SecurityBrief Asia - Technology news for CISOs & cybersecurity decision-makers
Story image

GitLab unveils AI-driven DevSecOps integration with Amazon Q

Today

GitLab has announced the general availability of GitLab Duo with Amazon Q for its Ultimate self-managed customers on Amazon Web Services (AWS).

The new integration embeds Amazon Q's software development agents directly into the GitLab DevSecOps platform, aiming to accelerate complex, multi-step tasks throughout the software development lifecycle.

The combined solution is designed to reduce the need for developers to switch between various tools and to streamline development cycles.

GitLab Duo with Amazon Q leverages Amazon Q Developer alongside existing GitLab Duo features such as code completion and explanation, chat functionality, vulnerability explanation and remediation, and root cause analysis. The bundle is intended to address several critical development challenges, including the automation of feature development, modernisation of legacy codebases, security vulnerability remediation, quality assurance, and code review optimisation.

According to GitLab, one of the major features includes autonomous feature development, which transforms new feature ideas from issues into merge-ready code, analysing requirements, planning implementation, and generating a merge request in line with organisational standards.

For legacy codebases, the solution automates Java 8 and 11 code refactoring, creating comprehensive upgrade plans and documented merge requests with an audit trail.

The integration also seeks to enhance security by reducing vulnerability remediation time, providing explanations, performing root cause analysis, and offering one-click remediation with recommended code changes. For quality assurance, GitLab Duo with Amazon Q generates automatic code reviews, minimising manual review efforts by interpreting application logic. The code review process is further optimised through inline feedback, improvement suggestions, and highlighting of potential security and performance issues.

Osmar Alonso, DevOps Engineer at Volkswagen Digital Solutions, commented on the early access programme: "Participating in the early access program for GitLab Duo with Amazon Q has given us a glimpse into its transformative potential for our development workflows. Even in its early stages, we saw how the deeper integration with autonomous agents could streamline our process, from code commit to production. We're excited to see how this technology empowers our team to focus on innovation and accelerate our digital transformation."

Liz Dobelstein, Manager, Build and Release Engineering at Availity, highlighted the need for integrated AI solutions within development workflows. "We're excited to see GitLab and AWS combine their strengths to bring agentic AI to life in software development," she said. "GitLab Duo with Amazon Q addresses critical challenges to harnessing AI's full potential, especially at a time when security and privacy are paramount. We're eager to see how this end-to-end DevSecOps experience transforms our development workflows."

Arnal Dayaratna, Research Vice President, Software Development at IDC, remarked on the practical impact of the integration. "GitLab Duo with Amazon Q is a significant advancement in making agentic AI practical for software development teams. By integrating Amazon Q's Developer agents directly into GitLab's unified platform, the joint offering streamlines workflows, enabling teams to significantly accelerate secure software delivery."

Deepak Singh, Vice President of Developer Agents and Experiences at AWS, addressed the automation capabilities enabled by the update. "With Amazon Q Developer agents embedded directly into GitLab Duo, we are automating complex development tasks," he said. "Developers can now focus on creative work while Amazon Q handles all the complex tasks from code modernisation to security remediation, helping organisations ship better software faster while maintaining enterprise security and compliance."

David DeSanto, Chief Product Officer at GitLab, added, "The general availability of GitLab Duo with Amazon Q marks a new era of seamless, AI-driven software development. Combining GitLab's comprehensive AI-powered DevSecOps platform with Amazon Q Developer agents empowers development teams to accelerate software innovation while ensuring security is deeply embedded across the entire software development lifecycle."

The GitLab Duo with Amazon Q bundle is available now for GitLab Ultimate self-managed users on AWS, offering a bundled approach to unifying the developer experience with agentic AI workflows.

Follow us on:
Follow us on LinkedIn Follow us on X
Share on:
Share on LinkedIn Share on X