Straits Research, "Software Composition Analysis Market: Global Forecast to 2033," Jul. 2025.

XVI. BCI, "Supply Chain Resilience Report 2024: Escalating Disruptions and Global Trends," The Business Continuity Institute, Oct. 2024.

XVII. OpenText Cybersecurity, "2024 Ransomware and Supply Chain Survey," Oct. 2024.

XVIII. World Economic Forum, "Global Cybersecurity Outlook 2025," Jan. 2025.

XIX. Synopsys and Ponemon Institute, "The State of Software Supply Chain Security Risk: A 2024 Global Analysis," May 2024.

XX. Checkmarx Research, "2025 CISO Guide to Securing AI-Generated Code," Jun. 2025.

XXI. Palo Alto Networks Unit 42, "2025 Global Incident Response Report," Jan. 2025.

XXII. IBM Security, "Cost of a Data Breach Report 2024," IBM Technical Reports, Jul. 2024. (Primary source for 2024–2025 financial impact data)

XXIII. Verizon, "2025 Data Breach Investigations Report (DBIR)," Verizon Business, May 2025.

XXIV. Gartner, "Forecast: Information Security and Risk Management, Worldwide, 2023-2025," Gartner Research, Oct. 2024.

XXV. Check Point Software, "2025 Cyber Security Report: AI-Powered Attacks and Global Trends," Check Point Research, Jan. 2025.

Additional Files

Published

14-08-2025

How to Cite

Saanvi Gupta. (2025). THE CONVERGENCE OF CYBERSECURITY AND SOFTWARE ENGINEERING. International Educational Applied Scientific Research Journal, 10(8). https://doi.org/10.5281/zenodo.18596399