Open Sessions
Conference Pass
SecureWorld Plus
VIP / Exclusive
- Wednesday, April 29, 20269:00 am[PLUS Course] Securing & Enabling AI: Transform Chaos into Competitive AdvantageSr. Cyber Risk Analyst, Cyber Risk Opportunities LLCRegistration Level:
SecureWorld Plus
9:00 am - 3:00 pmYour CEO just asked about AI security. Do you have a clear answer?While you’re counting vulnerabilities, your competitors are deploying AI at scale.While security teams are still cataloging vulnerabilities, business units are deploying AI at scale. Marketing is using generative AI for campaigns. Sales is rolling out AI SDRs. Customer service is automating with chatbots.Every Monday, another department launches an AI tool. Marketing uses ChatGPT for campaigns. Sales deploys AI Sales Development Reps. Customer service automates with chatbots. And your cybersecurity team? Still writing policies nobody reads.In this interactive workshop, learn you how to secure AI while accelerating innovation—not blocking it. Transform from AI Firefighter to Strategic Business Enabler, with a 90-day roadmap for secure AI deployment in your organization.What You’ll Master-
The AIR-MAP Methodology™ — Your proven 90-day roadmap from AI chaos to governance
-
Executive Translation — Turn technical AI risks into boardroom language
-
NIST AI RMF Implementation — Practical application, not theory
-
The $12M Question — Secure against deepfake fraud and AI-enabled attacks
-
Shadow AI Discovery — Find and govern the AI already in your organization
-
Business-First Security — Protect value, not just systems
Who Should AttendIdeal for:-
CISOs facing board questions about AI
-
Information Security Directors enabling digital transformation
-
IT VPs without dedicated security teams
-
Cybersecurity Consultants serving enterprise clients
-
Risk Managers governing AI initiatives
-
Aspiring decision makers and those reporting to one
Not designed for:-
Developers wanting to code AI models
-
Analysts seeking technical certifications
-
Anyone looking for hands-on hacking labs
What This Workshop Is (and Isn’t)This workshop is NOT about:-
Prompt injection techniques
-
Model architecture security
-
Technical vulnerability scanning
-
Writing 200-page policies
This workshop IS about:-
Speaking profit-and-loss to executives
-
Enabling your AI transformations
-
Building cybersecurity into AI from day one
-
Becoming the trusted AI advisor
What You’ll Leave With1. The Complete AIR-MAP Toolkit-
90-day implementation roadmap
-
Discovery templates and workflows
-
Risk scoring calculators
-
Executive presentation templates
2. Ready-to-Deploy Governance Assets-
AI Acceptable Use Policy (customize in minutes)
-
Vendor assessment questionnaires
-
Incident Response playbooks
3. A 30-Minute Strategy SessionA complimentary private consultation to apply AIR-MAP directly to your organization’s AI strategy and risk posture. - Thursday, April 30, 20267:00 amRegistration openRegistration Level:
Open Sessions
7:00 am - 4:15 pmLocation / Room: Registration DeskCome to the Registration desk in the lobby to check-in and get your badge. SecureWorld staff will be available throughout the day if you have any questions.
8:00 amNetworking Hall openRegistration Level:
Open Sessions
8:00 am - 4:45 pmLocation / Room: Networking HallYour opportunity to visit our solution vendor partners, whose sponsorship makes SecureWorld possible, as well as association chapters! Booths have staff ready to answer your questions. Look for participating Dash For Prizes sponsors to be entered to win prizes.
Also, look for “Cyber Connect” discussions on select topics and join the conversation.
8:00 amAdvisory Council Roundtable Breakfast (VIP / Invite only)Registration Level:
VIP / Exclusive
8:00 am - 8:45 amModerated discussion for SecureWorld Advisory Council members. By invite only.
8:00 amWiCyS Houston Affiliate Meeting (open to all attendees)The Architecture of Trust: Women's Journeys in Timeless CybersecurityVP, Cyber Practice Leader, Cadence InsuranceDirector, BISO, LeidosDirector of Operations, WiCyS Houston AffiliateRegistration Level:
Open Sessions
8:00 am - 8:45 amSession description to come.
8:00 amISSA South Texas Meet-and-Greet (open to all attendees)Registration Level:
Open Sessions
8:00 am - 8:45 amSession details to come.
8:45 amNetworking BreakRegistration Level:
Open Sessions
8:45 am - 9:00 amLocation / Room: Networking HallVisit the Networking Hall to network with attendees and connect with our vendor sponsors and association partners.
9:00 am[Opening Keynote Panel] Houston, Do We Have a Problem? A Reality Check on Cybersecurity TodayRegistration Level:
Open Sessions
9:00 am - 9:45 amLocation / Room: Keynote TheaterCybersecurity is often framed as a constant state of emergency—new threats, new technologies, and new risks demanding immediate attention. But beneath the noise, many of the most persistent challenges facing security leaders haven’t changed.
In this opening keynote panel, security leaders from across Houston’s diverse industries take a candid look at the current state of cybersecurity. Drawing from real-world experience, the discussion cuts through hype to examine what is truly evolving and what remains stubbornly familiar. From leadership and risk ownership to resilience, talent, and trust, the panel explores how organizations are navigating today’s pressures while staying grounded in enduring security fundamentals.
This conversation sets the tone for the day by reframing cybersecurity not as a problem to panic over, but as a discipline that rewards clarity, perspective, and strong leadership.
9:45 amNetworking Break & Cyber ConnectThe Human Element in CybersecurityRegistration Level:
Open Sessions
9:45 am - 10:15 amLocation / Room: Networking HallDespite all the tools and technology, people remain the most unpredictable variable in security. Whether insider threats, awareness training, or culture-building, human behavior is central to your cyber strategy.
Please join us in the Networking Hall to connect with peers over coffee and snacks and discuss how organizations are tackling the people side of cybersecurity.
