November 13, 2026 – ISC2 East Bay Fall Conference: Do I Know You? Identity in the Age of AI

Do I know you? Conference focus:

Modern identity now includes people, service accounts, APIs, machine workloads, autonomous agents, and the systems that grant them authority. Do I Know You brings the East Bay cybersecurity community together to examine how organizations can verify identity, govern access, detect abuse, and preserve trust across human and non-human environments.

  • Non-human and AI agent identities, including service accounts, workload identities, and API keys
  • Identity threat detection and response for credential abuse, session hijacking, and privilege escalation
  • Zero Trust IAM architecture, continuous authentication, and dynamic access controls
  • Biometrics, synthetic identity, deepfakes, and identity-centered social engineering
  • Practical identity alignment with OWASP guidance for LLM and agentic AI security

Conference experience

The day combines main auditorium keynotes, flexible technical breakouts, demonstrations, question-and-answer sessions, panel discussions, an exhibition area, a Partner Lounge, and structured networking. Full breakfast, a networking lunch, and an afternoon cake break are included in the day.

Recorded playback access will be available for selected sessions. Don’t worry if you miss a favorite presenter. QR codes to attend their future and past webinars are provided at every vendor station. Attendees may earn up to 13 CPEs through the combined live and playback program.

Although we tried to find space for all of our sponsors, some vendors are allocated to the March Conference, Debt Collector, due to improved alignment between their core offering and the theme of our learning.

Conference informationDetails
DateFriday, November 13, 2026
Conference hours8:00 AM–5:00 PM PST; event setup begins at 7:30 AM
VenueLas Positas College, Building 2400, Parking Lot E, Livermore, CA, and outdoor weather-resilient tented campus grounds, Livermore, California
CPE credits8 CPEs for full-day live attendance plus up to 5 CPEs through recorded playback access
Volunteers and Speakers earn up to 5 additional CPEs
Audience175–250 cybersecurity practitioners, CISOs, GRC leaders, entrepreneurs, industry leaders, and student scholars

Distinguished Speaker Dinner – By Invitation Only (check your ticket for a coupon link)

Date and timeThursday, November 12, 2026, 5:00 PM to 8:30 PM
LocationMcKay’s Beer Garden, Pleasanton, California
HospitalityDinner and open bar
AttendeesKeynote speakers, Platinum, Gold, and Silver sponsor representatives, Chapter Board members, invited CISOs, VIP guests, and ticketed members – you must buy a ticket, either conference or dinner, or be a paid sponsor.
Remember, as a charity, ticket sales go directly to supporting students and educational activities.

*Speakers, sponsors, and committee members will have their dinner invitation sent to them directly.
PurposeVIP networking, speaker alignment, pre-conference briefing, and relationship development with prospective partners for the March 2027 conference

Planning to spend the night? Book your group rate for the ISC2 East Bay Chapter Room Block

Our mission of shared stewardship

The ISC2 East Bay Chapter is incorporated as a nonprofit public benefit corporation under Internal Revenue Code section 501(c)(3), EIN 47-1242819. We view our sponsors as collaborative defense partners whose support funds student scholarships, workforce development, and local community education.

CategoryBase TicketTicket + Hoodie Add-OnSizing & Requirements
Early Bird: Dues-Paying Chapter Members$100$125Unisex Sizing (S, M, L)
Early Bird: Non-Member Guests$145$170Unisex Sizing (S, M, L)
ISACA, ISC2, ISSA, CSA, Pacific HackersReciprocal chapter codes are communicated to your chapter leaders. Using the code in the registration releases member pricing.
ISC2 East Bay members use their email as their code.
Early Bird: Full-Time Students$45$70Proof of enrollment required
Student Volunteers and conference committeeFreeIncludedMust be registered Student Members & approved by the Careers Director by Sept 30, 2026
After 10/31/2026 – Dues-Paying Chapter Members$145$170Hoodie size is not guaranteed
Unisex Sizing (S, M, L)
After 10/31/2026 – Non-Member Guests$175$200Hoodie size is not guaranteed
Unisex Sizing (S, M, L)
Students, Retirees, Unemployed$75$100Hoodie size is not guaranteed
Unisex Sizing (S, M, L)
Note that conference volunteers must be dues-paying members or approved student members.All Las Positas Students and staff are welcome to attend starting at 1 PM. For the full conference, please register with the LPC free ticket code. An LPC code will be communicated to the Cybersecurity Club, Jeff Wiechart, Jean O’Neil, and Anita Bhatia. We ask that people register early so we can order enough food.
Conference Pricing

