Planet Cyber Sec AI Conference
at the Hilton Hotel Orange County / Costa Mesa
3050 Bristol St., Costa Mesa, Ca 92626
February 11 2026
What Attendees say
The technical deep-dives are fantastic – I always walk away with new tools or techniques I’m excited to try out. You can tell the organizers are doing this for the community – from the thoughtful mix of speakers to the awesome variety of venues..
The talks delivered real, practical value – not just high-level theory or vendors promoting their products – and I walked away with actionable insights I could apply right away. I’d absolutely attend again.
It was a fantastic opportunity to learn from fellow practitioners, share real-world insights, and make meaningful connections. A must-attend event for anyone passionate about application security and staying ahead in the field…
Join us at Planet Cyber Sec AI 2026 for an exciting day filled with valuable insights, practical strategies, and great networking opportunities. Connect with cybersecurity and IT leaders from diverse backgrounds, exchange ideas, and stay ahead of today’s evolving cyber threats.
At this one-day conference, you’ll:
Hear from top experts and keynote speakers sharing insights on pressing cybersecurity challenges.
Expand your professional network and reconnect with peers from various industries.
Collaborate and discuss common security concerns with professionals facing similar challenges.
Learn practical strategies and best practices you can immediately apply to your daily tasks.
Enjoy opportunities to network during sessions, breaks, and our popular happy hour after the event.
- Earn CPE credits while strengthening your software security skills.
Whether you’re a seasoned cybersecurity professional or newer to the field, Planet Cyber Sec AI 2026 gives you the knowledge, connections, and tools to strengthen your skills and advance your career.
Grow your expertise. Build meaningful connections. Help create a stronger cybersecurity community.
Want to be the first to know when registration opens?
Join our newsletter and stay informed as we release the full agenda and speaker lineup.
We look forward to seeing you there!
Featured Speakers

Opening Keynote
Ron Dilley
Principal Cyber Security Architect at ISSquared Inc.

Closing Keynote
Cassio Goldschmidt
Former CISO at ServiceTitan

Bindi Davé
Field CISO, Optiv

Richard Greenberg
CEO, Layer 8 Masters

Rajinder Singh
Founder & CEO, PQCrypto

Jackie Kalter
Security Strategist, Mad River Enterprises

Elnaz Wevro
CISO- Principal Consultant
FalconForce Consulting, LLC

James Shewmaker
Computer & Network Security Consultant

Josh Sokol
CISO, SimpleRisk

Paul Grabow
Principal Advisor, Cybersecurity CMMC Advisors

Quincey Collins
Chief Security Officer
Sheppard Mullin

Debbie Christofferson
Senior Security Consultant

Emily O’Carroll
Field CISO
GuidePoint Security

Michael Rembis
CISO | Cybersecurity | Cyberresilience | HITRUST | CISSP | GRC | HIPAA | PCI | Board Member | Digital Transformation

Marcelo Lewin
Founder of iBuildWith.ai, Vibe Coder & Vibe Coder Advocate

Araceli Treu Giguere
Vice President of Security and Intelligence Operations with Netskope

Nemi George
VP, Chief Information Security Officer,
Pacific Dental Services

Justin M. Vallese
Special Agent, FBI
Los Angeles Cyber Program

Adam Schaal
Distinquished Engineer
Pixee

Ganesh Pai
Founder & CEO
Uptycs

Alexander Braehler
Founder & CEO at Tekkno, Inc., COO, Layer 8 Masters
Sponsors, Orgs, Exhibitors









February 11 2026
9:00 AM - 10:00 AM
Registration, Breakfast, Networking & Vendor Expo
10:00 AM - 10:35 AM
Catalina 1

Richard Greenberg
Ceo at Layer 8 Masters
Opening Welcome
Welcome to the Planet Cyber Sec Conference. Join us in Catlina 2 Room for the Opening Welcome to kickstart a day of insightful discussions and networking.
Get to Know Our Exhibitors & ORGs
As part of our commitment to supporting the broader cybersecurity community, we’ve invited non-profit organizations and exhibitors in the InfoSec space to take part in this year’s conference. During this session, each group will briefly introduce themselves, share their mission, activities, and how you can get involved. If you'd like to learn more, be sure to visit their booths throughout the day.
10:40 AM - 11:25 AM
Catalina 1

Ron Dilley
Principal Cyber Security Architect at ISSquared Inc.
Opening Keynote
AI: The hidden attack surfaces
Focus on the emerging risks in AI supply chains, including model poisoning, data contamination, and the vulnerability of ML operations infrastructure.
Discuss how increased integration and dependence on more complex supply chains are leading to a more opaque and unpredictable risk landscape, particularly when AI systems are integrated across interface and vendor boundaries.
11:30 AM - 12:10 PM
Catalina 1

