The 8th Edition of the San Diego Official Cybersecurity Summit is the must-attend event for CISOs and senior leaders looking to strengthen resilience, reduce risk, and align security with business goals. Join top executives, innovators, and experts for a full day of actionable insights, cutting-edge solutions, and high-impact networking. Experience interactive panels, exclusive solution showcases, and strategic discussions that go beyond theory to deliver real-world results, all complemented by a catered breakfast, networking lunch, and closing cocktail reception.

Featured Speakers

Key Issues Covered at The Official Cybersecurity Summit

AI, Automation, and Emerging-Tech Risk (and Opportunity)

As artificial intelligence, automation, and new digital technologies accelerate across every industry, cybersecurity leaders face both unprecedented risk and powerful opportunity. The summit will explore how Cybersecurity leaders and their teams can harness emerging technologies to strengthen resilience, streamline operations, and stay ahead of adversaries who are equally quick to innovate. Attendees will gain insight into real-world applications of AI for threat detection, incident response, and decision intelligence, while learning how to identify and mitigate the new classes of vulnerabilities these tools introduce.

From generative AI and large language models to autonomous security systems and deepfake detection, these discussions will separate hype from reality. Experts will share practical frameworks for governing AI responsibly, managing data integrity, and aligning innovation with enterprise risk management. The conversations will help cybersecurity executives navigate the complex balance between embracing emerging technology for competitive advantage and ensuring it doesn’t become their next threat vector.

Key Takeaways:
• Learn how AI and automation are transforming threat detection, incident response, and security operations in measurable ways.
• Practical strategies for managing and mitigating new risks created by emerging technologies like generative AI and autonomous systems.
• Frameworks for responsible AI governance, including data integrity, transparency, and regulatory alignment.
• Real-world examples of organizations balancing innovation with security and risk management priorities.
• Actionable insights cybersecurity leaders can take back to their teams to prepare for the next wave of AI-driven threats and opportunities.

Supply Chain, Third-Party Ecosystem, and Identity Attack Surface

As organizations expand their digital ecosystems, the lines between internal and external risk are rapidly disappearing. Today’s threat actors know that the fastest way into a network isn’t always through the front door. From compromised vendors and cloud integrations to weak identity controls, attackers are exploiting every link in the chain. The summit brings cybersecurity leaders together to unpack how supply chain vulnerabilities, third-party dependencies, and identity-based risks are converging to create a complex and often underestimated attack surface.

Cybersecurity executives will explore real-world examples of cascading breaches, lessons learned from managing large vendor ecosystems, and emerging frameworks for continuous third-party risk monitoring. The discussions highlight strategies for mapping hidden connections, enforcing stronger identity governance, and building resilience through transparency and collaboration. Attendees will walk away with practical insights for reducing exposure and strengthening trust across every part of their digital supply chain.

Key Takeaways:
• Understand how interconnected supply chains and third-party vendors expand your organization’s attack surface.
• Learn proven methods to assess, monitor, and mitigate risks across your extended digital ecosystem.
• Explore best practices for managing identity as the new security perimeter, including zero trust and access governance strategies.
• Gain insights from real-world breach scenarios that reveal common breakdowns in vendor and identity controls.
• Leave with an actionable framework to improve third-party risk visibility, strengthen resilience, and build more secure partnerships.

Resilience, Risk, and Results: Aligning Security with Business Outcomes

In today’s threat landscape, resilience is more than just recovery - it’s readiness, adaptability, and alignment with the business mission. The summit explores how forward-thinking cybersecurity executives are quantifying cyber risk to drive smarter investments and communicate value in business terms. By translating technical controls into measurable business impact, cybersecurity leaders are helping their organizations make data-driven decisions that balance protection with performance.

Join top executives and thought leaders for in-depth discussions on the frameworks, metrics, and real-world practices shaping the next generation of cyber resilience. From risk quantification models to boardroom-ready reporting, this conversation will reveal how leading security teams are reframing cybersecurity as a strategic business enabler - bridging the gap between risk reduction and results.