Conference agenda

TimeMain programConcurrent activity or status
7:30 – 8:00 AMEvent setup and logistics readinessBreakout rooms, tents, exhibitor stations, and staff setup
8:00 – 8:45 AMRegistration and breakfastNetworking, booth visits, coffee, and breakfast service
8:45 – 9:00 AMWelcome and opening remarksRobin Basham, Conference Chair – Introducing your committee and 2026 ISC2 East Bay Board
9:00 – 9:45 AMKeynote: The Enemy Inside the Org Chart: Stopping Fake Employees & Synthetic Workforce InfiltrationPatricia Titus, Field Chief Information Security Officer at Abnormal AI
9:45 – 10:30 AMMeet the Silver and Gold Sponsors – Robin Basham and Jim Danforth Representatives pitch their breakout sessions and how their products are positioned to beat the AI identity race. Robin explains the Enterprise Architecture reasons, and Jim explains the Cyber Professional reasons that we selected these vendors for this day.
10:30 – 10:45 AMMorning coffee and networking breakExhibition area and tent conversations
10:45 – 11:30 AMKeynote: The Two Sides of AI in CybersecurityBob Gilbert, Vice President of Strategy and Chief Evangelist, Netskope – expanding on the incredible arc of conversation across 2026, we’re going to examine what we’re finding in real time in enterprises across the United States and beyond.
11:30 AM – 12:15 PMRuntime AI and cloud security platform showcaseGourav Nagar, Head of Information Security and IT, Upwind Security
12:15 – 12:45 PMNetworking lunchExpo and Partner Lounge
12:45 – 1:30 PMContinuous autonomous testing and guardrails fireside chatRene Brandel, CEO, Casco; Partner Lounge networking
1:30 – 2:15 PMFlexible breakout block oneBalkanID, D3 Security, Veria Labs, VulnCheck, Cyera
2:15 – 3:00 PMFlexible breakout block twoRedblock.ai, Horizon3.ai, Mavs.ai, and P0 Security; assignments to be finalized.
3:00 – 3:30 PMCake break, expo visits, and vendor Q&AExhibition Hall and vendor SME conversations
3:30 – 4:00 PMIdentity governance for non-human and machine workloadsOur speakers are veteran ISC2 East Bay leaders; however, we are working out the details – more soon
4:00 – 4:50 PMCISO and Cyber Leaders panelThe array of CTOs, CEO, and CISOs is quickly expanding. Tim Prendergast will moderate an exciting and fast-paced view of what we must be doing with AI right now, using, defending, rearchitecting, and rethinking: Do I know you? Confirmed so far: Shashwat Sehgal, Aime Wei, Sean Cordero, Eddie Borrero, Indus Khaitan, Subbu Rama, Mitch Boles, and open invitations to all Platinum keynotes
4:50 – 5:15 PMClosing remarks, vendor gift giveaways. Conference Feedback & CPE distributionClosing assembly in the main auditorium; teardown follows from 5:00 to 5:30 PM

Featured Platinum speakers and session leaders

Keynote Abnormal: The Enemy Inside the Org Chart: Stopping Fake Employees & Synthetic Workforce Infiltration

With over 25 years of experience as a cybersecurity leader, Patricia Titus now leads as Field Chief Information Security Officer at Abnormal AI. Her extensive background includes CISO positions at prominent organizations such as Booking Holdings, Markel Corporation, Freddie Mac, Symantec, Unisys, and the Transportation Security Administration. Throughout her career, she has been responsible for developing and implementing security strategies that align with business objectives and ensure adherence to global regulations. Recognized for her expertise in areas like risk management, artificial intelligence, cybersecurity operations, and crisis management, Patricia has a proven track record of optimizing security frameworks, improving business resilience, and incorporating innovative solutions, including AI, into security practices. She currently contributes her expertise by serving on the boards of Black Kite, The Girl Scouts of the Commonwealth of Virginia, and Glasswing Ventures.

Abnormal AI (abnormal.ai) is the leading AI-native human behavior security platform, leveraging machine learning to stop sophisticated inbound attacks and detect compromised accounts across email and connected applications. The anomaly detection engine leverages identity and context to understand human behavior and analyze the risk of every cloud email event—detecting and stopping sophisticated, socially engineered attacks that target human vulnerability.


Keynote Netskope: The Two Sides of AI in Cybersecurity

Bob Gilbert is the Vice President of Strategy and Chief Evangelist at Netskope, a market-leading cloud security company. Bob is a prolific speaker and product demonstrator, reaching live audiences in more than 45 countries over the past decade. His career spans more than 25 years in Silicon Valley, where he has held leadership roles in product management and marketing at various technology companies. He was formerly the Chief Evangelist at Riverbed, where he was a member of the pioneering product team that launched Riverbed from a small start-up of less than 10 employees to a market leader with more than 3,000 employees and $1B in annual revenue.

Bob was first introduced to the world of cybersecurity as a teenager in the 80s when he hosted a BBS and had to develop his own terminal software to prevent Russian hackers from infiltrating his site, which was being hosted from his parents’ home.

