[1 CPE] 30 Years of Security Assumptions Broke: Rethinking Security Controls in the Age of AI

  Presented by Pete Petersen, Sales Engineer • Silverfort

Frontier AI has quietly retired a three-decade assumption: that defenders have time to react after an attacker moves. Autonomous models now compress full attack chains into minutes, chaining ordinary misconfigurations at machine speed with no hesitation and no fatigue. Detection becomes forensic instead of preventive. Vulnerability management can’t patch fast enough. Periodic access reviews can’t review fast enough.

The answer requires a fundamental shift: from preset admin-time access rules and too-reactive detection to controls placed at the moment it matters most: runtime. Every identity, human, machine, or AI agent, must authenticate to act. That moment is the only control point capable of operating at machine speed, intervening before lateral movement begins.

This session gives security leaders the framework to drive that shift — examining why traditional controls collapse against AI-powered adversaries, what runtime enforcement looks like in practice, and how to elevate identity to a genuine, autonomous enforcement point at the center of a modern security operating model.

[1 CPE] 2026 Global Threat Landscape Report: Insights & Findings

  Presented by Fortinet

In 2026, the threat landscape cannot be accurately described through isolated indicators or single-domain trends. Adversaries operate across an end-to-end lifecycle that begins well before intrusion through exposure discovery, access brokerage, and industrialized preparation, and continues through exploitation, persistence, monetization, and operational impact.

Across exposure, exploitation, execution, and impact, the common variable is not just attacker sophistication. It is speed and reuse.

Come and learn our findings in exposure, weaponization, exploitation, post-exploitation, impact, cross-threat convergence, execution model, and cloud.

[1 CPE] Has Mythos Forever Broken Cybersecurity?

  Presented by Jesse Shairi, Sr Systems Engineer • Illumio

Mythos is a wake-up call to the exposure which everyone has to cybercrime. No target is too small and 100% of us will eventually be breached. Segmentation is the foundation of isolating the inevitable breach, preventing a small problem from escalating to putting you in the news as the latest victim. Learn how to discover and enforce all breaches, securing your environment from both known and unknown threats.

[1 CPE] Cybersecurity and Compliance For 2026

  Presented by Structured

This session examines how organizations can align cybersecurity, privacy, and compliance programs with the realities of 2026. The presentation reviews current threat trends, executive accountability requirements, and the expanding impact of artificial intelligence on risk management. It then connects federal, state, and industry obligations, including NIST CSF 2.0, HIPAA, CJIS, PCI DSS 4.0, CMMC, and emerging privacy laws to practical security program design. Attendees will leave with a clear framework for building a complete security program that integrates governance, segmentation, risk management, Zero Trust principles, and penetration testing to reduce risk and support regulatory readiness.

[1 CPE] The People Behind the Threats and Trends: Observations from the Front Lines

  Presented by Peter Ingebrigtsen, Sr Technical Marketing Manager US • Arctic Wolf

Cybersecurity threats are shaped and stopped by the people on the front lines. This session explores how Arctic Wolf Labs research and SOC expertise uncover emerging threat patterns, contextualize real-world attacks, and turn raw telemetry into actionable defense –– showing how human-driven security operations deliver scalable protection in an evolving threat landscape.

[1 CPE] Building Trust for What’s Next: PKI Modernization & Quantum Readiness

  Presented by Bryan Pitts, Solutions Engineer  • DigiCert

Certificate lifetimes are shrinking. Browser requirements are evolving. Machine identities are growing exponentially. At the same time, organizations are beginning to plan for post-quantum cryptography while supporting new AI-driven systems that depend on trusted digital interactions.

These changes are transforming PKI from a traditional security function into the operational trust layer for modern business.

This session provides a practical roadmap for modernizing PKI, improving visibility into machine identities, automating certificate lifecycle management, and building crypto-agility for future cryptographic transitions. Attendees will leave with actionable steps to reduce operational risk today while preparing for post-quantum security and the next generation of digital trust.