Key Takeaways:
• Learn how to translate cybersecurity metrics into meaningful business outcomes that resonate with executive leadership and the board.
• Explore practical approaches to cyber risk quantification that help prioritize investments and justify budget decisions.
• Understand how resilience strategies can align with overall business continuity and growth objectives.
• Gain insights from leading CISOs on how they communicate security value across the organization to drive engagement and accountability.
• Discover frameworks and tools that connect operational security performance with measurable business impact.

Top 6 Reasons to Attend the Cybersecurity Summit

1
Learn

Learn from renowned experts from around the globe on how to protect & defend your business from cyber attacks during interactive panels & fast track discussions.

2
Evaluate Demonstrations

Evaluate and see demonstrations from dozens of cutting-edge cybersecurity solution providers that can best protect your enterprise from the latest threats.

3
Time, Travel & Money

Our mission is to bring the cyber summit to the decisionmakers in the nation’s top cities. Our events are limited to one day only and are produced within first-class hotels, not convention centers.

4
Engage, Network, Socialize & Share

Engage, network, socialize and share with hundreds of fellow business leaders, cybersecurity experts, C-Suite executives, and entrepreneurs. All attendees are pre-screened and approved in advance. On-site attendance is limited in order to maintain an intimate environment conducive to peer-to-peer interaction and learning.

5
CEUs / CPE Credits

By attending a full day at the Cybersecurity Summit, you will receive a certificate granting you Continuing Education Units (CEU) or Continuing Professional Education (CPE) credits. To earn these credits you must participate for the entire summit and confirm your attendance at the end of the day.

6
A Worthwhile Investment

By investing one day at the summit you may save your company millions of dollars, avoid stock devaluation, and potential litigation.

Questions

For any questions, please contact our
Registration Team.

Sponsor

To sponsor at an upcoming summit, please fill out the
Sponsor Form.

Admission to the Cybersecurity Summit is reserved exclusively for active cybersecurity, IT, Information security practitioners tasked with safeguarding their enterprises against cyber threats and managing cybersecurity solutions. All registrations are subject to review.
 
Students, interns, educators, individuals not currently employed in IT, and those in sales or marketing roles are not eligible to attend.
 
Additionally, if we are unable to verify your identity with the information you provided during registration, your attendance may be cancelled.
 
Please note these qualifications pertain to all attendees, including members of our partner organizations.

Agenda

The Official Cybersecurity Summit delivers high-impact sessions designed to help leaders strengthen resilience, protect critical infrastructure, and align security with business goals.

Attendees will gain actionable insights from expert panels, explore cutting-edge solutions, and connect directly with top industry innovators - making this a can’t-miss agenda for CISOs and security executives.

8:00 AM-9:00 AM
Networking Breakfast
9:00 AM-9:05 AM
Welcome
9:05 AM-9:10 AM
Welcome Remarks
9:10 AM-9:40 AM
Presentation with Billy Norwood, CISO, FFF Industries

10:10 AM-10:30 AM
Horizon 3 AI Presentation: Proving Cyber Resilience: Measuring Outcomes, Not Effort

Most security programs measure effort — not outcomes. Organizations patch thousands of vulnerabilities, deploy dozens of tools, and run annual tabletop exercises… but when an attacker shows up, none of that matters.  What matters is whether they can prove their defenses actually work.  In this talk, Horizon3.ai shares how leading organizations are using autonomous pentesting to see their environment through the attacker’s eyes — continuously, safely, and at scale.

By shifting from assumptions to proof, they’ve learned to:

• Prioritize what’s exploitable. Focus limited resources on the weaknesses that truly put the business at risk that are known to be abused by threat actors.

• Quickly fix what matters. Close the loop from find → fix → verify and reduce your exploitable attack surface.

• Reduce attacker dwell time. Use pentest results to precisely deploy honeyTokens to detect compromise early, and to continuously prove your EDR and SIEM are tuned and working as intended.  

Cyber resilience isn’t about being perfect — it’s about getting better over time. And the only perspective that truly matters is the attacker’s.