Netskope (netskope.com) is a leader in modern security, networking, and analytics for the cloud and AI era. The unique architecture of its Netskope One platform enables real-time, context-based security for people, devices, and data wherever they go, and optimizes network performance—without trade-offs or sacrifices. Thousands of customers and partners trust the Netskope One platform, its patented Zero Trust Engine, and its powerful NewEdge Network to reduce risk, simplify converged infrastructure, and provide full visibility and control over cloud, AI, SaaS, web, and private application activity.


Keynote Upwind: Runtime AI and cloud security platform showcase

Gourav Nagar, head of Information Security and IT at Upwind, is a seasoned cybersecurity executive with over a decade of experience leading and scaling security programs at some of the world’s most respected companies. He has held key leadership roles at Uber, Apple, EY, and BILL Holdings Inc., driving initiatives across security engineering, operations, threat detection, incident response, digital forensics, GRC, and infrastructure security.

In addition to his corporate leadership, Gourav is a recognized thought leader and a dedicated mentor to students and early-career professionals. He actively advises cybersecurity founders and contributes to the broader innovation ecosystem by helping startups shape their products, go-to-market strategies, and security vision. Gourav holds a Master’s in Management Information Systems from Texas A&M University and maintains industry-leading certifications including CISSP, CISM, CHFI, and GCFA.

Upwind Security (upwind.io) delivers a runtime-powered Cloud-Native Application Protection Platform that unifies application security, cloud security posture, and real-time protection on a single platform. Instead of relying on static configuration scanning, Upwind pairs agentless cloud scanning with lightweight eBPF runtime sensors to observe how workloads actually behave in production at the process, network, and system call level, then uses that live context to rank findings by real exploitability rather than theoretical severity. The platform spans posture management, attack path analysis, vulnerability management, entitlements, container and Kubernetes security, data security posture management, API security, and cloud detection and response, alongside an AI security suite covering AI posture management, AI detection and response, and AI bill of materials for teams moving models into production. Founded in 2022 by the team behind Spot.io and headquartered in San Francisco, Upwind helps security teams cut alert noise and shorten the distance between finding a risk and fixing the one that matters.


Luncheon served in the Partner Lounge and all along the Platinum Galley, followed by a fireside chat.


Keynote Casco: Continuous autonomous testing and guardrails – a fireside chat

René Brandel is the Founder & CEO of Casco, an AI-native security company providing always-on, autonomous red-teaming and security testing across web apps, APIs, infrastructure, and AI systems. Casco recently raised a Series A at a $100M valuation led by Standard Capital/Y Combinator and became the first All-American Agentic Offensive Security tool listed on the FedRAMP Marketplace.

Prior to founding Casco, René was Head of Product at Amazon Web Services (AWS), where he created Kiro—one of the fastest-adopted IDEs in history (100,000 developers within three days)—and led AWS Amplify Gen 2. He also served as a Program Manager at Microsoft, leading cross-platform intelligence SDKs and developer integrations across Teams, Skype, and Office.

Casco (casco.com) provides autonomous security testing for web applications, APIs, infrastructure, and AI systems. Moving beyond traditional, intermittent penetration testing, Casco offers “always-on” security that integrates directly into the development lifecycle. The platform utilizes advanced intelligence to identify critical vulnerabilities, such as broken object-level authorization and prompt injection. Every finding is safely exploited to prove its business impact. Casco also allows users to one-click retest and generate code fixes for every finding. Casco is trusted by over 250 companies, from high-growth startups like CrewAI to large enterprises like Gusto. As a Gold Sponsor of OWASP AI Exchange, Casco is committed to advancing AI-driven security standards for the global developer community.


Afternoon breakout sessions – meet legacy Platinum, Gold and Silver Sponsors – Earn extra CPE by registering for their past and future ISC2 East Bay Chapter webinars


BalkanID – Live Session

Subbu Rama is a 3x founder and the CEO and Co-founder of BalkanID, a company specializing in identity security access governance solutions. With close to 2 decades in the tech industry, he has a strong background in infrastructure, AI, cybersecurity, and cloud computing, holding product, engineering, and cybersecurity roles. Prior to BalkanID, Subbu co-founded Bitfusion, a startup focused on virtualization technologies for AI and GPU infrastructure, which was later acquired by VMware (Dell Technologies). He is passionate about building innovative solutions that tackle complex challenges. Subbu holds a Master’s degree in Electrical and Computer Engineering from the University of Wisconsin-Madison and is an Early Career Award Recipient.

Watch Subba Rama’s presentation on Identity Security in the Age of AI Agents: Beyond Traditional IGA from the June 2026 member meeting.

BalkanID (balkan.id) provides modular, AI-assisted identity security and access governance (IGA) solutions designed to work with both connected and disconnected applications. Its platform streamlines critical tasks such as user access reviews, lifecycle automation with purpose-based just-in-time access, and identity security posture management (ISPM)—including IAM risk and RBAC analysis and an AI Copilot feature. By empowering organizations to enforce least privilege principles, BalkanID enables enterprises to efficiently manage complex identity risks at scale.