Rajinder Singh
Founder & CEO, PQCrypto
Talk
Preparing for the Post-Quantum Transition
A large-scale, fault-tolerant quantum computer running Shor's algorithm would break current PKI systems such as RSA and ECC, compromising global data confidentiality and enabling digital signature forgeries. Moving to Post-Quantum Cryptography (PQC) is a comprehensive transformation involving technology, people, and processes—not a simple code change. Organizations must assess existing cryptography and begin the transition now to prevent costly, reactive responses late.
12:10 PM - 1:30 PM
Lunch - Vendor Expo
1:30 PM - 2:10 PM
CATALINA 1
Executive Panel
Moving Past the AI Chaos
AI currently infests every cyber conversation. AI affects and hinders our ability to secure our cyber environments and lives. In the workplace, the use of AI contrary to company policy puts the company IT and business at risk. Corporate mass layoffs in the tech sector replaces people with AI, when the intent is to assist and not replace. Job searchers face a horrendous maze and wall, as recruiters apply AI to filter out qualified candidates in mass. AI surrounds us in our cars, computers, and homes. People, bots and “news outlets” write everything in AI, without a thought process that backs the output. These create risk and chaos, and put our community into a tailspin. Our conversation will be about realistic ways to soften the impact and bring more balance to our community and lives. We will leave the audience with concrete ways to lesson and manage the chaos, including reputable resources, to help understand and address risk, staffing and education.
Jackie Kalter
Security Strategist, Mad River Enterprises
Moderator

Debbie Christofferson
Senior Security Advisor
Panelist

Araceli Treu Giguere
Vice President of Security and Intelligence Operations with Netskope
Panelist

Nemi George
VP, Chief Information Security Officer, Pacific Dental Services
Panelist
2:15 PM - 2:55 PM
CATALINA 1
Cybersecurity Leaders Panel
Strengthening Data Protection in the Age of AI
While hype over AI-enabled threats has come under scrutiny, security experts warn that ignoring AI in the threat chain could be costly for CISOs, given the rise of real-world AI security threats in the wild.

Richard Greenberg
CEO, Layer 8 Masters
Moderator

Michael Rembis
CISO | Cybersecurity | Cyberresilience | HITRUST | CISSP | GRC | HIPAA | PCI | Board Member | Digital Transformation
Panelist

Quincey Collins
Chief Security Officer, Sheppard Mullin
Panelist

Emily O'Carroll
Field CISO, GuidePoint Security
Panelist

Elnaz Wevro
CISO- Principal Consultant, FalconForce Consulting, LLC
Panelist
3:00 PM - 3:20 PM
Catalina 1

Adam Schaal
Distinguished Engineer at Pixee
Talk
From Guardrails to Autopilot: Lessons in Scaling Application Security at Fortune 2
What does application security look like when your “small” problems span millions of resources and thousands of builders? In this talk, I’ll share lessons from my time leading large-scale AppSec initiatives at AWS - a Fortune 2 company operating at a scale where traditional security reviews simply don’t work. I’ll walk through our evolution from manual, engineer-driven security reviews to a model built on secure-by-default platforms, deterministic automation, and ultimately context-aware, agentic AI. Along the way, I’ll cover real challenges we faced (like incomplete application context, review bottlenecks, and overloaded security teams) and the systems we built to solve them, including AppSec automation, automated resource discovery, golden paths, and agentic Gen AI solutions. The core takeaway isn’t “we added more automation,” but how we fundamentally changed the role of security: reducing the total number of reviews, approving low-risk changes without human involvement, and reserving expert judgment for truly novel risks. This talk is a practical look at what it takes to make security scale without slowing builders down - and why secure defaults, context, and intelligent delegation are the future of AppSec at enterprise scale.3:25 PM - 3:40 PM
Catalina 1

Ganesh Pai
Founder & CEO at Uptycs
Talk
Shattering the Black Box AI: Why the Future is Glass Box AI.
AI is now embedded across nearly every cybersecurity product, especially in marketing claims. But what does AI actually mean in practice? In many platforms today, AI is primarily used to help users access information, not to reason through complex problems or conduct real investigations that save meaningful time. At the same time, AI is not yet something we can trust blindly, especially when decisions matter. Transparency and the ability to verify how conclusions are reached are still critical. In this session, Ganesh will address both challenges and demonstrate a state-of-the-art implementation of AI that supports investigation, reasoning, and verifiable outcomes.3:40 PM - 3:55 PM
Break - Vendor Expo
3:55 PM - 4:35 PM
CATALINA 1

