Virtual / Online Event

CyberQ 2026: Virtual Conference

AI Security Testing Conference. Where AI, Software Testing and Cybersecurity Converge.

June 18, 2026
Virtual / Online
CyberQ Conference Visual
10
Talks
10
Hours of Content
10
Speakers
Join 10 Expert Speakers

What to Expect

Real stories

Our speakers share actual experiences—the wins, the challenges, and the lessons learned along the way.

Live demos

See tools and techniques in action, not just slides. Real-world applications of AI testing.

Practical guidance

Leave with a clear understanding of what you can try in your own work starting tomorrow.

Full day learning

From AI-driven security testing to building AppSec programs, covering topics that matter most.

Why CyberQ?

Practitioner Focused

Useful to anyone who practices security, including developers, testers, security experts, team leads, and InfoSec Specialists.

The Convergence

At the heart of AI, Software Testing and Cybersecurity.

Actionable Takeaways

Actionable takeaways from experts.

Recordings

Access Recordings for the next 4 months after the event ends.

Who Should Attend?

  • Testers who want to understand security better
  • Developers building secure applications
  • AI and agentic AI professionals ensuring safe, secure systems
  • Security specialists working with agile teams
  • Team leads bringing security into daily workflows

If you write, test, or secure software in 2026, this is for you.

The Agenda

June 18, 2026 • Times in CET

09:00 - 10:00

Beyond the Human Hacker: Disrupting the First AI-Orchestrated Cyber Espionage Campaign

Davide Bragetti

Davide Bragetti

Cybersecurity Researcher, AI Researcher, Anthropic

In November 2025, Anthropic disclosed what it describes as the first documented cyber-espionage campaign orchestrated by an autonomous AI system. This presentation will unpack how advanced AI agents transformed reconnaissance, exploitation and exfiltration from human-driven processes into machine-driven operations, explore why conventional detection and governance frameworks are now inadequate, and map out practical strategies for designing assurance, telemetry and governance regimes aligned with this new paradigm. Attendees will gain insight into how trust, oversight and defence must evolve when adversaries deploy agentic AI systems—and what mission-assurance professionals, regulators and security operations teams need to consider to maintain resilience.

Key Takeaways:
  • Understand how AI attackers operate differently from human hackers
  • Identify gaps in your current security systems that AI can exploit
  • Get a practical checklist to update your defenses for AI-driven threats
  • Prepare for attacks that move faster than human response time
10:00 - 11:00

How 'AI' Impacts OWASP WrongSecrets

Jeroen Willemsen

Jeroen Willemsen

Principal Security Architect, OWASP Wrongsecrets Lead

AI is impacting software development everywhere! It changed how we work on OWASP WrongSecrets as well. Want to find out what changed for us as an Open Source project? Come and join this talk! We will cover various subjects, such as copilot-based development, code-quality challenges, volunteering dependencies, LLM-based secret challenges, and much more! Want to play along during the talk? Make sure you have your computer with you and https://www.wrongsecrets.com/ at the ready!

Key Takeaways:
  • See real examples of AI changing security work in practice
  • Understand the trade-offs between AI speed and code quality
  • Try hands-on AI security challenges during the session
  • Learn which AI practices help and which create problems
11:00 - 00:00

Mind Meets Machine: Harnessing Human Intelligence and AI for Smarter Security Thinking

Santosh Tuppad

Santosh Tuppad

Test Advocate, ElevenXN

When code meets (sub)consciousness, fireworks ignite.

In a world where algorithms never sleep, it’s the human mind that is curious, chaotic, and creative, which still sees between the lines of logic and magic. This talk is a journey through that intersection where neurons, neural networks and the heart collaborate, and where better thinking begins with better prompting.

Together, we’ll explore how to train both brain and bot through exercises that stretch perception, challenge assumptions, and transform how we question the world around us. We’ll learn to prompt with precision, analyse with empathy, and use AI not as a crutch, but as a catalyst for deeper security insight. Because the next generation of cybersecurity isn’t just artificial—it’s profoundly human.

Join this exploration of thought, technology, and intuition-based talk and discover how mind meets machine to unlock a smarter, more resilient way to defend, design, and dream.

