[1 CPE] The Future of Ransomware is Here: ESET’s Latest Threat Report

  Presented by Ryan Dennison, Inside Channel Account Manager • ESET

Join us for an in‑depth walkthrough of the most significant insights from ESET’s latest Threat Report. This session will examine the rise of AI‑assisted attacks, including the discovery of PromptLock, an AI‑powered ransomware prototype. We’ll also explore key shifts in malware‑as‑a‑service, NFC‑driven fraud, and PowerShell‑based delivery techniques, and gain a clear understanding of how ransomware operations are evolving and reshaping today’s threat landscape.

[1 CPE] Building Trust for What’s Next: PKI Modernization & Quantum Readiness

  Presented by Bryan Pitts, Solutions Engineer • DigiCert

Certificate lifetimes are shrinking. Browser requirements are evolving. Machine identities are growing exponentially. At the same time, organizations are beginning to plan for post-quantum cryptography while supporting new AI-driven systems that depend on trusted digital interactions.

These changes are transforming PKI from a traditional security function into the operational trust layer for modern business.

This session provides a practical roadmap for modernizing PKI, improving visibility into machine identities, automating certificate lifecycle management, and building crypto-agility for future cryptographic transitions. Attendees will leave with actionable steps to reduce operational risk today while preparing for post-quantum security and the next generation of digital trust.

[1 CPE] Cybersecurity and Compliance For 2026

  Presented by Structured

This session examines how organizations can align cybersecurity, privacy, and compliance programs with the realities of 2026. The presentation reviews current threat trends, executive accountability requirements, and the expanding impact of artificial intelligence on risk management. It then connects federal, state, and industry obligations, including NIST CSF 2.0, HIPAA, CJIS, PCI DSS 4.0, CMMC, and emerging privacy laws to practical security program design. Attendees will leave with a clear framework for building a complete security program that integrates governance, segmentation, risk management, Zero Trust principles, and penetration testing to reduce risk and support regulatory readiness.

[1 CPE] Data Resilience in the Age of Attack: Protect What Matters

  Presented by Landra Pierce, Product Strategy Technologist • Veeam

Cyberattacks are no longer a distant threat; they are a reality every IT team must be prepared for. When an attack occurs, your data becomes both the primary target and the key to recovery. Many organizations still rely on backup strategies that are designed for hardware failures or accidental deletions, rather than today’s threats, like ransomware, insider risk, and automated attacks. This disconnect creates vulnerabilities, especially when backups become an overlooked entry point in your security strategy. In this session, we will address these challenges to help you better protect your organization.

This session is ideal for IT professionals who want greater confidence in safeguarding their data and peace of mind. We will examine the most common oversights that leave organizations, including those in government, education, healthcare, and other sectors, exposed to cyberthreats. You’ll discover how teams are advancing beyond basic backup to adopt a cyber-ready approach, including topics like immutability, threat awareness, rapid recovery, and intelligent automation.

Our focus will be practical and grounded in real-world scenarios, and what truly works when pressure is high and time is limited. Because when every minute counts and trust is at stake, data resilience means more than surviving an attack. It’s about protecting what matters most and emerging even stronger.

[1 CPE] The New AI Era in Cybersecurity: What it Means for Your Organization

  Presented by Jesus Lopez, Sales Engineer • ESET

This session explores how artificial intelligence is reshaping the modern cyber threat landscape by empowering both attackers and defenders. It examines how adversaries use AI to scale attacks, evade detection, and increase their effectiveness. The presentation also highlights how organizations can leverage AI to build proactive, adaptive defenses that detect and respond to threats more efficiently. Finally, it showcases how ESET applies AI-driven technologies to protect against evolving cyber-attacks and strengthen overall security resilience.

[1 CPE] State of the Union: Annual Information Security Report

  Presented by Chad Spoden, Sr Information Security Consultant, Solution Architect Manager • FRSecure

The result of over 100 incident cases handled by the FRSecure response team in the last two years, Sr Information Security Consultant Chad Spoden will dive into the latest threats and response techniques you need to know—and what you can do to minimize the risk and impact of similar events. The breakdown will cover Business Email Compromise, Ransomware, and Internal Compromise. You can’t afford to miss it!

[1 CPE] Why Layered Identity Defense Is the Best Offense

  Presented by Sean Deuby, Principal Technologist, Americas • Semperis

Cyberattackers are adept at finding ways through your defenses and into identity systems like Active Directory, Entra ID, and Okta, and endpoint defenses won’t stop them. From there, they can move laterally, escalate privileges, access sensitive data and resources, and inject malware or ransomware.

AI has supercharged these attacks through automation and making it easy for unsophisticated actors to execute sophisticated attacks. One consistent lesson has come from experiences with frontier AI models and agents: identity protection has become even more important than it already was.

Implementing a layered defense that includes identity threat detection and response (ITDR) and robust identity recovery is key to true cyber resilience.

[1 CPE] AI Changes Everything

  Presented by Michael Lippman, Regional Channel Systems Engineer • Fortinet

AI, data sovereignty, and identity are reshaping how organizations think about security. This panel discussion explores how to protect emerging AI workloads, maintain control of sensitive data, and provide secure access from anywhere.

[1 CPE] Proving Cyber Resilience: Measuring Outcomes, Not Effort

  Presented by Andy Rezabek, Sales Engineer • Horizon3

Most security programs measure effort — not outcomes. Organizations patch thousands of vulnerabilities, deploy dozens of tools, and run annual tabletop exercises… but when an attacker shows up, none of that matters.

What matters is whether they can prove their defenses actually work.

In this talk, Horizon3 shares how leading organizations are using autonomous pentesting to see their environment through the attacker’s eyes — continuously, safely, and at scale. By shifting from assumptions to proof, they’ve learned to:

  • Prioritize what’s exploitable. Focus limited resources on the weaknesses that truly put the business at risk that are known to be abused by threat actors.
  • Quickly fix what matters. Close the loop from find → fix → verify and reduce your exploitable attack surface.
  • Reduce attacker dwell time. Use pentest results to precisely deploy honeyTokens to detect compromise early, and to continuously prove your EDR and SIEM are tuned and working as intended.

Cyber resilience isn’t about being perfect — it’s about getting better over time. And the only perspective that truly matters is the attacker’s.

[1 CPE] Keep Your Eye on the Lady (AI): Securing and Governing AI Systems

  Presented by Marc Cressall, CISSP, President • ISC2 Salt Lake City

In a three-card monte game, the audience watches the lady (the card) and misses the move (the sleight of hand). The same thing is happening in AI security right now: teams are fixated on what the AI can do — the capability, the demo, the agent — while the real attack surface happens in the move: the data it’s trained on, the prompts it trusts, the permissions it holds, the outputs it’s allowed to act on.

What we cover:

  • Why “AI security theater” is the new compliance theater — green dashboards, checkbox governance, and visible controls that don’t stop real risk
  • The three-card monte of AI: misdirection (watching the model), sleight of hand (unexamined agent permissions), audience management (performing for auditors), and the illusion of safety (false confidence from visible measures)
  • A live demonstration of the misdirection — watch the capability, miss the attack surface
  • The “Reclaim Reality” framework applied to AI: shift from compliance to capability, eliminate performative friction, foster a no-fault transparency culture, and measure reality (detection/response time, actual coverage) instead of appearance

Takeaways attendees walk away with:

  • A framework to spot AI security theater in their own programs
  • A Monday-morning checklist to audit their AI/agent attack surface
  • A practical path from checkbox governance to real AI security capability