The AI Risk Summit will drive the conversation forward with consequential dialogue and real-world examples that skip past the hype and provide meaningful guidance on risk management in the age of artificial intelligence. Register today to confirm your spot. Tickets also include access to the 2025 CISO Forum Summer Summit sessions.

Ash Ahuja, CISM
VP & Executive Partner, Security & Risk Management - Gartner
Ash Ahuja is a VP & Leadership Partner for EITL Security and Risk Management. Mr. Ahuja has more than 29 years of experience in IT. He is an accomplished leader in cybersecurity, risk management, technology and business strategy representing major organizations such as Gartner, GE, BP, Coca Cola, ADT, etc.
Sessions
- CISO Perspectives: Navigating the Security Landscape in 2025 [Panel]Tuesday, August 19, 2025
1:30 PM - 2:15 PM

Barnaby Simkin
Director, Trustworthy AI - NVIDIA
Barnaby is leading the development of a scalable AI risk management system spanning multiple business units, ensuring alignment with overarching legal and operational requirements. This involves building an ecosystem of tools that support engineering teams in assessing trustworthiness, and increasing oversight across the company by promoting the use of standardized documentation across the company e.g. model cards and risk/impact assessments.
Sessions
- Trustworthy AI Element Out of ContextTuesday, August 19, 2025
11:30 AM - 12:00 PM

Blake Gilson
Operational Technology Cyber Security and Risk Manager - ExxonMobil
Blake Gilson serves as Operational Technology Cyber Security and Risk Manager at ExxonMobil, where he plays a key role in shaping and implementing the IT department's OT cybersecurity strategy. Blake earned a BA in Business Management Information Systems from the University of Houston, is an alumnus of the Department of Energy's OT Defender Program, and is an avid collector of GIAC certifications.
Sessions
- Building AI into Industrial Environments: Practical Strategies for Secure and Scalable DeploymentWednesday, August 20, 2025
9:00 AM - 9:45 AM
David Campbell
AI Security Lead - Scale AI
David Campbell is a seasoned tech leader with nearly 20 years in Silicon Valley startups, now leading AI Security efforts at Scale AI. He built a pioneering AI Red Teaming platform blending ethics and security. His work has been recognized by Congress and highlighted by the White House. David also contributed to JCDC.AI’s Cyber TTX with CISA, tackling AI-driven cyber threats. With a strong background in Security, Infrastructure, and Platform Engineering, he champions integrating responsible AI into real-world security practices to build safer, more ethical AI systems.
Sessions
- Adversarial AI Risk: Your Next Incident Won’t Be an 0DayTuesday, August 19, 2025
9:00 AM - 9:45 AM - AI Red Teaming RoomTuesday, August 19, 2025
9:45 AM - 1:40 PM

David Haddad
Associate Director, Technology Risk Management - Ernst & Young
David serves as an Associate Director in Ernst & Young LLP's Technology Risk Management practice, assisting EY member firms comply with internal and external security, data, and regulatory requirements through technical reviews, consultations, and assessments. David contributes to global AI governance, risk, and control initiatives, ensuring AI products and services align with the firm's strategic technology risk management processes. David is completing his doctoral studies at Purdue University, specializing in AI and Information Security. David's previous experience includes various technology and cybersecurity roles at the Federal Reserve Bank of Chicago. He holds multiple industry-recognized certifications, including CISSP, CISM, CISA, CDPSE, and more.
Sessions
- Leading A Successful Generative AI Journey: A CIO’s GuideTuesday, August 19, 2025
11:00 AM - 11:30 AM

James Sayles
Chief AI Officer and Director of Global GRC - Halliburton
Dr. James K. Sayles is a certified executive in AI strategy, governance, and data, known for architecting responsible AI systems that drive enterprise transformation. With over 25 years of experience, he has led AI initiatives across several critical and AI-first industries—shaping governance frameworks that prioritize innovation without compromising risks. Unlike those who follow industry trends, James sets them—pioneering scalable AI oversight models that empower business unit executives, C-levels, and boards. He is the author of The Principles of AI Governance and Model Risk Management and a trusted advisor to global organizations. James leads with a proactive mindset, ensuring AI is used to shape business advantage—not the other way around. Dr. Sayles holds a PhD, MBA, and BS.
Sessions
- AI Under Fire: Securing Trust, Strategy, and Sovereignty in the Age of Intelligent ThreatsTuesday, August 19, 2025
2:45 PM - 3:15 PM

Jarell Mikell
Executive Director - Power Systems & Gas Cybersecurity - Southern Company
Jarell Mikell is an Executive Director at Southern Company and leads the Enterprise Security organization that safeguards the critical infrastructure and data of one of the largest energy providers in the US. HeI has over 20 years of experience in security consulting, architecture, sales and solutions engineering, spanning multiple domains and industries.
Sessions
- CISO Perspectives: Navigating the Security Landscape in 2025 [Panel]Tuesday, August 19, 2025
1:30 PM - 2:15 PM

Max Leepson
Senior Manager, Global Safety & Security - Salesforce
Max is a seasoned security, resilience, and technology leader with deep expertise in physical security, incident management, and data-driven strategy. Currently a Senior Manager at Salesforce, he drives global safety innovation through advanced analytics and technology. With prior roles in healthcare and emergency management, Max brings a systems-level perspective to enterprise risk, crisis response, and operational continuity.
Sessions
- Same Data, Different Outcomes: How Prompt Variability Exposes Hidden AI RisksWednesday, August 20, 2025
10:15 AM - 10:45 AM

