SunSecCon is a volunteer-driven, non-profit initiative dedicated to bridging the gaps between security specialties and fostering collaboration across domains. Designed for practitioners by practitioners, the summit brings together experts in application security, infrastructure security, cloud security, and corporate security to break down silos and promote a unified approach to defensive and offensive security.
Over two days in Pasadena, you’ll experience
- Technical Deep-Dives: Learn from real-world case studies, incident post-mortems, and live demos from practitioners on the front lines, including securing agentic AI systems in production. We especially want stories that cross specialty boundaries, where the interesting part is how the pieces connected.
- Hands-On Workshops: Build skills alongside practitioners from other specialties in interactive labs. Cloud defenders, AppSec engineers, and incident responders working the same scenarios together, covering cloud-native security, AI/ML defense, agent security and MCP tooling, and more.
- Open Discussions: Share your toughest challenges and lessons learned, successes and failures alike, in a candid, vendor-neutral environment.
Whether you’re an engineer, architect, or security leader, SunSecCon is your platform to gain actionable insights, build your network, and help shape the future of security in Southern California.
Suggested topics (not limited to)
- Platforms and culture initiatives that make secure software the default
- Holistic security strategies bridging organizational silos
- Real-world success stories from the trenches of defense
- Cloud and multi-cloud security: what works (and what doesn’t)
- Vulnerability management and supply chain security at AI velocity
- “What Went Wrong and How We Fixed It”: Lessons from security failures, incident post-mortems, and remediation strategies
- Threat intelligence, detection and response for human and agentic actors
- How agent identities reshape access control, trust boundaries, detection, and incident response
- Strategy and practice changes due to the rise of agentic development
- Security engineering and architecture
- Securing AI and agentic workloads, including sandboxing, MCP and tool security
- Using AI in security defense/offense
- Emerging Threats
- Hands-on Workshops
- Showcasing open-source tooling for all of the above
Note for Speakers
All speakers must abide by the conditions of the Speaker Agreement and the Code of Conduct.