Marcelo Lewin
Founder, Vibe Coder & Vibe Coder Advocate
Talk
Building AI Skills Without Code: Designing Workflow-Driven Agents for Non-Developers
You don't need to be a developer to build powerful AI agents. In this session, you'll learn how to transform repeatable workflows into AI skills, modular, reusable instruction sets that guide AI through complex multi-step tasks. No coding required. We'll walk through the full design process: mapping workflows visually before writing anything, applying progressive disclosure to manage AI context, creating user-configurable settings, and packaging skills that follow the emerging Agent Skills standard. To bring it all together, we'll build a simple AI skill live from scratch. Whether you're a product manager, content creator, or business professional, you'll leave with a practical framework for turning any structured process into an AI skill you can share and iterate on.4:40 PM - 5:25 PM
Catalina 1

Cassio Goldschmidt
Former CISO at ServiceTitan
Closing Keynote
Why Incident Response Plans Fail When It Matters
From Documentation to Execution Under Pressure
Organizations invest millions in security controls and maintain meticulously documented incident response plans that satisfy SOC 2, ISO 27001, and regulatory requirements. Yet when breaches occur, the response often collapses—not from lack of preparation, but from failures in human coordination, decision-making under pressure, and cross-functional orchestration. This session examines why technically comprehensive IRPs routinely fail in practice. The paralysis when stakeholders have conflicting priorities, the decision-avoidance when consequences are unclear. Drawing on analysis of recent breach responses, we'll dissect what current training methodologies actually test and what they don't. How can we be better prepared for when an incident happens?Happy Hour 5:25 PM - 7:00 PM
Happy Hour and Raffle Drawing
11:30 AM - 12:10 PM
Catalina 2

Bindi Davé
Field CISO, Optiv
Talk
Building Digital Trust in the Age of Evolving Cyber Threats: A Strategic Imperative for Business Resilience
As digital transformation accelerates, businesses are increasingly dependent on secure technologies, data integrity, and trust across their ecosystems. In this session, Bindi Dave will discuss how organizations can build and sustain digital trust amidst evolving cyber threats. Drawing on her extensive experience as a CISO and her leadership in cybersecurity transformation at companies like GoDaddy and DigiCert, Bindi will explore the strategic role of cybersecurity in enabling business growth while safeguarding critical assets.
12:10 PM - 1:30 PM
Lunch - Vendor Expo
1:30 PM - 2:10 PM
Catalina 2

Paul Grabow
Principal Advisor, Cybersecurity CMMC Advisors
Talk
Towards a Future State Cybersecurity Program (Public Sector Edition)
Public sector cybersecurity program managers are currently fighting sophisticated cyberthreats with security program models from 25 years ago. It's like responding to a cyberattack with a fax machine and a phone tree. Today’s emerging technologies—natural language processing (NLP), machine learning (ML), deep learning (DL), generative AI, and semi-autonomous agents—offer powerful new capabilities to streamline and scale cyber operations if the public sector can get its act together to take advantage.
Simply buying new tech, even AI-enabled security tools, isn’t enough. Cybersecurity leaders/managers managers need a Future-State Cybersecurity Program—one that’s designed from the ground up to integrate the latest AI-driven tools with clear governance, strong leadership and management oversight, and operational/tactical flexibility. The opportunity is massive: improved detection, faster response, reduced human workload—but only if we modernize our approach.
My talk will look ahead two years and present an achievable future state program for public sector cybersecurity leadership. It will define and detail the changes needed in the current cybersecurity leadership/management structure to get the best from emerging AI technologies and will delve into the emerging vendor risks with AI Agents.
The Future-Proofing CyberPlan 2028 presentation will aim to support public sector mission sets using the latest data science technology in a cost-effective and efficient manner. It would incorporate relevant frameworks (ex. NIST NICE, CSF, ISO 27001, emerging AI frameworks, etc.) so that attendees come away with concrete action ideas for action for forward-planning their AI/Cybersecurity programs.Introduction: The field of cybersecurity is changing at an accelerating pace, but the basic structure to run a public sector cybersecurity program has changed little in the last 25 years. Applying emergent data science technologies (NLP,ML,DL,Gen AI, semi-autonomous|autonomous AI Agents) offers tremendous opportunity to perform many cybersecurity functions more efficiently and effectively by orders of magnitude. The cybersecurity vendor community is already building AI assistants/agents into their products, however practitioners need a Future State Cybersecurity Program which can incorporate these new products effectively with good governance.
2:15 PM - 2:55 PM
Catalina 2

