Before Argonaut
Manual, Fragmented, Multi-System Triage
Trigger Event
CI pipeline completes. GitHub + SCA tool push new findings. Engineer receives SARIF alerts, Snyk notifications, emails, and Slack pings.
- Step 1: Tool Hopping (20-40m)Opening 8+ tools, downloading files, checking CVE pages manually. Cognitive overload.
- Step 2: Manual Correlation (30-60m)Grepping codebase, inspecting dependency tree, checking exploit reports. Heuristic guesswork.
- Step 3: Prioritization Guesswork (20m)Narrowing 800 findings down to 12. Subjective, not deterministic.
- Step 4: Action Creation (20-30m)Manually creating Jira tickets, linking CVEs, posting to Slack.
Total Time:
1.5 to 3 hours
Emotional State:
Cognitive overload, fatigue