Isaac Ojeh
Senior Security Analyst, PayFacto

Isaac Ojeh

Isaac Ojeh is a cybersecurity practitioner and researcher whose work spans threat detection, incident attribution, Zero Trust architecture, and the practical application of AI to defensive operations. Over more than 14 years, he has held security roles across three distinct environments: FinTech security leadership at PayFacto, Tier-1 banking incident response at TD Bank Group's CSIRT-IR team, and analyst operations at TalTech CERT, the Estonian academic CERT.

His research maps directly to the three angles this panel takes on AI and threat intelligence. On attribution, Isaac authored an original methodology for attributing cyber-physical incidents in UAV and rail systems, published at ICCWS 2026, which fuses telemetry from cyber logs, flight data, rail signalling systems, and OSINT to distinguish plausible attributions from misleading indicators. On acceleration, his ICAIR 2025 paper introduces an Adaptive Deception Defense Framework for FinTech that combines reinforcement-learning policy with high-fidelity honey environments, reducing mean time to detect from over three minutes to under thirty seconds while eliminating exfiltration in test scenarios. On trustworthy analysis, his sole-authored ECCWS 2025 paper operationalizes Richard Bejtlich's MICCMAC framework as a Zero Trust device readiness scorecard, and was independently recognized by SANS Senior Instructor Ismael Valenzuela with a Red Coin, a rare community-contribution award in the SANS ecosystem.

Isaac serves on the CyberRisk Alliance Expert Advisory Panel, where he reviews AI security content prior to publication across CRA's media portfolio. He holds concurrent appointments on the GIAC Advisory Board, the EC-Council C|RAGE Beta Testing Committee (Certified Responsible AI Governance and Ethics), and the ISC2 Scholarship Reviewer Committee. He is Chapter Lead of BSides Burlington, and teaches digital forensics and hands-on offensive and defensive tradecraft as an adjunct at Fanshawe College, Conestoga College, and TCM Security.

Isaac holds 3 SANS Lethal Forensicator coins across Windows, smartphone, and malware forensics disciplines, placing him among a limited number of practitioners to hold all 3. His credential portfolio spans over 35 industry certifications, including 8 GIAC certifications, OSCP+, CISM, CSIA, C|CISO, and PMP. He holds a B.Sc. in Telecomms Wireless Networks and Security from Grenoble Alpes University France, an M.S. in Cybersecurity and Information Assurance from Western Governors University USA, and an Executive MBA from Valar Institute at Quantic School of Business and Technology USA.