[1 CPE] Driving Innovation with Unified Governance and Security

  Presented by Ken Robinson, Solution Engineer • Island

Browser-based apps, unsanctioned SaaS, and a fast-growing wave of AI assistants are reshaping modern work; and they are entering the enterprise faster than security teams can govern them. For today’s CIO and CISO, the mandate is no longer to choose between enablement and control; it’s to deliver both at once. “”Shadow AI”” has made that tension urgent and the organizations that win will be the ones that channel this energy safely rather than trying to block it.

This session lays out a practical path to enabling innovation without surrendering governance. We’ll explore how unified visibility into AI and other application usage, granular controls that keep sensitive data protected, and cross-functional collaboration between security, risk, and the business can turn these ungoverned risks into a governed advantage.

Join us to discuss:

  • Turning Shadow AI into sanctioned AI — enabling adoption while maintaining control.
  • Unified visibility and policy across browsers, SaaS, and AI tools.
  • Operational, risk, and compliance impacts — and the collaboration model that keeps organizations resilient, adaptable, and ahead.

[1 CPE] What the Hack is Going On?

  Presented by Tim Medin, Chief Executive Officer • Red Siege

A comprehensive overview of modern cybersecurity threats and how breaches occur. We will highlight the various methods used by cybercriminals, including phishing, social engineering, and ransomware attacks, and emphasize the importance of identifying and addressing vulnerabilities before they can be exploited. There are a lot of vulnerabilities in the wild, and IT administrators and security professionals often focus on the wrong issues because they are easier to monitor or measure. By the end of the presentation, you will have gained valuable insights into the latest cybersecurity threats and how to protect against them.

[1 CPE] A Sociopathic 5-Year-Old Has Your Access Token: AuthN/AuthZ for Agentic AI

  Presented by Gil Kirkpatrick, Chief Architect • Semperis

Semperis Chief Product Officer Alex Weinert describes AI agents as “curious, genius, sociopathic 5-year-olds.” He’s right, but while you can supervise one 5-year-old, you can’t supervise thousands of AI agents operating at millisecond speed across every system you own. You don’t supervise them. You childproof the house.

This session explores the access control model agentic AI actually requires, covering workload identity (SPIFFE, WIMSE, and the IETF’s AIMS draft), delegated OAuth (token exchange, actor chains, Rich Authorization Requests, sender-constrained tokens, and the 2026 MCP authorization spec), and dynamic per-action policy evaluation, including why a role is an input to an authorization decision, not the decision itself.

You’ll leave with a reference architecture, a maturity model, and a clear understanding of what’s standardized today and what still has to be built.

[1 CPE] The Mythos Paradigm: Securing the Enterprise Against Autonomous AI Threats

  Presented by Lucas Persell, Sr Solutions Architect • C1

In April 2026, the cybersecurity landscape experienced a permanent, structural shift with the disclosure of Anthropic’s Claude Mythos 5—the first frontier AI model natively capable of autonomous, multi-step vulnerability discovery, reverse-engineering, and zero-day exploit generation in production codebases. With federal agencies like CISA actively using Mythos to audit government software, and open-weight models like Z.ai’s GLM-5.2 democratizing these capabilities globally, the window between vulnerability disclosure and automated corporate takeover has collapsed to minutes.

The legacy “Assume Breach” defensive paradigm—relying on human-led SOC alert triage and standard monthly patching SLAs—is dangerously obsolete. Security leaders must transition to an “Assume Exploitation” posture.

In this technical yet strategic session, Senior Solutions Architect, Lucas Persell, explores the anatomy of autonomous AI threat agents. Attendees will demystify how these agents orchestrate multi-file code execution, learn the three foundational pillars of modern post-Mythos defense (continuous reachability exposure management, zero-trust microsegmentation, and machine-speed autonomous response), and discover how to integrate automated playbooks to neutralize agentic threats at sub-second speeds.