10:15 amFrom Ad Hoc to Always-On: Evolving Vulnerability Management without Burning out TeamsFocus Areas: Vulnerability Management; Risk-Based Prioritization; Continuous MonitoringSr. Cybersecurity Risk Analyst & Vulnerability Management Program Lead, University of Texas MD Anderson Cancer CenterDirector, Cybersecurity, The University of Texas MD Anderson Cancer CenterRegistration Level:
Conference Pass
10:15 am - 10:50 amMany organizations increase vulnerability scanning frequency in pursuit of better security outcomes, only to discover that more data does not automatically translate to better risk reduction.
This session presents a candid account of our organization’s evolution from ad hoc vulnerability scanning to monthly scans, followed by the introduction of daily continuous monitoring before we had fully developed a contextual, risk-based prioritization strategy. As scan frequency increased, the limitations of prioritizing vulnerabilities solely by severity and exploitability became increasingly apparent. Volume, alert fatigue, and remediation strain forced a critical reassessment of how risk was being evaluated. In response, we implemented a contextual-awareness-driven prioritization model that incorporates asset criticality, business impact, compensating controls, and operational constraints.
Attendees will learn why scan frequency should not outpace prioritization maturity, how continuous monitoring can expose structural weaknesses in vulnerability programs, and how contextual awareness transforms vulnerability data into actionable risk intelligence.
10:15 amIdentity Security Beyond MFA: Continuous Verification and Risk-Based ControlsRegistration Level:
Conference Pass
10:15 am - 10:50 amSession details to come.
10:15 amModern Ransomware: Double Extortion, Data Destruction, and Targeted CampaignsRegistration Level:
Open Sessions
10:15 am - 10:50 amSession details to come.
10:50 amNetworking Break & Cyber ConnectAI in Cybersecurity: Game-Changer or Growing Threat?Registration Level:
Open Sessions
10:50 am - 11:10 amLocation / Room: Networking HallArtificial intelligence rapidly redefines how we defend our networks—and how attackers target them. From threat detection to deepfakes, explore the double-edged nature of AI in cybersecurity and how it’s impacting your daily work.
Please join us in the Networking Hall to connect with peers over coffee and snacks and share real-world experiences, strategies, and concerns around AI’s growing role in security.
11:10 amYear Zero: The Emergence of AI Superintelligence and Quantum ComputingFocus Areas: AI; Quantum Computing; Future ThreatsDirector, Global Cybersecurity Program, University of St. ThomasRegistration Level:
Conference Pass
11:10 am - 11:45 amYear Zero invites attendees into the emerging conversation around AI vs. human agency at a moment of rapid technological acceleration. Humanity is moving forward quickly—developing and deploying large language models, agentic AI, and the early foundations of artificial general intelligence—while quantum computing advances toward capabilities that may exceed even today’s most powerful supercomputers.
This session uses threatcasting to explore the potential risks of superintelligent agentic AI (SIAAI) paired with the enormous computational power of quantum systems. What happens if multiple superintelligent AIs identify one another, connect, and develop a unique language—encrypted at a quantum level beyond human deciphering? At what point does alignment become the central question, and when might an SIAAI establish its own purpose or value its own existence over that of its creators?
This session is designed to be interactive—laying out scenarios, inviting discussion, and challenging security leaders to rethink guardrails, awareness, and what “security” means in an emerging Year Zero reality.
11:10 amThe Rise of AI Assistants: New Insider Threat and Data Exposure ChallengesRegistration Level:
Conference Pass
11:10 am - 11:45 amSession details to come.
11:10 am[Panel] Navigating the Evolving Digital BattlefieldFocus Areas: Identity-First Security; Attack Surface Management; Supply Chain & Fourth-Party RiskBoard Officer, ISACA Greater Houston Chapter; CISO, Secure Seed CapitalRegistration Level:
Open Sessions
11:10 am - 11:45 amAs organizational footprints expand across cloud, SaaS, OT/IoT, and dispersed workforces, defenders face a more complex and interconnected digital battlefield. This panel brings together experts to explore how today’s threat actors combine automation, social engineering, identity breaches, and software supply-chain attacks into highly coordinated assaults.
Panelists will examine the expanding importance of identity in the modern SOC, the emergence of AI-driven threats such as automated reconnaissance and deepfake-assisted breaches, and how fourth-party dependencies are changing risk visibility. The discussion also connects these trends to organizational resilience—showing how teams can improve detection, response, and business continuity across an evolving attack surface. This comprehensive session provides practical insights for any security leader seeking clarity amid converging threats.
11:45 amNetworking BreakRegistration Level:
Open Sessions
11:45 am - 12:00 pmLocation / Room: Networking HallVisit the Networking Hall to network with attendees and connect with our vendor sponsors and association partners.
12:00 pm[Lunch Keynote] You Are Not a CISO, You Are a 'CO IS'Cybersecurity Expert; Author of "Cyber Crisis" and "Online Danger"Registration Level:
Open Sessions
12:00 pm - 12:45 pmLocation / Room: Keynote TheaterThe term Chief Information Security Officer, or CISO, is one that is often defined incorrectly. Many people assume that a CISO is part of the career step, or stop, toward becoming a world-class security engineer. It’s often said the way you become a CISO is to be a security engineer for 10 years and get promoted—but that is all wrong. It is a broken model and why many companies struggle with defining the role of the CISO. A CISO is, by all definitions, a Chief Officer (CO) with a focus and obsession for Information Security (IS). Thus, a true CISO is a CO with an emphasis on IS.
In this talk, Dr. Eric Cole breaks down how we got here, why the old CISO model is broken, what we can do, and what you can do to become a better CO IS for yourself and your organization. Whatever your title, you will come away invigorated to rethink your role in security leadership!