James Shewmaker
Computer & Network Security Consultant
Talk
Defending Against MFA Bypasses and Beyond
The proliferation of multi-factor authentication (MFA) requires penetration testers to explore opportunities and tooling to manipulate use of internal applications. This talk reviews and demonstrates using several tools to achieve this attack: Tools used include ettercap, mitmproxy, and evilginx used together in a combination attack a private administrative application with MFA enabled. In the end, this will demonstrate both pivot between networking and escalation.
After we cover MFA bypass tooling and techniques, we can introduce custom fingerprinting techniques to emulate Microsoft's Conditional Access in a custom tailored solution.
3:00 PM - 3:20 PM
Catalina 2

Justin Vallese
Special Agent, FBI Los Angeles Cyber Program
Talk
Law Enforcement Engagement Insights
How to develop a relationship with appropriate law enforcement pre-incident, what resources the FBI has to offer, and what to expect from the FBI in the event of a large-scale incident.3:25 PM - 3:40 PM
Catalina 2

Alexander Braehler
Founder and CEO, Tekkno, Inc., COO, Layer 8 Masters
Talk
Using AI for Infrastructure: Lessons I Learned the Hard Way
Why guardrails matter more than prompts What happens when you let AI help run infrastructure? In this talk, I share what I learned while building an AI-assisted system inside a governed staging environment. I’ll explain why using one AI for planning and execution is risky, why splitting roles creates new challenges, and why clear guardrails matter far more than clever prompts. This is a practical look at what AI can — and cannot — safely do in real infrastructure.3:40 PM - 3:55 PM
Break - Vendor Expo
3:55 PM - 4:35 PM
Catalina 2

Josh Sokol
CISO, SimpleRisk
Talk
The Top 10 Risk Management Mistakes CISOs Still Make
Even the most mature organizations can lose altitude when it comes to managing risk effectively. In this engaging, aviation-themed session, SimpleRisk founder Josh Sokol takes CISOs and risk leaders on a guided flight through the ten most common — and costly — mistakes companies make in their risk programs. From one-time assessments that quickly become outdated, to weak executive alignment, unclear risk appetite, and siloed ownership, Josh exposes the blind spots that cause turbulence in even the best-run programs. Along the way, he’ll share practical, experience-tested strategies to keep your organization flying straight — from linking risks and controls to right-sizing your response, quantifying risk with precision, and communicating clearly across the enterprise. Whether you’re fine-tuning your GRC approach or overhauling it entirely, you’ll leave this session with a clearer flight plan for building a risk management program that’s continuous, connected, and business-aligned — ready for whatever weather comes next.
Happy Hour 5:25 PM - 7:00 PM
Happy Hour and Raffle Drawing
Richard Greenberg, CISSP is a well-known Cyber Security Leader and Evangelist, CISO, Advisor, and speaker.
Richard brings over 30 years of management experience and has been a strategic and thought leader in IT and Information Security. His Project Management, Security Management and Operations, Policy, and Compliance experience has helped shape his broad perspective on creating and implementing Information Security Programs.
Richard has been a Chief Information Security Officer (CISO) for 15 years, Director of Surveillance and Information Systems, Chief of Security Operations, Director of IT, and Project Manager for various companies and agencies in the private and public sectors.
You may have heard Richard’s interview as a Cyber Security expert on Will Ferrell’s Ron Burgundy podcast: https://www.iheart.com/podcast/the-ron-burgundy-podcast-30270227/episode/cyber-security-47951911/.
Richard is the Founder and CEO of Security Advisors LLC, which offers fully-managed security assessments and network and software penetration testing services that allows organizations to continuously assess their internal and external cyber risk posture, and helps companies with compliance issues. He is also the CEO of Layer 8 Masters, which has been putting on the content-rich Planet Cyber Sec conferences and CISO-CIO Forums.
Richard is an Information Systems Security Association (ISSA) Distinguished Fellow, one of only 64 worldwide, and has received their Honor Roll designation (only 55 worldwide). He has also been selected as a finalist for both the (ISC)2 Americas Information Security Leadership Award in the Senior Information Security Professional category and the Los Angeles Business Journal CIO of the Year in Security.
Richard has served on the OWASP Global Board of Directors, leads the OWASP LA Chapter, and has been Co-Chair of the highly successful AppSec California conferences. Richard also is President of the Information Systems Security Association Los Angeles Chapter and is Chair of their widely recognized annual Security Summit and CISO Forum.
Richard is dedicated to diversity in our field. He started and chairs the annual Women in Security Forum, and supports creating a more open and welcome community. Richard’s reach in the Southern California region is extensive. He has worked diligently to bring together the various Southern California IT and InfoSec organizations to enhance their collaboration efforts, to help reach new IT and InfoSec professionals.
Richard has been a published author and has spoken worldwide on Information Security, individually and on panels.
Meet Our Expert Team
Founded by four seasoned cybersecurity professionals who are not just organizers, but true experts in the field themselves. Drawing from their collective wealth of experience and deep-rooted insights, our events offer a rare opportunity to engage with top-tier professionals who understand the intricacies and challenges of cybersecurity firsthand. Elevate your knowledge, network with the best, and stay ahead of the curve as we pave the way for a safer digital world, together.