Key Takeaways:
  • Use AI for genuine security insights, not just basic tasks
  • Practice exercises that improve your thinking with AI
  • Learn why intuition makes AI tools more effective
  • Build confidence using AI as a thinking partner
12:00 - 13:00

Building an AppSec Program from Scratch

Mireia Cano Pujol

Mireia Cano Pujol

Security Engineer

In today's digital landscape, application security is crucial for safeguarding sensitive data and maintaining user trust. Without a robust AppSec program, or with one poorly implemented, chaos can ensue, leading to vulnerabilities and breaches. This talk explores our journey to establishing an AppSec program from the ground up. I will share the valuable lessons learned along the way, detailing the obstacles and cultural challenges that a company might need to overcome. Join me as I present real-world examples and best practices, offering practical guidance to help you navigate similar challenges and build a strong foundation for your AppSec program.

Key Takeaways:
  • Avoid common mistakes that make security programs fail
  • Navigate organizational resistance to security changes
  • Set realistic timelines and resource needs
  • Prove security program value to leadership
Break
14:00 - 15:00

Securing AI – Same, Same, but Different

Amela Gjishti

Amela Gjishti

AI Cybersecurity Architect

Leaving the doomer/boomer scenarios aside for a moment, we need to see AI for what it is now—how it is being used, misused, and manipulated. From a cybersecurity standpoint, Confidentiality, Integrity, and Availability are the core principles and the lens through which digital risk is looked at. With AI being a socio-technical system, more than just 1s and 0s, risks through the traditional cyber lens appear slightly different. Let's explore together how!

Key Takeaways:
  • Apply CIA principles (Confidentiality, Integrity, Availability) to AI systems
  • Identify how AI risks differ from traditional cybersecurity threats
  • Understand AI as a socio-technical system, not just code
  • Bridge the gap between traditional security frameworks and AI realities
15:00 - 16:00

Towards Trustworthy Self-Testing Generative AI Agents

Tariq King

Tariq King

Executive Leader | Head, Test IO

As generative AI systems become increasingly autonomous and adaptive, ensuring their trustworthiness poses new challenges. Traditional testing methods, such as static, scenario-based, and human-driven approaches, struggle to keep pace with models that continuously evolve and exhibit emergent behaviors. These systems face constant flux from model drift, tool drift, and shifting ground truths, creating a growing gap between what an AI system was verified to do and what it actually does in production.

Join Tariq King as he explores how generative AI itself can close this gap through the emergence of self-testing agents. Building on his early work in self-testing architectures and modern advances in agentic AI, King believes that the next frontier of trust will come from systems capable of autonomously generating, executing, and evaluating their own tests. By embedding continuous verification loops within their reasoning processes and applying risk-based principles to know when testing is sufficient, these agents offer a path toward trustworthy, adaptive, secure intelligence.

Key Takeaways:
  • Recognize why traditional testing fails with autonomous AI
  • Maintain trust when AI evolves faster than manual testing
  • Know when AI can test itself versus when humans are needed
  • Prepare for continuous, automated testing in AI systems
16:00 - 17:00

Shining Light on Your Systems' Weaknesses Via Deep Code Indexing

Husain Al-Mohssen

Husain Al-Mohssen

Founder, ChromeBird AI

Husain Al-Mohssen, Founder of ChromeBird AI, will present "Shining Light on Your Systems' Weaknesses Via Deep Code Indexing," addressing the pervasive challenges of opaque and complex software systems. Traditional methods often fail to provide objective understanding and control, leading to significant financial waste, strategic paralysis, and developer frustration. Al-Mohssen will unveil ChromeBird AI's proprietary Deep Knowledge Indexing technology, which transcends surface-level metrics to achieve a full semantic and syntactic understanding of code. This technology constructs a persistent knowledge graph that captures architectural decisions, data flows, and business logic, enabling objective progress measurement, accurate effort estimation, and clear explanations of complex systems. Ultimately, ChromeBird AI empowers technical and non-technical stakeholders alike to gain unprecedented visibility, verify alignment between intent and code reality, and command their software with actionable intelligence.

Key Takeaways:
  • Move beyond surface metrics that hide complexity
  • Explain your codebase clearly to non-technical people
  • Make accurate project estimates, not guesses
  • Find architectural weaknesses that traditional tools miss
17:00 - 18:00

Application Security in the Agentic Era – Building Safe AI Applications

Manu Cohen-Yashar

Manu Cohen-Yashar

Keynote Speaker

As organizations rush to adopt AI-driven systems and agentic architectures, traditional application security paradigms are being challenged, and often outpaced, by new, AI-specific threats. In this talk, we’ll explore the emerging attack surface introduced by intelligent agents and generative AI applications, including prompt injection, embedding poisoning, data exfiltration through model outputs, and model manipulation through indirect prompt chaining.

