Join us at the inaugural Sydney AI Security & Governance Summit. CISOs, security leaders, risk managers, and governance professionals come together for one day of practitioner-led sessions on securing AI in production, taming shadow AI, and governing AI agents at scale. Free-to-attend.
Small groups, real problems, peers in your seat.
Practitioners sharing what worked, not vendor theory.
Live debate. Vote and contribute from your phone.
Matched to your challenges. Optional, never a pitch.
2 keynotes · 3 panels · 4 "How I Solved" case studies · 1 live audience simulation · roundtables · drinks.
Generative and agentic AI have moved from experimentation to production faster than most security and governance functions can keep pace with, and the organisations getting this right are treating security and trust as design requirements, not afterthoughts bolted on post-launch.
This opening keynote frames the day: what "trustworthy AI" actually requires in practice, and the shape of the threats and expectations now converging on organisations running AI at scale.
A hands-on, interactive session working through a real AI security and governance scenario as a room. Details announced soon.
Small-group, discussion-based sessions where you'll work through real AI security and governance challenges with peers in similar roles. Roundtable topics will be announced soon.
This interactive session puts the day's themes directly to the room with live voting, surfacing where the audience is genuinely exposed versus where the conversation has been focused, then debating the gaps in real time.
Beat the rush and join us early for complimentary barista-made coffee and breakfast.
Generative and agentic AI have moved from experimentation to production faster than most security and governance functions can keep pace with, and the organisations getting this right are treating security and trust as design requirements, not afterthoughts bolted on post-launch.
This opening keynote frames the day: what "trustworthy AI" actually requires in practice, and the shape of the threats and expectations now converging on organisations running AI at scale.
Regulators are sharpening supervisory expectations around AI faster than most governance frameworks can be rewritten, leaving organisations navigating real compliance obligations without a single, settled rulebook.
This keynote cuts through it: what's actually being asked of organisations right now, where enforcement is heading, and how to build governance that won't need rebuilding every time expectations shift.
Threat actors have moved from experimenting with AI to industrialising it, using it to scale phishing, write malware, and compress attack timelines from weeks to hours.
This panel brings together practitioners tracking this shift to unpack what's actually changed in attacker tradecraft, and what defenders need to do differently as a result.
Most AI security failures don't happen in the lab; they happen when a model moves into production and inherits real users, real data, and real attack surface.
This case study follows a team that built security controls around a live production AI system, covering model access controls, output validation, monitoring, and incident response, all retrofitted without stalling the business case for AI.
A hands-on, interactive session working through a real AI security and governance scenario as a room. Details announced soon.
Employees adopted generative AI tools faster than any policy could keep up, and most security teams are now flying blind on where sensitive data is actually going, both through unsanctioned tools and third-party AI dependencies buried in the supply chain.
This case study details how one organisation moved from having no visibility to a working discovery, risk-tiering, and sanctioned-alternative program.
Prompt injection remains the leading cause of agentic AI security failures in production, and as agents gain the ability to act, not just respond, the blast radius of a successful injection grows sharply.
This case study walks through a real prompt injection incident against an agentic system, what it exposed about the architecture, and the guardrails built afterward.
Beyond prompt injection, AI systems face threats aimed at the model and the data itself, adversarial inputs designed to fool classifiers, poisoned training data, and deepfakes now sophisticated enough to bypass biometric and verification controls.
This panel examines the technical attack surface of AI systems and the defences that are actually holding up.
Small-group, discussion-based sessions where you'll work through real AI security and governance challenges with peers in similar roles. Roundtable topics will be announced soon.
Put your knowledge to the test in this fast-paced quiz covering real-world trivia, key concepts, and emerging trends. Compete for bragging rights — and a voucher — as the top scorer takes the crown.
AI agents now hold credentials, call APIs, and access systems on behalf of users, often with far broader permissions than anyone intended, and little visibility into what they're actually touching.
This case study covers how one organisation brought AI agent identities under proper access governance, closing shadow access gaps before they became breach headlines.
Boards are being asked to oversee AI risk without always having the technical grounding to interrogate it properly, and regulators are starting to expect documented accountability, not just good intentions.