10:30 AM-10:50 AM
ESET Presentation: Real World Incident Response with ESET

Gain insight into how real-world security incidents are managed and resolved with ESET. In this session we share a series of real customer incidents that highlight the challenges organizations face and how our services helped them detect, investigate, and respond to evolving threats. Through these practical examples, attendees will learn how proactive monitoring, expert guidance, and coordinated response efforts can help reduce risk, improve resilience, and strengthen an organization's overall security posture. Whether you're responsible for security strategy, operations, or business continuity, this session provides valuable insights into the benefits of a managed security partnership.


10:50 AM-11:10 AM
Innovation Spotlight - Huntress Labs: Defending the Rest of Us Resilience for Organizations of All Sizes

News headlines show you the breaches at massive corporations, but it’s everyday organizations that face the most threats. Adversaries prey on the human psyche and use AI to advance their tactics and target the companies that keep our communities running.

For these companies, a ransomware or BEC attack isn’t just a stressful event—it’s the reason they can’t make payroll. This session explores how hackers plan to win, and why you don’t need a massive budget to fight back.  

We’ll get into how Huntress brings cyber resilience through a powerful combo of purpose-built technology and human SOC expertise to stop threats before they cause damage—because organizations of ALL sizes deserve a fighting chance against attackers.


11:10 AM-11:35 AM
Networking Break
11:35 AM-12:20 PM
Panel: AI and Emerging Tech at the 2026 Security Frontline

Abstract
AI and new digital technologies will continue to shift the cybersecurity landscape in 2026. This session explores how modern tools can enhance detection, response, and decision making while introducing new risks tied to generative systems, data integrity, and fast moving threat innovation. Leaders will gain a clear view of how to adopt emerging technology in a responsible and strategic way that supports resilience and aligns with enterprise risk goals.

Key Takeaways
• How AI and emerging tech are reshaping core security functions
• The new risks created by generative models and evolving attack techniques
• Practical governance steps that support responsible AI use
• Examples of organizations pairing innovation with disciplined risk management


12:20 PM-12:40 PM
Presentation with Scott Williams, Director of Startup Acceleration, Cloud Security Alliance: How Cloud Security Is Adapting to the Age of AI

AI is accelerating both sides of the fight. By some estimates, a single AI agent can now match the research output of 1,000 human analysts, and attackers are the ones exploiting that leverage first. Weaponization now happens at machine speed, while defensive AI adoption is still catching up. No amount of hiring closes that gap.

For cloud security teams, the response isn't optional. AI has to become core to how security operations run, while doubling down on the fundamentals that raise attacker cost no matter what tools they're using. This session explores where cloud security is actually adapting today and what teams should prioritize first.


12:40 PM-12:50 PM
Innovation Spotlight - Wiz: Secure everything you build and run

Cloud adoption and AI integration are opening new doors, bringing with them a need for clear, integrated security. Many teams navigate a complex security landscape, often with disconnected tools that struggle to provide a complete view. Learn the Wiz vision for cloud security that moves beyond reactive fixes to a unified platform approach, simplifying operations and accelerating innovation.


12:50 PM-1:00 PM
Innovation Spotlight - Sublime
1:00 PM-1:50 PM
Lunch
1:50 PM-2:10 PM
Presentation with Dr. Victor Monga, President, Cloud Security Alliance (CSA) LA: Measuring impact when AI can find and patch vulnerabilities

2:10 PM-2:30 PM
Presentation with Pradeep Simha, President, ISACA Orange County

2:30 PM-2:40 PM
Innovation Spotlight - Torq
2:40 PM-2:50 PM
Innovation Spotlight - Fidelis Security: Turning Attackers into Signals: How Deception Changes Modern Threat Detection

Attackers are no longer triggering alerts; they’re hiding in plain sight. This session shows how deception technology transforms attacker behavior into high-confidence detection signals. Learn how integrating deception into an Open Active XDR platform improves visibility, reduces noise, and enables faster, smarter response to real threats across modern enterprise environments.


3:10 PM-3:20 PM
Innovation Spotlight - Veeam
3:20 PM-3:45 PM
Networking Break
4:15 PM-4:35 PM
Presentation with Alexander Neff, Senior Director of Infosec, Faro / VP, ISACA SD and Chad Coalier, Research Director, ISACA SD / AI, Security, and Cloud Platform Architect: Loop Engineering: Guardrails Your AI Coding Agent Can't Bypass

AI coding agents have collapsed build timelines, and they've quietly collapsed the security review windows that used to live inside them. When an agent can scaffold a service in an afternoon, the traditional "security reviews the PR" model isn't just slow; it is structurally irrelevant. The answer isn't to slow the agent down; it is to make the guardrails part of the build process itself.

