BEGIN:VCALENDAR
VERSION:2.0
X-WR-CALNAME:chibrrcon2027
X-WR-CALDESC:Event Calendar
METHOD:PUBLISH
CALSCALE:GREGORIAN
PRODID:-//Sched.com ChiBrrCon 2027//EN
X-WR-TIMEZONE:UTC
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T151500Z
DTEND:20261009T160000Z
SUMMARY:Check-In & Registration / Light Breakfast Buffet
DESCRIPTION:Check in & Registration
CATEGORIES:GENERAL
LOCATION:🟢 5. Registration (Main Lobby)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:4c6337d2ad9c1e6f9fa34f5dcdcffc2a
URL:http://chibrrcon2027.sched.com/event/4c6337d2ad9c1e6f9fa34f5dcdcffc2a
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T160000Z
DTEND:20261009T161000Z
SUMMARY:Opening Ceremony
DESCRIPTION:Opening Ceremony
CATEGORIES:GENERAL
LOCATION:⏺️ 6. Harmony (Auditorium)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:17cc2faaae1c7b0b2bd02fb3f8a65c43
URL:http://chibrrcon2027.sched.com/event/17cc2faaae1c7b0b2bd02fb3f8a65c43
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T161500Z
DTEND:20261009T170000Z
SUMMARY:Resiliency through Adversity (working title)
DESCRIPTION:Josh has a unique distinction of having been on the “Miracle on the Hudson” Flight 1549 piloted by Captain "Sully" Sullenberger\, opening the emergency exit door and helping his fellow passengers to safety. He's been highlighted on CNN\, The LA Times\, The New York Times\, NY Post\, The Guardian UK\, has appeared on The Dr. Phil show\, The Oprah Winfrey show\, and dozens of podcasts and keynotes in the years since. Josh is happy to share some of the events before\, during and after the Miracle on the Hudson and has an engaging way of relating these experiences and lessons to what CISOs and Cybersecurity professionals contend with during critical incident responses.
CATEGORIES:KEYNOTE
LOCATION:⏺️ 6. Harmony (Auditorium)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:693fdf7a45c3a20e059e6db047b2b95f
URL:http://chibrrcon2027.sched.com/event/693fdf7a45c3a20e059e6db047b2b95f
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T170000Z
DTEND:20261009T230000Z
SUMMARY:Meet-up and Chill Area
DESCRIPTION:A small quiet (maybe!) spot to sit\, meet up and chat with someone\, or just hang out and chill (or work ☹️).\n\n
CATEGORIES:GENERAL
LOCATION:⬇️ 7. Hope / Village 1 (Gallery Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:3a889d97d76464ee8a0aac9e456f4a15
URL:http://chibrrcon2027.sched.com/event/3a889d97d76464ee8a0aac9e456f4a15
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T170000Z
DTEND:20261009T171500Z
SUMMARY:Orientation/Onboarding for CPAI: Cympire Red Team Village
DESCRIPTION:Orientation and onboarding for the "CPAI: Cympire Red Team Village" starting at 10:15\n\nPreregistration for the village is required\,&nbsp\;sign up for the actual CTF&nbsp\;session (not this orientation)&nbsp\;by adding to your schedule\, seats are limited!\n\n\n
CATEGORIES:VILLAGE
LOCATION:⬇️⤵️↩️  (Classroom HH-003 Downstairs)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:18b45ae2b3ba855c52f52967d3eb18ed
URL:http://chibrrcon2027.sched.com/event/18b45ae2b3ba855c52f52967d3eb18ed
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T171500Z
DTEND:20261009T230000Z
SUMMARY:Partner Expo and Sponsor Recruiting Desk Area
DESCRIPTION:Meet and greet our Partners at their expo tables\, and Sponsors who have recruiting tables!
CATEGORIES:CAREER
LOCATION:⬇️ 7. Hope / Village 1 (Gallery Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:2827e6c7da171e7904041e9fba9084e4
URL:http://chibrrcon2027.sched.com/event/2827e6c7da171e7904041e9fba9084e4
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T171500Z
DTEND:20261009T180000Z
SUMMARY:The challenges of tech education and the lack of practical experience
DESCRIPTION:Today's technological studies do not address the needs of the industry\, graduates arrive with a methodology but without practical experience - the discussion will discuss the challenges and solutions
CATEGORIES:CAREER
LOCATION:↙️ 4. Paranoia (Hermann Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:5ee0e2a0e542f2446245bbb0b8cbab4d
URL:http://chibrrcon2027.sched.com/event/5ee0e2a0e542f2446245bbb0b8cbab4d
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T171500Z
DTEND:20261009T180000Z
SUMMARY:AI Meets APT: Tearing Apart a Russian Threat Actor’s Malware
DESCRIPTION:This session breaks down a real reverse-engineering case: dissecting malware from a Russian threat actor using a mix of traditional tooling and heavy AI augmentation. It’s a practical walkthrough\, not a theory talk\, showing exactly how modern AI fits into an RE workflow without replacing the analyst’s judgment.\n\n\nThe story starts with the basics: loading the sample into Visual Studio Code\, wiring Copilot into the workspace\, and using it to speed up early triage\, sketch hypotheses\, and clean up noisy decompiled output. From there\, we move into Ghidra and Ghidra MCP\, using AI-assisted explanations to untangle obfuscated functions\, unpack encoding routines\, and clarify the malware’s execution flow.\n\n\nNext\, we switch to Unicorn. You’ll see how AI helped generate the scaffolding and “ballast” needed to emulate tricky code paths\, build test harnesses\, and sanity-check behaviors that were too opaque in static form. This combination of emulation\, targeted prompting\, and iterative refinement peeled back layers of the loader\, payload\, and C2 logic far faster than a pure manual approach.\n\n\nThe session covers what worked\, what failed\, and how to avoid AI-induced dead ends. YThe goal is simple: show a realistic\, repeatable way to integrate AI with VS Code\, Copilot\, Ghidra\, Ghidra MCP\, and Unicorn to speed analysis while staying firmly in control.\n\n\nBy the end\, you’ll walk away with a complete\, end-to-end view of how AI can boost malware reverse engineering on real hostile code — not as magic\, but as a force multiplier for someone who knows what they’re doing.
CATEGORIES:COMMON
LOCATION:⏪️ 3. Despair (Ballroom)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:218c63f1c901dd3d654ee1a989b4105b
URL:http://chibrrcon2027.sched.com/event/218c63f1c901dd3d654ee1a989b4105b
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T171500Z
DTEND:20261009T180000Z
SUMMARY:The Anatomy of an AI
DESCRIPTION:Systems designed around AI and ML technologies are growing as fast in complexity as they are in popularity. These systems\, especially in production and at scale\, often follow a microservice architecture with LLMs\, Rag databases\, MCP Servers\, clients\, and more all communicating over the network. That doesn't even include all the other supporting technologies that are usually needed to orchestrate and deploy complicated systems. With all this complexity comes risk. However\, discussions on the risks and vulnerabilities of these AI systems often leave out one of the most important perspectives\; Traditional network design &amp\; security. &nbsp\;\n\nDuring this session we will investigate the technologies and risks associated with running production AI systems by walking through several common architectures\, from the simplest to among the most complicated. We will discuss vulnerabilities that are unique to these systems\, such as prompt injection\, as well as more traditional network and application security risks. &nbsp\;Also in focus is the attacker perspective. We will discuss how attackers view these systems\, including their infrastructure targets\, priorities\, and motivations. Sprinkled throughout this conversation are real examples from penetration tests\, red teams\, and public disclosures. &nbsp\;This presentation might be a good fit for attendees interested in learning more about the network and systems architecture behind AI and ML systems\, their security vulnerabilities and risks\, or those who want to hear a few war stories on exploiting AI systems.