Naman Goyal
Machine Learning Engineer - Google Deepmind
Naman Goyal is a distinguished Machine Learning Engineer and Researcher specializing in Large Language Models (LLMs), Computer Vision, Deep Learning, and Multimodal Learning. With a proven track record at leading technology companies including Google DeepMind, NVIDIA, Apple, and innovative startups, Naman consistently drives advancements in artificial intelligence applications. At Google DeepMind, Naman plays an instrumental role in developing Deep Research, an AI-powered research assistant integrated within Google Gemini. His contributions focus on enhancing Gemini's reasoning capabilities and optimizing machine learning workflows that serve millions of users globally. Previously at NVIDIA, Naman optimized machine learning processes for autonomous vehicle development.
Sessions
- The Ascendancy and Challenges of Agentic Large Language ModelsWednesday, August 20, 2025
3:30 PM - 4:00 PM

Sharon Augustus
Lead Product Security Engineer - Salesforce
Sharon Augustus is a Lead Product Security Engineer at Salesforce, with a current emphasis on Large Language Models (LLM), Generative AI and Agentic systems. She previously worked as security consultant where she conducted penetration testing, threat modeling, and vulnerability analysis for client applications, also guiding them on secure software development methodologies.
Sessions
- Prompt Defense "A Multi-Layered Approach"Wednesday, August 20, 2025
1:30 PM - 2:15 PM

Sundar Chandrasekaran
Principal Product Manager - Alexa AI Trust & Safety - Amazon
Sundar Chandrasekaran is a senior leader at Alexa AI, where he heads Trust & Safety initiatives for generative and multi-agent AI systems. His work spans global-scale Responsible AI programs, with a focus on building trustworthy, efficient, and safe AI applications. Sundar has developed real-time mitigation frameworks and governance models that protect millions of AI interactions daily across domains, ensuring policy compliance and user trust at scale.
Sessions
- Taming Rogue Agents: Real-Time Mitigation Strategies for Multi-Agent and Multimodal AI at ScaleWednesday, August 20, 2025
9:00 AM - 9:45 AM

Suraj Jayakumar
AI Scientist - Block, Inc.
An experienced Machine Learning practitioner in the fintech industry, having led critical modeling initiatives at Venmo and Cash App. Currently driving AI-powered automation at Cash App, focused on scaling and optimizing Risk Operations through advanced LLM-based solutions.
Sessions
- Evaluating and Monitoring LLM-Powered Applications at ScaleWednesday, August 20, 2025
4:05 PM - 4:45 PM

Vasudha Hegde
Senior Privacy Program Manager - DoorDash
Vasudha Hegde is Senior Privacy Program Manager DoorDash. She began her career as a systems engineer, laying the technical foundation that would support her transition into a dynamic consulting role at a Big4 firm. With extensive experience advising tech companies on privacy, she has become a trusted expert in navigating complex regulatory landscapes. For the past seven years, she has thrived as a Privacy and AI Governance Program Manager, where she has skillfully led initiatives to ensure compliance with California and global privacy and AI standards. Through her strategic vision and dedicated leadership, Vasudha has helped organizations effectively implement comprehensive privacy and AI governance frameworks. Her expertise continues to position her as a key player in the intersection of technology, privacy, and regulatory compliance.
Sessions
- Future-Proofing AI/ML Compliance Through Strong Data Privacy FoundationsWednesday, August 20, 2025
2:15 PM - 2:45 PM

Wesley Ramirez
Senior Principal Model Governance - Discover Financial Services
Wesley Ramirez is a Senior Principal Model Governance, with experience in leading AI/GenAI framework updates and managing Model Risk Management at Discover Financial Services. She has been with the organization for 7 years, leading multiple large-scale transformations and organizational changes, to bring the organization to the forefront of product and technical capabilities. Working collaboratively with leaders and teams, she has been able to help organizations with product management, process optimization, and risk management.
Sessions
- From Idea to Reality: Bringing AI/GenAI Risk Management to Life in FinanceWednesday, August 20, 2025
2:45 PM - 3:15 PM

Aderonke Akinbola
Technical Program Manger - Google
Aderonke, Technical Program Manager at Google, offers expertise in large-scale infrastructure and risk management. She directs complex network deployments and oversees intricate tech projects across the Americas. Prior roles at Apple & American Family Insurance solidified her skills in security protocols and risk evaluation within demanding operations. This experience provides a deep understanding of securing foundational systems for AI/ML and protecting sensitive data against cyber threats and breaches. With a BS in IT (infrastructure focus), Aderonke tracks policy impacting tech governance. Her blend of strategic leadership, technical acumen, and risk experience makes her a compelling speaker on defending AI against threats and safeguarding sensitive data.
Sessions
- Beyond the Breach: Analyzing AI System Failures, Safeguarding Data, and Addressing Ethical RisksWednesday, August 20, 2025
11:00 AM - 11:30 AM

Alex Bazhaniuk
CTO - Eclypsium
Alex is the Chief Technology Officer and Co-Founder of Eclypsium and is recognized as an authority in the spheres of AI infrastructure and supply chain security. He has many years of experience in research and product development. Over the course of his 15-year career, he has been at the forefront of supply chain security innovation and research, leading teams at organizations such as Intel and McAfee. His commitment to enhancing security knowledge in the community led to extensive speaking and training sessions at a myriad of international security conferences, such as Black Hat, DEF CON, CanSecWest, Recon, Troopers, and Toorcon. He also initiated the first DEF CON Group in Ukraine and co-founded the DCUA CTF team, fostering a collaborative platform for cybersecurity enthusiasts.
Sessions
- Beneath the Prompt: The Hidden Risks Powering GenAITuesday, August 19, 2025
2:45 PM - 3:15 PM