Agentic SOC with Morpheus – Jaryd Hickman, D3 Security

Jaryd Hickman leads sales and sales development at D3 Security, bringing over a decade of cybersecurity sales experience to the team. His background spans enterprise security solutions across DLP, NGFW, cloud security, email security, and managed detection and response. Jaryd is based in Austin, Texas.

D3 Security builds Morpheus, the accountable agentic AI SOC platform that investigates every alert and tells its story: what happened, whether you’re at risk, and what to do. Morpheus triages and L2-investigates up to 95% of alerts in under two minutes, reconstructing the attack path across EDR, identity, email, cloud, and network. Four autonomy modes, 800+ self-healing integrations, and one unified audit trail per incident keep a human in command of every consequential action. Trusted by Fortune 500 enterprises, governments, and the world’s largest MSSPs.  


Veria Labs – Live Session

Stephen Xu is a Lead Security Researcher and Offensive AI expert. As Co-Founder of Veria Labs, he builds autonomous red-teaming agents that continuously test software for critical vulnerabilities. A competitive hacker by background, Stephen specializes in finding the logic flaws that static analysis tools miss—recently uncovering zero-day RCE exploits in major AI platforms.

View Stephen Xu’s presentation, Hot Takes On How AI Is Changing Offensive Security, from the September 2026 member meeting.

Cayden Liao is a co-founder of Veria Labs, building AI hacking agents that automatically find and fix security vulnerabilities. He has competed extensively in Capture the Flag (CTF) competitions and is the current co-captain of the #1-ranked CTF team in the US for three consecutive years, with a world 3rd place in 2025. Cayden regularly competes in many of the world’s largest CTFs and is a two-time DEFCON CTF finals qualifier. When he was under 18 and ineligible to apply for the official U.S. Cyber Team, he instead joined as a coach and led the team to a 2nd-place finish at the European Cybersecurity Championships.

Veria Labs (verialabs.com) provides an AI-native offensive security platform designed for autonomous vulnerability discovery and exploitation. Founded by members of the #1 US competitive hacking team, Veria Labs builds specialized AI agents that integrate directly into Git repositories and CI/CD pipelines to analyze codebases continuously. These agents operate faster than human researchers, finding deep, complex vulnerabilities that traditional tools miss and generating real-world exploit PoCs to verify risk and eliminate false positives. By adapting to business logic and providing automated remediation, Veria Labs shifts offensive security left, enabling organizations to validate their security posture and secure critical vulnerabilities with high confidence and at machine speed.


Redblock.ai – Live Session with Indus Khaitan

Indus Khaitan is CEO and founder of Redblock, an AI automation startup dedicated to eliminating the repetitive ‘eye on the glass’ work performed by cybersecurity teams. Previously, Indus co-founded BitzerMobile, a mobile security company acquired by Oracle. He holds a degree in computer science from the Birla Institute of Technology, Mesra, and lives in the San Francisco Bay Area.

Redblock (redblock.ai) automates identity and security workflows across disconnected apps — extending SailPoint and other identity systems for full coverage. It connects what Identity systems can’t, eliminates CSVs and IT tickets, and automates actions safely with policy guardrails. The result: a smaller identity attack surface in days, not months. Manual workflows become autonomous, auditable actions.


Horizon3.ai – Live Session – Lab Leader subject to change

Tony Taylor, Senior Solutions Architect, presented an engaging session on Offense-Driven Defense in the chapter’s January 2026 member meeting. Tony will challenge conventional risk assessment practices and unveil how focusing on real-world exploitability and impact can revolutionize your security approach. Drawing from insights gathered across more than 170,000 autonomous pen-tests, he’ll share compelling stories and actionable lessons that show how viewing your cyber terrain through an attacker’s lens can uncover hidden vulnerabilities, optimize reshttps://www.linkedin.com/in/tonyjtaylor/ource allocation, and strengthen your defenses against advanced threats. Don’t miss this opportunity to learn from a leading industry practitioner on why it’s time to “go hack yourself” and build resilience in today’s borderless threat environment.

David Affonso is an Offensive Security Specialist and high-performing Enterprise Account Executive in Northern California. He currently drives strategic customer success at Horizon3.ai, focusing on autonomous penetration testing to help organizations find and fix attack vectors across external, identity, and cloud environments. David’s expertise spans the SaaS security landscape, having held key sales roles at high-growth companies including JupiterOne and Synack. An award-winning leader, he has achieved President’s Club recognition and holds ITIL and AWS Technical Accreditation certifications.