CATEGORIES:COMMON
LOCATION:⏺️ 6. Harmony (Auditorium)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:c7df8fa7264d6e59526954c46b1a2164
URL:http://chibrrcon2027.sched.com/event/c7df8fa7264d6e59526954c46b1a2164
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T171500Z
DTEND:20261009T180000Z
SUMMARY:Cyber Extortion: Breach\, Response\, and After Effects
DESCRIPTION:Cyber-extortion breach tactics and techniquesGaining access through social engineeringGaining access through zero-dayBypassing EDRElevating privileges on internal systemsFinding and exfiltrating dataCovering tracksFirst hour of a network breachLocking down accounts and killing sessionsPreserving artifactsCollecting logsTerminating accessBlocking C2 channelsDetermining scope and source of compromiseOther common pitfallsBreach extortion negotiationsCommon threat actor techniquesThreat actor offerings and paymentsNegotiaion goals\, strategies and best practices
CATEGORIES:INCIDENT RESPONSE
LOCATION:➡️ 8. Empathy (Expo)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:7ee1a0661bd6f56fa6db9210cb94301d
URL:http://chibrrcon2027.sched.com/event/7ee1a0661bd6f56fa6db9210cb94301d
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T171500Z
DTEND:20261009T180000Z
SUMMARY:Advanced Personal Privacy
DESCRIPTION:As surveillance from governments\, private entities\, and criminals has created a wild west of exploitation\, I believe there is a need to discuss the solutions to prevent and mitigate surveillance. This talk is geared towards an audience that has some knowledge of personal privacy. However\, I will touch base on the foundational aspects of privacy at the beginning of the talk\, thus accounting for newcomers to privacy as well. I will end the talk by giving practical workflows of how I leverage privacy in my day-to-day life without sacrificing convenience. Some topics covered in this talk will be the definition of modern privacy\, examples of surveillance\, how to opt out of surveillance at an advanced level\, and getting more control over your digital footprint. Some specifics include the following: Flock surveillance\, Linux hardening\, social media privacy\, surveillance capitalism\, GrapheneOS usage\, etc.&nbsp\;
CATEGORIES:PRIVACY
LOCATION:↖️ 1. Fear (Alumni Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:8018931667faea3b783b28847d56626a
URL:http://chibrrcon2027.sched.com/event/8018931667faea3b783b28847d56626a
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T171500Z
DTEND:20261009T194500Z
SUMMARY:CPAI: Cympire Red Team Village - Pre-registration is best!
DESCRIPTION:CPAI: Cympire Red Team Village\n\nYou should register in advance for this session by adding it to your personal schedule\, for best experience\, and because seats are limited!\n(Click this link to see how to add a session to your personal schedule)\n\nAudience:\nHigh School Cybersecurity StudentsEntry-Level Cybersecurity StudentsNovice Penetration Testers\nOverview\nThis village is designed for beginners with little to no prior experience in Red Team operations who possess a foundational understanding of cybersecurity principles. It is ideal for learners seeking to build practical Red Team skills through interactive\, hands-on keyboard exercises that utilize real-world tools and vulnerabilities.\nParticipants assume the role of a penetration testing team conducting a covert engagement against a fictitious organization. Through this scenario-based approach\, learners perform open-source intelligence (OSINT) research on real-world vulnerabilities and apply exploitation techniques within a controlled lab environment featuring both Linux and Windows operating systems.\n\n\nGuided instruction is provided throughout the village\, with an experienced instructor available to support participants at each stage of the learning process. This ensures the development of both technical proficiency and operational confidence.\n&nbsp\;\nKey Topics Covered\nDiscoveryReconnaissanceInitial AccessPrivilege EscalationCollectionImpactFile AnalysisApplication SecurityIdentity and Access Management (IAM)Vulnerability AssessmentMalware Analysis&nbsp\;\nTechnical Requirements\nWorkstation Requirements\nGoogle Chrome browser with Remote Desktop Protocol (RDP) supportSupported operating systems: Windows\, Linux\, or macOSChromebooks\, tablets\, and mobile phones are not supportedParticipants using systems with restrictive security configurations (e.g.\, Endpoint Detection and Response [EDR] solutions) are advised to temporarily disable these features\, as they may interfere with lab activitiesWhen possible\, participants are encouraged to use personal laptops to avoid organizational security restrictionsNetwork Requirements\nA minimum of 3 Mbps of internet bandwidth per participantNo firewall restrictions that block required ports or IP addressesPreferred network access configuration:Whitelist *.cywaria.net/ and ensure access to port 8443An unrestricted internet connection with no port or IP filtering is idealIf feasible\, participants are encouraged to bring or use personal mobile hotspots
CATEGORIES:VILLAGE
LOCATION:⬇️⤵️↩️  (Classroom HH-003 Downstairs)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:48f0f61407b71eb2c6d91a97efb454ba
URL:http://chibrrcon2027.sched.com/event/48f0f61407b71eb2c6d91a97efb454ba
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T171500Z
DTEND:20261009T230000Z
SUMMARY:Human-in-the-Loop: Why AI Still Can’t Pick This Lock
DESCRIPTION:An Interactive Lock Village Experience\nAI can process vast amounts of data\, recognize patterns\, and automate decisions—but it still can’t feel a binding pin\, sense subtle feedback through a tension wrench\, or adjust instinctively when a lock fights back.\nThis session is not a traditional talk. Instead\, attendees are invited into a hands-on Lock Village where physical security takes center stage. Using a variety of locks—including pin tumbler\, wafer locks\, and clear training mechanisms—participants will explore the tactile skills behind lock-picking and learn how small\, human-driven actions can defeat seemingly secure systems.\nThrough live demonstrations and guided practice\, this experience highlights why certain aspects of security remain stubbornly resistant to automation. Attendees will gain a deeper appreciation for physical security\, and the importance of understanding vulnerabilities that exist beyond code\, models\, and dashboards.\nNo slides. No algorithms. Just locks\, picks\, patience\, and the unmistakable click that only a human can feel.
