The Model That Wrote Your Code Can’t Secure It A practitioner framework for governing AI-driven risk across the software development lifecycle, and why architectural independence is the only defense that holds. AI coding tools accelerate development. They also introduce vulnerabilities at scale, hallucinate security findings, and cannot audit the supply chains they’re embedded in. Asking an LLM to certify the safety of its own code is asking the student to grade their own exam. This paper explains why, and what to do about it. Why LLMs cannot govern their own security, and why future better models won’t fix it The four control points in the AI development lifecycle where independent governance must be applied Independent vulnerability detection test: Checkmarx AI-Augmented SAST vs. Claude Opus 4.7 A hybrid deterministic-plus-AI architecture that provides ground truth no LLM can fabricate or bypass A five-dimension governance framework for assessing and closing your current posture gaps Thumbnails Document Outline Attachments Layers Current Outline Item Previous Next Highlight All Match Case Match Diacritics Whole Words Highlight color Thickness Show all Color Size Color Thickness Opacity Add image Open Print Save Current Page Go to First Page Go to Last Page Rotate Clockwise Rotate Counterclockwise Text Selection Tool Hand Tool Page Scrolling Vertical Scrolling Horizontal Scrolling Wrapped Scrolling No Spreads Odd Spreads Even Spreads Document Properties… Toggle Sidebar Find Previous Next Highlight Text Draw Add or edit images Presentation Mode Print Save Tools Zoom Out Zoom In Automatic Zoom Actual Size Page Fit Page Width 0% 50% 75% 100% 125% 150% 200% 300% 400% Enter the password to open this PDF file: Cancel OK File name: - File size: - Title: - Author: - Subject: - Keywords: - Creation Date: - Modification Date: - Creator: - PDF Producer: - PDF Version: - Page Count: - Page Size: - Fast Web View: - Close Choose an option Alt text (alternative text) helps when people can’t see the image or when it doesn’t load. Add a description Aim for 1-2 sentences that describe the subject, setting, or actions. Mark as decorative This is used for ornamental images, like borders or watermarks. Cancel Save Preparing document for printing… 0% Cancel