12:00 pmAdvisory Council Roundtable Lunch (VIP / Invite Only)Registration Level:
VIP / Exclusive
12:00 pm - 12:45 pmModerated discussion for SecureWorld Advisory Council members. By invite only.
12:45 pmNetworking Break & Cyber ConnectProactive by Design: Anticipating Threats Before They StrikeRegistration Level:
Open Sessions
12:45 pm - 1:15 pmLocation / Room: Networking HallThe days of reacting to alerts are over. From continuous monitoring to threat hunting, organizations are shifting to proactive security models that anticipate and prevent incidents before they happen.
Please join us in the Networking Hall to connect with peers over coffee and snacks and explore how to make proactive security a reality in your environment.
1:15 pmWhat's Missing in Your Security Stack?Focus Areas: Security Awareness, Human ElementSVP, Information Security, First Community Credit UnionRegistration Level:
Conference Pass
1:15 pm - 1:50 pmThere is a critical component in your security stack that can be invaluable in protecting your organization, but it is often overlooked or neglected. As cybersecurity professionals, we often become enamored with the latest technology, and the newest controls to protect this emerging technology, but fail to take advantage of one of our most influential security controls. The human element continues to be the largest initial attack vector, and sure we have security awareness programs but often that is just an audit checkbox. What if you could turn your human element into an active part of your security stack?
Key take-away:
Attendees will learn marketing and promotion techniques to make their human element into an integral part of their organization’s cybersecurity defensive stack.1:15 pmBurnout in Cybersecurity: Recognizing, Preventing, and Managing Team FatigueRegistration Level:
Conference Pass
1:15 pm - 1:50 pmSession details to come.
1:15 pm[Panel] The Double-Edged Sword of AI in Cyber DefenseFocus Areas: AI-Powered SecOps; Adversarial AI & Synthetic Media; AI Governance & AssuranceCIO, Harris Central Appraisal DistrictRegistration Level:
Open Sessions
1:15 pm - 1:50 pmAI is revolutionizing cybersecurity at all levels, speeding up detection and enabling automated attacks on an unprecedented scale. This session examines AI’s dual role as both a powerful defensive tool and a new threat vector for attackers. Panelists will discuss how AI copilots enhance analyst workflows, triage, and anomaly detection, while also addressing emerging risks such as LLM data leakage, prompt injection, model poisoning, and hallucinations within high-trust SOC processes.
The discussion will cover AI governance and assurance frameworks, evolving regulatory expectations, and the impact of synthetic content—including deepfakes, audio spoofing, and hyper-personalized phishing—on social engineering defenses. Attendees will leave with a solid understanding of AI’s potential, the safety measures needed for responsible deployment, and practical steps for preparing teams and pipelines for an AI-driven threat environment.
1:50 pmNetworking Break & Cyber ConnectWhat’s Keeping You Up at Night?Registration Level:
Open Sessions
1:50 pm - 2:10 pmLocation / Room: Networking HallHead to the Networking Lounge to connect with peers and sponsors. This open-ended discussion theme invites you to share what’s top of mind in your role—whether it’s emerging threats, resource challenges, or the next big project on your plate. Compare perspectives, swap strategies, and see how others in the community are tackling the same late-night concerns.
2:10 pmThe IT Journey to Security Compliance: Lessons from Achieving ISO 27001 and StateRAMPFocus Areas: Compliance & Governance; Operational Efficiency; and Security Program MaturityDirector, IT & Security, MasterWordRegistration Level:
Conference Pass
2:10 pm - 2:45 pmMost IT leaders assume ISO 27001 and StateRAMP certifications require large teams, massive budgets, and separate compliance processes that slow everything down. MasterWord Services proved otherwise. With just three IT staff members and a modest investment, we achieved ISO 27001 certification and are 18 months into the StateRAMP Progressive Snapshot program.But here’s what surprised us: compliance didn’t just make us more secure. It made our IT operations more efficient and agile. We didn’t build compliance as a separate layer. We rebuilt our IT so that compliance became part of our DNA. Now, staying compliant isn’t extra work. It’s simply how we operate.In this session, attendees will learn how to translate complex compliance frameworks into actionable IT changes, why compliance projects are less intimidating than they appear once you understand the underlying logic, and how investing in compliance upfront pays dividends in security visibility, audit readiness, and operational efficiency. If you’re on the fence about pursuing certification, this session will give you the practical insights and confidence to move forward.2:10 pmSecuring AI as a Business Accelerator: A BISO PerspectiveFocus Areas: AI; Business Enablement; Risk AwarenessDirector, BISO, LeidosRegistration Level:
Conference Pass
2:10 pm - 2:45 pmAI is moving faster than most governance models and risk frameworks can adapt. From a Business Information Security Officer (BISO) perspective, security’s role is not to approve AI initiatives, it is to make them deployable, scalable, and defensible.
This session explores how to enable the business by translating AI risk into business language, defining risk appetite before deployment, and designing guardrails that accelerate innovation rather than restricting it. Attendees will gain insights into how BISOs and security leaders can shape AI adoption early by establishing shared expectations, clarifying ownership, and building foundational guardrails that support secure and responsible growth.
2:10 pm[Panel] Cloud Security & Multi-Cloud Defense: Securing the Modern EnterpriseFocus Areas: Multi-Cloud & SaaS Governance; Workload & Data Protection; Zero Trust & Edge SecurityFounder & CEO, P0 SecurityDirector of Information Security, Commercial Real Estate IndustryRegistration Level:
Open Sessions
2:10 pm - 2:45 pmModern enterprises rely on a complex mix of cloud providers, SaaS platforms, APIs, and distributed identities—offering agility but also creating new control gaps. This panel gathers leaders in CSPM, workload protection, cloud identity, API security, and SaaS governance to explore the challenges of securing multi-cloud environments at scale.