CATEGORIES:VILLAGE
LOCATION:⬇️ 7. Hope / Village 2 (Gallery Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:7706e6212472adb0e163e36762d856f5
URL:http://chibrrcon2027.sched.com/event/7706e6212472adb0e163e36762d856f5
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T171500Z
DTEND:20261009T224500Z
SUMMARY:TinFoil Hat Competition
DESCRIPTION:The Tinfoil-Hat Competition is coming to&nbsp\;ChiBrrCon!!\nIt's going to be an absolute blast\, and we're looking forward to all the crazy and creative hats everyone is going to build!Checkout the Tin Foil Hat Competition&nbsp\;site for the rules of the competition!\n\nThe Tinfoil Hat Competition is a unique event that tests the signal attenuation properties of contestant-made tinfoil hats. Using professional RF testing equipment\, we measure how effectively your hat blocks various radio frequencies.\n\nHow It Works\n1. Create Your Hat\nDesign and build your tinfoil hat using any materials you choose. Be creative and innovative in your approach to RF shielding!\n\n2. Test the Hat\nYou place your hat on our handy test dummy\, and the hat will be tested using a HackRF One device\, measuring signal attenuation from 1 MHz to 6 GHz.\n\n3. Results & Scoring\nWe compare signal strength with and without the hat\, calculating average attenuation in decibels (dB). The highest attenuation score in each category wins!\n\n
CATEGORIES:VILLAGE
LOCATION:⬇️ 7. Hope / Village 3 (Gallery Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:967b5ae5b1a4f3e8a9191fd837804439
URL:http://chibrrcon2027.sched.com/event/967b5ae5b1a4f3e8a9191fd837804439
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T181500Z
DTEND:20261009T190000Z
SUMMARY:From Immigrant Resilience to Cyber Resilience: A Practical Roadmap for Career Pivoting
DESCRIPTION:1. Opening – “From Lima to Cyber” (5 min)Arriving in the U.S. at 17Waiting years to adjust statusNavigating out-of-status challengesThe resilience that shaped the cybersecurity pivot2. Education &amp\; Reinvention (6 min)Pivoting into cyber in 2024Bootcamp → peer mentorGraduating top of cohort (4.0 GPA)Turning adversity into fuel3. Certifications With Strategy (5 min)Studying Security+ efficientlyBuilding consistency and momentumMaking complex topics simple4. Networking With Intention (8 min)52 → 3\,400+ LinkedIn connectionsHow volunteering opened doors (BSides\, ISACA\, Raíces\, WiCyS\, Mea's Cohort\, COTY)Approaching CISOs and leaders confidentlyAsking boldly\, serving genuinely5. GRC &amp\; Entry-Level Cyber Paths (5 min)Why GRC is the choice for meYour value is in who you are\, not the title of your role6. Identity as a Competitive Advantage (6 min)Woman\, Latina\, Peruvian\, immigrant\, minorityWhy these are strengths\, not liabilitiesWhy she does NOT believe in imposter syndromeEmpowering the young\, the overlooked\, the seasoned pivoters7. What has worked and what didn't(3 min)Daily habits and routinesHow to be visible\, credible\, and unforgettable8. Closing (2 min)Purpose\, faith\, legacyDreams don’t expire—people just stop pursuing them
CATEGORIES:CAREER
LOCATION:↙️ 4. Paranoia (Hermann Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:e7bc1d4167d0a55d585a1b15ae729f22
URL:http://chibrrcon2027.sched.com/event/e7bc1d4167d0a55d585a1b15ae729f22
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T181500Z
DTEND:20261009T190000Z
SUMMARY:Building an AI-First Center of Excellence: From Legacy Transformation to Enterprise-Wide AI Capability
DESCRIPTION:Artificial intelligence has reached unprecedented capability levels—foundation models demonstrate sophisticated reasoning\, generation\, and autonomous action across diverse domains. Yet most organizations struggle to unlock this potential\, constrained by fragmented implementations\, unclear governance frameworks\, and inability to scale beyond isolated experiments. The gap between AI's technical maturity and organizational readiness represents the defining competitive challenge.\nOld National Bank's Transformation Office has pioneered an AI-First approach through establishment of a Center of Excellence addressing five strategic pillars: Vision\, Governance\, Culture\, Capabilities\, and Enablement. This framework positions AI not as a helper\, but as how work fundamentally gets done.\nOur presentation will demonstrate practical implementation through real-world examples including custom AI assistants optimized for individual roles\, AI-driven intake processes with automated risk rating and routing\, and LLM orchestration frameworks employing specialized models for generation\, evaluation\, and human-in-the-loop oversight. These implementations illustrate building new processes for AI-integrated operations rather than retrofitting legacy workflows.\nCritical to sustainable AI capability is governance that enables innovation without creating impediments. We will share our approach to phased implementation with control gates\, capability-level risk assessment addressing core AI functions\, and productized architectural patterns including RAG for Agents that enable reuse across multiple use cases.\nConference attendees will gain actionable insights into establishing AI Centers of Excellence that balance competitive imperatives with responsible risk management. Our framework addresses the challenge of preventing overly rapid adoption with insufficient controls while maintaining organizational agility and innovation capacity.\nThis presentation offers enterprises a roadmap for transforming from AI experimentation to enterprise-wide AI capability\, positioning organizations to compete effectively in an AI-native marketplace while maintaining operational resilience and structured governance appropriate to deployment scope.
CATEGORIES:COMMON
LOCATION:⏺️ 6. Harmony (Auditorium)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:722380dc0657e8dcf36d90acc089c819
URL:http://chibrrcon2027.sched.com/event/722380dc0657e8dcf36d90acc089c819
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T181500Z
DTEND:20261009T190000Z
SUMMARY:DevOps for the age of AI
DESCRIPTION:AI isn’t the future of software delivery\, it’s the present. It’s reshaping how we build\, deploy\, and scale systems in real time. While DevOps gave us speed and reliability for traditional applications\, it wasn’t designed for the messy\, data-driven\, unpredictable world of machine learning.\n\n\nEnter MLOps: the next evolution of DevOps\, purpose-built for the age of AI. This talk demystifies how to extend the practices you already know like automation\, CI/CD\, monitoring\, and observability\, into the dynamic lifecycle of ML models.\n\n\nWhether you’re a DevOps engineer staring down your first ML project\, a data scientist tired of tossing models over the wall\, or a leader accountable for delivering trustworthy AI at scale\, you’ll leave with a practical playbook for success.\n\n\nDevOps transformed how we ship software. Now it’s time to transform how we ship intelligence.
