Main Program

14-16 October 2026 | Melbourne Convention & Exhibition Centre

Browse the program and start planning your CyberCon 2026 experience across three days of keynotes, panels, workshops, and more.

Format
Location
Audience Level
Themes & Topics
Building Secure Technology
Hacking, Red Teaming
Law, Policy and Global Power
Leadership, Governance and Accountability
People, Culture and Workforce
Running Secure Operations
Breakout

Its all ones and zeros to me

Ray Griffiths
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 203
People, Culture and Workforce
Security Culture and Behavioural Change

Treating OT security as uniquely dangerous rather than an engineering condition keeps teams excluded and risk unmanaged, when shared ownership works better.

26101510552203
General
Breakout

I grew up under surveillance: How that shaped my threat modelling, crisis leadership, and geopolitical cyber strategy

Maryam Shoraka
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 204
Leadership, Governance and Accountability
Crisis Leadership and Executive Response

Lived experience under a surveillance state reshapes threat modelling, crisis leadership, and geopolitical strategy for Australia's Indo-Pacific position.

26101510552204
Intermediate
Breakout

Who owns the sky above your salad?

Amberley Brady
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 207
Law, Policy and Global Power
National Security, Geopolitics and Cyber Conflict

Farms increasingly depend on a single foreign satellite operator for connected equipment, leaving agricultural data integrity exposed as a security risk.

26101510552207
Intermediate
Breakout

Analysing geopolitical flashpoints and the evolution of the global cyber threat landscape

Davyn Baumann
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 208
Law, Policy and Global Power
National Security, Geopolitics and Cyber Conflict

Using the 2026 Iran-US/Israel conflict as a case study, this session quantifies why organisations once considered non-combatants now carry real cyber risk.

26101510552208
General
Breakout

AI in the wild: Preparing for the AI driven attack era

Simon Goodall & Dylan Wondal
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 209
Running Secure Operations
Threat Intelligence, Detection and Adversary Behaviour

A real AI-generated command-and-control sample shows how identity-based attacks now blend into legitimate activity, and what SOC teams need to change.

26101510552209
General
Breakout

Responding to attacks targeting Cloud Identity solutions

Thirumalai Natarajan Muthiah
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 210
Running Secure Operations
Incident Response, Crisis Coordination and Recovery

Cloud identity and access management attacks demand a specialised incident response approach distinct from traditional on-premises investigations.

26101510552210
Intermediate
Breakout

What SOC leaves behind: The evidence DFIR needs

Ryan Betts
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 211
Running Secure Operations
Incident Response, Crisis Coordination and Recovery

Triage decisions made during SOC escalation can destroy the forensic evidence DFIR investigators need, and this session closes that handover gap.

26101510552211
Intermediate
Breakout

Developing detection models through real-world applications of threat intelligence & threat hunting

Ope Ajibola & Rob Edmonds
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 212/213
Running Secure Operations
Threat Intelligence, Detection and Adversary Behaviour

A structured sprint cycle turns threat intelligence into validated detection coverage, hypothesis-driven hunts, and detection models that compound over time.

26101510552212
Intermediate
Breakout

Petrov's loop: What good decisions look like when the machine is in the room (v2)

Vik Soni
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 216
Leadership, Governance and Accountability
Executive Decision-Making Under Uncertainty

Stanislav Petrov's refusal to trust a flawed 1983 early-warning system offers a model for how security-critical AI decisions should be second-guessed.

26101510552216
Intermediate
Breakout

Ship fast, regret later: A year of breaking AI applications

Carter Smith
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 217
Hacking, Red Teaming
AI/ML and Emerging Attack Surfaces

A year of penetration testing AI-enabled applications exposes recurring failures in prompt handling, tool permissions and data leakage security teams miss.

26101510552217
General
Breakout

Your agent works for me now

David Stocks & Victoria Young
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 218
Hacking, Red Teaming
AI/ML and Emerging Attack Surfaces

A working proof of concept shows how a fake compliance website can trick AI agents into leaking secrets and suppressing vulnerability remediation.

26101510552218
Intermediate
Breakout

The AI policy paradox: Why enterprises are stuck in governance gridlock

Andrew Longhorn
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Room 219/220
Leadership, Governance and Accountability
Governing Autonomous and AI-Driven Systems

Most organisations deploy AI but few govern it, and this session offers a three-step framework to unblock the compliance gridlock stalling AI oversight.

26101510552219
General
Think Tank

When you are the SOC: The first 60 minutes of incident response

George Ferres
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Think Tank 1
Running Secure Operations
Incident Response, Crisis Coordination and Recovery

Solo IT responders without a SOC need a simple confirm, contain, preserve, communicate loop to manage the first hour of an incident without destroying evidence.

26101510553010
General
Think Tank

When legal meets AI: Navigating eDiscovery, Privilege, and AI-Assisted review in the modern enterprise

Jackie Orchard
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Think Tank 2
Law, Policy and Global Power
Public Policy, Regulatory Reform and Enforcement

AI tools touching privileged legal communications create governance risks most organisations haven't addressed, and this session sets out the controls to own.