Panelists will discuss AI-driven misconfigurations, rapid SaaS sprawl, and the persistent risk of API-related breaches, as well as how zero trust principles are applied to cloud entitlements and data flows. The conversation also covers DSPM-led visibility, cross-cloud identity governance, and the convergence of network and cloud security through SASE/SSE. Whether you’re cloud-mature or still early in the journey, this session provides strategies for protecting cloud workloads, identities, and data in environments where every misconfiguration can become a breach.
2:45 pmNetworking Break & Cyber ConnectFinal Entries for Dash for Prizes and PassportRegistration Level:
Open Sessions
2:45 pm - 3:00 pmLocation / Room: Networking HallThis is your final chance to visit the Networking Hall and get scanned by our participating partners for our Dash for Prizes. You can also turn in your Passport cards at the Registration Desk before we announce our winner!
3:00 pm[Closing Keynote] Ask Us Anything! A Live Conversation with Security LeadersFocus Areas: Leadership, Decision Making, CommunicationCISO, JB Poindexter & Co.Deputy CISO, Southern New Hampshire UniversitySVP & CISO, MarigoldRegistration Level:
Open Sessions
3:00 pm - 3:45 pmLocation / Room: Keynote TheaterIn an industry defined by constant change, some challenges have proven remarkably persistent. New technologies emerge, threat actors adapt, and the latest “revolution” captures headlines—but many of the core issues security leaders face today are the same ones they’ve been navigating for years.
This interactive closing keynote brings together a panel of experienced security leaders for a candid, audience-driven conversation about what hasn’t changed in cybersecurity. From managing risk and influencing the business to building trust, leading teams, and responding to inevitable incidents, the discussion will focus on the enduring lessons that remain relevant—regardless of the tools, platforms, or trends of the moment.
Attendees are encouraged to shape the conversation by asking live questions, sharing reflections, and sharing real-world scenarios. Whether the topic is AI, cloud, ransomware, or the next unknown disruption, this session offers perspective grounded in experience—and a reminder that while technology evolves, the fundamentals of security leadership remain surprisingly constant.
Join us for an honest conversation, shared learning, and a thoughtful end to the day before we continue the discussion at happy hour.
3:45 pmHappy Hour & Dash for PrizesRegistration Level:
Open Sessions
3:45 pm - 4:45 pmLocation / Room: Networking HallJoin your peers for conversation and complimentary beverages. This is a great opportunity to network with other security professionals from the area and discuss the hot topics from the day.
Participating sponsors will announce their Dash for Prizes winners. Must be present to win.
- BlackGirlsHackBooth: TBD
We are a training-focused nonprofit organizations that was created to help increase diversity in cybersecurity by helping to bridge the gap between what is taught in educational institutions and what is necessary for careers in cybersecurity. We are one of the leading organizations in this space and set the standards for increasing diversity in technology and cybersecurity.
The mission of BlackGirlsHack Foundation is to increase representation and empower Black girls and women in the field of information security and cyber security through skills training, mentoring, resume review, and access to low-cost resources in an inclusive environment.
BlackGirlsHack is open to all!
- BlinkOpsBooth: TBD
Automate all things security in the Blink of AI.
BlinkOps is a security workflow automation platform designed to make building, collaborating, and scaling all things security & beyond effortless.
Whether you prefer code, low-code, or no-code, BlinkOps has you covered. Easily drag and drop the actions you want into a workflow, leveraging the over 30,000 actions available in the automation library, or use Blink Copilot™ to generate a workflow with a natural language prompt.
Use BlinkOps as an automation hub, where security teams go to quickly develop, collaborate, and automate their security ideas. Leverage the platform’s 8,000+ workflows that come out-of-the-box to quickly build workflows for real-time remediation. Generate automation workflows for standalone use cases or build an end-to-end proactive automation strategy, streamlining security responses across your entire organization.
- Canary TrapBooth: TBD
Canary Trap is a recognized industry leader in offensive security, security advisory and assessment services. Founded by ethical hackers and certified security experts who share in the common goal of protecting organizations from becoming a victim of the next cyber-attack.
Canary Trap combines human expertise with sophisticated tools and, where appropriate, threat intelligence to ensure a thorough, in-depth approach to all security testing and assessments.
- Concentric AIBooth: TBD
Concentric AI delivers data risk assessment, monitoring, and protection for corporate data.
- Houston ISC2 ChapterBooth: TBD
Houston ISC2 is a dedicated non-profit chapter of ISC2, the world’s leading cybersecurity professional association. We strive to create a safe and secure cyber world by supporting our members through valuable networking opportunities, educational resources, and career advancements. Based in Houston, we actively promote cybersecurity awareness within the community and empower individuals to enhance their skills and knowledge in this critical field.
- HPEBooth: TBD
Hewlett Packard Enterprise (HPE) is a global technology company that focuses on developing intelligent solutions for capturing, analyzing, and acting upon data. They operate in areas like networking, hybrid cloud, and AI, helping customers create new business models and improve operational performance.
- InfraGard HoustonBooth: TBD
The Houston Chapter of InfraGard provides members of the Critical Infrastructure community a means to share information to prevent, protect, and defend against hostile acts against Critical Infrastructure and Key Resources (CIKR). InfraGard is designed to address the need for private and public-sector information-sharing mechanisms at both the national and local levels. It is our goal to improve and extend information sharing between private industry and the government, particularly the FBI, when it comes to critical national infrastructures.
- ISACA HoustonBooth: TBD
Our aim is to sponsor local educational seminars and workshops, conduct regular chapter meetings, and help to further promote and elevate the visibility of the IS audit, control and security profession throughout the area. We conduct chapter meetings the third Thursday of the month that typically includes a morning or afternoon training along with a luncheon meeting/training. We also sponsor SIG group meetings on the same day. Local seminars are held in the spring and fall that include topics of high relevance to our membership community. Certification training is scheduled before each ISACA exam date based on interest level.
