Andy Ellis (USA)- @csoandy

Andy Ellis is Akamai's Chief Security Officer, responsible for overseeing the security architecture and compliance of the company's massive, globally distributed network as well as setting the strategic security direction of its offerings and managing the Information Security organization at Akamai.

A graduate of MIT and a former US Air Force officer, Andy is a noted speaker and the author of Protecting a Better Internet, a blog focused on key issues facing the information security industry. He also sits on the Board of Advisors of HacKid.

Wim Remes (Belgium) - @wimremes

An information security consultant currently working for Ernst and Young in Belgium. With 13 years of experience in IT, most of those in various security roles, he has spent ample time in noisy server rooms and cosy, but still noisy, board rooms. The only big difference is the quality of the drink. In the past decade Wim has been focusing on incident response, security monitoring and trying to prove the value of security to management.

Wim has spoken at events like Excaliburcon 2009(Wuxi, China), FOSDEM 2010(Brussels, Belgium) and Source Barcelona 2010(Spain). I am a co-host of the Eurotrash information security podcast and a sporadic blogger. My name can be found in various information security related documents that I contributed to in one way or the other but won't use for shameless self-promotion.

Ian Amit (Israel) - @iiamit

With over 10 years of experience in the information security industry, Iftach Ian Amit brings a mixture of Software development, OS, Network and web security to work on a daily basis. He is a frequent speaker at leading security conferences around the world (including BlackHat, DefCon, OWASP, InfoSecurity, etc…), and have published numerous articles and research material in leading print, online and broadcast media.

Iftach Ian Amit was recently the Director of Security Research for Aladdin, where he created the AIRC (Attack Intelligence Research Center) and led the security roadmap for company as well as the marketing of all security related events.

James Arlen (Canada) - @myrcurial

James Arlen, CISA, is a senior consultant at Taos providing security consulting services to the utility and financial verticals. He has been involved with implementing a practical level of information security in Fortune 500, TSE 100, and major public-sector corporations for 18+ years. James is also a contributing analyst with Securosis and has a recurring column on Liquidmatrix Security Digest. Best described as: "Infosec geek, hacker, social activist, author, speaker, and parent." His areas of interest include organizational change, social engineering, blinky lights and shiny things.

Marco Balduzzi (Italia) - @embyte

Dr. Marco Balduzzi holds an MSc. in computer engineering from the university of Bergamo and a Ph.D. in applied IT security from Télécom ParisTech.

He has been involved in IT security for 10 years with international experiences in both industrial and academic fields. He worked as security consultant and engineer for different companies in Milan, Munich and Sophia-Antipolis, before joining the International Secure Systems Lab and then Trend Micro Inc. as senior security and threat researcher. He attended well-known and high-profile conferences all over like BlackHat, Hack in the Box and Owasp AppSec, and his work has been acknowledged and published by important media such as Forbes, The Register, Slashdot, InfoWorld and DarkReading. Being a free software sympathizer, back in the year 2K he co-founded the Bergamo's Linux User Group and then the University's Laboratory of Applied Computing. In former times he was also member of different Italian hacking groups and maintainer of open-source projects.

Ing. Jeffrey Steve Borbón Sanabria (COL) - @eljeffto

Systems engineer from Universidad Distrital Francisco José de Caldas, actually finishing studies of Master on Information Security of Universidad Oberta de Catalunya. Actually working as CISO of Education Department of Bogota´s District. I have been working as security consultant and system administrator on companies related with financial, education, software development and ONGs. Professional certifications: CISSP - CEH - E|CSA - ISMS Auditor - ITIL v3.

Dual Core (USA) - @dualcoremusic

Dual Core is a nerdcore hip hop group formed by int0x80 (eighty), a programmer from Cincinnati, and c64 (six-four), a graphic designer from the UK. The group has played shows all over, including Defcon, the CCC Camp, Toorcon, Derbycon, and Shmoocon. Their newest album, Next Level, can be purchased on iTunes and Amazon, at http://dualcoremusic.com, or pirated on bittorrent.

