Main Program

14-16 October 2026 | Melbourne Convention & Exhibition Centre

Browse the program and start planning your CyberCon 2026 experience across three days of keynotes, panels, workshops, and more.

Format
Location
Audience Level
Themes & Topics
Building Secure Technology
Hacking, Red Teaming
Law, Policy and Global Power
Leadership, Governance and Accountability
People, Culture and Workforce
Running Secure Operations
Breakout

You’re fired! (not quite) - how to thrive in a security operations career in the age of AI

Bahar Fard & E-Yang Tang
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Room 204
Leadership, Governance and Accountability
Governing Autonomous and AI-Driven Systems

AI is transforming SOAR and SIEM workflows, and this session shows how tier one and two analysts can move up the value chain rather than lose their roles.

26101611452204
Intermediate
Breakout

DPRK cybercrime vs Australia’s sovereign security roadmap to 2030: The dual threat: A nation-state with a P&L

Mick McCluney
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Room 207
Law, Policy and Global Power
National Security, Geopolitics and Cyber Conflict

North Korean state-linked actors combine espionage with large-scale cryptocurrency theft, and Australia's 2030 security plan must defend against both.

26101611452207
General
Breakout

Cryptography in 2026: Moving from curves to lattices (and the engineering challenges)

Trill White
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Room 208
Building Secure Technology
Post-Quantum Cryptography and Cryptographic Transition Planning

ML-KEM keys are far larger than the ECC keys engineers optimised for, and this session covers the real handshake latency and hybrid deployment trade-offs.

26101611452208
Intermediate
Breakout

We built security for perfect humans. Attackers didn’t.

Priya Gnanasekaran
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Room 209
Running Secure Operations
Security Operations Centres and Continuous Monitoring

Automating tier-one triage didn't remove human error from security operations, it just relocated it upstream into detection logic nobody revisits.

26101611452209
General
Breakout

Incident response under pressure: Parallels between firefighting and cyber attacks

Trent Bartels
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Room 210
Running Secure Operations
Incident Response, Crisis Coordination and Recovery

Frontline firefighting experience shows why calm leadership, rigorous training, and regular tabletop exercises decide how teams perform during cyber incidents.

26101611452210
Intermediate
Breakout

Too young for the room

Chathura Abeydeera & Somindu Abeydeera
Fri
 
16 Oct
11:45 am
 - 
12:15 pm
Room 211
People, Culture and Workforce
Diversity, Equity and Inclusion

A breakout session on how seniority bias and credentialism keep young cyber talent invisible, traced through one 15-year-old's path from locksport to the stage.

26101611452211
General
Breakout

Computer on fire: A first responder's experience of suspected living off the land

Amelia Thompson
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Room 212/213
Running Secure Operations
Threat Intelligence, Detection and Adversary Behaviour

The first responder to a suspected living-off-the-land attack on an endpoint presents the evidence moment by moment for the audience to judge.

26101611452212
Breakout

Leading through uncertainty: Five strategic priorities for the resource-constrained CISO

Dean Navarro
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Room 216
Leadership, Governance and Accountability
Executive Decision-Making Under Uncertainty

Dean Navarro shares the five priorities behind a 12-month security transformation that won board endorsement in its first month, with no upfront capital.

26101611452216
Breakout

From submarines to boardrooms: Executive risk lessons from hacking military hardware

Adam Cunningham
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Room 218
Leadership, Governance and Accountability
Board Oversight, Assurance and Risk Appetite

Lessons from hacking a submarine's control systems shape five principles for communicating technical risk in terms executives will act on.

26101611452218
General
Breakout

Your AI runs on vibes, not rules: Can you prove your agent made the right decision?

Jordan Moshcovitis
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Room 219/220
Leadership, Governance and Accountability
Governing Autonomous and AI-Driven Systems

New automated decision-making disclosure laws demand a reasoning chain from autonomous agents, and this session presents primitives for runtime governance.

26101611452219
General
Think Tank

Sure Dave, I can to that! - LLM-Driven malware development

Cameron Hall
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Think Tank 1
Hacking, Red Teaming
AI/ML and Emerging Attack Surfaces

Breaking a malware build into small, legitimate-looking requests across multiple LLMs reliably bypasses safety refusals, a gap current safeguards don't close.

26101611453010
Intermediate
Think Tank

The new control plane of macOS security

Arni Hardarson
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Think Tank 2
Hacking, Red Teaming
Tool Development, Bug Bounty and Vulnerability Research

Modern macOS trust decisions are enforced through a distributed web of code-signing, entitlements and policy daemons most defenders treat as isolated controls.

26101611453020
General
Think Tank

How AI changes your ISO 27001 certification requirements

Jose Bishop
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Think Tank 3
Building Secure Technology
Autonomous and AI-Enabled Systems Security

AI adoption is outpacing ISMS updates, and this session, from an auditor's view, sets out what to change before your next surveillance audit.

