SEC536: Adversarial AI - Penetration Testing AI Systems

In-Person
Operational technology was never designed for the threat landscape it now sits in. Three forces are closing in at once: AI-driven attacks that move faster than any human response, identity hijacking that turns trusted access into the front door, and quantum computing that puts a hard expiry date on the cryptography protecting industrial systems today.
This session unpacks how those forces are reshaping OT security in practice, and why post-quantum resilience is a programme to start now rather than a problem to schedule later. OT assets have refresh cycles measured in decades, which means the cryptographic decisions made this year will still be live when quantum capability arrives.
Ideal for OT and ICS security leaders, CISOs, architects, and risk owners across critical infrastructure and industrial environments.
In-Person & Virtual
In-Person
In-Person
Every year, the SANS Cyber Threat Intelligence Survey takes the pulse of the discipline. The 2026 results are in, and they show a function under real pressure to prove its worth.
This session walks through the findings: where AI and automation are genuinely changing analyst workflows and where they are not, which CTI practices are gaining ground, the challenges analysts report most often, and how teams are measuring the value and effectiveness they deliver back to the business.
Ideal for CTI analysts and leads, SOC managers, threat hunters, and security leaders who need to defend a threat intelligence budget with evidence.
In-Person & Virtual
In-Person
In-Person
Mobile malware is as actual as ever, with new malware families surfacing every month. The different goals of malware are much broader than simply stealing your pictures or emails.
In this session, we investigate all the different kinds of malware that are actively infecting devices, explain how they achieve the needed permissions, and discover why Android is much more susceptible to malware than iOS.
In-Person & Virtual
In-Person
In-Person
You already know how to hire an analyst. You interview, you check references, you set expectations, you review performance, and you have a process for when it does not work out. AI security agents deserve the same discipline, and most teams are skipping it.
This session reframes agent adoption as a hiring decision. It covers what to document before an agent touches production, how to audit and red team what it actually does, how to evaluate performance against something more useful than vibes, and why an offboarding plan matters as much as the onboarding one.
Ideal for security leaders, SOC managers, and anyone about to put an AI agent into a live workflow alongside a human team.
In-Person & Virtual
In-Person