Alison Cossette
CEO/Founder - ClariTrace
Alison Cossette is the founder of ClariTrace, a category-defining platform focused on AI Systems Intelligence. A recognized expert in AI governance and risk architecture, she previously worked in AI strategy at Neo4j and has spoken globally on AI security, data lineage, and algorithmic accountability. Alison introduced the concept of "Pattern Rights" at last year’s AI Risk Summit, catalyzing a new conversation about enterprise control in the age of autonomous systems. Her work sits at the intersection of technical rigor, regulatory foresight, and systemic thinking.
Sessions
- AI Is Making the Decisions—Where’s the Control Layer?Tuesday, August 19, 2025
2:15 PM - 2:45 PM

Amitabh Kumar
CoFounder - Contrails
Trust & Safety thought leader at Contrails.ai translating complex safety challenges into strategic advantages for digital platforms. Drawing from my experience in digital parenting and online gaming safety, I develop comprehensive frameworks that ensure user protection while preserving positive experiences. I advocate for proactive approaches to online safety that anticipate emerging threats rather than simply reacting to them. My expertise includes: • Developing governance models that adapt to evolving regulatory landscapes • Creating scalable moderation strategies that balance automation with human insight • Building cross-functional safety programs that align technical, policy, and community teams • Measuring safety outcomes to demonstrate business value alongside user protection
Sessions
- Deepfake Detection: Safeguarding Trust in the Age of Synthetic MediaWednesday, August 20, 2025
2:15 PM - 2:45 PM

Andrew Carney
Program Manager, DARPA AI Cyber Challenge - DARPA
Carney is program manager for the DARPA AI Cyber Challenge. He is also a program manager at ARPA-H where he leads programs and projects to improve health cybersecurity. He was previously a principal researcher in HSBC’s Cybersecurity Science and Analytics group. Before that, he was a technical advisor and contractor at DARPA, supporting reverse engineering, program analysis, human-machine teaming, and automated program repair research. He has long been involved in competitive hacking (Capture the Flag, or CTF) as both a player and a competition organizer. Carney has over 15 years of experience in software & hardware vulnerability research and technical education & training. He holds a master’s degree in computer science from The Johns Hopkins University.
Sessions
- Patching Critical Infrastructure: Lessons from DARPA’s AI Cyber ChallengeTuesday, August 19, 2025
10:15 AM - 10:45 AM

Andy Caspersen
Former CISO at Gap & Charles Schwab - ECM Security
Andy is a veteran technology and cybersecurity executive with over two decades of experience driving enterprise IT transformation and security strategy across Fortune 500 companies and diverse industries including financial services, retail, higher education, and consulting. As the former CISO at Gap Inc. and Charles Schwab, Andy has led global security initiatives, including full cloud migrations, zero-trust architecture deployments, and major infrastructure modernization efforts.
Sessions
- Redefining the CISO: Aligning Security Leadership Beyond the Breach [Panel]Wednesday, August 20, 2025
11:35 AM - 12:30 PM

Ashok Prakash
Senior Principal Engineer - Oracle
Ashok Prakash is a senior principal engineer at Oracle Cloud, where he leads the architecture and scaling of high-performance GPU cloud systems powering AI workloads. With deep expertise in distributed systems and health AI, Ashok has built mission-critical infrastructure supporting the latest generation of AI accelerators—from A100s to GB200s. He has led large-scale engineering orgs and developed automated repair frameworks that significantly reduce cloud deployment time. An AI researcher turned systems leader, Ashok has published papers on commonsense reasoning, NLP, and clinical AI, and holds multiple patents in cloud orchestration and automated triaging.
Sessions
- Scaling AI Infrastructure: Navigating Risks in Distributed SystemsWednesday, August 20, 2025
2:45 PM - 3:15 PM

Austin Bosarge
Chief Corporate Officer - QuSecure
Austin Bosarge serves as Chief Corporate Officer at QuSecure, Inc., where he is responsible for financial, legal, HR, and leading the company’s Federal strategy. He is also a co-founder of QuSecure and has previously served as General Counsel and Chief Innovation Officer. In addition to his law degree, Austin holds a Bachelor of Electrical Engineering from Georgia Tech, where he was a walk‐on member of the Yellow Jacket football team. He also advises other startups in the technology sector.
Sessions
- Preparing for the Quantum Threat: A CISO’s RoadmapTuesday, August 19, 2025
9:00 AM - 9:45 AM

Ben Goodman
Founder & CEO - CyRisk Inc.
Mr. Goodman is the Founder and CEO of CyRisk, a leading emerging cyber and privacy risk analytics platform. He has been dedicated to strengthening the risk posture of organizations around the globe for over 30 years. Mr. Goodman speaks frequently at conferences on emerging risk, AI, privacy and cyber insurance. He served on the Casualty Actuarial Society’s Cyber Risk Task Force and the Society of Actuaries Expert Panel on Catastrophic Cyber Risk. He co-authored “Security Posture-Based Incident Forecasting” published in the Casualty Actuarial Society’s journal Variance. His paper entitled “The Cyber Risk Ecosystem” won first prize for Applied Enterprise Risk Management at the Casualty Actuarial Society, Canadian Institute of Actuaries and Society of Actuaries.
Sessions
- AI and Risk Transfer: The Cyber Insurance PerspectiveWednesday, August 20, 2025
9:00 AM - 9:45 AM