Richard Greenberg
Chief Executive Officer

Haral Tsitsivas
Chief Information Officer

Dave Wettenstein
Chief Financial Officer

Alexander Braehler
Chief Operating Officer
Ron Dilley
Ron Dilley works at IS2 as a Principal Cyber Security Architect, focusing on fostering innovation and pushing the boundaries of what’s possible in technology to deliver exceptional value for clients. He is also on the IANS Research Faculty. As a cybersecurity innovator, he works with many cross-functional teams to develop novel security solutions and enhance security capabilities that improve customer experiences while frustrating adversaries.
He is a seasoned information security practitioner and thought leader with more than two decades of experience building, implementing, and leading information security practices responsible for the overall security posture and risk management of global companies. He is focused on security innovation, research, and development, and has overseen and revitalized infosec teams and advised on mergers, acquisitions, and divestitures from an infosec perspective.
He also serves the cyber security community through open-source tools and solutions for real-world security challenges, including current work on stateless TCP (honeypi), the IR Directory Scanner (difftree), Log Templater (tmpltr), SSH Canary (sshcanary), Log Pseudo Indexer (logpi), and Wirespy Daemon (wsd).
Cassio Goldschmidt is a transformative leader known for his visionary leadership and hands-on expertise in cybersecurity and technology. With over 20 years of experience spanning Fortune 500 companies, startups, and globally recognized institutions, Cassio has been instrumental in transforming security practices and driving innovative solutions that align seamlessly with organizational goals.
Cassio’s expertise integrates technical acumen, strategic thinking, and understanding of business needs, enabling the development of security programs that support growth while enhancing resilience. Recognized as one of the top CISOs in the United States, Cassio’s leadership has been acknowledged through numerous national and international industry awards.
Beyond his professional roles, Cassio is an advocate for building a more secure digital ecosystem. As a long-time contributor to OWASP, he led initiatives to educate and empower organizations on web application security. His engaging approaches, such as “phish a phriend” and innovative awareness programs, have left lasting impressions on both corporate and public audiences.
An author, speaker, and thought leader, Cassio has published industry whitepapers, and delivered insights at global conferences. He also serves as an advisor to venture capital firms and startups, shaping the future of security through mentorship, investments, guidance, and innovative practices.
Rajinder Singh
Founder, Entrepreneur & Technology Leader | CTO / Technical Fellow | Board Advisor | Connectivity Standards Alliance | Post Quantum Cryptography, PKI, IDS / IPS, Agentic AI, IoT, Data Privacy, Product Security, Fintech Security
James Shewmaker graduated with a Bachelor of Science in Computer Science from the University of Idaho in 1998. He holds numerous certifications and was among the first to earn the GIAC Platinum Malware (GSM) certification. James is the author and maintainer of portions of the SANS Security 660: Advanced Penetration Testing, Exploit Development, and Ethical Hacking course, and he has also contributed to several other SANS security courses over the years.
He began his career in 1996 as a System Administrator, later serving as IT Manager/Director for a major national radio network until 2002. In 2003, he honed his technical and logical creativity during what is now referred to as the radio industry’s “The Great Translator Invasion.” James went on to lead the development and operation of the NetWars U.S. Cyber Challenge game, which launched in June 2009. James continues to lead a boutique firm in Long Beach, California, focused on offensive related information security.
Beyond his professional work, James is often found tinkering with smart appliances and mechanical automation projects. Outside of technology, he enjoys snow skiing, water sports, and aviation with his wife, son, and dog.
Elnaz Wevro
Elnaz Wavro (Bayazian) is a cybersecurity executive with more than two decades of experience leading enterprise security, risk, and technology programs across healthcare and other highly regulated industries. She has served in CISO and senior security leadership roles, building and transforming security organizations during periods of regulatory scrutiny, rapid change, and elevated cyber risk.
Her work spans enterprise security strategy, ransomware and incident preparedness, Zero Trust architecture, and the governance and secure adoption of artificial intelligence. Elnaz is known for bringing clarity to complex risk issues and for helping executives make informed decisions that balance security, resilience, and innovation.
She works closely with boards, executive leadership, and technology teams to design security programs that are practical, defensible, and built to scale—strengthening trust while enabling the business to move forward with confidence.