Ciro Antonio Dussan (COL)

Ing, Ciro Anntonio Dussan, information analist, specialist in systems auditing, Magister candidate at Universidad de León of Spain. With more than 18 yers experience in private sector and 10 years in academia.

Administrator of specialist courses in information security at Universidad Libre and leader of the OSIL Project (Observatorio Seguridad de la Información Libre).

Entrepeneur, Director of FUNIB Foundation. Speaker at SATI, Congreso Nacional de Hacking, Delito vrs. Seguridad INFOSEC, Security Zone, organize of Hacking Day.

Martin Fisher (USA) - @armorguy

Martin Fisher is the Director of Information Security for a large integrated healthcare provider in the Atlanta, Georgia area. He has over 20 years of information technology experience with the last 6 years being focused in the information security arena. He also hosts the "Southern Fried Security Podcast" which focuses on trends, news, and leadership within the information security community. He has spoken at conferences hosted by the Centers for Disease Control and Prevention, the ISSA National Conference, and Security B-Sides on a wide variety of topics ranging from Incident Response to Career Development.

You can contact Martin through his podcast website (www.southernfriedsecurity.com) or as @armorguy on Twitter.

Stefan Friedli (Switzerland) - @stfn42

Stefan Friedli has been involved with the computer security community for over decade. He currently works as a senior security consultant at scip AG, an established provider of security-related services based in Zurich, Switzerland. His area of expertise revolves around penetration testing, red teaming and offensive security in general.

Stefan is one of the founders of the PTES (Penetration Testing Execution Standard) project and a regular speaker at international conferences such as BruCON, SOURCE, Security BSides, and Security Zone.

John Jairo Hernandez (Col) - @d7n0

Business Administrator, with experience in management conuslting. Professional in information systems with specialization in information management. with 22 years expeience in IT and 12 years experience in information security. Author of various articles on information security topics such as hardening, forensic analisys, ethical hacking and published in Hackerss.com, Dragonjar.org

Information security analyst and forensic investigator. Developed various information security projects (infraestructure security, security analisys, forensic analisys, sistem audits, SGSO) for government and private institutions.

Professor at several universities in Colombia (Universidad Autonoma de Occidente UAO, Universidad Cooperativa, Universidad Libre de Colombia, Universidad Antonio Nariño, Universidad del Pacifico). Trainer for several ethical hacking course at various institutions. Speaker at various events ((Security Zone 2011,Campus Party 2011, Campus Party 2010, Bar camp Security, Securinf, Freedomday, Flisol, HackingDay, Congreso de Virtualidad UNAD).

Marc "Van hauser" Heuse (GER) - @hackerschoice

Marc "van Hauser" Heuse is performing security research since 1993, having found vulnerabilities in software like firewalls, DNS servers, SAP middleware, etc. and is the author of various well known security and pentest tools like hydra, amap, THC-Scan, secure_delete, SuSEFirewall and many more.

Since 2005 he is performing security research on IPv6 and has spoken on many conferences on this topic since then, and has programmed the solely available pentest toolkit for ipv6: the thc-ipv6 protocol attack suite.

In 1995 he founded the renowned security research group "The Hacker's Choice", which was the first group to e.g. crack A5 GSM in 2006 within a minute. Since 1997 he is working as a security consultant in the top-5 enterprise consultant companies, since 2007 he is working as an independant security consultant.

Matias Katz (ARG) - @matiaskatz

IT Architect specializing in information security. Holds CISSP and MCSE certifications. Over 9 years experience implementing and auditing networks infrastructures, pentesting and auditing. Founder and Director of Professional Services at Mkit Argentina.

Dave Kennedy (USA) - @dave_rel1k

Dave Kennedy is the Chief Information Security Officer (CISO) for a Fortune 1000 company where he runs the entire information security program. Kennedy the author of the book "Metasploit: The Penetration Testers Guide", the creator of the Social-Engineer Toolkit (SET), and the creator of Fast-Track.

Kennedy has presented on a number occasions at Blackhat, Defcon, ShmooCon, BSIDES, Infosec World, Notacon, AIDE, ISACA, ISSA, Infragard, Infosec Summit, and a number of other security-related conferences. Kennedy has been interviewed by several news organizations including BBC World News and Fox.