Beth George
Partner, Co-head of Strategic Risk Management Practice - Freshfields
Beth George leads the strategic risk management practice at Freshfields. With a background in national security and technology, Beth regularly advises boards of both private and public companies on risk management and governance, including advising on governance related to artificial intelligence, data practices and cybersecurity, content management, and geopolitical events. Beth has worked at senior levels across the U.S. federal government, most recently serving as the Acting General Counsel of the U.S. (DoD) in 2021. Previously, Beth served in various roles for the National Security Division of the (DOJ), U.S. Senate Select Committee on Intelligence. and the White House as Associate Counsel in the Office of the White House Counsel.
Sessions
- Seeing Risk: Legal and Privacy Pitfalls of Multimodal and Computer Vision AI vs Text-Based LLMsWednesday, August 20, 2025
10:15 AM - 10:45 AM

Celina Stewart
Director of Cyber Risk Management - Neuvik
Celina Stewart is the Director of Cyber & AI Risk Management at Neuvik, a cybersecurity services company. Celina specializes in designing and optimizing cybersecurity programs, taking a risk-based approach to cyber strategy, cybersecurity program development, and alignment of technical controls to reduce business risk, including risks from Artificial Intelligence (AI). Celina is a recognized thought leader in risks associated with Generative Artificial Intelligence (GenAI) and Generative Adversarial Networks (GAN). She has been a featured speaker at high profile events such as SecurityWeek’s AI Risk Summit, CloudX, Blue Team Con and more. Her research focuses on the intersection of AI and cybersecurity, exploring topics such as emerging risks, AI and Insider Threat, and AI Governance.
Sessions
- Strong Arming and Appealing to Human-like Fallibility: How Attackers Manipulate AI ToolingTuesday, August 19, 2025
11:30 AM - 12:00 PM - Framework Failings: Addressing the Lack of Responsible Deployment Guidance in Existing AI FrameworksWednesday, August 20, 2025
2:15 PM - 2:45 PM

Charit Upadhyay
Senior Site Reliability Engineer - Oracle
Charit Upadhyay is a Senior Site Reliability Engineer at Oracle, specializing in building scalable, secure, and high-performance cloud infrastructures. With extensive experience across Kubernetes, Terraform, observability, and security operations, he has led initiatives integrating AI into DevOps and cloud security workflows. Charit’s work focuses on applying emerging AI technologies to enhance operational efficiency, mitigate risks, and strengthen threat detection in complex systems. He is an active contributor to industry conferences, a reviewer for multiple technical committees, and a strong advocate for practical, real-world applications of AI in security and reliability engineering.
Sessions
- Can You Trust Your AI SOC Analyst? Testing the Limits of LLMs in Security OperationsTuesday, August 19, 2025
3:30 PM - 4:00 PM

Charit Upadhyay
Senior Site Reliability Engineer - Oracle
Charit Upadhyay is a Senior Site Reliability Engineer at Oracle, specializing in building scalable, secure, and high-performance cloud infrastructures. With extensive experience across Kubernetes, Terraform, observability, and security operations, he has led initiatives integrating AI into DevOps and cloud security workflows. Charit’s work focuses on applying emerging AI technologies to enhance operational efficiency, mitigate risks, and strengthen threat detection in complex systems. He is an active contributor to industry conferences, a reviewer for multiple technical committees, and a strong advocate for practical, real-world applications of AI in security and reliability engineering.
Sessions
- When AI Agents Go Rogue - Securing Autonomous AI Systems Before They ActWednesday, August 20, 2025
12:00 PM - 12:30 PM

Chris Brown
New Cyber Executive - CISO & Executive Coach
Chris Brown is an executive coach to CISOs, with decades of experience in cybersecurity leadership, including roles as CISO and executive for hire. Drawing on his deep understanding of the unique circumstances faced by CISOs, he offers an alternative to the conventional mindsets that often place undue stress and responsibility on cyber executives’ shoulders to control what they cannot.
Sessions
- Redefining the CISO: Aligning Security Leadership Beyond the Breach [Panel]Wednesday, August 20, 2025
11:35 AM - 12:30 PM

Daniel Ross
Head of AI Compliance Strategy - Dynamo AI
Dan Ross, Head of AI Compliance Strategy at Dynamo AI, focuses on aligning AI, policy, risk management, and business application. Dan regularly engages global policy makers on AI risk management and compliance, and oversees a number of Dynamo’s most consequential AI security and compliance deployment efforts. Prior to Dynamo AI, Dan spent close to a decade at Promontory Financial Group, a premier risk and regulatory advisory firm, focused on data and technology risk, where he advised global financial institutions and governments. He has also held technology strategy and management consulting leadership positions at Deutsche Bank, Bank of America Merrill Lynch, and Accenture. Dan studied Economics at Vanderbilt University and lives with his wife and Lagotto Romagnolo in New York.
Sessions
- From Assumptions to Assurance: Calibrating AI with Institutional TruthTuesday, August 19, 2025
2:15 PM - 2:45 PM

David Brauchler III
Technical Director - NCC Group
David Brauchler III is an NCC Group Technical Director in Dallas, Texas. He is an adjunct professor for the Cyber Security graduate program at Southern Methodist University with a master's degree in Security Engineering and the Offensive Security Certified Professional (OSCP) certification. David Brauchler published Analyzing AI Application Threat Models on NCC Group's research blog, introducing new Models-As-Threat-Actors (MATA) methodology to the AI security industry, which provided a new trust flow centric approach to evaluating risk in AI/ML-integrated environments. David also released several new threat vector categories, AI/ML security controls and reference architectures, and recommendations to maximize the effectiveness of AI penetration tests.
Sessions
- An AI Pentester's Reflections On RiskWednesday, August 20, 2025
11:30 AM - 12:00 PM

