Keynotes
Note: Agenda and content may evolve to reflect the latest developments in cybersecurity.
Day 1: Tuesday, September 15th
The AI Advantage: Flipping the Script on Next-Generation Adversaries
For years, the cybersecurity community warned of the impending AI escalation. In 2026, we are in the middle of it. Adversaries are actively leveraging generative AI to automate reconnaissance, dynamically mutate malware, and craft hyper-personalized social engineering campaigns at unprecedented speed. But the defense has a massive structural advantage: scale and intelligence.
In this opening comments, we will reveal how Mandiant consultants are leveraging AI to change the game for defenders and incident responders. We will explore how Mandiant and Google Cloud are turning the tide by integrating hyper-scale AI directly into our tools and methodologies to stay ahead of the Threat Actors and empower our clients with machine speed defense, giving defenders the ultimate high ground.
Security in the AI Era
The era of manual cyberattacks is giving way to the rise of autonomous adversary agents that operate at speeds manual security processes simply cannot match. In this presentation, Sandra Joyce, VP of Google Threat Intelligence breaks down how threat actors are leveraging AI to scale their operations and heighten attack sophistication. Beyond AI-enabled exploits, the rapid integration of AI across organizations has fundamentally altered the threat landscape, introducing critical points of failure and expanding supply chain surfaces.
With reactive security models no longer viable against these rising stakes, it is critical for the security community to embrace new approaches. This session will outline the need to transition to a posture of active, proactive disruption to neutralize threats.
From Breach to Lessons Learned
Join incident responders for a deep dive into recent data breaches, both internal and within the supply chain. We'll explore how these incidents unfolded, and communication strategies used with leadership, employees, media, and the board. Leave with actionable takeaways to bring back to your own security discussions.
AI is here. What's our next move?
In the agentic era, the traditional tension between development velocity and security control is evolving. As automated agents transform business operations, relying on manual security verification is no longer viable against the machine-speed of modern cyber threats. Google advocates for building durable trust through automated defenses, integrating hardware-based controls, safe coding principles, and intent-based authorization to secure intelligent applications against the rapid, AI-driven risks of the modern cybersecurity landscape.
Day 2: Wednesday, September 16th
Rewriting the Security Playbook: Lessons from the AI Frontlines
Any new technology brings new opportunities but also new security challenges. AI is being adopted by businesses around the world at increasing speed, generating significant efficiency gains. Unfortunately security is often an afterthought and security implications are not being considered during the design and the implementation. Mandiant consultants are at the frontlines, having unparalleled visibility into the risks that this causes, but also into best practices on how to implement AI in a secure manner. This presentation will highlight some observations from the work of our consultants.
Lessons from 30 Years on the Cybercrime Frontline
Throughout his career as an investigative reporter, Brian Krebs has delivered profound insights into the cybercriminal world, uncovering major breaches, unmasking numerous wrongdoers, and exposing the ecosystem at the heart of attacks against everyone from powerful Fortune 500 companies to everyday people. He is one of the most seasoned observers of cybercrime, with nearly 30 years of experience in the space, and he has persevered at great personal cost. In an unscripted, deep-dive fireside chat, join John Hultquist (Chief Analyst, Google Threat Intelligence Group) as he sits down with Brian to discuss the lessons Brian has learned in his extensive career, with a focus on how cybercrime has changed and what where it might be going.
Please note: This keynote session will not be recorded.
National Security, Frontline Defense: A Fireside Chat with CISA’s Nick Andersen
In this mainstage fireside chat, Sandra Joyce (Vice President, Google Threat Intelligence) sits down with Nick Andersen (Acting Director, CISA) to discuss the critical challenges facing security leaders across both the public and private sectors — from defending at machine speed and securing frontier AI to safeguarding critical OT infrastructure and driving collective action on systemic risk.
From Crisis to Culture: Building World-class Cybersecurity Programs
How battle-tested CISOs build resilient cybersecurity programs, rebuild customer trust, and weave cyber into the corporate DNA. Having led security at some of the world’s largest organizations, these leaders have spent their careers defending against highly sophisticated threats. They are often hired by companies in the wake of major security breaches to stabilize operations, win back trust, and build stronger, more reliable security programs. In this fireside chat, they will share their practical experiences navigating the aftermath of a crisis and shaping a company cybersecurity culture.
Please note: This keynote session will not be recorded.

Brad Maiorino
Senior Vice President, Enterprise Services Risk & Resilience, and Chief Information Security Officer
RTX