Kennedy is on the Back|Track development team, Exploit-DB development team, and co-host on the social-engineer.org podcast. Kennedy has an extensive background in information security consulting for Fortune 1000's and prior to the private sector, Kennedy worked for three letter agencies and deployed to Iraq twice for intelligence related missions.

Philippe Langlois (FRA)

Philippe Langlois is an entrepreneur and leading security researcher, expert in the domain of telecom and network security. He founded internationally recognized security companies (Qualys, WaveSecurity, INTRINsec, P1 Security) as well as led technical, development and research teams (Solsoft, TSTF). He founded Qualys and led the world-leading vulnerability assessment service. He founded a pioneering network security company Intrinsec in 1995 in France. He founded his first business, Worldnet, France's first public Internet service provider, in 1993.

Philippe was also lead designer for Payline, one of the first e-commerce payment gateways. He has written and translated security books, including some of the earliest references in the field of computer security, and has been giving speeches on network security since 1995 (Interop, BlackHat, HITB, Hack.lu). Previously professor at Ecole de Guerre Economique and various universities in France (Amiens, Marne La Vallée) and internationally (FUSR-U, EERCI). He is a FUSR-U (Free University for Security Research) collaborator and founding member. Philippe is providing industry associations (GSM Association Security Group, several national organizations) and governmental officials with Critical Infrastructure advisory conferences in Telecom and Network security.

Now Philippe is providing with P1 Security the first Core Network Telecom Signaling security scanner & auditor which help telecom companies, operator and government analyze where and how their critical telecom network infrastructure can be attacked. He can be reached through his website at: http://www.p1security.com

Presented previously at these security/hacking conferences: Hack.lu, Hack in the Box (HITB), Blackhat, Hackito Ergo Sum (paris, france), SOURCE, Chaos Communication Congress (Berlin, Germany), ekoparty (bueos aires, argentina), H2HC (sao paulo, brazil), SYSCAN (Hong Kong; Thailand), Bellua (Jakarta, Indonesia), INT (Mauritius), Interop... (some events listed there http://www.p1sec.com/corp/about/events/ )

Rafal Los (USA) - @Wh1t3Rabbit

Rafal Los, Chief Security Evangelist for Hewlett-Packard Software, combines nearly 15 years of subject-matter expertise in information security with a critical business risk management perspective. From technical research to building and implementing enterprise application security programs, Rafal has a track record with organizations of diverse sizes and verticals. He is a featured speaker at events around the globe, and has presented at events produced by OWASP, ISSA, Black Hat, and SANS among many others.

He stays active in the community by writing, speaking and contributing research, representing HP in OWASP, the Cloud Security Alliance and other industry groups. His blog, Following the White Rabbit, with his unique perspective on security and risk management has amassed a following from his industry peers, business professionals, and even the media and can be found at http://hp.com/go/white-rabbit.

Prior to joining HP, Los defined what became the software security program and served as a regional security lead at a Global Fortune 100 contributing to the global organization's security and risk-management strategy internally and externally. Rafal prides himself on being able to add a 'tint of corporate realism' to information security.

Rafal received his B. S. in Computer Information Systems from Concordia University, River Forest, Ill.

Joe McCray (USA) - @j0emccray

Joe McCray is an Air Force Veteran and has been in security for over 10 years. Joe has been involved in over 150 very high level pentesting assessments and has some major hacking accomplishments that he can share with his classes. His extensive experience and deep knowledge, mixed with his comedic style has lead Joe to be one of the most highly sought after speaking experts in the industry.

Joe makes speaking appearances and gives seminars at major events in the security community such as Black Hat, DefCon, BruCon, Hacker Halted and more. Joe is the recipient of the 2009 EC-Council Instructor Circle of Excellence Award and the 2010 EC-Council Instructor of the Year Award. Joe is the founder and CEO of http://strategicsec.com an IT Security consulting firm that provides in-depth technical security assessments of your network, web application, and regulatory compliance gap analysis.