Edna Conway
CEO - EMC Advisors, LLC
Edna M. Conway is a recognized leader in cybersecurity, critical infrastructure, and enterprise risk. She was VP, Chief Security & Risk Officer for Microsoft’s Cloud Infrastructure and longtime Chief Security Officer for Cisco’s Global Value Chain. At Microsoft, she led development of the award-winning Advanced Security & Resiliency Architecture (ASRA) and global strategies in third-party risk, compliance, and sustainability. Edna has advised the U.S. government, NATO, and global organizations, served on 12+ boards, and advises CEOs and Boards including RadarFirst on privacy, compliance, and AI governance.
Sessions
- AI Classification Without Chaos: Getting Ahead of the EU AI ActWednesday, August 20, 2025
9:45 AM - 10:15 AM

Eric Skinner
VP of Market Strategy - Trend Micro
Eric Skinner is VP of Market Strategy at Trend Micro, helping shape Trend’s solution offerings, growth plans and go-to-market approach. Prior to Trend Micro, Eric held senior management positions in a health care mobile startup and at digital identity solutions provider Entrust (where he was CTO and VP Product Management). Eric is based in Ottawa, Canada.
Sessions
- Modern Threats, Smarter Defenses: A Case-Based Look at Proactive Security in the AI EraTuesday, August 19, 2025
11:30 AM - 12:00 PM

Harald Ujc
CTO - Invenci
Harald Ujc is CTO of Invenci Inc., a generative AI solutions firm. With 20+ years in IT and software engineering, he transforms cutting-edge AI into real business value, emphasizing ethics, safety, and ROI. He leads teams building AI tools that streamline operations and enhance decision-making. A mentor with the University of Toronto’s Computer Science Department, he supports the next generation of tech leaders. At the AI Risk Summit, Harald reframes AI risk as a discovery issue, not a technical one, highlighting how poor scoping causes failure in SMBs. Based in Toronto, he delivers trusted, high-impact AI solutions across sectors.
Sessions
- From Misfire to Mastery: AI Discovery as Strategic RiskTuesday, August 19, 2025
10:15 AM - 10:45 AM

Jason Kramer
Senior Software Engineering Researcher - ObjectSecurity
Jason is dedicated to advancing the state of the art in secure and robust AI. With a bachelor’s degree in computer science from San Diego State University, he is focused on ensuring trust, security, privacy, bias, and robustness of AI/ML models. Jason has led the development efforts of a commercial solution for the detection and repair of vulnerabilities in deep learning systems, and the co-author of multiple patents related to the cybersecurity of systems including AI/ML, embedded devices, supply chain, and others. His passion for improving the field has driven him to push the boundaries of what is possible and make a meaningful impact in the fields of AI and cybersecurity.
Sessions
- Augmenting AI Security: External Strategies for Threat MitigationTuesday, August 19, 2025
11:00 AM - 11:30 AM - Opening the Black Box: Trust and Transparency with AIBOMsTuesday, August 19, 2025
4:05 PM - 4:50 PM

Jason Ross
Product Security Principal - Salesforce
Jason Ross is a passionate cybersecurity expert with a diverse skill set in generative AI, Penetration Testing, Cloud Security, and OSINT. As a product security principal at Salesforce, Jason performs security testing and exploit development with a specific focus on generative AI, Large Language Models, and Agentic systems. Jason is a frequent speaker at industry conferences, and is active in the security community participating as a core member of the OWASP GenAI Project and serving as a DEF CON NFO goon.
Sessions
- Breaking the Black BoxTuesday, August 19, 2025
2:15 PM - 2:45 PM - Prompt Defense "A Multi-Layered Approach"Wednesday, August 20, 2025
1:30 PM - 2:15 PM

Joey Melo
AI Redteaming Specialist - Pangea
Joey is an AI Red Teaming Specialist at Pangea and a skilled penetration tester with expertise in web security, vulnerability management, and reverse engineering. He holds OSCP and BSCP certifications and has deep hands-on experience in offensive security. A top 500 global competitor on Hack The Box, Joey actively sharpens his skills through CTFs and exploit development. He placed 2nd out of 30,000 in HackAPrompt 2.0, the world’s largest AI hacking competition, and took 1st in Pangea’s AI escape room challenge, showcasing his strength in real-world, high-pressure cybersecurity and AI red teaming.
Sessions
- What a $10,000 Challenge and 300K+ Prompt Injection Attempts Taught Us About Attacking AIWednesday, August 20, 2025
3:30 PM - 4:00 PM

Josephine Liu
Chief Commissioner, Public Policy Committee - Asia-Pacific Artificial Intelligence Association (AAIA)
Yuyin (Josephine) Liu is a distinguished leader in AI safety, security, and governance, actively shaping global policies around emerging technologies. With deep expertise advising governments, international organizations, and industry leaders, she plays a pivotal role in developing regulatory frameworks that balance innovation with safety andsecurity. Josephine serves as Chief Commissioner of the Public Policy Committee at the Asia-Pacific Artificial Intelligence Association (AAIA), where she guides global discourse on AI policy and governance. Her work bridges technology and policy to ensure that emerging technologies align with ethical standards, security needs, and economic resilience. .
Sessions
- Digital Sovereignty or Digital Fragmentation? Risks and Remedies in Global AI GovernanceTuesday, August 19, 2025
4:05 PM - 4:50 PM