CATEGORIES:DEVOPS
LOCATION:↖️ 1. Fear (Alumni Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:53deeaffe7570d4be713fb98d354e21a
URL:http://chibrrcon2027.sched.com/event/53deeaffe7570d4be713fb98d354e21a
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T181500Z
DTEND:20261009T190000Z
SUMMARY:Modernizing Security Operations in a World of AI Threats
DESCRIPTION:We are currently at an inflection point. The traditional SOC model—relying on manually correlated alerts and fragmented SIEM\, EDR\, and SOAR tools is failing. Why? Because the adversary has industrialized the attack chain using Generative AI.\n\nThreat actors no longer operate at human speed. They can generate complex phishing campaigns\, discover vulnerabilities\, and execute sophisticated attacks in hours\, not months. This isn’t a future risk\; it’s happening today\, with AI-powered worms accelerating the speed and scale of breaches.\n\nOur challenge is simple:&nbsp\;We cannot fight machine speed with human effort.\n\nThe core architectural flaw in legacy environments is the&nbsp\;"human correlation engine."&nbsp\;You pay massive fees to ingest data into a SIEM\, then you pay highly skilled analysts to manually pivot through disjointed consoles to stitch together a single attack story. This results in overwhelming alert fatigue\, long&nbsp\;Mean Time to Resolution (MTTR)\, and high analyst burnout.\n\nTo survive and compete in the AI era\, you must adopt an&nbsp\;Autonomous SOC&nbsp\;model.\n\nThis means replacing fragmented tools with a single\, unified platform—one that fuses XDR\, SIEM\, and SOAR onto a single data lake. The goal is to move the human out of the repetitive decision-making process. The AI should automatically ingest all telemetry\, synthesize it into a single\, comprehensive&nbsp\;Incident&nbsp\;(the full story)\, and orchestrate the response before your team even sees the alert.\n\nThis shift isn't about incremental improvement\; it's about architectural transformation. It’s the only way to solve the most common problems that we face in the SOC today\n\n
CATEGORIES:INCIDENT RESPONSE
LOCATION:⏪️ 3. Despair (Ballroom)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:09b3de2685bc38b543f6a4624aaba31a
URL:http://chibrrcon2027.sched.com/event/09b3de2685bc38b543f6a4624aaba31a
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T181500Z
DTEND:20261009T190000Z
SUMMARY:Stop Drowning in Logs: AI Accelerated Incident Response
DESCRIPTION:DFIR today involves millions of artifacts\, hundreds of thousands of logs with a hundred different sources. An analyst would spend more time collecting\, normalizing and then searching for data rather than reasoning about what happened. An average incident resulting in large timelines as APTs and ransomware gangs today\, equipped with AI to help them on their quest for world encryption.\n\nSo why not look at the problem? The analysts spending hours analyzing and looking at logs\, a hundred different tools and then normalizing the mess... phew! This makes DFIR the path with the highest burnout rates withing the cybersecurity domain. The solution to this is relatively simple\, or is it? Let's dive into employing the OSDFIR framework to automate investigations and as a plus\, leveraging the ability of LLMs to work with opensource tools like OpenRelik and Tmesketch (both would be explained to the audience) to make this workflow applicable in your day to day forensics and incident response scenarios. \n\nI would demonstrate how a practical\, end-to-end workflow using the above can be set and show the audience a demo where I prompt an LLM to identify malicious activity within a defined time frame. We will walk through a realistic muti-stage timeline where forensic artifacts are standardized and is used to build an enriched timeline for the the LLM to work with. The process to do the same would be explained followed by a short demo on the final product: a solution where you can ask the LLM using prompts in natural language to identify malicious activity!
CATEGORIES:INCIDENT RESPONSE
LOCATION:➡️ 8. Empathy (Expo)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:219c095d813f3631df3c496a9c4c2c9f
URL:http://chibrrcon2027.sched.com/event/219c095d813f3631df3c496a9c4c2c9f
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T190000Z
DTEND:20261009T200000Z
SUMMARY:Lunch - Avaiable in two areas
DESCRIPTION:\n
CATEGORIES:GENERAL
LOCATION:➡️ 8. Empathy (Expo)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:09b8a61095f968111b2358f315f96b14
URL:http://chibrrcon2027.sched.com/event/09b8a61095f968111b2358f315f96b14
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T190000Z
DTEND:20261009T200000Z
SUMMARY:Lunch - Available in two areas
DESCRIPTION:Lunch Service: Feel free to grab lunch and sit in any available area.
CATEGORIES:GENERAL
LOCATION:🟢 5. Registration (Main Lobby)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:5f68bf6944a12e1789e0bacd9370df0e
URL:http://chibrrcon2027.sched.com/event/5f68bf6944a12e1789e0bacd9370df0e
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T191500Z
DTEND:20261009T200000Z
SUMMARY:CISOs/Senior Mgrs only -- CISO Roundtable: Architecting the Future of the CISO Role
DESCRIPTION:This session is for CISOs (or the equivalent senior-most security manager)\, or direct reports to same.\nSéan Donovan brings back a favorite session from earlier ChiBrrCons!\n\nIn an era of shrinking tenures and expanding liabilities\, the modern CISO needs more than technical acumen—they need a survival guide and a strategic roadmap.\nJoin&nbsp\;Séan Donovan&nbsp\;(CEO\, RED SKY Consulting)\, strategic advisor to the Fortune 100 "C" Suite\,&nbsp\;and the industry’s trusted "C-Suite Consigliere\," for a high-impact\, closed-door roundtable designed exclusively for sitting executives. Séan\, a strategic partner to 50% of the Fortune 100\, brings his proprietary Triton Methodology and 35+ years of human capital expertise to the table and to YOU & your direct benefit. This is not a lecture\; it is a guided collaborative forum. We will dissect the reality of the executive "meat grinder\," exploring how to convert pressure into career velocity and command the boardroom.&nbsp\;\n\n
CATEGORIES:CAREER
LOCATION:⬇️⤵️↩️  (Classroom HH-010 Downstairs)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:81d47e329b3995fbffc3d76fdc6afb25
URL:http://chibrrcon2027.sched.com/event/81d47e329b3995fbffc3d76fdc6afb25
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T201500Z
DTEND:20261009T210000Z
SUMMARY:From the Barrio to the Blue Team: Using AI to Elevate your Career
DESCRIPTION:Cybersecurity is evolving fast and so are the opportunities to enter and grow within the field. But for many\, especially those from underrepresented or nontraditional backgrounds\, breaking in can feel overwhelming. At the same time\, artificial intelligence is transforming the way defenders detect threats\, hunt adversaries and build careers.\n&nbsp\;\nIn this session\, Rosaileen Iandolo\, VP of Cybersecurity\, shares her journey from the barrio to leading security operations\, threat intelligence\, and detection engineering. She will demonstrate how AI-powered tools can accelerate learning\, remove barriers\, and empower aspiring professionals to carve out a place on blue teams. Beyond the technical\, she’ll also explore how AI can boost soft skills\, from drafting professional communications to preparing presentations and interviews.&nbsp\;\n&nbsp\;\nAttendees will walk away with:\nPractical examples of how AI can support security operations and personal skill-buildingWays AI can strengthen communication\, confidence\, and career mobilityA roadmap for using AI not just as a technical accelerator\, but as a career elevatorThis session blends technical insight with career strategy\, designed for students\, early-career practitioners\, and anyone ready to leverage AI to create opportunities and drive impact in cybersecurity.