You’ll learn how these attacks exploit the very mechanisms that make AI powerful, contextual reasoning, dynamic orchestration, and natural language interfaces, and why conventional security controls are no longer enough.

We’ll then shift from awareness to action, presenting proven mitigation patterns, architectural safeguards, and secure development practices for building resilient AI systems. Topics include the design of trust boundaries in multi-agent systems, prompt sanitization and isolation strategies, secure retrieval-augmented generation (RAG), and runtime threat detection for AI pipelines. By the end of this session, attendees will gain a deep understanding of how to secure the new AI application stack and the frameworks needed to confidently build safe, trustworthy agentic systems in the era of autonomous intelligence.

Key Takeaways:
  • Understand new vulnerabilities unique to AI applications
  • Learn code patterns that prevent AI-specific attacks
  • Get frameworks for security decisions with AI agents
  • Secure RAG systems and multi-agent workflows in production
18:00 - 19:00

When Code Secures Itself: The Rise of Agentic AI in Application Security and Quality

Eran Kinsbruner

Eran Kinsbruner

Vice President of Product Marketing, Checkmarx

The age of Agentic AI is redefining how software is built, tested, and secured. As autonomous engineering agents and AI coding assistants shape the next wave of development, code is being created and increasingly secured by AI itself. Yet this transformation brings new risks: hallucinated dependencies, poisoned models, and vulnerabilities generated at machine speed. This session explores how Agentic AppSec AI, that not only finds but fixes and validates vulnerabilities, bridges the gap between software quality and cybersecurity. You’ll learn how teams are embedding AppSec Gen practices, integrating security validation directly into AI-driven workflows, and leveraging autonomous policy agents to enforce secure coding from design to deployment. The result: a new paradigm where AI becomes both the developer and the defender/preventer of modern software.

Key Takeaways:
  • Understand how AI changes security responsibility
  • Implement security that keeps pace with AI-generated code
  • Recognize new risks: hallucinated dependencies and poisoned models
  • Shift security left when AI writes code autonomously
Break
20:00 - 21:00

The Next Generation of Defence: Leveraging AI to Future-Proof Penetration Testing

Anitha Dakamarri

Anitha Dakamarri

Lead Application Security Engineer, Donnelley Financial Solutions (DFIN)

Traditional penetration testing methods, often resource-intensive and reliant on human expertise, are struggling to keep pace with the scale and speed of modern adversaries, many of whom are already utilizing AI/ML in their attack tooling. We propose that integrating AI technologies, such as machine learning (ML) for vulnerability detection, natural language processing (NLP) for threat intelligence analysis, and reinforcement learning (RL) for autonomous attack path discovery, will fundamentally revolutionize the efficacy and efficiency of penetration testing. This AI-augmented approach promises to enable continuous, adaptive, and scalable security assessments that can proactively identify novel vulnerabilities, simulate complex, multi-stage attacks with greater fidelity, and significantly reduce the time between detection and remediation. Ultimately, leveraging AI is not just about automation, but about building an intelligent, predictive, and resilient defense capability capable of meeting the challenges posed by the next generation of cyber warfare.

Key Takeaways:
  • Keep up when attackers use AI to find vulnerabilities faster
  • Separate useful AI techniques from hype in pentesting
  • Implement continuous testing beyond manual capacity
  • Position human pentesters for strategy while AI handles execution

About Organizers & Other Events

The Organizer
trendig technology services GmbH

trendig technology services GmbH

Berlin

28 Years of Building Trust in Software Quality

CyberQ is organized by trendig technology services GmbH, a Berlin-based consultancy trusted by organizations across automotive, finance, medical technology, and the public sector since 1998.

Our Other Event
Agile Testing Days

Agile Testing Days

Premier Conference

Since 1999, we've hosted premier conferences like Agile Testing Days—Europe's leading event for software quality and testing, uniting 700+ professionals from 300+ global companies annually.

CyberQ is powered by trendig technology services GmbH and Agile Testing Days, bringing the same expertise and community focus to the critical intersection of cybersecurity, AI safety, and testing.

85% of speakers return to present at future trendig events
700+ professionals from 40+ countries attend our events annually
28 Years delivering excellence in consulting services, training and events.

What People Say About Our Events

Kick off for my favourite conference ever!! Looking forward to the next few days of cool talks, good connections and lots of fun!!