Michael brings 20+ years of experience as an Information Technology executive with extensive experience leading cybersecurity and infrastructure teams predominantly in multinational Life Sciences and Healthcare organizations. At Calibrated Healthcare, Michael’s foremost responsibility is crafting and deploying cybersecurity strategies that align with business and IT objectives with the highest focus on the preservation and safeguarding of our clients’ sensitive patient data through the lens of cyber resilience.
Michael holds keys certifications (CISSP, PCI-ISA) and is an active participant in cybersecurity societies such as ISC2, FBI InfraGard, HIMSS, CSA, OWASP and ISSA. Michael currently serves on the board of directors for the Orange County, CA chapter of ISSA where he can influence cybersecurity practices beyond his immediate professional sphere, ensuring that as a community we not only train and equip our cybersecurity professionals with the tools to safeguard our digital assets but we also ensure that we are reaching the next generation coming up behind us to continue the good fight because there will always be another malicious threat actor over the digital horizon.
Certified Information Systems Security Professional (CISSP)
Certified Information Systems Auditor (CISA)
Certified Information Security Manager (CISM)
CyberAB CMMC Registered Practitioner (RP) and Registered Practitioner Advanced (RPA)
Presidential Council of Advisors for Science and Technology (PCAST) Working Group
Masters in CS, concentration in Information Security (NSA Center of Academic Excellence)
I serve as a Principal Cybersecurity professional with decades long career evaluating, defining, advocating, and driving policies, programs, processes, strategies, and technologies to advance cybersecurity, strengthen the resiliency of computing ecosystems, increase awareness of threats, and manage risk factors across environments.
My background includes information security leadership positions for the US Senate, Office of the Sergeant At Arms and staff positions with the Board of Governors, Federal Reserve System. Additionally, along with work at the Judicial Council of California and contract for a State of California startup agency, I believe that I may be the first (and at this point in time only) person in this field who has worked in all three branches of government! I also helped brainstorm the concept of a Federal Scholarship for Service program while serving in the White House PCAST working group.
I am currently working to incorporate data science/Gen AI technologies into the infosec/cybersecurity profession at the strategic/tactical/operational levels. Immersing myself into learning everything I can about AI technology.
Josh Sokol
Josh Sokol is the founder of SimpleRisk, an open-source Governance, Risk, and Compliance (GRC) platform used by organizations worldwide to streamline their risk management processes.
With over 15 years of experience in information security and risk management, Josh is a passionate advocate for empowering businesses to make informed, strategic decisions through effective risk management practices.
A dynamic and engaging speaker, Josh has presented at numerous industry conferences, sharing actionable insights on building security programs, managing organizational risk, and driving compliance.
His innovative approach and dedication to the field have made him a recognized leader in the GRC space.
Jackie O started off her career on the IT side of the house moving over to Cybersecurity where she felt she could have greater impact in the community. With over 20 years in the industry, she currently advises start ups on Go-to-Market, growth and success strategies, while avoiding the pitfalls of the industry.
She previously served as president of ISSA OC, and is currently the President of Cloud Security Alliance OC and Co-Chair for the San Diego Chapter. Not only is Jackie an advisor and Board member with various groups, she has excelled in forging strong relationships, promoting women in cybersecurity, fostering collaborative environments and building Safe Cyber Communities throughout Southern California.
Fortune 500 Enterprise Information Security Manager with 25+ years across the globe, including security auditing. Strategic security leader and consultant with broad comprehensive security and risk management experience. 2018 Published book Women in Security.
Debbie facilitated CISM certification exam prep workshops since the CISM inception; Speaks and writes on cyber security topics and women in security; Leads virtual and onsite security and IT education events. For ISSA, served 10 years as International Board Director and is a Distinguished Fellow, Chaired the board’s Advisory Council for the CISO Executive Forum 8 years.
Founder of Arizona’s Cloud Security Alliance chapter. Leader of ISSA’s Women in Security group. Serves the ISSA Phoenix Chapter Board of Directors. Holds the CISM and CISSP, previously the CIPP/IT, and earned certificates for the CCSK in cloud security and CSA’s Generative AI. Published author.
Gary Hayslip
Senior Security Advisor in Residence
