Biz Tech Insights - md

HackerOne Security Virtual Summit

The gap between discovery and exploitation has collapsed.

Time-to-exploit is compressing toward hours. Submission volumes at enterprise programs are up triple digits this year. Engineering teams have started discounting the queue because the signal is no longer clean enough to act on. 

Discovery is not the constraint anymore. Exposure time is. The find-to-fix loop, the path from a vulnerability surfacing to a confirmed fix in production, is where modern security programs are quietly breaking down. 

The HackerOne Security Summit is built for the leaders inside that conversation. CISOs, VPs of Security, AppSec and VM leaders working through the operational mismatch between AI-speed discovery and human-paced response. Two hours, eight sessions, and an unscripted look at what is working at scale.

What you'll hear

  • Where the find-to-fix loop is breaking, and what that breakdown costs once engineering loses trust in the queue 
  • How researchers are actually using AI inside their toolkit today, and what defenders should learn from offense 
  • What continuous validation looks like at enterprise volume, with the metrics that matter 
  • How a peer security leader operationalized AI inside their program without burning the relationship between security and engineering 
  • The platform data behind the volume shift, including signal rates, severity distribution, and what backlog growth is hiding

Who should attend

  • CISOs and VPs of Security working through AI-driven submission volume
  • Vulnerability Management leaders watching SLAs slip and backlogs grow 
  • AppSec leads getting pushback from engineering on the queue 
  • Security operations and program leaders evaluating continuous validation at scale

SPEAKERS

MEET THE SPEAKERS

Kara Sprague

CEO

HackerOne

Nidhi Aggarwal

Chief Product Officer

HackerOne

Alex Rice

Co-Founder and CTO

HackerOne

Michiel Prins

Co-Founder

HackerOne

Austin Schlessinger

Senior Solutions Engineer

HackerOne

Connie Lewis

Director, Customer

Success Management

HackerOne

Josh Linder

Team Lead

Partner Engineering

Armis

Omar Santos

CoSAI Board Co-Chair

Cisco

CJ Sturgess

Partner Solutions Architect

AWS

Alex 'Jay' Balan

CISO

Super Technologies

Tom Anthony

Security Researcher

HackerOne

Douglas Day

Security Researcher

HackerOne

AGENDA

HackerOne Security Virtual Summit

July 15, 2026 | 11:00 a.m. – 1:00 p.m. ET July 16, 2026 | 11:00 a.m. – 1:00 p.m. BST

SESSION 15 min

Security Is Not Where You Think It Is

Nidhi Aggarwal, Chief Product Officer, HackerOne

A direct opening on what has actually changed in security over the last six months. Submission volumes are surging, engineering teams are tuning out the queue, and time-to-exploit is collapsing. Discovery is no longer the constraint — exposure time is.

SESSION 215 min

Has AI Broken the Security Model?

Omar Santos, CoSAI Board Co-Chair, Cisco

AI agents now act, decide, and spawn further agents at machine speed across identity boundaries built for humans. This keynote covers what every security leader should plan for: agentic identity, MCP security, AI-generated code risk, and where the human-paced security model is breaking down.

SESSION 315 min

The Exposure Debt: Your Backlog is Your Quantifiable Risk

Alex Rice, Co-Founder and CTO, HackerOne

HackerOne platform data reveals where enterprise programs are structurally breaking: submission growth, signal degradation, and backlog dynamics. Alex Rice shows what the queue has become as an exposure surface, and what programs holding the line are doing differently.

SESSION 415 min

The Researcher's AI Stack and Tradecraft

Michiel Prins, Co-Founder, HackerOne  ·  Tom Anthony and Douglas Day, HackerOne Researchers

Top researchers share how they're actually using frontier AI models in their offensive toolkit today — what works, what's hype, and where adversarial intuition still matters most. A practical answer to whether AI can really break into your company.

SESSION 515 min

Defending AI Workloads at Cloud Scale

CJ Sturgess, AWS

A fireside conversation on what defending AI workloads at cloud scale actually requires — patterns AWS sees across customer environments, and how shared responsibility shifts when the workload itself is non-deterministic. Part of the HackerOne and AWS strategic alliance.

SESSION 615 min

The AI Security Gap: From Coverage to Confidence

Austin Schlessinger, HackerOne

89% of organizations reported an AI-related attack or vulnerability in the past year. This session explores the AI Security Gap and how security leaders can improve visibility, expand coverage across the AI lifecycle, and prioritize exploitable risk.

SESSION 715 min

What Changed, What Held: A Security Leader's Year in AI

Alex 'Jay' Balan, CISO, Super Technologies  ·  Connie Lewis, HackerOne (Moderator)

A candid fireside with Jay Balan, CISO from Super on operationalizing AI inside a real security program — what's on the priority list, what's paused, how they rebuilt engineering trust, and how they make budget decisions in a program changing faster than annual planning allows.

SESSION 815 min

Closing the Loop: Verified Findings, Confirmed Resolutions

Josh Linder, Team Lead Partner Engineering, Armis

Discovery is no longer the constraint — remediation is. This session addresses the three failure modes causing most exposure: ownership routing errors, context loss between security and engineering, and verification gaps that close tickets without confirming the fix actually holds.

SESSION 9 · CLOSING10 min

What Today Demands of Tomorrow's Security

Kara Sprague, CEO, HackerOne

Vulnerability exploitation has overtaken phishing as the leading initial access method. Kara Sprague closes the summit by naming the three decisions that separate the programs getting ahead from those that will spend the next 12 months reacting.

Save your spot at the AI Security Virtual Summit.

Join the leaders, researchers, and peers reshaping their programs as AI changes the work.

🔒 Your information is secure and you can opt out anytime.

* Required Field

By checking the box below, you agree that HackerOne may share your contact information (name, email address, phone number, and company) with our event partners, Armis and AWS, for their own marketing and business purposes, in accordance with their privacy statements.

This consent is optional, and you can withdraw this consent at any time by contacting us at privacy@hackerone.com

For California residents: You have the right to opt out of the sale of your personal information and can exercise this right at any time.

I consent to sharing my contact information with HackerOne and partner companies AWS and Armis for their marketing and business purposes.*

We will handle your contact details in line with our Privacy Policy. If you prefer not to receive marketing emails from us, you can opt-out of all marketing communications or customize your preferences here.

Biz-Tech Insights Privacy Policy | HackerOne Privacy Policy
© 2026 Biz-Tech-Insights. All rights reserved.

Tracking Pixel