CO
Codruta F.
QA Manager

Yet another valuable talk, with Annelie Coetze, " The Human Edge of Agility" with a Nice story and great takeaways for teamwork!. hashtag#AgileTD 😍👌

AN
Anja PN
Test Manager

The #magicingredient of #AgileTD for me is not an ingredient but the recipe itself: Learning through sharing, in a safe environment served with fun and passion where the dessert comes in the form of new friendships. That's it in a nutshell @jdiaz_berlin @AgileTDZone #AgileTD

SE
Sergio Freire
Attendee

I love learning from real-life experience, and here we have double value!

LI
Lisa Crispin
Co-founder, Agile Testing Fellowship

Featured Speakers

Davide Bragetti

Davide Bragetti

Cybersecurity Researcher, AI Researcher, Anthropic

Davide Bragetti is an independent AI researcher, frontier Red Team leader and operator, and trusted…

Jeroen Willemsen

Jeroen Willemsen

Principal Security Architect, OWASP Wrongsecrets Lead

Jeroen is a typical security jack-of-all-trades. He is a hands-on security architect, who loves to…

Santosh Tuppad

Santosh Tuppad

Test Advocate, ElevenXN

Santhosh Tuppad has worn many hats in life—entrepreneur, passionate software tester, blogger, reader, trainer, coach,…

Mireia Cano Pujol

Mireia Cano Pujol

Security Engineer

Mireia is a security engineer focused on application security, with over 7 years of experience.…

Amela Gjishti

Amela Gjishti

AI Cybersecurity Architect

Amela Gjishti is an AI Cybersecurity Architect passionate about connecting multidisciplinary perspectives to advance trustworthy…

Tariq King

Tariq King

Executive Leader | Head, Test IO

Tariq King is a recognized thought-leader in software testing and quality engineering. He is currently…

Husain Al-Mohssen

Husain Al-Mohssen

Founder, ChromeBird AI

Husain is an Executive AI Leader, specializing in translating cutting-edge AI/ML research (including Computer Vision,…

Manu Cohen-Yashar

Manu Cohen-Yashar

Keynote Speaker

Manu Cohen-Yashar is a recognized leader in Enterprise Data and AI Architecture with over two…

Eran Kinsbruner

Eran Kinsbruner

Vice President of Product Marketing, Checkmarx

Eran Kinsbruner is Vice President of Product Marketing at Checkmarx and a recognized thought leader…

Anitha Dakamarri

Anitha Dakamarri

Lead Application Security Engineer, Donnelley Financial Solutions (DFIN)

Anitha Dakamarri is a seasoned IT professional with over 18 years of experience in the…

Secure Your Spot

Join the convergence of AI and Security.

Single Seat

Perfect for individuals

€99 + VAT
  • Full live event access
  • 4 months of recordings
Get Single Ticket
BEST VALUE

Team Seats

For groups of 10+

€75 + VAT / person
  • Full live event access
  • Team invoicing
Order for Team

Frequently Asked Questions

CyberQ is a one-day online conference where artificial intelligence, software testing, and cybersecurity converge. Taking place on June 18th, 2026, it brings together world-leading experts to explore how we can build intelligent systems that are safe, transparent, and trustworthy through live demonstrations, real-world case studies, and actionable insights.

CyberQ is designed for testers, developers, security engineers, QA professionals, AI and agentic AI professionals, and team leads who want to integrate security into their daily agile work. This is NOT just for infosec specialists—it’s for practitioners looking to bridge testing, AI, and security disciplines in practical ways.

Date: June 18th, 2026
Format: Fully online (join from anywhere)
Duration: 9:00 AM – 9:00 PM CET

After registration, you’ll receive access to our streaming platform. No special software needed—just a web browser and internet connection.

€99 + VAT for a single online ticket.
This includes full live access to all sessions PLUS 4 months of on-demand recordings (until October 18th, 2026), so you can rewatch or catch anything you missed.

You’ll discover practical approaches to:

  • Building secure AI applications and agentic systems
  • Integrating AppSec into AI-driven development
  • Leveraging AI for penetration testing and vulnerability detection
  • Combining human intelligence with AI for smarter security thinking
  • Real-world techniques from experts at Walmart, Microsoft, Checkmarx, OWASP, and more

Yes! All talks are recorded and you’ll have 4 months of on-demand access. Can’t make it live? No problem—watch on your schedule.

Register Now – Simple online registration takes less than 2 minutes. Still have questions? Visit: https://cyberq.live/contact/

Register Now!

Register