Gary Hayslip is an experienced Global Security Executive with a proven track record of delivering innovative security programs that protect billion-dollar enterprises at every touchpoint. He is intensely focused on driving continuous improvement to maximize the efficiency of security programs while minimizing costs. As an insightful thought leader, he possesses strong business acumen and a commitment to organizational mission, values, and goals. He has demonstrated theability to collaborate with all levels of an organization to champion new ideas, gain buy-in, and build consensus. Hayslip brings extensive experience in information technology, security leadership, physical security, and risk management to his role as the Senior Security Advisor | Field CISO for Halcyon.ai. His previous executive positions include multiple roles as Chief Information Security Officer, Chief Information Officer, Deputy Director of IT, and Chief Privacy Officer for the U.S. Navy (Active Duty), the U.S. Navy (Federal Government employee), the City of San Diego, California, Webroot Software, and SoftBank Investments (Vision Fund & Vision Fund II).
Hayslip is a proven cybersecurity expert with excellent communication and public speaking skills. He is skilled at explaining complex security and risk concepts to audiences with different levels of knowledge. Hayslip has earned a reputation as a highly effective communicator, author, and keynote speaker. He co-authored the “CISO Desk Reference Guide: A Practical Guide for CISOs – Volumes 1 & 2,” “The Executive Primer: An Executive’s Guide to Security Programs,” “Developing Your Cybersecurity Career Path,” and the “The Essential Guide to Cybersecurity for SMBs.” He recently coauthored and published “Mastering Third Party Risk,” a guide aimed specifically for security practitioners to help them manage the risk exposure to organizations from vendors and supply chains. These books are among the top resources for helping CISOs improve their leadership and business skills. Hayslip currently serves as an independent director on several boards and advises various other security and technology firms. He is an active member of the cybersecurity community and belongs to professional organizations such as ISC2, NACD, ISACA, and Infragard. Hayslip holds several professional certifications, including CISSP, CISA, and CRISC, and has earned a BS in Information Systems Management from the University of Maryland, University College, and an MBA from San Diego State University.
LinkedIn Profile: https://www.linkedin.com/in/ghayslip
Quincey Collins is the Chief Security Officer at Sheppard Mullin, where he has spent more than a decade aligning security and risk management strategy with the firm’s strategic business objectives, performance goals, and long-term value creation.
With over 25 years of experience across information technology, cybersecurity, and enterprise risk, he brings a business-focused approach centered on value preservation, brand protection, and operational resilience.
In his role, Quincey advises senior leadership and key interested parties on security modernization, digital innovation, crisis management, and risk-informed decision-making. He is known for building high-performing teams and scalable operating models grounded in talent management, metrics, and strong security culture, ensuring security enables growth rather than constrains it.
Prior to joining Sheppard Mullin, Quincey spent more than 13 years supporting mission-critical environments for the United States Air Force, NATO, and multiple Department of Defense commands across Germany, Italy, and England. These experiences shaped his ability to navigate high-stakes environments and manage complex, enterprise-scale risk.
Quincey holds a B.S. in Cybersecurity and a Master’s degree in Information Technology with a specialization in Information Assurance, and maintains multiple industry certifications reflecting his commitment to executive-level advising and continuous improvement.
Emily O’Carroll
Emily O’Carroll is a Field CISO with GuidePoint Security. GuidePoint Security is a $2 billion pure play security company founded in 2012 and headquartered in Virginia with over 1,200 employees, 60% of which are tenured cybersecurity CISOs, engineers, architects, and consultants. As a Field CISO, she supports clients as an interim or virtual CISO, or in pre-sales activities and strategy decisions.
Prior to GuidePoint, she was the CISO at Topgolf Callaway Brands for over 9 years and oversaw a global team of over 30 people. She built the cybersecurity strategy, program, and team during a period of extreme revenue growth and acquisition – revenue growth from $800M to $4.28B per year, and acquisitions of Topgolf, TravisMathew, Ogio, and Jack Wolfskin.
Emily started her career in management consulting as an intern at KPMG in 2005 and left as a Director in 2015, and spent time in their San Diego, San Francisco, Silicon Valley, and Chicago offices. She worked with major companies across all industry verticals, including Fortune 50 companies.
Emily is a graduate of UC San Diego and has her bachelor’s degree in Mathematics and Economics with a minor in Dance and obtained her CISA certification in 2009.
Bindi Davé