CATEGORIES:CAREER
LOCATION:↙️ 4. Paranoia (Hermann Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:1017c21eb4d281b7451a986bef972322
URL:http://chibrrcon2027.sched.com/event/1017c21eb4d281b7451a986bef972322
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T201500Z
DTEND:20261009T210000Z
SUMMARY:Winning the War for Talent 2026: Crushing The Skills Gap\, AI Disruption\, Leveling Up Your Position and the Cybersecurity Executives Path to the C-Suite
DESCRIPTION:\nSlide 1: Introduction & Speaker BioFounder and CEO of RED SKY Consulting: A 19-year-old provider of cybersecurity & IT staffing\, executive placement\, workforce management\, advisory\, and professional services—primarily to Fortune 100 & 500 clients.Industry Veteran: Over 30+ years in the technology workforce management industry.Strategic Advisor: Specializing in career pathing\, compensation analysis\, executive placement\, cybersecurity/technology staffing\, retention & attrition\, culture building\, and market growth.Thought Leader: Frequent speaker at conferences\; participant in advisory boards\, think tanks\, and summits for industry pulse.New AI Note: In 2026\, AI is reshaping cybersecurity roles—requiring expertise in AI-driven threat detection\, ethical AI governance\, and automated security tools—further intensifying the war for talent.Slide 2: About RED SKY ConsultingTrack Record: 19+ year history serving 50% of the Fortune 100\, 25% of the Fortune 500\, and progressive smaller organizations.Approach: "High touch/white glove" approach with deep relationships and patented recruitment process for superior results.Goal: Build long-term relationships with integrity\, sincerity\, and professionalism.Philanthropy: RED SKY Foundation (forming/launching) to provide fully funded college educations to underprivileged young adults in partnership with clients (starting 2026).Slide 3: Discussion TopicsTalent attraction and retention strategies for leaders/companies in the "War for Talent."Trends and practices for landing the job.Executive Focus: The evolving path to the C-Suite for cybersecurity leaders.What to expect from a staffing partner/headhunter (candidate or hiring manager perspective).New AI Addition: How AI is transforming the cyber workforce—new opportunities in AI security\, challenges in upskilling\, and AI tools for recruitment/retention.Slide 4: State of the Cybersecurity Workforce – The FactsGlobal Gap: Predicted &gt\;4 million unfilled cybersecurity jobs globally by 2026 (actuals exceeded estimates).Rapid Growth: Unfilled jobs grew 375% (2015–2024) to 3.5M.U.S. Reality: ~600K openings in 2024 (only 68% filled)\; shortages impact 85% of organizations' security.Impact: 69% of F1000 CISOs report understaffed teams\; 78% have unfilled roles\; 42% take 6+ months to fill.New AI Impact: By 2026\, AI has widened the gap—demand for AI/ML specialists in cyber (e.g.\, adversarial AI defense\, automated incident response) has surged. AI tools help fill routine roles but create new high-skill voids\; organizations using AI for threat hunting report even greater talent needs.Slide 5: Talent Attraction StrategiesPrioritize: Comprehensive understanding of priorities ("Right person – Right seat").Source: Establish sourcing strategy (internal/vendor recruitment\, referrals\, etc.).Sell: Clarify value proposition (culture\, benefits\, mentors\, career track).Vet: Engage/evaluate candidates (technical\, personality\, cultural fit).Close: Finalize search and onboarding.New AI Injections:Sourcing: Leverage AI-powered sourcing tools (e.g.\, LinkedIn AI\, predictive analytics) to identify passive candidates with emerging skills.Upskilling: Highlight AI training opportunities in value prop—e.g.\, "Learn to govern GenAI" is a massive draw for top talent.Slide 6: Talent Attrition – The Data & ReasonsChurn Rates: 2024 average attrition in enterprise security programs: 31%.Top Reasons: Feel underappreciated/unable to grow (42%)\; lack of clear career path (35%)\; lack of recognition (31%)\; limited skill development support (25%).Drivers: Growth dissatisfaction\, low pay\, poor work-life balance\, feeling overlooked.New AI Impact: AI automation of routine tasks (e.g.\, basic alerting) is reducing job satisfaction in entry-level roles if not paired with upskilling. Conversely\, AI analytics can now predict "flight risk" employees before they resign.Slide 7: Retaining Top Talent – Best PracticesAlignment: Accurate role positioning and satisfaction focus.Desired Support: Workers want C-suite listening (68%)\; defined cyber ownership/culture (62%)\; training + emerging tech investment (59%).Actionable Items: Market-aligned comp\; recognition\; remote work (94% desire remote options)\; role rotation.New AI Injections:Invest in AI-specific training (e.g.\, prompt engineering for security\, AI risk frameworks) to combat skill gaps.Emerging tech investments must now include AI Security Platforms—this is a top retention driver for engineers who want to stay relevant.Slide 8: Diversity\, Equity & InclusionBusiness Case: Diverse perspectives lead to better decisions\, outcomes\, and culture.Moral Case: Simply the right thing to do.RED SKY Data: 31% ethnic diversity placements\; 24% gender diversity (2019–2022).New AI Note: AI tools can reduce bias in sourcing/screening (e.g.\, anonymized resumes)\, boosting DEI. However\, leaders must audit these tools to ensure the AI itself isn't biased.Slide 9: Cybersecurity Executives' Path to the C-Suite"The modern CISO is no longer jus...
CATEGORIES:CAREER
LOCATION:➡️ 8. Empathy (Expo)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:07ff4e96be229989dfaa92265e4bcb75
URL:http://chibrrcon2027.sched.com/event/07ff4e96be229989dfaa92265e4bcb75
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T201500Z
DTEND:20261009T210000Z
SUMMARY:Gen AI Ain't Your Buddy - Neither Is Your Lawnmower
DESCRIPTION:When we think about "AI" we are usually talking about Generative AI these days. And now that we can "talk" to Gen AI in plain language we're treating it like a "buddy. But Gen AI isn't your buddy\, and that's ok\, because neither is your lawnmower\, drill\, or car for that matter. They're all tools - necessary\, but just tools. \n\nThis session will look at some of the pitfalls of Gen AI that we may not be taking into account when we interact with it. We'll also discuss some examples of where Gen AI shines and share some guidance on how to make the best use of Gen AI when you choose to. All this is presented in a non-technical\, humorous\, relatable way for AI users of all experience and skill levels.
CATEGORIES:COMMON
LOCATION:⏺️ 6. Harmony (Auditorium)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:69069cbc725a9dcc35904ea64a6c4478
URL:http://chibrrcon2027.sched.com/event/69069cbc725a9dcc35904ea64a6c4478
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T201500Z
DTEND:20261009T210000Z
SUMMARY:Securing Vibe Coding - What You Need to Know
DESCRIPTION:This presentation is designed to get attendees vibe coding securely. &nbsp\;It will show them how vibe coding works\, demonstrate how vibe coding can create issues\, like added surface area and orphaned code and then discuss and demonstrate how to fix them.\nHere is a brief outline of the presentation:\nIntroduction – what is vibe codingDiscussion of prompts and intentDemonstration of vibe coding and prompting app generationDemonstration of how vibe coding creates security issuesDiscussion of the security issues created by vibe coding and how to prevent\, mitigate and repair themDemonstration of how to fix vibe-coding created security issueNote that most of the presentation will not require significant coding experience. &nbsp\;A short bit of time will be spent showing where the created issue is within the code\, but this will be presented in a way to be informative to those that can code\, but also not lose those who cannot code. &nbsp\; Audience suggestions will be requested regarding what to make for the vibe coding example.