Horizon3.ai (horizon3.ai) provides NodeZero, an autonomous penetration testing platform. It continuously assesses an organization’s internal and external attack surface, automatically discovers exploitable weaknesses, and verifies vulnerabilities without human intervention. By rigorously emulating real-world attacker behaviors and techniques, NodeZero identifies critical attack pathways and provides clear, actionable remediation steps to proactively strengthen security posture and continuously validate an organization’s defenses against evolving cyber threats, supporting a continuous security validation program.


Mavs.ai – Live Session with Amit, Manjul, and Abhijit

Amit Kharat is a cybersecurity entrepreneur and co-founder of Mavs AI, building next-generation runtime security for Generative AI use. With over a decade of experience in data-centric and enterprise security, Amit has played a foundational role in scaling global security platforms across BFSI, manufacturing, pharma, and government sectors. His work spans product strategy, go-to-market leadership, and deep customer engagement across North America, Europe, the Middle East, and India. At Mavs AI, Amit is focused on solving emerging GenAI risks, including sensitive data exposure, prompt-level attacks, and lack of runtime visibility, helping enterprises adopt AI with confidence and control.

Manjul Kubde is a builder at heart and a co-founder of Mavs AI, where she’s focused on one simple idea: enterprises should be able to use GenAI boldly, without losing sleep over security. At Mavs AI, she’s working hands-on to solve real problems like sensitive data leakage and prompt-level attacks, grounded in how systems actually break in the wild. Before this chapter, Manjul spent over 16 years at Seclore as co-founder and VP of Engineering, and earlier led engineering at Herald Logic. She’s known for calm decision-making, strong technical instincts, and a deep respect for craft, teams, and doing things the right way.

Abhijit Tannu is the co-founder of Mavs AI, a platform helping enterprises adopt GenAI securely by preventing sensitive data leakage, prompt injection, and misuse, without slowing teams down. He brings over two decades of experience building enterprise cybersecurity products that win on trust and scale globally. An IIT Kharagpur alumnus, Abhijit co-founded Seclore and Herald Logic, where he helped grow businesses from the first customer to tens of millions of dollars in ARR, competing successfully with the largest global players. Deeply customer-focused, he has built product and Customer Success teams from scratch and worked hands-on with Fortune 500 customers across the US, Europe, the Middle East, and India.

Mavs AI (mavsai.com) delivers smart guardrails, intelligent policy control, and real-time visibility for every GenAI interaction. They address specific risks like PII and sensitive data shared in prompts, prompt injections compromising systems, and misuse by business users or rogue application users. Mavs AI closes the gap where innovation outpaces safety guardrails, enabling enterprises to innovate fearlessly and scale AI responsibly.


P0 Security – Live Session and Fireside chat with Shashwat Sehgal

Shashwat Sehgal is the Founder and CEO of P0 Security, re-architecting Privileged Access Management (PAM). He specializes in automating access for the “identity explosion” within production stacks. Previously, at Splunk, he led OpenTelemetry initiatives for microservices, and at Cisco Meraki, he used ML for automated network troubleshooting. He is an IIT-Delhi and Columbia Business School graduate.

Watch Shashwat Seghal’s presentation Are you modernizing your identity tool stack? from the February 2026 member meeting.

P0 Security (p0.dev) is helping companies modernize PAM for multi-cloud and hybrid environments with the most agile way to ensure least-privileged, short-lived, and auditable production access for users, NHIs, and agents. Centralized governance, just-enough-privilege, and just-in-time controls deliver secure access to production, as simply and scalably as possible. P0’s Access Graph and Identity DNA data layer make up the foundational architecture that powers privilege insights and access control across all identities and production resources, including the new class of AI-driven agentic workloads emerging in modern environments.


Stellar Cyber – Live Session with Daniel and Mayuresh – Meet CTO Aime Wei during the afternoon panel

Daniel Cheng is the Head of North America Channel at Stellar Cyber, where he leads the strategy and execution of the company’s reseller ecosystem. With a strong focus on enablement, trust, and execution, Daniel works closely with partners to help them successfully adopt and scale Stellar Cyber’s AI-driven SecOps platform. Since taking on this role in early 2025, Daniel has played a key role in expanding channel awareness, developing a growing community of technical champions, and strengthening partner capabilities through certification and hands-on training. His work bridges business strategy and technical execution, ensuring partners are equipped to deliver real value to their customers. At the ISC2 East Bay Conference, Daniel will serve as Stellar Cyber Lab Leader, guiding participants through an interactive, hands-on session that demonstrates how a unified, open, and AI-powered SecOps platform can simplify threat detection, investigation, and response while improving operational efficiency and security outcomes.