Jyotheeswara Reddy Gottam
Sr Software Engineer - Walmart Global Technology
Jyotheeswara Reddy Gottam is a Senior Software Engineer at Walmart Global Tech with 12+ years in test automation. Based in Dublin, CA, he's improved Walmart's marketplace platforms, store locator, and e-commerce features since 2015. His achievements include creating a scalable testing framework with 99.9% uptime and reducing regression testing by 70%. Previously at Williams Sonoma and Mercury Insurance, he built automation frameworks that drastically cut testing time while increasing coverage. He holds a Master's in Software Engineering and is skilled in Java, Python, JavaScript, and various testing tools. His "Test Less Cover More" approach and CARTA TaaS platform exemplify his innovation, maintaining 99.95% crash-free applications while accelerating delivery timelines.
Sessions
- The Triple Threat: How AI Technologies Reduce Testing Costs While Improving Quality MetricsWednesday, August 20, 2025
1:30 PM - 2:15 PM

Kevin Kiley
President - Airia
Kevin Kiley was part of the early leadership team at AirWatch (sold to VMware in 2014 for $1.54B) and led his organization from $2M to $350M in six years. He then joined OneTrust and as Chief Revenue Officer grew ARR from $0 to over $400M and added 14,000 clients in just five years. Most recently, he served as Chief Revenue Officer for Lacework leading their turnaround and ultimate sale to Fortinet. Today, Kevin serves as President at Airia, the leading Enterprise AI Management platform.
Sessions
- AI Risks Are Exploding: What You Need to Know Now to PrepareWednesday, August 20, 2025
9:45 AM - 10:15 AM

Lauren Wallace
Chief Legal Officer - RadarFirst
Lauren Wallace is the Chief Legal Officer at RadarFirst, where she brings over 20 years of experience at the intersection of technology, law, and business. Her career encompasses leadership roles in both global corporations and innovative startups, where she has advised companies such as Apple, Microsoft, and Nike on enterprise technology transactions, data protection, and regulatory compliance. Lauren is deeply engaged in the Portland business and nonprofit community and frequently speaks on the operationalization of privacy, responsible AI, and emerging regulatory trends. At RadarFirst, she ensures that the company’s solutions and strategies evolve in lockstep with legal, technological, and environmental change—empowering organizations to make confident, compliant decisions at scale.
Sessions
- AI Classification Without Chaos: Getting Ahead of the EU AI ActWednesday, August 20, 2025
9:45 AM - 10:15 AM

Mahesh Babu
CMO - Kodem Security
Mahesh Babu is a former VP of Information Security turned company builder and now leads strategy and growth for Kodem, venture‑backed application security startup. At HSBC he built and scaled global application‑security and identity‑access‑management platforms that safeguard billions of transactions. His career began at Purdue University’s Information Assurance & Security Research Center, where he researched secure software engineering. Mahesh blends academic rigor with enterprise and startup execution to help organizations stay ahead of modern threats.
Sessions
- Adversarial Intelligence: Production AI Systems Through the Eyes of the AttackerTuesday, August 19, 2025
12:00 PM - 12:30 PM

Malcolm Harkins
Chief Security and Trust Officer - HiddenLayer
Malcolm Harkins is Chief Security and Trust Officer at HiddenLayer. Harkins has more than two decades of experience in information security leadership roles at top technology companies, including Intel, Cylance, and others. He’s written multiple books on risk management, information security, and IT and earned awards from the RSA Conference, ISC2, Computerworld, and the Security Advisor Alliance. Harkins has testified before the Federal Trade Commission and U.S. Senate Committee on Commerce, Science, and Transportation. Harkins is a Fellow with the Institute for Critical Infrastructure Technology, a non-partisan think tank providing cybersecurity expertise to the House of Representatives, Senate, and various federal agencies.
Sessions
- Economic Impact of Securing AITuesday, August 19, 2025
11:00 AM - 11:30 AM

Millie Huang
Staff Data Scientist - Salesforce
Millie Huang is a Staff Data Scientist at Salesforce, at the forefront of applying machine learning to critical cybersecurity challenges. She specializes in innovative AI-driven solutions and advanced detection models for anomalous behaviors, enhancing enterprise security. Millie holds a Master's from MIT's Operations Research Center and a Bachelor's in Mathematics and Economics from Wellesley College. Prior to Salesforce, she honed her deep data science expertise across a spectrum of business domains—from demand forecasting to causal inference to product analytics—spanning consulting, consumer tech, and retail. Millie's blend of deep academic knowledge and practical experience developing ML solutions at scale makes her a key voice at the intersection of AI and security.
Sessions
- When AI Agents Go Rogue: Unmasking Risky Enterprise AI Behavior with Unsupervised LearningTuesday, August 19, 2025
9:45 AM - 10:15 AM

Oliver Friedrichs
Co-founder and CEO - Pangea
Oliver Friedrichs is co-founder and CEO of Pangea and a serial entrepreneur, having previously founded four successful enterprise security companies over the past two decades. Prior to Pangea he served as Founder and CEO of Phantom, acquired by Splunk in 2018. Prior to Phantom, Friedrichs founded Immunet, acquired by Sourcefire in 2010 and a key component to Cisco’s acquisition of Sourcefire in 2013. Friedrichs co-founded SecurityFocus (Bugtraq) and led DeepSight, the world’s first Internet early warning system, acquired by Symantec in 2002. He also co-founded Secure Networks and led Ballista (CyberCop), one of the industry’s first vulnerability management solutions, acquired by McAfee in 1998. Friedrichs also developed a prototype of the first commercial penetration-testing product.
Sessions
- AIDR? Why AI Demands its Own Detection & Response StrategyTuesday, August 19, 2025
12:00 PM - 12:30 PM