CATEGORIES:COMMON
LOCATION:↖️ 1. Fear (Alumni Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:dd69553a0ad7ccb3bf03c30e8a94851b
URL:http://chibrrcon2027.sched.com/event/dd69553a0ad7ccb3bf03c30e8a94851b
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T201500Z
DTEND:20261009T210000Z
SUMMARY:Bridging the Gap: Unifying AI Risk Management with NIST CSF 2.0
DESCRIPTION:We've all seen the explosion of AI\, but the security risks often feel abstract and overwhelming. My talk\, 'Bridging the Gap: Unifying AI Risk Management with NIST CSF 2.0\,' is about cutting through the noise. (and it can be really loud!)&nbsp\; I'll show you how to stop managing AI risk with a patchwork of solutions and start using a cohesive\, practical approach. I'll take two powerful tools—NIST's CSF 2.0 and the AI RMF—and provide a clear\, actionable blueprint for unifying them.\nYou'll leave with a simplified\, repeatable process for managing AI risk that you can implement in your organization immediately. Forget the theory\; this is about actionable strategy and real-world implementation\nThe Pain &amp\; The Promise:&nbsp\;The AI Risk Gap: The explosion of AI has created a critical governance problem: security and risk teams are managing highly abstract AI risks—from algorithmic bias to data poisoning—outside the established controls of the enterprise. This disconnect is chaotic\, paralyzing innovation and rendering compliance efforts ineffective. This session provides the solution: a practical\, repeatable methodology to finally bridge this gap.\nThe Bridge-Building Process: Establishing the FoundationIntroduction to the core concept of using the CSF as the enterprise container and the AI RMF as the specialist's tool.\nThe Bridge-Building Process: We establish a unified framework where the NIST CSF 2.0 provides the overarching Cybersecurity Management System (the&nbsp\;Outer Frame)\, and the NIST AI RMF serves as the Specialized AI Risk Engine (the&nbsp\;Inner Core). Our approach focuses on developing a Cyber-AI Profile—a focused set of CSF outcomes tailored specifically to your AI systems and MLOps (a set of practices\, tools\, and collaborative platforms designed to automate and streamline the entire machine learning lifecycle)&nbsp\;environment.\n\nThe Blueprint -&gt\;&nbsp\; &nbsp\;The Integration -&gt\;&nbsp\; The Workflow\nThe What!&nbsp\; &nbsp\; &nbsp\; &nbsp\; &nbsp\; &nbsp\; &nbsp\;The So What!&nbsp\; &nbsp\; &nbsp\; &nbsp\; &nbsp\; The How!&nbsp\;\nThe Foundation&nbsp\; &nbsp\; The Bridge&nbsp\; &nbsp\; &nbsp\; &nbsp\; &nbsp\; &nbsp\; &nbsp\; The Application\n\nThe Blueprint: Mapping the AI Lifecycle \, The Integration and&nbsp\; A Simple Workflow: We will detail a clear\, actionable workflow\, 4 Steps- showing how AI RMF activities map across the six CSF functions:an example of the first 3\nGOVERN (The Policy Layer): How AI RMF's Govern function defines the AI Risk Appetite and assigns accountability for the model (GV.RM).IDENTIFY (The Assessment Layer): Using AI RMF's Map and Measure functions to perform Threat Modeling and quantify non-cyber risks (like unacceptable bias) for the CSF risk register (ID.RA)PROTECT (The Control Layer): Implementing MLOps controls for Training Data Integrity and securing the model artifact against tampering (PR.DS\, PR.PS).\n\n
CATEGORIES:RISK
LOCATION:⏪️ 3. Despair (Ballroom)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:15908699a59a5f54736753d194f43153
URL:http://chibrrcon2027.sched.com/event/15908699a59a5f54736753d194f43153
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T211500Z
DTEND:20261009T220000Z
SUMMARY:AI in the Wild: Real-World Risk\, Real-Time Response
DESCRIPTION:AI is no longer a future threat—it’s a present reality. From deepfakes and data poisoning to shadow IT and vendor vulnerabilities\, AI is reshaping the cybersecurity landscape in ways that demand urgent attention. In this session\, Lori Kevin\, VP of Security &amp\; Compliance at IMO Health\, shares real-world breach scenarios\, their business and enterprise impact\, and governance frameworks designed to stay ahead of these threats. Attendees will walk away with actionable strategies for evaluating AI tools\, securing sensitive data\, and building resilient security programs that align with SOC 2\, HIPAA\, and HITRUST. Expect to learn more about field-tested insights for practitioners ready to confront AI risk head-on.\n\n\n
CATEGORIES:COMMON
LOCATION:⏺️ 6. Harmony (Auditorium)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:a57660ce837b8688c9283b935ed5d2ab
URL:http://chibrrcon2027.sched.com/event/a57660ce837b8688c9283b935ed5d2ab
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T211500Z
DTEND:20261009T220000Z
SUMMARY:From Cyber Metrics to Cyber Economics: Proving the Value of Security and leveraging AI as Your Second Brain
DESCRIPTION:Security leaders have long struggled to balance speed with rigor: CISOs must make rapid calls on investments\, incident response\, and program direction\, then justify those decisions to executives\, boards\, and regulators. Artificial Intelligence promises not just faster answers but defensible ones. In this presentation\, drawing on experience as a penetration tester\, auditor\, regulator\, and program leader\, we will explore how AI can serve as a “second brain” for security decision-making tapping in various sources of information. We’ll show how AI-driven analysis can cut through noise\, reveal where risk is actually reduced\, and help translate technical data into financial and operational terms. Beyond the hype\, we’ll address practical realities: What works today? Where are the pitfalls? Attendees will walk away with strategies to use AI not only for efficiency\, but as a force multiplier for risk accountability and executive alignment.\n\n\nKey Takeaways are:\n- How AI can accelerate and defend security program decisions&nbsp\;\n- Lessons from real-world use cases (metrics\, risk quantification\, regulatory oversight)&nbsp\;\n- Governance practices for responsible AI adoption in security programs\n\n\nParticipants will hear concrete examples of AI applied in action: how AI-driven analytics can cut through noise to highlight latest threat information\, how machine learning models are improving speed of evaluating relevance\, and how automation is reducing the burden on security teams facing information overload and response time pressure.&nbsp\;
CATEGORIES:COMMON
LOCATION:↖️ 1. Fear (Alumni Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:3fdfb2c4a6494bbf320e4f02cf95066a
URL:http://chibrrcon2027.sched.com/event/3fdfb2c4a6494bbf320e4f02cf95066a
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T211500Z
DTEND:20261009T220000Z
SUMMARY:InfoSecs and the City
DESCRIPTION:BurbSec Meetup: Exploring the Midwest’s Social InfoSec Scene\nA current showrunner of BurbSec meetups will delve into the vibrant social InfoSec community developing across the Midwest. Drawing from real-world experiences and notable success stories\, they’ll offer insights into the most productive “CitySec” frameworks in the region. You’ll gain an insider’s look at how these grassroots gatherings have fostered networking\, professional development\, and knowledge sharing among security enthusiasts at all levels.\nBy the end of this session\, you’ll walk away equipped with the essential knowledge and practical tools needed to launch your own meetup or to breathe new life into an existing one. Whether you’re a seasoned InfoSec professional or just starting out\, you’ll discover clear\, achievable steps for building a thriving local security community. Join us to learn how to forge meaningful connections and set your “CitySec” initiative on a solid path to success!