This session presents AISDLC, a spec-driven development methodology that treats security requirements as first-class specifications. Requirements are written before code, traced through implementation, and enforced by CI gates the agent cannot bypass. Rather than trusting the model to "remember" security context, AISDLC makes ownership mechanical. Every requirement maps to a control, every control maps to a gate, and nothing merges without traceability intact.

Attendees will leave with:

  1. A practical framework for converting security requirements into machine-enforceable specifications that AI agents must satisfy before code merges
  2. CI gate patterns that enforce traceability from requirement to control to implementation, removing reliance on agent memory or developer discipline
  3. Real-world failure modes observed when AI agents build under guardrails, and how to design gates that catch them

4:35 PM-4:45 PM
Innovation Spotlight - Object First: Veeam Backup Demands Absolute Immutability

Ransomware attacks have become more sophisticated than ever. 66% of organizations have experienced at least one attack in the past two years, and 96% of those target backup data. So, when—not if—a breach happens, and your business, reputation, and career are on the line, immutable backup storage is your best and last line of defense.

However, if ‘immutable’ data can be overwritten by a backup or storage admin, a vendor, or an attacker, then it cannot be considered a storage solution with Absolute Immutability. In this presentation, learn how to make your backup data ransomware-proof with Absolute Immutability.


4:45 PM-4:55 PM
Innovation Spotlight - Nudge: Shadow AI is everywhere. Here's how to find and secure it.

Security teams are getting blindsided by “shadow AI” as MCP servers, AI agents, and AI-enabled tools proliferate across their organizations. And, AI tools can quietly hold ongoing access to company data through OAuth grants and app-to-app connections, flying under the radar of traditional network-centric security tools.A new approach is needed for modern teams to get control of shadow AI risks.

This presentation will cover the four steps every org should take to gain control of shadow AI, and how Nudge Security can help:  

- Discovery of SaaS and AI: Effective governance starts with discovery. Learn how you can find every shadow app and account quickly.

- Insights into AI data access: AI data security risks extend across your SaaS ecosystem via OAuth grants that provide access to your data. Learn how to uncover MCP server connections, AI agents, and risky integrations.

- Third-party risk reviews: AI tools require special attention when it comes to security reviews. See how you can quickly assess new and unfamiliar vendors and be the first to know when new tools are introduced.

- Automated governance guardrails: Blocking often drives risks further into the shadows. Learn how to guide employees toward safe, compliant AI use when and where they are working.


4:55 PM-5:15 PM
Closing Keynote Presentation with Darren Lian, Special Agent in Charge, IRS Criminal Investigation, Los Angeles Field Office

5:15 PM-5:45 PM
Networking Reception

Speakers

Our speakers bring unmatched expertise and real-world experience in cybersecurity, risk management, and business strategy. Through engaging keynotes, panels, and discussions, they deliver actionable insights and practical solutions that help CISOs and security leaders stay ahead of evolving threats.

Sponsors

The Official Cybersecurity Summit connects innovative solution providers with the cybersecurity leaders who evaluate and influence purchasing decisions. With a dynamic exhibition hall and a packed agenda of interactive panels and engaging sessions, this event offers unmatched opportunities to showcase solutions and build meaningful connections.

Partners

The Cybersecurity Summit is proud to partner with some of the industry’s most respected organizations in technology, information security, and business leadership.

Admission to the Cybersecurity Summit is reserved exclusively for active cybersecurity, IT, Information security practitioners tasked with safeguarding their enterprises against cyber threats and managing cybersecurity solutions. All registrations are subject to review.

Students, interns, educators, individuals not currently employed in IT, and those in sales or marketing roles are not eligible to attend.

Additionally, if we are unable to verify your identity with the information you provided during registration, your attendance may be cancelled.

Please note these qualifications pertain to all attendees, including members of our partner organizations.