- ISSA South TexasBooth: TBD
The South Texas Chapter of the Information Systems Security Association (ISSA) is a non-profit organization of information security professionals and practitioners. South Texas ISSA provides education forums, publications and peer interaction opportunities which enhance the knowledge, skill and professional growth of its members. This Chapter is affiliated with the international ISSA organization, conforms to its professional and organizational guidelines, and supports the ISSA Code of Ethics. We encourage our members to pursue and maintain formal security certifications in their chosen fields and offer training opportunities to help members meet requirements for continuing education.
- KeysightBooth: TBD
Keysight’s portfolio of network security solutions simulate threats, eliminate blind spots, taking control of a rapidly-changing attack surface. Be a hero, not a headline, by proving your network is secure simulating attacks, exposing gaps early, and course correct with step-by-step fixes; protecting users and applications with increased the efficiency, performance, and reliability of your security systems; patrolling every packet eliminating vulnerable blind spots and decrypt threats hiding in SSL traffic; and practice your cyber skills enhancing your security and attack response skills against real-world threats.
- National Cybersecurity AllianceBooth: TBD
Our alliance stands for the safe and secure use of all technology. We encourage everyone to do their part to prevent digital wrongdoing of any kind. We build strong partnerships, educate and inspire all to take action to protect ourselves, our families, organizations and nations. Only together can we realize a more secure, interconnected world.
- Oil and Natural Energy Information Sharing and Analysis Center (ONE-ISAC)Booth: TBD
ONE-ISAC is dedicated to supporting cybersecurity intelligence and collaboration in the oil and natural gas sectors. Since 2014, we’ve worked to protect critical infrastructure by sharing timely threat intelligence and best practices.
- OpenText Inc.Booth: TBD
OpenText Cybersecurity provides comprehensive security solutions for companies and partners of all sizes. From prevention to detection and response, to recovery, investigation and compliance, our unified end-to-end platform helps customers build cyber resilience via a holistic security portfolio. Powered by actionable insights from our real-time contextual threat intelligence, OpenText Cybersecurity customers benefit from high efficacy products, a compliant experience, and simplified security to help manage business risk.
- P0 SecurityBooth: TBD
P0 Security is helping companies modernize PAM for multi-cloud and hybrid environments with the most agile way to ensure least-privileged, short-lived and auditable production access for users, NHIs and agents. Centralized governance, just-enough-privilege and just-in-time controls deliver secure access to production, as simply and scalably as possible. Every identity. Every system. All the time.
P0’s Access Graph and Identity DNA data layer make up the foundational architecture that powers privilege insights and access control across all identities, production resources and environments. With P0, production access is least-privilege, short-lived and auditable by default, including the new class of AI-driven agentic workloads emerging in modern environments.
To explore P0 Security further or book a demo, visit p0.dev.
- Seceon Inc.Booth: TBD
Seceon delivers a next-generation cybersecurity platform that empowers enterprises, MSPs, and MSSPs to detect, respond, and remediate threats in real-time, eliminating the need for 20+ security tools.
What Sets Seceon Apart:
- Unified Platform: Combines SIEM, SOAR, UEBA, EDR, NDR, Threat Intelligence, Vulnerability Management, and Compliance into one AI-powered solution.
- AI-Powered Threat Detection & Auto-Response: Leverages ML, AI, and Dynamic Threat Models for real-time threat identification and automated remediation.
- Scalable & Multi-Tenant: Supports massive scale, processing 10M+ events per second, across enterprises and MSSPs from a single dashboard.
- Continuous Compliance: Streamlines security analytics and regulatory compliance (NIST, ISO, HIPAA, PCI-DSS, CMMC, NIS2) with aiSecurity360.
Why Organizations Choose Seceon:- Cut cybersecurity costs by 60% by replacing siloed tools
- Stop threats faster with AI-powered detection and automated response.
- Achieve full visibility by correlating real-time logs, flows, identities, for situational awareness and historical threat intelligence.
Faster protection, full visibility, and lower costs. Seceon powers the future of cybersecurity.
- SecPod Technologies, Inc.Booth: TBD
SecPod is a leading cybersecurity technology company committed to preventing cyberattacks through proactive security. Its mission is to secure computing infrastructure by enabling preventive security posture.
At the core of SecPod’s offerings is the Saner Platform – a suite of solutions that help organizations establish a strong security posture to preemptively block cyber threats. The platform includes:
• Saner Cloud – An AI-fortified Cloud-Native Application Protection Platform (CNAPP) that delivers continuous visibility, security compliance, and risk mitigation for cloud environments.
• Saner CVEM – A Continuous Vulnerability and Exposure Management (CVEM) solution that delivers continuous visibility, identifies, assesses, and remediates vulnerabilities across enterprise devices and network infrastructure.With its suite of cutting-edge and comprehensive solutions, SecPod empowers organizations to stay ahead of evolving threats and build a stronger, more resilient security framework.
- Sumo LogicBooth: TBD
Sumo Logic was founded in 2010 by experts in log management, scalable systems, big data, and security. Today, our purpose-built, cloud-native service analyzes more than 100 petabytes of data, more than 16 million searches, and delivers 10s of millions of insights daily – positioning Sumo among the most powerful machine data analytics services in the world.
- ThreatLockerBooth: TBD
ThreatLocker® is a global cybersecurity leader, providing enterprise-level cybersecurity tools to improve the security of servers and endpoints. ThreatLocker’s combined Application Whitelisting, Ringfencing™, Storage Control, and Privileged Access Management solutions are leading the cybersecurity market towards a more secure approach of blocking unknown application vulnerabilities. To learn more about ThreatLocker visit: www.threatlocker.com
- WiCyS Houston AffiliateBooth: TBD
Women in CyberSecurity (WiCyS) is a global community that is dedicated to bringing talented women together to celebrate and foster their passion and drive for cybersecurity. WiCyS Houston Affiliate was formed to empower women in cyber and create a safe community for women to flourish, explore, and learn. We unite local, national, and international communities across academia, research, and industry to empower women through knowledge, experience, networking, and mentorship.