CATEGORIES:COMMON
LOCATION:➡️ 8. Empathy (Expo)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:fc94f248b7cb752977fb3ea8f7b83fc3
URL:http://chibrrcon2027.sched.com/event/fc94f248b7cb752977fb3ea8f7b83fc3
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T211500Z
DTEND:20261009T220000Z
SUMMARY:Probably Secure: What We Misunderstand About AI And Determinism Is Making Us Less Secure
DESCRIPTION:When I say "probabilistic" outcomes\, your mind likely jumps to coins or dice. However\, probability also lies at the heart of the most significant development in computer science in recent memory: Artificial Intelligence. From classifying pictures of dogs to the probabilistic transformers of Generative AI\, it is all based on the concept of "maybe."\n\n\nGenAI is just another tech....right? Can we safely assume the same tools and mental models we have used for deterministic systems up til now are the best choice for this new world of probabilistic outcomes?&nbsp\;\nWhat are the security ramifications of a probabilistic system at scale?\nThe good news is that many of the rule-based security tools we have been relying on for years are still there to provide us with some safety netting\, if we know when to employ them and where AI can best assist us in our mission. &nbsp\;\n\n\nLet's step way back and talk about systems that run on "most likely correct."&nbsp\;\nJoin this talk if your teams are increasingly using AI-assistants and you're trying to figure out how to keep everyone safe. Let's have an interactive conversation about why it's important that you don't treat 'probably' and 'definitely' the same way.
CATEGORIES:COMMON
LOCATION:⏪️ 3. Despair (Ballroom)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:e8c1db66e6b85be3a7c00777753c7eff
URL:http://chibrrcon2027.sched.com/event/e8c1db66e6b85be3a7c00777753c7eff
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T211500Z
DTEND:20261009T220000Z
SUMMARY:Rebooting SecOps: The Intentional SOC & Combined Arms Strategy
DESCRIPTION:The modern SOC is at a breaking point\, trapped in a cycle of reactive firefighting and analyst burnout. Join Matt Michalek—a 27-year U.S. Army combat veteran and cybersecurity leader—for a session on transforming security operations using the military "Combined Arms" doctrine.\nDiscover how to move beyond a fragmented "stack of tools" to a state of seamless integration where humans and AI act as a single\, cohesive fighting force. Learn to apply the rigor of formalized "Battle Drills" to shift your team from a pinned-down defense to a proactive posture. Whether you're an executive managing the "Deep Battle" or an analyst "grunt" on the front lines\, you will leave with a battle-tested roadmap for building a resilient\, effective\, and human-centric defensive operation.\n\nWe will explore how to:\nApply Military Rigor to Cyber Defense: Utilize formalized "Battle Drills" to move beyond theoretical playbooks and build instinctive\, standardized muscle memory for critical incident response.Leverage AI as a Force Multiplier: Move past the hype to implement AI as a "Unit of Action" that automates 80% of mundane triage\, slashing engagement times.Operationalize Empathy: Understand why empathy and psychological safety are not just "soft skills" but essential components of cyber readiness and sustainable cyber power.Reclaim Maneuver Space: Reclaim analyst time to focus on uniquely human tasks such as proactive hunting\, deep investigation\, and long-term defensive strategy.\n\n\n
CATEGORIES:COMMON
LOCATION:↙️ 4. Paranoia (Hermann Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:62b84bfaccbb30ac0d903461d513052d
URL:http://chibrrcon2027.sched.com/event/62b84bfaccbb30ac0d903461d513052d
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T221500Z
DTEND:20261009T230000Z
SUMMARY:WiCyS Panel - Community-Driven Success: How One Nonprofit Transforms Cyber Careers
DESCRIPTION:Michael Phillips moderates a wide-ranging discussion panel of distinguished guests from our WiCyS partners.&nbsp\;\n\nJoin our panelists as they share how WiCyS (Women in Cybersecurity) as a nonprofit organization has transformed their cybersecurity careers. Discover programming for all career levels\, the benefits of membership\, and the strategies behind building an award-winning cyber community. Whether you're breaking into the field or advancing to leadership\, this panel offers practical insights on how community drives career success.\n\n
CATEGORIES:CAREER
LOCATION:⏺️ 6. Harmony (Auditorium)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:a7b36b247ef8605112536f9f456799d6
URL:http://chibrrcon2027.sched.com/event/a7b36b247ef8605112536f9f456799d6
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T221500Z
DTEND:20261009T230000Z
SUMMARY:Decoding Dyslexia: Thriving In Cybersecurity With A Different Brain
DESCRIPTION:Cybersecurity is a field that thrives on diverse thinking\, pattern recognition\, and creative problem-solving — all strengths that often come naturally to those with dyslexia. But for many\, dyslexia is still seen as a barrier instead of an asset. In this talk\, we’ll challenge that perception.I’ll share a personal journey of working in cybersecurity while navigating dyslexia\, offering practical strategies for success. From how to advocate for yourself in the workplace and build a support system\, to using free tools like dyslexia-friendly fonts\, high-contrast settings\, and even ChatGPT to simplify complex logs — this session is packed with real-world advice.We’ll also reframe the narrative around dyslexia\, focusing on the unique strengths it brings to our field. Whether you’re dyslexic\, work with someone who is\, or just want to make your team more inclusive\, you’ll leave this talk with a better understanding of how neurodiversity can elevate cybersecurity.
CATEGORIES:COMMON
LOCATION:↙️ 4. Paranoia (Hermann Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:5a83627b05eeecc1ba9d5c865011966a
URL:http://chibrrcon2027.sched.com/event/5a83627b05eeecc1ba9d5c865011966a
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T221500Z
DTEND:20261009T230000Z
SUMMARY:Fighting Fires Without Burning Out: How AI Can Take the Heat
DESCRIPTION:Burnout is reaching critical levels across cybersecurity. Alert fatigue\, nonstop interruptions\, mounting documentation debt\, and constant urgency are pushing practitioners to the edge. AI promises relief\, but only when applied to the specific cognitive and operational burdens that cause burnout in the first place.\n\n\nIn this session\, we’ll break down what burnout actually is (psychologically and operationally) and map those drivers to security workflows such as alert triage\, investigation\, detection engineering\, vulnerability management\, and stakeholder communication. You’ll see where the real friction points are\, why they drain humans so consistently\, and how AI can meaningfully reduce the load when used with intention instead of buzzwords.\n\n\nWe’ll explore practical\, real-world AI patterns that teams can adopt immediately: enrichment assistants\, triage accelerators\, investigation summarizers\, detection documentation generators\, vuln-management classifiers\, and communication translators. We’ll also cover pitfalls and limitations\, emphasizing where human judgment remains essential.\n\n\nThrough stories\, examples\, and optional short demos\, this talk provides a grounded\, practitioner-first blueprint for reducing burnout while improving the quality and sustainability of security work. Attendees will leave with realistic workflows they can implement the next day and a clearer path toward a healthier\, more humane cybersecurity practice.