Bindi Davé is a seasoned cybersecurity executive with over 18 years of experience in strategic leadership, digital trust, and cybersecurity transformation. Bindi is dedicated to advancing digital trust, security automation, and governance frameworks within fast-growing companies.
Marcelo is the founder of iBulldWith.ai. He is a product builder and content architect with 30+ years of experience in the tech industry. He’s passionate about helping non-developers build apps using AI. Prior to launching iBuildWith.ai, Marcelo founded several other startups and held roles at companies like Toyota, NBC, Cigna, J.F. Shea, and Walt Disney Imagineering.
Learn more at:
https://www.ibuildwith.ai
Vice President of Security and Intelligence Operations with Netskope. Experienced Security leader and Government agency liaison with over 20 years of directing and executing security strategy across a range of technologies and industry verticals,advancing security programs across the organizational continuum, and counseling global organizations in the prevention of advanced attacks and data theft.
Strong skills as a practitioner, contributing author, corporate evangelist, and public speaker in the areas of practice leadership and articulation of complex security concepts to audiences ranging from technical teams up to the C-Suite.
Former President and Board leader of ISSA SanDiego.
Nemi George is the Chief Information Security Officer (CISO) at PDS Health, where he leads enterprise information security, technology risk management, enterprise architecture, IT governance, and infrastructure operations across a nationwide healthcare network.
A veteran global IT leader, Nemi previously held senior roles at Vodafone Global Enterprise, and Virgin Media, building and securing multi-continent operations.
An active community voice, he serves in ISACA leadership and frequently speaks at industry events.
Special Agent Justin Vallese has over 15 years of experience in information security from investigations and prosecutions of Criminal and National Security computer intrusions. These investigations include an international hacker-for-hire conspiracy, a Chinese-government backed intrusion which led to the arrest and US prosecution of a Chinese Cyber-spy, the Sony Pictures cyber-attack, the WannaCry ransomware outbreak, cryptocurrency exchange hacks, and financial institution computer intrusions.
Special Agent Vallese is assigned to the FBI Los Angeles Field Office where he serves as coordinator for the FBI Los Angeles Cyberhood Watch Program, a network of cybersecurity professionals which facilitates a collaborative and preventative approach to countering cyber threats.
Prior to his work in the Cyber arena, SA Vallese investigated Financial Crimes, Internet Fraud, and Intellectual Property Rights matters at the FBI Los Angeles.
Adam Schaal
Adam Schaal is a Distinguished Engineer at Pixee, where he focuses on using generative AI and automation to meaningfully change how application security is practiced at scale.
Previously, Adam created and led the SHINE team at AWS, a group tasked with rethinking how security could scale across massive development organizations without slowing builders down. Through experimentation, automation, and hands-on engineering, SHINE explored new approaches to aligning security with real-world development workflows.
Adam has spent his career on both sides of building and breaking systems and is an active member of the global security community. He is a frequent international speaker and remains deeply interested in security systems designed not around the traditional SDLC, but for how software will be built next.
Ganesh Pai is Founder & CEO of Uptycs. He was previously Chief Architect, Carrier Products & Strategy for Akamai Technologies, a leading provider of content delivery network services. Prior to Akamai, Ganesh was Founder & VP Systems Architecture of Verivue. Prior to Verivue, he was Principal Architect for NetDevices. Prior to NetDevices, Ganesh served as Engineering Manager and Software Architect for Sonus Networks.
He is a Boston-based entrepreneur and technologist and has been awarded multiple U.S. patents. Ganesh received a BE degree in electronics and communication engineering from Mangalore University and a MS in computer science from Temple University.
Haral Tsitsivas is a cybersecurity leader and software developer with 40+ years of IT and software development and 20+ years of systems and software security experience, specializing in threat modeling, product security reviews and assessments.
Haral was an Orange County OWASP chapter leader, served on the board of the OWASP Outreach Committee and was the Vice-Chair of the OWASP Chapter Committee.
Alexander Braehler is a Cyber Security Architect and a Wazuh Security Engineer with over39 years of experience in IT/IS consulting for SMBs and enterprises. He joined the information security community in 2011 and has since been actively involved with various security industry organizations, including the Southern California chapter of HTCIA, where he served as 1st VP and Chapter President. Alexander is also an Infrastructure Liaison Officer with FBI Infragard, an active member of USSS Cyber Fraud Task Force, and the Cloud Security Alliance. He was a key member of the conference planning committees for OWASP L.A. and ISSA L.A.