Mayuresh Ektare, Senior Vice President, Product Management
Mayuresh is a seasoned product management executive with over 20 years of experience building category-defining cybersecurity platforms. He operates at the intersection of business strategy, product vision, and technology, with a strong track record of scaling organizations and driving product transformations.
Prior to Stellar Cyber, he served as VP of Product Management at Qualys, where he led the organizational transformation from vulnerability scanning to an agentic AI-driven Exposure & Risk Management platform. Previously, as SVP at Brinqa, he helped establish leadership in Risk Operations, and as a founding member of Zingbox, he built and scaled an IoT security solution from its inception through its acquisition by Palo Alto Networks. He also held leadership roles at Aerohive Networks and Trend Micro. Mayuresh holds several patents in cybersecurity and has a master’s degree in Industrial Engineering from Clemson University.

Aimei Wei has more than 20 years of experience building successful products and leading teams in data networking and telecommunications. She has extensive working experience for both early-stage startups, including Nuera, SS8 Networks, and Kineto Wireless, as well as well-established companies like Nortel, Ciena, and Cisco. Prior to founding Stellar Cyber, she was actively developing Software-Defined Network solutions at Cisco. Aimei enjoys building a product from its initial design to its final launch. Aimei has an M.S. in Computer Science from Queen’s University in Kingston, Canada, and an Undergraduate degree in Computer Science from Tsinghua University of China.

Stellar Cyber (stellarcyber.ai) is the innovator of Open XDR, the only intelligent, next-generation security operations platform that provides high-fidelity detection and response across the entire attack surface. By unifying EDR, SIEM, and NDR into a single, AI-driven interface, Stellar Cyber eliminates the data silos that traditional security tools create, providing a comprehensive, correlated view of the entire threat landscape. The platform uses advanced machine learning and behavioral analytics to automatically detect sophisticated attacks, reduce alert fatigue for security analysts, and significantly accelerate incident response workflows through a single, integrated “pane of glass.”


VulnCheck – Live Session with Erica Cunningham and Partner TBD

Erica Cunningham is a Senior Sales Consultant at VulnCheck, a cybersecurity company specializing in exploit and vulnerability intelligence, where she covers the western U.S. enterprise territory. With 25+ years of enterprise cybersecurity experience, she previously held sales roles at HackerOne, ColorTokens, Demisto, NetAlly, FishNet Security/Optiv, and Mirantis, and co-founded Hercules Innovative Technology Solutions (HITS). She holds a Master’s in Cybersecurity, a Bachelor’s in IT, and an ISC2 certification, and serves on the ISC2 East Bay Chapter board.

Exploitation prevention is only as strong as the intelligence driving those efforts, and most of the industry is still running on intelligence that lacks exploit context. VulnCheck, The Exploit Intelligence Company, delivers structured exploit intelligence on what is actively weaponized in the wild, purpose-built for the data lakes, ETL pipelines, automation, and AI and LLM workflows your infrastructure already runs on, raising the capability of everything it powers.


Auditorium – Afternoon Session and Panel


Identity governance for non-human and machine workloads – Distinguished chapter members, Sean Cordero, Chief AI Security Officer, Cyera

Sean Cordero is a distinguished Chief Information Security Officer (CISO) and innovator, holding certifications including CISSP, CRISC, and CISM. His career highlights include transforming information security systems for Fortune 100 companies and developing high-impact security strategies. He notably boosted revenue from a Fortune 5 client by 70% through programmatic risk management and reduced operating expenses by 25% through vendor renegotiation. Sean’s leadership extends to recognized thought leadership, having presented at major conferences like RSA and earning MVP Awards for Executive Advisory. His expertise drives improved risk management outcomes and strengthens enterprise security.

Cyera (cyera.com) is building the trust layer powering enterprise AI transformation. Enterprises like Paramount, Chipotle, and Valvoline use Cyera to control exactly what data their AI can reach—and govern what happens next. The platform secures data at rest, in motion, and in use, whether touched by humans or AI agents. Valued at $12 billion and backed by over $2.3 billion from Accel, Blackstone, Cyberstarts, Georgian, Lightspeed, and Sequoia. Protect your data. Secure AI.

Eddie Borrero is an enterprise technology and cybersecurity executive with over 25 years of experience leading digital transformation, enterprise risk, and AI governance across large-scale organizations. Currently serving as the Data and AI Security Officer at Cyera, Eddie leverages a deep background in cybersecurity—having spent over two decades as a CISO, including senior leadership roles at Blue Shield of California and Stellarus—to build secure, platform-driven, AI-enabled business models. Recognized as a 2024 Bay Area CISO Award winner, a HITEC 100 honoree, and a CISOs Connect 2026 C100 winner, Eddie is a patent holder (Objectively Managing Risk) and widely published thought leader on human-centric security, data governance, and mobile security. A U.S. military veteran, chapter leader, and graduate of the Deloitte US Next Generation CIO Academy, Eddie holds the CISSP credential and serves as an advisor to boards and CEOs on enterprise AI regulation, continuous risk management, and strategic innovation.