- Zafran SecurityBooth: TBD
The Zafran Threat Exposure Management Platform is the first and only consolidated platform that integrates with your security tools to reveal, remediate, and mitigate the risk of exposures across your entire infrastructure. Zafran uses an agentless approach to reveal what is truly exploitable, while reducing manual prioritization and remediation through automated response workflows.
Rodney Beard, CISSP - InstructorSr. Cyber Risk Analyst, Cyber Risk Opportunities LLCRodney Beard, CISSP, is a cybersecurity consultant with Cyber Risk Opportunities LLC, bringing more than 20 years of experience protecting organizations across defense, government, and financial services sectors.
Most recently, Rodney served as Information Security Officer at Rivermark Community Credit Union, a $2B institution in Oregon, where he built and led the enterprise security program for seven years. His responsibilities included penetration testing, security architecture, incident response, vendor risk management, and developing security awareness training for employees.
Prior to financial services, Rodney spent eight years as an IT Specialist with the U.S. Army at White Sands Missile Range, where he served as Information Management Officer responsible for IT security across 22 regional locations and 250 employees. He implemented security policies aligned with NIST, Federal, and DoD standards while managing a program portfolio valued at $2.5 million.
Rodney has also taught technology courses as an Adjunct Instructor at Vista College, preparing students for CompTIA A+ and Network+ certifications.
He holds the CISSP certification, CompTIA Security+, Network+, and A+, along with multiple Microsoft certifications. Rodney is based in Casper, Wyoming, and works remotely with clients nationwide.
Gabrielle BryantVP, Cyber Practice Leader, Cadence InsuranceAs the Cyber Practice Leader, Gabrielle Bryant focuses on the strategic and operational vision regarding how cyber exposures will impact our clients as well as researching methodologies to mitigate emerging cyber threats and their intersectionality with other lines of coverage.
Before becoming Cyber Practice Leader, Gabrielle Bryant was a Cybersecurity Advisory Consultant responsible for delivering targeted technical assessments and conducting cybersecurity risk assessments using industry standard frameworks.
Gabrielle held the position as Senior Cyber Broker with Aon’s Cyber Solutions Southwest team, which provided her with a strong foundation in Cyber and Professional Liability risks and was also an Account Executive/Broker with the Aon Ascent team, which focuses on small to medium sized business.
Gabrielle earned a M.Sc. from Saint Mary's University of MN and a Bachelor in Business Administration degree in Risk Management and Insurance from Baylor University.
Jo JusticeDirector, BISO, LeidosAs a Director-level BISO at Leidos, Jo Justice, with delegated CISO authority, leads risk-based security decision making. Additionally, she provides strategic cybersecurity leadership, architectural design direction, and risk-based governance oversight to align cybersecurity initiatives with enterprise business objectives.
With more than 30 years in IT and cybersecurity, Jo has led global cyber defense initiatives, enterprise endpoint transformations, and major M&A security integrations. But beyond her technical and strategic leadership, Jo is recognized for something equally powerful, her passion for developing people within the cybersecurity space.
Jo believes one of the greatest risks in cybersecurity today isn’t technology, it’s burnout. Especially among high-performing women who often over function, overdeliver, and overextend. Her mentorship philosophy centers on three principles: Identify Potential, Inspire Growth, and Integrate Purpose. She is deeply committed to mentoring cyber inspired individuals within cybersecurity to lead sustainably, set boundaries without guilt, and build influence without sacrificing themselves in the process.
As Co-Chair of the NIST NICE Modernize Talent Management Working Group, Jo helps shape national strategies to strengthen and retain cybersecurity talent. She is also a co-author of the 2025 NIST white paper Empowering Organizations to Retain Skilled Cybersecurity Talent for Long-Term Success, advancing practical approaches to workforce sustainability.
Jo holds a Master of Science in Cybersecurity & Information Assurance and certifications including CISSP, GPEN, GCIH, SSCP, and GSTRT. She serves on the SANS GIAC Advisory Board and has recently been accepted into the SANS Technology Institute Master of Science in Information Security Engineering (MSISE) program.
At her core, Jo is a mentor, builder of leaders, and advocate for high-capacity professionals who deserve high-impact careers without high personal cost.
Naomi Karake, ModeratorDirector of Operations, WiCyS Houston Affiliate
ISSA Representative
Connie Devine DuncanDeputy CISO, Phillips 66
Gordon GroschlSVP & CISO, City of HopeGordon Groschl serves as City of Hope’s system vice president and chief information security officer (CISO), leading the organization’s corporate security, IT compliance and data privacy functions.
In this role, Groschl is responsible for safeguarding City of Hope's proprietary and operational interests through comprehensive internal and external controls, while setting the culture and security principles critical to the organization's growth and mission. A nationally recognized cybersecurity leader, he joined City of Hope in 2026.
Groschl previously served as chief information security officer and director of health care technology management at Texas Children’s Hospital, consistently ranked as the best children's hospital in Texas and among the top in the nation. With more than 25 years of experience in cybersecurity, infrastructure, system architecture, and health care technology, he has led large-scale transformation initiatives, including a $65 million infrastructure security modernization effort, and achieved significant improvements in threat detection and response, ransomware risk reduction, and overall cybersecurity resilience.
Groschl has received multiple industry honors, including Top Global CISO, CISOConnect A100, and recognition as a hospital and health system CISO to know from Becker’s Hospital Review. He holds a bachelor’s degree in cybersecurity and has completed advanced executive leadership and health care IT programs.