Oliver Szimmetat
Director of Security and Compliance - Taxbit
Oliver is the Chief Privacy Office and Director of Security and Compliance at TAXbit, where he manages all aspects of security engineering, including AI security and compliance. Before joining TAXbit in 2023, he was Head of Cloud Security at Uber. There, he built a team working on secure-by-default architecture, best practices, engineering standards, automated compliance monitoring tools, data security, and threat detection/response solutions for all of Uber’s cloud assets and engineering efforts. Prior to that, Oliver spent over 18 years at Microsoft, where he worked in various engineering management roles contributing to Windows client security, anti-piracy, cloud security standards, security testing, and continuous delivery for all the company’s online services.
Sessions
- Understanding and Mitigating Risks Introduced by LLM AgentsWednesday, August 20, 2025
2:45 PM - 3:15 PM

Patrick Walsh
CEO - IronCore Labs
Patrick Walsh has more than 20 years of experience building security products and enterprise SaaS solutions. Most recently he ran an Engineering division at Oracle, bringing productivity and insights to the world’s largest companies. Patrick now leads IronCore Labs, a technology platform that helps businesses get back control of their data so they can meet increasingly stringent data protection requirements.
Sessions
- Smart Tech, Dumb Moves: AI Adoption Without GuardrailsTuesday, August 19, 2025
4:05 PM - 4:50 PM

Paul Starrett
Founder - Starrett Consulting
EXPERIENCE - Adjunct Lecturer – AI Governance in Law/Business/Engineering, - Santa Clara U. School of Law. - Adjunct Professor – Law and AI, Univ. of the Pacific’s M.S. in Data Science program. - AI Governance Certification (IAPP AIG) – Practice-exam question writer/reviewer. - General Counsel/CRO of AI and data management corporation. - Five years information-security software engineer (‘C’, Java, Python). - Eight years ediscovery and info mgmt. Certification as computer forensics examiner (EnCE: 2011-2024). EDUCATION - M.S., Predictive Analytics from Northwestern U. - LL.M. in Taxation from Golden Gate University School of Law. ASSOCIATIONS - Founding Chair (2013-2020) of the Big Data Committee of the American Bar Association. - Active in the ACFE, IAPP, and ISACA.
Sessions
- Adversarial Machine Learning and AI ForensicsTuesday, August 19, 2025
12:00 PM - 12:30 PM

Peter Ableda
Director of Product Management - Cloudera
Passionate about the intersection of data and artificial intelligence. As Director of Product Management for Cloudera's AI product suite, I lead the charge in developing a cutting-edge AI platform that unlocks significant value from complex data landscapes without compromising on security and privacy. My 10+ years in data management and data science have been focused on pushing the boundaries of big data technology and making AI accessible and impactful for enterprises. MSc in Computer Science, Budapest University of Technology.
Sessions
- Building a Secure Foundation: Essential Components of a Private AI Enterprise StackWednesday, August 20, 2025
4:05 PM - 4:45 PM

Richard Bird
Chief Security Officer - Singulr AI
Richard William Bird is the Chief Security Officer for Singulr, an AI security and governance solution, and a six-time C-level executive in the corporate and startup world. He is internationally recognized for his expertise and observations in AI security, data privacy, and identity security. He is a sought-after speaker who addresses modern challenges with humor and clarity.
Sessions
- Is AI Ready for Us?Tuesday, August 19, 2025
3:30 PM - 4:00 PM - Redefining the CISO: Aligning Security Leadership Beyond the Breach [Panel]Wednesday, August 20, 2025
11:35 AM - 12:30 PM

Saloni Garg
Senior Software Engineer - Wayfair
International Red Hat Women in Open Source Awardee | Mozilla Open Leader 2019 | a strong open source diversity supporter | Google Venkat Scholarship winner | Speaker
Sessions
- How We Audit ML Systems for Risk, Drift, and MisuseWednesday, August 20, 2025
10:15 AM - 10:45 AM

Sanjnah Ananda Kumar
Product Manager - Salesforce
Sanjnah Ananda Kumar is Product Manager for Salesforce Data Security and Key Management services, designing mission critical APIs that protect cryptographic material in cloud environments. With an MS in Information Security and Technology from Carnegie Mellon University and research experience at CyLab, she blends usable privacy and security with practical product strategy. Her research involves understanding people's attitude towards privacy on social media. Outside of work outside work she builds open‑source resources that advance privacy and security for everyone.
Sessions
- Emerging Threats from Accessible AI Image GenerationWednesday, August 20, 2025
11:00 AM - 11:30 AM

SecurityWeek Events
SecurityWeek Events Team
Sessions
- S'mores by the FirepitsTuesday, August 19, 2025
7:30 PM - 8:30 PM

Shawn Marriott
CTO - Canary Trap Inc.
Shawn Marriott is the Chief Technology Officer at Canary Trap, where he leads offensive security strategy and engagements. With over 20 years of experience in penetration testing, red teaming, and adversarial simulations, Shawn specializes in uncovering hidden risks and helping organizations adapt their security posture to evolving threats. His expertise spans cybersecurity assessments, security program design, and educating leadership teams on emerging risks, including AI-driven vulnerabilities and software supply chain security.
Sessions
- Vibe Coding: Uncovering the Hidden Risks of Typosquatting and Supply Chain AttacksWednesday, August 20, 2025
11:00 AM - 11:30 AM

Tamir Ishay Sharbat
AI Security Researcher, CTO Office - Zenity
Tamir Ishay Sharbat is a software engineer and security researcher with a particular passion for AI security. His current focus is on identifying vulnerabilities in enterprise AI products such as Microsoft Copilot, Microsoft Copilot Studio, Salesforce Einstein, Google Gemini and more. Tamir conducts deep analysis of AI architectures to identify potential exploits, then crafts prompt injections and elaborate attacks accordingly. Tamir is also a core member of the OWASP Agentic Security Initiative where he co-leads the agentic threats and mitigations workstream, helping with understanding the prevailing threats of AI agents.
Sessions
- The Art of Prompt Injection and Making Your AI Turn on YouTuesday, August 19, 2025
1:30 PM - 2:15 PM