CISO & SVP, CEO and Founder, Keynote Panel Moderator

Tim Prendergast is Chief Cloud Officer at Couch Ventures and, most recently, the CEO of StrongDM, a Sequoia-backed startup disrupting PAM/IGA and ushering in the future of Identity Security. Prior to joining StrongDM, Tim was the founder of Evident.io and inventor of CSPM, exiting to Palo Alto Networks as the category leader. I served as the first Chief Cloud Officer in a Fortune 1000 company during my time at PANW. Prior to Evident.io, Tim was the principal architect for Adobe’s Cloud Team — designing and securing the elastic AWS infrastructure that created the success story that has become the poster child for digital transformation. Tim is the Founder of StrongDM and a long-time innovator. He has one mission — enable seamless, secure access for admins and engineers across the globe.

Tim will have his work cut out for him as he organizes the synergy between:

Aimei Wei — Co-founder and CTO, Stellar Cyber (bio above)
Subbu Rama — CEO and Co-founder, BalkanID (bio above)
Shashwat Sehgal — Founder and CEO, P0 Security (bio above)
Sean Cordero — Chief Security Officer, Cyera (bio above)
Eddie Borrero — CIO and Cyber Officer, Cyera (bio above)
Indus Khaitan — Founder and CEO, Redblock (bio above)

Tim has been a major force in the education of the ISC2 East Bay community. We’re thrilled he’s allowing us to get him off his couch.


Partner Lounge and community ecosystem

The Partner Lounge creates space for collaboration with regional chapters and communities, including ISACA, ISC2, ISSA, Pacific Hackers, and CSA. BalkanID will provide an on-site videographer for practitioner spotlight interviews and selected conference coverage.

Meet Our Partners – don’t forget to enjoy spending some time with them during lunch and the fireside chat

  • ISACA San Francisco
  • ISACA Silicon Valley -\
  • CSA San Francisco
  • ISC2 North Bay
  • ISC2 Silicon Valley
  • Pacific Hackers
  • ISSA
  • AIUniversity

Thank you to sponsors who will be appearing at the March 12th conference, The Debt Collector. We will see them there.

Oak is the AI-native Identity Operating System that rewires enterprise identity and access management. An AI connector framework reaches any application, whether on-prem, cloud, SaaS, or homegrown, then builds a live identity graph from raw evidence across every identity type, including the fast-growing population of non-human identities and AI agents. By mapping the access each identity holds against what it actually uses, Oak governs the full lifecycle of every identity with AI-built real-time risk decisions and root-cause remediation. Oak was founded by Shai Morag and Tal Marom and backed by a $60 million seed round from Greylock Partners, Accel, CRV, Hetz Ventures, and AlphaDrive Ventures.

NetAlly (netally.com) offers portable network testing and analysis solutions essential for IT and cybersecurity professionals managing complex infrastructures. Its suite of tools provides deep visibility into both wired and wireless networks, enabling efficient troubleshooting of connectivity issues, precise validation of network performance, and verification of security configurations. This comprehensive approach helps ensure reliable network infrastructure, reduces downtime, and facilitates rapid issue resolution for enhanced operational stability and secure network operations.

Happiest Minds Technologies (happiestminds.com) is an AI-led, digital engineering and “Mindful IT” company that delivers secure, scalable solutions spanning from chip to cloud. By integrating deep expertise in Gen AI with core capabilities in product engineering, cybersecurity, and automation, Happiest Minds helps enterprises across BFSI, Healthcare, and Hi-Tech fast-track their digital evolution. Their innovation-led strategy is supported by strategic partnerships with AWS and Microsoft, as well as a growing portfolio of proprietary platforms like Arttha and FuzionX.


Remember your option to pick up an additional CPE by enjoying the replay for HiddenLayer, Malcolm Harkins – Intezer, Mitchem Boles

Unfortunately, Malcolm and Jason will not be available on the day, but we hope you enjoy one of several outstanding playback sessions from the recent ISC2 East Bay Conference library. HiddenLayer is working on sending us a subject matter expert. They are the keynote speaker at March’s conference, The Debt Collector.

Malcolm Harkins is the Chief Security and Trust Officer at HiddenLayer, where he focuses on securing AI models and data. He previously held the role of Chief Security and Trust Officer at Cylance. Prior to that, he was the VP and Chief Security and Privacy Officer (CSPO) at Intel, leading the company’s security, privacy, and trust efforts. Malcolm is a respected voice on risk-based security and governance, promoting a balanced approach to managing risk, cost, and trust. He is an award-winning leader in the field of information security.

Malcolm won’t be present for this particular conference, but you can still view Malcolm’s Economic Impact of Securing AI keynote presentation from our March 2026 Conference.