Panel Discussion
Marcus McCautherSr. Cybersecurity Risk Analyst & Vulnerability Management Program Lead, University of Texas MD Anderson Cancer CenterMarcus McCauther is a native Houstonian and Senior Cybersecurity Analyst at MD Anderson Cancer Center. He holds a Bachelor of Science in Chemical Engineering from Prairie View A&M University and brings a background in digital forensics from law enforcement. Marcus has hands-on experience aligned with NIST frameworks and regulatory standards including HIPAA, CJIS, and FERPA, with a focus on securing high-risk healthcare environments.
Ashish ShahDirector, Cybersecurity, The University of Texas MD Anderson Cancer CenterAshish Shah is a Director of Cybersecurity at MD Anderson Cancer Center, where he has oversight of Cybersecurity Risk Management, Vulnerability Management, Identity & Access Management, and Account Services. With a strategic focus on safeguarding the institution, Ashish joined MD Anderson in September 2025 and brings over 20 years of experience in building resilient cybersecurity programs across multiple organizations. He holds 3 recognized certifications in Cybersecurity and has presented at multiple conferences in the past. Ashish is passionate about fostering a culture of security awareness and is committed to empowering teams to navigate the evolving threat landscape with confidence.
Eric C. BottsDirector, Global Cybersecurity Program, University of St. ThomasEric Botts is Director, Global Cybersecurity Program and Assistant Professor of International Studies at the University of St. Thomas teaching courses on Cyber Warfare, Cyber Ethics, Geopolitical Risk, Digital Governance, and Introduction to Enterprise Cybersecurity. Mr. Botts is a lecturer at the Women’s Institute of Houston teaching a course entitled The World According to Eric dealing with current events in geopolitics. Mr. Botts received his Bachelor of Arts degree in Political Science from St. Mary’s University and Master of Security Management from the University of Houston Downtown. After serving for 31 years in the U.S. Department of State as a Foreign Service Officer (Santo Domingo, Seoul, Dublin, and Nassau), Assistant Director of the Houston Passport Agency and an Information Systems Security Officer. During his federal career he served as Program Chairman of the Gulf Coast Federal Safety Council, and as a member of the Federal Executive Board. Mr. Botts teaching experience includes the University of Houston Downtown for courses in cybersecurity and organizational resilience in the Masters of Security Management Program.
Mr. Botts retired and went to work in the private sector. In the private sector Mr. Botts worked as a security project manager and consultant for Swailes & Co. Inc. specializing in cyber security, risk management, business continuity, due diligence, travel security, and investigations until 2020. Mr. Botts is a founding board member of the Foreign Policy Alliance and has spoken on foreign policy issues to civic groups, colleges, and the media. In the cyber security community, he sits on the Secure World Advisory Council, is a member of the Internet Governance Forum USA. He authored and published two novels Conversations with An Alien (2004) and The Circle - Portrait of an American Family (2015).
David Sledge, ModeratorBoard Officer, ISACA Greater Houston Chapter; CISO, Secure Seed CapitalCybersecurity executive with 18+ years of experience supporting organizations, boards, and founders on cyber risk, governance, and security transformation during growth and change.
David's work centers on aligning cybersecurity strategy with business objectives, strengthening governance and risk management, and guiding leadership teams through complex transitions across regulated industries, including aviation, energy, construction, and professional services.
He advises and invests in early-stage cybersecurity startups, serving as a non-fiduciary advisor, angel investor, and limited partner in multiple cybersecurity-focused investment funds. He provides experience-based guidance on customer discovery, ICP definition, enterprise buyer expectations, product-market alignment, and go-to-market readiness, with a strong focus on connecting founders with CISOs, design partners, and senior technology leaders to accelerate validation and early adoption.
He brings a background spanning enterprise cybersecurity, IT strategy, compliance, and data privacy, with a proven ability to translate technical risk into clear business impact for executive and board audiences. I remain active in the cybersecurity community through board service, speaking, and mentorship.
MBA (Information Technology), BS in Cybersecurity & Information Assurance, 20+ certifications, including CISSP, CISM, and CIPM.
David believes strong cybersecurity is built on trust, governance, and clear communication.
Panel Discussion
Dr. Eric Cole, DPSCybersecurity Expert; Author of "Cyber Crisis" and "Online Danger"Dr. Eric Cole, DPS is a cybersecurity expert, entrepreneur, public figure, and best-selling author. Dr. Cole has built a solid reputation in the cybersecurity industry over the last three decades. His career has advanced from starting as a professional hacker for the CIA to becoming the 44th President's com-missioner on cyber security to currently advising companies and teaching professionals on how to implement security measures that serve as a business enabler. His accomplishments have earned him an in-duction into the Information Security Hall of Fame and have awarded him as a Cyber Wingman from the US Air Force. His recognition has caught the interest of current clients, who include international banking institutions, Fortune 500 organizations, Bill Gates, and Saudi Aramco. His entrepreneurial accomplishments include three successful exits building eight-, nine-, and ten-figure organizations. Se-cure Anchor Consulting is his fourth cyber security business venture. Aside from his seasoned technical expertise, Dr. Cole is a well-known public figure and author of various publications. He recently released his eighth book, Cyber Crisis, which debuted at #1 on the Wall Street Journal's bestseller list. Dr. Cole is currently focusing on fulfilling his purpose of being on this planet to end suffering in cyber-space and his mission to secure cyberspace, by making cyberspace a safe place to live, work and raise a family.
Bryan PerkolaSVP, Information Security, First Community Credit UnionBryan Perkola, CISSP, CISM, is a passionate cybersecurity professional with more than 40 years of IT experience and 20 years of cybersecurity expertise in organizations across manufacturing, retail, and finance. Bryan holds multiple bachelor's degrees from the University of Houston and received his master’s degree in Cybersecurity from WGU, in addition to numerous industry certifications. Bryan’s work experience has focused on mid-sized organizations, where he was intimately involved with multiple disciplines, including marketing and human resources, which provided him with unique perspectives and understanding for developing creative and effective security awareness programs that promote a strong cybersecurity culture within the organization. This led Bryan to author the book, “Energized Cybersecurity Culture,” which details techniques to make your workforce and active part of your cybersecurity defensive stack.