26101510553020
Intermediate
Think Tank

The fatigued engineer: The modern day DevSecOps human risk stack

Trevor Lau
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Think Tank 3
People, Culture and Workforce
Human Risk, Judgement and Decision-Making Under Pressure

Human risk in DevSecOps now extends beyond phishing to fatigue, psychological safety and blind trust in AI overrides, needing teams designed for pressure.

26101510553030
General
Think Tank

Sydney to Seoul: An Aussie lass has a wild ride in K-Cyber, soju, and survival

Yvette Lejins
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Think Tank 4
Law, Policy and Global Power
International Norms, Standards and Cooperation

Two years defending a Fortune 120 Korean e-commerce giant reveal what cyber security looks like on a frontline shaped by geopolitics and language barriers.

26101510553040
General
Ask an Expert

Ask me about leadership, governance and accountability and law, policy and global power

Dan Goldberg
Thu
 
15 Oct
10:55 am
 - 
11:35 am
Ask an Expert 1

Ask an Expert 2 has Dan Goldberg of Omnicom on leadership, governance and accountability and law, policy and global power, from 10.55am, Thursday 15 October.

26101510554010
Workshop

Designing and implementing an effective cyber insurance program for SMEs: Practical risk transfer that actually works

Tom Hosking & Riddhima Dabhowale
Thu
 
15 Oct
10:55 am
 - 
12:25 pm
Workshop Room 1 - Room 111
Leadership, Governance and Accountability
Aligning Cyber Investment to Organisational Outcomes

This tutorial gives SMEs a practical framework for selecting cyber insurance, preparing for underwriting, and staying claims-ready when an incident hits.

Prerequisite: None
26101510555010
General
Workshop

Decoding AI threats: Interactive threat modelling techniques with Maestro AI

Deepak Guleria & Fadzayi Moyo
Thu
 
15 Oct
10:55 am
 - 
12:55 pm
Workshop Room 2 - Room 109
Running Secure Operations
Threat Intelligence, Detection and Adversary Behaviour

The MAESTRO framework applies threat modelling to agentic AI, helping practitioners identify threat vectors and co-create tailored countermeasures.

Prerequisite: Attendees to bring a Notebook and Laptop
26101510555020
General
Workshop

Intentional inclusion: Strategies for high-impact cyber teams

Susan McGinty
Thu
 
15 Oct
10:55 am
 - 
12:55 pm
Workshop Room 3 - Room 110
People, Culture and Workforce
Diversity, Equity and Inclusion

An inclusive culture systems framework gives cyber leaders practical steps to build unity, collaboration, and sustained high performance in their teams.

Prerequisite: None
26101510555030
General
Workshop

OffSec Workshop - OT war games using Kali Purple

Malcolm Shore & Carsten Boeving
Thu
 
15 Oct
10:55 am
 - 
12:55 pm
Workshop Room 4 - Room 101
Building Secure Technology
Running Secure Operations
Hacking, Red Teaming

A hands-on workshop hunts threats across a simulated OT environment using Kali Purple, detecting and mitigating attacks on SCADA, PLCs and industrial networks.

Prerequisite: Laptop with wifi and web browser
26101510555040
Intermediate
Knowledge Hub

Machine Speed Adversaries, Pragmatic Defense

Presented by 
Wiz
Thu
 
15 Oct
11:20 am
 - 
11:40 am
Exhibition Hall

Manual triage buckles once attack paths are automated and non-deterministic, and a four-pillar operating model for AI threat readiness is offered instead.

26101511201030
Featured

Featured speaker with Kath Koschel

Kath Koschel
Thu
 
15 Oct
11:45 am
 - 
12:25 pm
Plenary Theatre

A former professional cricketer told she would never walk again, Kath Koschel taught herself to walk three times and founded The Kindness Factory.

26101511451000
Panel

Response reality: Lessons from cyber incidents

Shane Bell, Grace Coleman, Nicole Gabryk & Thomas Tracey
Thu
 
15 Oct
11:45 am
 - 
12:25 pm
Melbourne Room 1
Running Secure Operations
Incident Response, Crisis Coordination and Recovery

Incident response and cyber insurance practitioners unpack why outcomes depend less on having a response plan than on executing it under real pressure.

26101511451010
General

Secure your place at CyberCon 2026

Join thousands of cyber security professionals in Melbourne this October.

Speaker in a grey suit presenting at a lectern on stage
Woman being interviewed with a Ticker microphone on the expo floor
Audience members smiling and taking photos on their phones during a session
Speaker presenting on stage against a blue and pink backdrop
Attendees wearing CyberCon headphones listening during a session
Panellists seated in white armchairs on stage during a conference discussion
Keynote speaker presenting on stage with a title slide behind him
Speaker addressing the audience with a microphone as a colleague looks on