November 25, 2026
8:30am - 1:00pm
Doltone House Hyde Park

Sydney AI Security Summit 2026

Unlock the strategic imperative of AI security. A gathering of forward-thinking leaders, practitioners and security teams to confront the "AI security chasm" head-on and build a foundation of trust for AI initiatives.

Sydney AI Security Summit 2026
Defend your AI future with expert insights, real-world strategies, and interactive sessions on model security, adversarial defence, and compliance.

This November, we’re bringing together security leaders, AI practitioners, and industry innovators to address the fast-emerging risks of AI adoption.

Discover best practices for securing AI models, defending against adversarial threats, and ensuring compliance as AI moves from pilot to production. Dive into how organisations are tackling challenges from deepfakes to model poisoning, and learn what’s needed to build resilient, trustworthy AI systems. Engage in interactive sessions, technical demos, real-world case studies, and expert debates to stay ahead of the latest threats.

Key Themes
  • Securing AI Models in Production
  • AI Supply Chain Risks
  • Detecting and Preventing Model Poisoning
  • Defending Against Adversarial Attacks
  • Guarding Against Deepfakes and Synthetic Media
  • Regulatory and Compliance Requirements for AI Security
  • AI Identity & Access Risks (Shadow Access, AI Agents)
  • Building Trustworthy and Resilient AI Systems
Who Should Attend?

CISOs, security leaders, AI engineers, IT leaders, risk managers, and anyone eager to understand and solve the security challenges of the AI era while networking with peers facing the same pressures.

Our Speakers

Srinivas Karthik Putlur

Srinivas Karthik Putlur

Principal Product Security Engineer
Dr Kevin Tham

Dr Kevin Tham

Chief Information Security Officer
Register Now

Register Now

To receive speaker and program updates and secure your seat!

Agenda

8:30am
Registration Open, Breakfast, Coffee & Networking
No items found.
9:00am
Welcome & Opening Address
No items found.
9:10am
Opening Keynote: Securing AI Agents in Production: What We've Learned

AI agents are no longer experimental. They are calling tools, accessing data and taking actions inside real workflows. That creates a new problem for security teams: it is not just about who is using AI, but what an agent can do once it is running. This keynote shares what one Australian enterprise has learned securing agents in production, including what worked, what failed and what they would do differently.

We'll cover:

  • Identity and access for agents: How teams are limiting what agents can access, do and trigger in production
  • Guardrails that hold up: The controls that actually stop agents going off-script
  • Lessons from the rollout: What they would keep, change and fix earlier next time
No items found.
9:30am
Sponsor Keynote

TBC

No items found.
9:50am
Responding to an AI Incident: Forensics When the System Doesn't Behave the Same Way Twice

Most incident response playbooks were built for systems that behave the same way every time. AI systems don't. When a model leaks data, an agent takes an action it shouldn't, or a chatbot says something it shouldn't, the usual investigation toolkit falls short. This session covers what a modern AI incident response capability looks like and how to build one before you need it.

We'll cover:

  • The new evidence: What logs, traces and signals you actually need to investigate an AI system
  • Reproducing the unrepeatable: How to do root cause when the same input gives different outputs
  • Practical capability building: What to put in place now so your IR team isn't starting from scratch on day one
No items found.
10:10am
Morning Tea & Networking
No items found.
10:40am
Interactive Audience Activity: AI Security Live Simulation

An interactive session where attendees work through realistic AI security scenarios, from agent access decisions to vendor AI risk, data exposure and incident response. Attendees discuss options with peers, weigh up the trade-offs and choose their course of action.

Results are tallied live and shape how the group moves through the activity.

Will we collectively choose the right course of action?

No items found.
10:55am
Sponsor Demo

TBC

No items found.
11:10am
Panel Discussion: What Our AI Security Program Looks Like Now: What We've Learnt and the Mistakes We've Made

AI security programs have moved past the whiteboard. Most large organisations now have something running. Some of it is working, some of it isn't, and most leaders are quietly rebuilding parts of what they started with. This panel brings together senior leaders to compare notes on what they've actually deployed, what they've abandoned, and what they wish they'd done sooner.