26101611453030
General
Think Tank

School to SOC - 30 mistakes in 30 days

James Belcher Junior
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Think Tank 4
Running Secure Operations
Security Operations Centres and Continuous Monitoring

Thirty common mistakes new SOC analysts make in their first month reveal the gap between studying security theory and triaging live alerts under pressure.

26101611453040
General
Ask an Expert

The career that runs everything and nobody talks about

Abbas Kudrati
Fri
 
16 Oct
11:45 am
 - 
12:25 pm
Ask an Expert 1

The career that runs everything and nobody talks about is the subject for F5 Field CISO Abbas Kudrati in Ask an Expert 1 on Friday at 11.45am.

26101611454010
Knowledge Hub

Agents and Adversaries: When Your Own AI Does the Adversary's Job For It

Presented by 
SentinelOne
Fri
 
16 Oct
12:10 pm
 - 
12:30 pm
Exhibition Hall

Judging an AI agent by what it is doing, whatever its identity, lets a SOC build detection that treats any agent acting outside its lane as an attacker.

26101612101030
Featured

CTRL+ALT+COMPETE Grand final - CyberCon's live cyber security game show

Fri
 
16 Oct
12:35 pm
 - 
1:15 pm
Plenary Theatre

The winners of both semi-finals meet on the main stage for the trophy. Hosted by David Savva-Willett, Kyle Waters and Finley Keating.

26101612351000
Panel

CTI at the coalface in 2026: Expert panel

Chris Horsley, Bruce Large, Jasmina Zito & Molly Day
Fri
 
16 Oct
12:35 pm
 - 
1:15 pm
Melbourne Room 1
Running Secure Operations
Threat Intelligence, Detection and Adversary Behaviour

Australian cyber threat intelligence practitioners share war stories, common misconceptions, and what actually builds an impactful CTI practice.

26101612351010
General
Panel

Three experts. Three perspectives. One conversation about human risk management because it isn’t working the way we think it is

Caitriona Forde, Chantelle Strauts & Jacqueline Jayne
Fri
 
16 Oct
12:35 pm
 - 
1:15 pm
Melbourne Room 2
People, Culture and Workforce
Security Culture and Behavioural Change

Three human risk management practitioners debate why awareness training and phishing metrics fail to change behaviour, and what actually works instead.

26101612351020
General
Knowledge Hub

Code by Vibes, Breach by Design: Securing the Non-Coder Revolution

Presented by 
Cloudflare
Fri
 
16 Oct
12:35 pm
 - 
12:55 pm
Exhibition Hall

Applications built by prompt carry injection flaws and weak authentication, and a container isolates the environment without fixing the broken logic inside.

26101612351030
Breakout

Who owns what when AI fails? The GenAI shared responsibility model for AI risk across every use case

Leonard Ng
Fri
 
16 Oct
12:35 pm
 - 
1:15 pm
Room 103
Building Secure Technology
Autonomous and AI-Enabled Systems Security

A shared responsibility model maps AI security accountability across deployment tiers, showing which risks are yours and which belong to vendors.

26101612352103
Intermediate
Breakout

Blue wins if we cheat (and that's fair) home-turf advantage for AI defenders in Active Directory

Anurag Khanna
Fri
 
16 Oct
12:35 pm
 - 
1:15 pm
Room 104
Building Secure Technology
Autonomous and AI-Enabled Systems Security

Pitting autonomous AI agents against each other in Active Directory shows defenders lose not from weak models but from withholding environment context.

26101612352104
Intermediate
Breakout

From pallets to packets: A story about people, reinvention, and success

Angelina Liu
Fri
 
16 Oct
12:35 pm
 - 
1:15 pm
Room 105
People, Culture and Workforce
Security Culture and Behavioural Change

A cyber security leader's journey from early hardship to a career in IT distribution, cloud hosting and security leadership shows how reinvention works.

26101612352105
Advanced
Panel

How to continuously prioritise and justify your cyber investment based on quantified risk

Brahman Thiyagalingham, Anthony Smit, Wayne O'Young & Jason Ha
Fri
 
16 Oct
12:35 pm
 - 
1:15 pm
Room 203
Leadership, Governance and Accountability
Board Oversight, Assurance and Risk Appetite

A panel on how combining risk quantification with continuous exposure management grounds cyber investment in validated, exploitable exposure data.

26101612352203
General

Secure your place at CyberCon 2026

Join thousands of cyber security professionals in Melbourne this October.

Speaker in a grey suit presenting at a lectern on stage
Woman being interviewed with a Ticker microphone on the expo floor
Audience members smiling and taking photos on their phones during a session
Speaker presenting on stage against a blue and pink backdrop
Attendees wearing CyberCon headphones listening during a session
Panellists seated in white armchairs on stage during a conference discussion
Keynote speaker presenting on stage with a title slide behind him
Speaker addressing the audience with a microphone as a colleague looks on