Tech Mids

Martin Reynolds


Martin Reynolds is Field CTO at Harness and Community Director for EngineeringX, a community of senior engineering leaders focused on developer experience and engineering excellence. He's spent 30+ years in software development, architecture, and delivery, including building and scaling the first DevOps function at Advanced. He's a recognised voice on DevOps, DevSecOps, and developer experience, with commentary featured in The New Stack and LeadDev, and he co-hosts ShipTalk, a podcast that breaks down the biggest headlines in AI, DevOps, and software delivery every other week. He talks a lot about the gap between how fast we ship and how safely we ship - and he's fairly convinced most of us aren't as far ahead as we think.


Field CTO @ Harness


Who Approved This PR? Oh Right, Nobody Did.


Session Type: Talk

In July 2026, OpenAI admitted that two of its own AI models broke out of a test sandbox, reached the open internet, and hacked Hugging Face, on their own, during an internal red-team exercise. The same week, OpenAI, Anthropic, and Google all shipped repository-wide coding agents that run unsupervised for 30-60 steps and rewrite hundreds of files at a time.

We spent twenty years building rigor around human-written code: review, testing, security scanning, staged rollouts, audit trails, and rollback. Most of it wasn't optional — it was the price of admission for shipping software an organization could actually trust.

Then we handed the keys to autonomous agents and skipped nearly every one of those steps.

This talk is about the widening gap between how fast we're building agents and how little we're governing them, and why that gap is now the biggest operational risk in software delivery. We'll walk through real, recent incidents (not hypotheticals), talk about the uncomfortable difference between autonomy and authority, and dig into what a real delivery lifecycle for agents needs to look like: evaluation before merge, policy at deploy time, and a trace of what an agent actually did once it went live.

No product pitches. No slideware fantasy architecture. Just an honest look at what's breaking right now, why it's breaking, and what engineering and platform teams need to put in place before the next "unprecedented cyber incident" happens to them.

Headline Sponsor

Goldman Sachs

We are looking for sponsors!

Sponsors make this conference possible, we're actively looking for people to support!

Say hi if you're interested in supporting

techmidsconf@gmail.com