This closing keynote translates AI security and governance risk into the language and cadence boards actually need.
This interactive session puts the day's themes directly to the room with live voting, surfacing where the audience is genuinely exposed versus where the conversation has been focused, then debating the gaps in real time.
Unwind with your peers for a couple of drinks on us!
Beat the rush and join us early for complimentary barista-made coffee and breakfast.
Generative and agentic AI have moved from experimentation to production faster than most security and governance functions can keep pace with, and the organisations getting this right are treating security and trust as design requirements, not afterthoughts bolted on post-launch.
This opening keynote frames the day: what "trustworthy AI" actually requires in practice, and the shape of the threats and expectations now converging on organisations running AI at scale.
Regulators are sharpening supervisory expectations around AI faster than most governance frameworks can be rewritten, leaving organisations navigating real compliance obligations without a single, settled rulebook.
This keynote cuts through it: what's actually being asked of organisations right now, where enforcement is heading, and how to build governance that won't need rebuilding every time expectations shift.
Threat actors have moved from experimenting with AI to industrialising it, using it to scale phishing, write malware, and compress attack timelines from weeks to hours.
This panel brings together practitioners tracking this shift to unpack what's actually changed in attacker tradecraft, and what defenders need to do differently as a result.
Most AI security failures don't happen in the lab; they happen when a model moves into production and inherits real users, real data, and real attack surface.
This case study follows a team that built security controls around a live production AI system, covering model access controls, output validation, monitoring, and incident response, all retrofitted without stalling the business case for AI.
A hands-on, interactive session working through a real AI security and governance scenario as a room. Details announced soon.
Employees adopted generative AI tools faster than any policy could keep up, and most security teams are now flying blind on where sensitive data is actually going, both through unsanctioned tools and third-party AI dependencies buried in the supply chain.
This case study details how one organisation moved from having no visibility to a working discovery, risk-tiering, and sanctioned-alternative program.
Prompt injection remains the leading cause of agentic AI security failures in production, and as agents gain the ability to act, not just respond, the blast radius of a successful injection grows sharply.
This case study walks through a real prompt injection incident against an agentic system, what it exposed about the architecture, and the guardrails built afterward.
Beyond prompt injection, AI systems face threats aimed at the model and the data itself, adversarial inputs designed to fool classifiers, poisoned training data, and deepfakes now sophisticated enough to bypass biometric and verification controls.
This panel examines the technical attack surface of AI systems and the defences that are actually holding up.
Small-group, discussion-based sessions where you'll work through real AI security and governance challenges with peers in similar roles. Roundtable topics will be announced soon.
Put your knowledge to the test in this fast-paced quiz covering real-world trivia, key concepts, and emerging trends. Compete for bragging rights — and a voucher — as the top scorer takes the crown.
AI agents now hold credentials, call APIs, and access systems on behalf of users, often with far broader permissions than anyone intended, and little visibility into what they're actually touching.
This case study covers how one organisation brought AI agent identities under proper access governance, closing shadow access gaps before they became breach headlines.
Boards are being asked to oversee AI risk without always having the technical grounding to interrogate it properly, and regulators are starting to expect documented accountability, not just good intentions.
This closing keynote translates AI security and governance risk into the language and cadence boards actually need.
This interactive session puts the day's themes directly to the room with live voting, surfacing where the audience is genuinely exposed versus where the conversation has been focused, then debating the gaps in real time.
Unwind with your peers for a couple of drinks on us!

Just bring yourself, your laptop or a notebook and get ready to collaborate!
No. You'll have to be there to enjoy the sessions.
Yes, absolutely! Stay connected at the event with complimentary wifi - we'll share the details at the event.
Yes, morning tea, lunch, and afternoon refreshments will be provided. Please indicate any dietary requirements during registration.
Absolutely! No media, recordings, or live streaming... what happens in the room, stays in the room.
Smart casual or business casual is recommended, no need for a suit and tie! Keep it comfortable.
Nope! The conference is completely free for industry professionals. Contact us if you are not sure whether you qualify.
Be the engineering leader in the room — not the one reading the LinkedIn recap.