Tim Silverline
CISO - Rocket Lawyer
Tim is seasoned Chief Information Security Officer with a 20-year track record in network security operations, cloud infrastructure, and organizational leadership in the IT sector. He is currently CISO at RocketLawyer, leading the security, IT, and cloud engineering teams.
Sessions
- CISO Perspectives: Navigating the Security Landscape in 2025 [Panel]Tuesday, August 19, 2025
1:30 PM - 2:15 PM

Trip Hillman
Partner, Cybersecurity Consulting - Weaver
Trip has nearly 15 years of experience consulting with clients, primarily over cybersecurity and IT subject matters. He regularly engages across industry sectors to improve cyber strategy, mitigate risk, measure compliance, and conduct technical assessments to help ‘move the needle’ on cyber posture.
Sessions
- Implementing AI Safeguards for Cyber Strategy and Compliance: Insights from OWASP and NIST FrameworkTuesday, August 19, 2025
10:15 AM - 10:45 AM

Tsvi Korren
Field CTO - Aqua Security
Tsvi Korren has been an IT security professional for over 25 years. In previous positions at DEC and CA Inc., he consulted with various industry verticals on the process and organizational aspects of security. As the Field CTO at Aqua, he is tasked with delivering commercial and open source solutions that make Cloud Native workloads the most secure, compliant and resilient application delivery platform.
Sessions
- Deploying AI On-prem? Now Secure It!Wednesday, August 20, 2025
12:00 PM - 12:30 PM

Ulrich Lang
CEO - ObjectSecurity LLC
PhD from the University of Cambridge Computer Laboratory (Security Group) on access policies for middleware in 2003 after having completed a master's degree in Information Security from Royal Holloway College (London) in 1997. With 20+ years in infosec, he is a renowned cybersecurity thought leader in OT security, binary analysis, trusted AI, access control policy etc. He was on the Board of Directors of the Cloud Security Alliance (Silicon Valley Chapter). He is responsible for the business and technical strategy, architecture and direction of ObjectSecurity and its product portfolio. He has published over 150 papers/presentations, 10+ patents, and has previously worked as a proposal evaluator, project evaluator, conference program committee, panel moderator, consultant, and book author.
Sessions
- Opening the Black Box: Trust and Transparency with AIBOMsTuesday, August 19, 2025
4:05 PM - 4:50 PM

Vaishnavi Gudur
Senior Software Engineer - Microsoft
Vaishnavi Gudur is a Senior Software Engineer at Microsoft, where she specializes in full-stack development and AI-driven systems optimization. With a strong foundation in both engineering and research, Vaishnavi is passionate about transforming traditional software practices through the integration of emerging technologies like artificial intelligence, explainable models, and predictive analytics. Beyond her role at Microsoft, Vaishnavi actively contributes to the tech community through judging hackathons, mentoring early-career engineers, and advocating for ethical, impactful uses of technology. She is currently building a platform at the intersection of AI, software engineering, and product intelligence—shaping the future of intelligent development ecosystems.
Sessions
- Ethical AI Practices: Balancing Innovation with ResponsibilityWednesday, August 20, 2025
11:30 AM - 12:00 PM

Vishnupriya S Devarajulu
Software Engineer - American Express
Vishnupriya S Devarajulu is a Senior Full Stack Software Engineer with over a decade of experience in software development and performance engineering at companies like American Express and Wells Fargo. She developed the UI/API Performance Optimization Framework, enhancing the scalability and reliability of mission-critical applications at American Express. With a Master’s degree in Computer Engineering and 20+ publications in AI, Machine Learning, and Software Optimization, Vishnupriya combines technical expertise with a passion for innovation and knowledge sharing.
Sessions
- AI and It's Impact on Data Privacy and TechnologyTuesday, August 19, 2025
2:45 PM - 3:15 PM

Wendy Nather
Senior Research Initiatives Director - 1Password
Wendy Nather is the Senior Research Initiatives Director at 1Password. She was previously the Director of Advisory CISOs at Duo Security, Research Director at the Retail ISAC, and Research Director of the Information Security Practice at 451 Research. Wendy led IT security for the EMEA region of the investment banking division of Swiss Bank Corporation (now UBS) and served as CISO of the Texas Education Agency. She was inducted into the Infosecurity Europe Hall of Fame in 2021. Wendy serves on the Board of Directors for Sightline Security, is on the Steering Committee for the IST Ransomware Task Force, and is a Senior Fellow at the Atlantic Council's Cyber Statecraft Initiative.
Sessions
- Secret Agent, Ma’am: New Rules For AI Access ManagementWednesday, August 20, 2025
9:45 AM - 10:15 AM

Wendy Nather
Senior Research Initiatives Director - 1Password
Wendy Nather is the Senior Research Initiatives Director at 1Password. She was previously the Director of Advisory CISOs at Duo Security, Research Director at the Retail ISAC, and Research Director of the Information Security Practice at 451 Research. Wendy led IT security for the EMEA region of the investment banking division of Swiss Bank Corporation (now UBS) and served as CISO of the Texas Education Agency. She was inducted into the Infosecurity Europe Hall of Fame in 2021. Wendy serves on the Board of Directors for Sightline Security, is on the Steering Committee for the IST Ransomware Task Force, and is a Senior Fellow at the Atlantic Council's Cyber Statecraft Initiative.
Sessions
- Using Incident Response Practice For Stealth Risk AnalysisTuesday, August 19, 2025
9:45 AM - 10:15 AM