We'll cover:

  • The controls we kept: What's earned its place in the program after 12 to 18 months in the wild
  • The controls we dropped: The ideas that looked good on paper and didn't survive contact with the business
  • What changes next: Where teams are tightening ownership, testing and accountability in 2026 and 2027
No items found.
11:35am
How I Solved: Finding Security Gaps in AI Applications Before Attackers Do

As organisations rush to deploy generative AI features, copilots and agents, traditional application security testing is failing to catch many of the risks they introduce.

In this session, Srinivas Karthik Putlur from the Commonwealth Bank shares lessons from penetration testing, code reviews and architecture assessments of real AI systems. He'll explore the vulnerabilities that appear most often from prompt injection and excessive agency to insecure retrieval pipelines and MCP-related risks, and the practical controls that help address them.

Key takeaways:

  • Why traditional AppSec testing misses AI-specific risks
  • The most common vulnerabilities found in real AI applications
  • How to secure AI systems without slowing development
Srinivas Karthik Putlur
Principal Product Security Engineer, Commonwealth Bank
11:55am
You Can't Prompt Your Way Out of a Data Problem: Building a Security Knowledge Graph and Measuring What It Fixed

When an AI security tool gives the wrong answer, we often blame the model or the prompt. But frequently, the real problem is the data. Security questions can require information from multiple systems that use different names, identifiers and formats, connections that document retrieval cannot reliably make.

This session explores how to build a practical security knowledge graph, including the data sources, entity matching, early schema mistakes and time involved. It then compares the graph with document retrieval using the same questions, model and prompts showing where the graph improved results, where it made no difference and where it performed worse.

The goal is not a complex enterprise ontology, but the smallest useful graph that can answer real security questions and clear evidence of whether it was worth building.

Key takeaways:

  • Why document retrieval struggles with questions that require connecting multiple systems.
  • Why matching the same assets across inconsistent data sources is the hardest part.
  • How to compare retrieval and graph-based approaches fairly, including where the graph falls short.
Dr Kevin Tham
Chief Information Security Officer, RDC.AI
12:15pm
Roundtable Discussions

Choose one roundtable topic to join on the day. Each table is hosted by a peer practitioner and runs as a structured discussion. No slides. No vendor pitches. Just senior leaders comparing notes on what they're doing about the problems on the agenda.

We'll cover:

  1. Securing AI agents and copilots in production
  2. Guardrails and testing: what is actually holding up in production
  3. Shadow AI: where policy is breaking in the real business
  4. Securing AI-generated code at developer speed
  5. Third-party AI risk: vendor features on by default
  6. Identity and access for AI agents
  7. Building an AI security program when AI is already in use
  8. AI incident response: when the system doesn't behave the same way twice

No items found.
1:00pm
Event Closed
No items found.

Our event sponsors

For sponsorship opportunities, please get in touch with Danny Perry, danny@clutchgroup.co

Past Speaker Highlights

Shubham Arora

Chief Engineer - AI Platform, Commonwealth Bank

Anna Aquilina

Chief Information Security Officer, UTS

Manoj Nair

Chief Innovation Officer, Snyk

Ankit Gupta

General Manager Group Technology, The Warehouse Group

John Morcos

Head of Cyber Security Governance and Operations, Blackmores Group

Leron Zinatullin

Chief Information Security Officer, Linkly

Past Sponsors

No items found.

Event Location

Doltone House Hyde Park

3/181 Elizabeth St, Sydney NSW 2000
Sydney AI Security Summit 2026

About Clutch

Hyper-Niche Content

Our conferences are specific to niche sub-sets of the technology industry, drilling down into the biggest issues, challenges and market trends facing tomorrow's leaders.

Collaboration first

Enjoy ample networking opportunities, roundtable discussions, interactive group sessions and real-world case-studies that arm attendees with actionable insights.

Dynamic & Bite-Size formats

No more death-by-PowerPoint. Our events are short, sharp and collaborative with a variety of session formats and a 3/4 day commitment to ensure returns on your time investment.

Get In Touch

Contact our event team for any enquiry

Danny Perry

Director of Sales
For sponsorship opportunities.
danny@clutchgroup.co

Lili Munar

Director of Client Relations
For guest and attendee enquiries.
lilibeth@clutchgroup.co

Steph Tolmie

Director of Conference Production
For speaking opportunities & content enquiries.
stephanie@clutchevents.co

Taylor Stanyon

Director of Operations
For event-related enquiries.
taylor@clutchgroup.co