SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals

This session will explore how AI is augmenting the workforce and what it truly takes to build a resilient, AI-empowered team. We’ll break down the top workforce challenges to AI adoption—ranging from lack of literacy and tool overload to integration issues and cultural resistance—and provide practical strategies for overcoming them.
Attendees will spend time mapping their AI-readiness and leave with actionable solutions and example use-cases they can implement immediately. This session will equip you with the insight and frameworks needed to lead confidently in the AI era.
Abstract: Large Language Models (LLMs) such as ChatGPT, Claude, and Grok have become very powerful. This talk is full of live demonstrations of the kinds of things information security professionals can do with the LLMs. Examples include analyzing and manipulating shell code, writing exfiltration code, analyzing logs, and more.
Abstract: Actionable intelligence is only as good as your ability to share it — quickly, reliably, and with the right context. In this talk, we’ll explore how MISP can be used not just as a threat intel repository, but as a powerful engine for real-time collaboration and operational impact. We’ll cover how to make MISP highly available, build and sustain a community around it, and create qualitative events that provide the necessary context for detection, decision-making, and response. You’ll also see how we’re integrating AI into our workflows to improve speed, reduce manual effort, and enrich intelligence automatically — without sacrificing quality. Whether you’re just getting started with MISP or looking to take your threat sharing to the next level, this talk will give you concrete ideas to make it work in high-pressure, real-world environments.
Abstract: In Digital Forensics, Incident Response, and other Cyber Security topics, we're frequently tasked with consuming HUGE amounts of data and finding the "interesting" parts quickly. We've had great tools to do this for decades. But, those tools we're optimized for old computing hardware. In our modern day we have setups with multiple CPU cores and flash storage. This talk will present some techniques to speed up those old techniques fully utilizing modern hardware.