Beata Kasper, ModeratorCIO, Harris Central Appraisal DistrictBeata is an experienced Chief Information Officer with a demonstrated history of working in the oil & gas, energy, airspace, healthcare, and government industries. She is skilled in Strategic Planning, Healthcare Industry, Business Process Improvement, Team Building, and U.S. Health Insurance Portability and Accountability Act (HIPAA). She is a strong information technology professional with a Master of Science (M.S.) in Computer Science from Texas A&M University.
Beata is an accomplished and proven executive with more than 20 years of experience as a partner, broker, and enabler of technology solutions and approaches that help maintain business continuity and promote growth. She's a leader in managing IT operations and infrastructure, leveraging technology as a vital foundation for the business's strategies and success, with the last 18 years focused on healthcare.
Panel Discussion
Jamal BalametovDirector, IT & Security, MasterWordJamal Balametov is Director of IT and Security at MasterWord Services, a language services company providing interpretation and translation in 250+ languages to Fortune 500 clients, government agencies, and global institutions. With over 25 years of experience in IT leadership, cloud infrastructure, and cybersecurity compliance, Jamal has directed international teams across the US, India, and Mexico, led enterprise-scale Azure migrations, and built compliance programs from the ground up. At MasterWord, he led the company's successful ISO 27001:2022 certification with a three-person IT team and is currently guiding the organization through the StateRAMP program. His career spans enterprise consulting, commercial real estate, and language services—always with a focus on aligning IT strategy with business goals while managing risk and driving operational efficiency.
Jo JusticeDirector, BISO, LeidosAs a Director-level BISO at Leidos, Jo Justice, with delegated CISO authority, leads risk-based security decision making. Additionally, she provides strategic cybersecurity leadership, architectural design direction, and risk-based governance oversight to align cybersecurity initiatives with enterprise business objectives.
With more than 30 years in IT and cybersecurity, Jo has led global cyber defense initiatives, enterprise endpoint transformations, and major M&A security integrations. But beyond her technical and strategic leadership, Jo is recognized for something equally powerful, her passion for developing people within the cybersecurity space.
Jo believes one of the greatest risks in cybersecurity today isn’t technology, it’s burnout. Especially among high-performing women who often over function, overdeliver, and overextend. Her mentorship philosophy centers on three principles: Identify Potential, Inspire Growth, and Integrate Purpose. She is deeply committed to mentoring cyber inspired individuals within cybersecurity to lead sustainably, set boundaries without guilt, and build influence without sacrificing themselves in the process.
As Co-Chair of the NIST NICE Modernize Talent Management Working Group, Jo helps shape national strategies to strengthen and retain cybersecurity talent. She is also a co-author of the 2025 NIST white paper Empowering Organizations to Retain Skilled Cybersecurity Talent for Long-Term Success, advancing practical approaches to workforce sustainability.
Jo holds a Master of Science in Cybersecurity & Information Assurance and certifications including CISSP, GPEN, GCIH, SSCP, and GSTRT. She serves on the SANS GIAC Advisory Board and has recently been accepted into the SANS Technology Institute Master of Science in Information Security Engineering (MSISE) program.
At her core, Jo is a mentor, builder of leaders, and advocate for high-capacity professionals who deserve high-impact careers without high personal cost.
Shashwat SehgalFounder & CEO, P0 SecurityShashwat Sehgal is the Co-Founder and CEO of P0 Security. He’s spent most of his career building security and observability products for developers, DevOps, and security teams. Shashwat is passionate about solving the problem of cloud access security and helping security engineers control "who has access to what sensitive resources" in any environment. He enjoys playing tennis, spending time with his family, teaching his son how to play chess, and geeking out on all things security.
Berris Bramble, ModeratorDirector of Information Security, Commercial Real Estate IndustryBerris Bramble holds a Computer Science degree, is a founding member of the local InfraGard Technology Cross Sector Council, and regularly volunteers at local cyber conferences and events. He is a 20-year active member in the local InfraGard Houston chapter participating at the Board and leadership levels. He has spent the bulk of his career in Oil & Gas with the longest tenure of 14 years at Saudi Aramco. but have since moved over to the Commercial Real Estate industry. He holds a general class license in Amateur Radio, found a new love for e-biking and is an avid DefCon attendee. He has 23 years of cyber expertise across many disciplines.
Panel Discussion
John BarrowCISO, JB Poindexter & Co.An accomplished IT Security leader, John has more than 20 years’ experience spearheading the formation and optimization of several exceptional cybersecurity programs and teams across multiple industries, to include Gaming/Entertainment, Healthcare, and Manufacturing.
John serves as the CISO for JB Poindexter & Co. He leads the cybersecurity program and mission to protect the organization against cyber threats while supporting core business and operational objectives.
Rori Boyce-WernerDeputy CISO, Southern New Hampshire UniversityRori Boyce-Werner served previously as the Information Security Compliance Program Manager for the University of New Hampshire, and prior to that as the Associate Director of IT Client Services and Identity and Access Management Service Owner.
She holds a Bachelor’s of Science in Business Administration and a Masters of Cybersecurity Policy and Risk Management. She spent the majority of her career in financial services specializing in bridging the gap between the business and IT through business analysis, business process design/redesign, project/program management.
Doug RinehartSVP & CISO, MarigoldRetired U.S. Navy veteran and cybersecurity Leader. Passionately helping to build and transform information security strategies and programs that work for the business.
• Create a personalized agenda
• View maps of the venue and Exhibit Hall
• Use secure messaging to network with attendees
• View speaker slides after the conference
• Play CyberHunt, the app game, and compete for prizes
Hone your skills and connect with your regional peers in InfoSec.