CATEGORIES:COMMON
LOCATION:➡️ 8. Empathy (Expo)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:02c7fb3f1924a4c7c5a744e85d03cd81
URL:http://chibrrcon2027.sched.com/event/02c7fb3f1924a4c7c5a744e85d03cd81
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T221500Z
DTEND:20261009T230000Z
SUMMARY:The Risky Business\, of AI Illiteracy
DESCRIPTION:Introduction:&nbsp\;Myself and how my experience building vulnerability management programs altered my views on risks.\n\n\nSeeing the Forest:&nbsp\;I discuss the common focuses of security programs\, and how headlines can influence reactions and prioritizations. Then introduce some of the largest breaches of the past few years and highlight how AI actually played into those breaches.&nbsp\;\n\n\nBuilding Blocks:&nbsp\;Before I can get to risk modeling I introduce the tools needed to understand your own risks: inventories\, topologies\, data flow diagrams\, and relationships with the teams that own the above. However this is a ‘trick’ and I reveal that building those blocks causes you to threat model without even realizing it which is why I harp on documenting everything you find throughout building those blocks.\n\n\nPrioritization:&nbsp\;To properly prioritize what risks you accept\, first you need to understand the feasibility and likelihood of AI being exploited. As well as what impact its use would have on the business: can revenue still be generated\, what services go offline\, can an attacker pivot and make things worse\, how long would it take to recover\, ect. Understanding how your business operates\, and what's interconnected is key to building your priorities.\n\n\nMitigation:&nbsp\;It’s not always possible to eliminate all of your risks which is why we mitigate them as best as we can. I explain how mitigation can come from two forms: making a AI harder to exploit\, or decreasing the likelihood of a threat taking place.&nbsp\;\n\n\nAcceptance:&nbsp\;Security staff cannot accept risks\, oftentimes executives insist that we do or insist on mitigations that are unsatisfactory to security teams. When executives are presented with a risk acceptance document outlining the potential impacts and potential better mitigations that can be implemented. That way we can CYA.\n\n\nAI Inventoring:&nbsp\;Just inventorying what AI tools you have isn’t enough\, they can be used in so many different ways in different configurations\, how do you document how they are used while preventing too much disruption and upset from the executive suite?\n\n\nWrap up:&nbsp\;recap that there are always new threats\, vulnerabilities\, and AIs that someone might want to onboard\, so don’t get derailed from your priorities.
CATEGORIES:RISK
LOCATION:⏪️ 3. Despair (Ballroom)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:501b2f25464af38455aa90a2c482faeb
URL:http://chibrrcon2027.sched.com/event/501b2f25464af38455aa90a2c482faeb
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T221500Z
DTEND:20261009T230000Z
SUMMARY:The Importance of Being in Third Place
DESCRIPTION:In cyber\, we are pretty good at spotting external threats. We are much worse at spotting the quiet stuff that eats away at us from the inside. Remote work\, constant pressure\, ticket queues that never end\, and relationships that mostly exist in email and Slack have created a strange reality. Many of us are “connected” all day and still feel alone.\nThis session digs into the idea of the third place. Not home\, not work\, but a space where you can show up as yourself and feel like you belong. Drawing on Robert Putnam’s work on social capital\, research from psychology and public health\, and almost two decades of lived experience in hacker and security communities\, we will look at how local meetups\, conferences\, and informal hangouts act as mental health infrastructure for our industry. You will hear how groups like CitiSec and BurbSec grew\, why they worked so well\, and what happens when you get this right for a community.\nWe will also talk directly to leaders. If you run a team\, you have people who are lonely\, who are quietly burning out\, and who will not tell you that in a one on one. You will walk away with specific ideas for how to support internal “third places” at work and how to encourage your people to plug into the local hacker and security community outside the office. No huge budget\, no corporate campaign\, just simple patterns that work.\nBy the end of this session\, attendees will be able to:\nExplain what a third place is and why it matters in cybersecurityConnect Putnam’s research on social capital to the health of security teams and programsRecognize signs of isolation and quiet burnout in themselves and in their staffUse a simple meetup formula to start or strengthen a local security communityDesign small\, practical rituals that make people feel welcome instead of on the outsideIf you are looking around this industry and thinking\, “I love the work\, but I am tired of feeling alone in it\,” this talk is for you.
CATEGORIES:WELLNESS
LOCATION:↖️ 1. Fear (Alumni Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:6943787bd18f13b360ac11fc80a79d62
URL:http://chibrrcon2027.sched.com/event/6943787bd18f13b360ac11fc80a79d62
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261009T231500Z
DTEND:20261010T000000Z
SUMMARY:MBTI Meets Cybersecurity: AI Can Not Solve the Human Problem
DESCRIPTION:We are all different based on the environment that we grew up in\, the time we grew up (generational influence)\, and our individual psychological preferences. One tool that has been time-tested\, and debated\, is the Myers-Briggs Personality Typing tool (MBTI). For years the cybersecurity community has wondered what the implications of a person’s MBTI is on how they behave with respect to cybersecurity. At last\, in 2023 Myers-Briggs themselves published a report on the linkages between different MBTI types (16) and the impact on cybersecurity!&nbsp\;\nThis session will explore\, in a fun\, interactive participation manner\, the differences in how we may behave with respect to cybersecurity. Let’s face it – if we are designing systems\, processes\, and training for our end users\, but we don’t really understand how they will use the information – we may not achieve the intended impact and thus our strategy will be at risk.&nbsp\;
CATEGORIES:KEYNOTE
LOCATION:⏺️ 6. Harmony (Auditorium)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:1cc0994af1aa0f688f074bfcabaf3148
URL:http://chibrrcon2027.sched.com/event/1cc0994af1aa0f688f074bfcabaf3148
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261010T000000Z
DTEND:20261010T001000Z
SUMMARY:Closing Ceremony
DESCRIPTION:Closing Ceremony
CATEGORIES:GENERAL
LOCATION:⏺️ 6. Harmony (Auditorium)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:2bd774b891997d39c4dad7958b47d935
URL:http://chibrrcon2027.sched.com/event/2bd774b891997d39c4dad7958b47d935
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261010T000000Z
DTEND:20261010T030000Z
SUMMARY:Reception (Social Gathering)
DESCRIPTION:Come join us for happy-hour where you'll have an opportunity to meet with friends old and new\, share tails from the trenches and enjoy Hors d’Oeuvres & cocktails. &nbsp\;This is what it's all about in our space...if you're not collaborating with peers\, you're probably losing the battle. &nbsp\;See you there.
CATEGORIES:GENERAL
LOCATION:🟢 5. Registration (Main Lobby)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:0a3b20ab5843e42bd7a2128b971fef5f
URL:http://chibrrcon2027.sched.com/event/0a3b20ab5843e42bd7a2128b971fef5f
END:VEVENT
BEGIN:VEVENT
DTSTAMP:20260912T155217Z
DTSTART:20261010T001500Z
DTEND:20261010T020000Z
SUMMARY:Raffle Prize Desk
DESCRIPTION:This is where we will have winning raffle tickets listed on a monitor following the closing keynote\, bring your ticket to see if you are a winner and collect a prize!
CATEGORIES:GENERAL
LOCATION:⬇️ 7. Hope / Village 1 (Gallery Lounge)\, Hermann Hall Conference Center\, 3241 S Federal St\, Chicago\, IL 60616\, USA
SEQUENCE:0
UID:35a62faaf1a9b0bb32421579833edb91
URL:http://chibrrcon2027.sched.com/event/35a62faaf1a9b0bb32421579833edb91
END:VEVENT
END:VCALENDAR