Jason Martin is Director of Adversarial Research at HiddenLayer, where he explores how the latest AI security research intersects with practical application. Jason was amongst the earliest researchers to recognize the need for AI security, founding the Secure Intelligence Team in Intel Labs in 2016 to research AI security and privacy threats and defenses. For 20+ years, Jason has covered such diverse security topics as CPU microcode, authentication and biometrics, trusted execution environments, wearable technology, and network protocols, resulting in over 40 issued patents and several high-profile research papers in adversarial machine learning and federated learning. When he’s not working, Jason is either lost in the Pacific Northwest camping and hiking with his family, or he is lost in a technical project involving 3D printing, microcontrollers, or designing holiday lighting displays synchronized to music.

HiddenLayer (hiddenlayer.com) HiddenLayer’s AI Security Platform secures agentic, generative, and predictive AI applications across the entire lifecycle, including AI discovery, AI supply chain security, AI attack simulation, and AI runtime security. Backed by patented technology and industry-leading adversarial AI research, HiddenLayer protects IP, ensures compliance, and enables safe adoption of AI at enterprise scale.


Intezer – Playback Only – Enjoy CPE with Mitchem Boles

Mitchem Boles is an executive and strategic Field CISO for Intezer. His experience includes leading Information Security for a large healthcare network, directing Security Operations for a major U.S. electric utility, and roles in security leadership for energy & critical infrastructure, MSSP Services, and consulting. He is a graduate of Texas A&M University; certified CISSP, CCSP, and AWS; and his background of expertise includes: security strategy, SOC deployment, AI strategic implementation, security operations and staff development, tools differentiation, and risk management.

Watch Mitchem Boles’ presentation, AI-Adapted SOC Blueprint – A Practical & Strategic Framework, from the April 2026 member meeting.

Intezer (intezer.com) is the leading Autonomous SOC platform designed to emulate the decision-making process of a human security analyst at machine scale. By leveraging proprietary Genetic Malware Analysis, Intezer automatically triages, investigates, and responds to every alert originating from an organization’s existing security stack (EDR, SIEM, and Phishing reports). Unlike traditional automation that relies on rigid playbooks, Intezer’s AI-driven platform identifies the “DNA” of code to distinguish between trusted software, known threats, and sophisticated new mutations. This allows security teams to automate over 90% of their Tier 1 and Tier 2 monitoring tasks, effectively eliminating alert fatigue while ensuring that critical incidents are triaged and remediated in seconds rather than hours.


Corelight – Playback only – Working to confirm live session

Vern and Bernard have a tremendous track record speaking for our own and our local sibling chapters. We hope they can make it, but if they can’t, we have their best events on playback, and we hope you enjoy picking up some wisdom and CPE by giving them 45 minutes or more of your time.

Vern Paxson is a Co-Founder and Chief Scientist at Corelight, Inc., Professor of the Graduate School at UC Berkeley, and leads the Networking and Security Group at the International Computer Science Institute (ICSI). A deeply influential figure in internet security and measurement, he has contributed extensively to the IETF community, serving as chair of the Internet Research Task Force (IRTF) and as the IETF’s Transport Area Director.

An ACM Fellow and SIGCOMM Award recipient, Paxson is recognized for his groundbreaking work on internet measurement, intrusion detection, and large-scale attacks. He is the original author of the flex lexical analyzer and the creator of the Zeek intrusion detection system, which forms the foundation of Corelight’s Open NDR platform. His leadership has helped shape Corelight’s research direction and the evolution of Zeek for modern enterprise and cloud environments.

Watch Vern Paxson’s presentation on A Few Decades of Zeek and Network Monitoring from the June 2026 member meeting.

Bernard Brantley is the CISO at Corelight. He joined Corelight from Amazon, where he led threat hunting and intelligence for Amazon Consumer Payments. Previously, he was the architect behind network security monitoring for Microsoft’s High Value Asset (HVA) environments, including XboxLIVE. He serves as an advisor to several tech companies and is a participant in federal workshops on AI strategy. He attended the U.S. Military Academy at West Point.

Mike Henkelman is a Sr. Solutions Engineer for Corelight with thirty years of technical experience that includes building enterprise data centers and NOCs for ISPs, doing edge router and switch development for Cisco, and running the Vuln Management and FedRAMP IL5 programs for VMware. He frequently speaks at conferences such as DefCon and B-Sides.

Corelight (corelight.com) is the pioneer and fastest-growing provider of Open Network Detection and Response (NDR), delivering a unique approach to cybersecurity risk centered on comprehensive network evidence. As the only solution powered by the dual open-source foundations of Zeek® and Suricata—now enhanced by GenAI—Corelight provides deep visibility into network traffic by transforming raw data into high-fidelity logs, metadata, and actionable insights. By equipping elite defenders at the world’s most mission-critical enterprises and government agencies with this rich evidence, the platform enables rapid threat hunting, forensic analysis, and complete situational awareness across complex, distributed environments. Ultimately, Corelight helps security teams level up their defenses, accelerating investigations and dramatically reducing the time required to detect and neutralize sophisticated attacks and model theft.

Book your group rate for the ISC2 East Bay Chapter Room Block

Related Posts