Wendy Nather (USA) - @451wendy

Wendy Nather is Research Director, Security, within The 451 Group's Enterprise Security Program, providing analysis on the current state of security from the perspective of a veteran CISO. Wendy's areas of coverage are on application security and security services.

Wendy joined The 451 Group after five years building and managing all aspects of the IT security program at the Texas Education Agency, which serves 4.6 million Texas students. In that position, she directed multimillion-dollar initiatives for a statewide external user base of over 50,000. She also provided security guidance for the datacenter consolidation of 27 Texas state agencies.

Wendy previously worked in various roles in the investment banking division of Swiss Bank Corp (now UBS), including helping to build Europe's then-largest private trading floor. Based in Chicago, Zurich and London, she also served as the first IT Security Director for the EMEA region, managing the security aspects of various mergers, IT operations outsourcing and the division's first Internet presence. Wendy is coauthor of the book The Cloud Security Rules.

Chris Nickerson (USA) - @indi303

Chris Nickerson, CEO of LARES, is just another "Security guy" with a whole bunch of certs whose main area of expertise is focused on Real world Attack Modeling, Red Team Testing and Infosec Testing.

At Lares, Chris leads a team of security professional who conduct Risk Assessments, Penetration testing, Application Testing, Social Engineering, Red Team Testing and Full Adversarial Attack Modeling. Prior to starting Lares, Chris was Dir. of Security Services at Alternative Technology, a Sr. IT compliance at KPMG, Sr. Security Architect and Compliance Manager at Sprint Corporate Security.

Chris is a member of many security groups and was also a featured member of TruTV's Tiger Team. Chris is the co host of the Exotic liability Podcast, the author of the upcoming "RED TEAM TESTING" book published by Elsevier/Syngress and a founding member of BSIDES Conference.

Nicholas J. Percoco (USA) - @c7five

With more than 14 years of information security experience, Percoco is the lead security advisor to many of Trustwave¹s premier clients and assists them in making strategic decisions around security compliance regimes. He leads the SpiderLabs team that has performed more than 1300 computer incident response and forensic investigations globally, run thousands of penetration and application security tests for clients, and conducted security research to improve Trustwave's products.

Prior to joining Trustwave, Percoco ran security consulting practices at VeriSign, and Internet Security Systems. In 2004, he drafted an application security framework that became known as the Payment Application Best Practices (PABP). In 2008, this framework was adopted as a global standard called Payment Application Data Security Standard (PA-DSS).

As a speaker, he has provided unique insight around security breaches, malware, mobile security and InfoSec trends to public (Black Hat, DEF CON, SecTor, You Sh0t the Sheriff, IEEE Malware, etc.) and private audiences throughout North America, South America, Europe, and Asia.

Percoco and his research has been featured by many news organizations including: The Washington Post, eWeek, PC World, CNET, Wired, Hakin9, Network World, Dark Reading, Fox News, USA Today, Forbes, Computerworld, CSO Magazine, CNN, The Times of London, NPR, Gizmodo, Fast Company, Financial Times and The Wall Street Journal.

In 2011, SC Magazine named Percoco Security Researcher of the Year. In addition, he was inducted into the inaugural class of the Illinois State University College of Applied Science and Technology Academy of Achievement.

Percoco is a member of the Dean's Advisory Board for The College of Applied Science & Technology at Illinois State University and a co-creator on the planning committee of THOTCON, a hacking and security conference held in Chicago each year. He has a Bachelor of Science in Computer Science from Illinois State University.

Carlos Perez (USA) - @Carlos_Perez

Carlos is the Director of Reverse Engineering for a security vendor, has also worked as an IT Consultant working for a large IT Integrator in the areas of Security, Networking and Virtualization where he covered the region of Central America, Caribbean and Puerto Rico. Used to be a tactical instructor and still train in areas of interest in that realm. Above all he's a proud father, husband and proud American. Currently contributes to Open Source Projects like Metasploit and Backtrack, loves to write code in Python, Ruby, Powershell, T-SQL and Bash.

Main area of interest is post exploitation, an area that I concider that is lacking in many trainnings and not practiced by many pentesters and security professional; most stop when they get shell access. Strong beliver that with shell the fun starts.

My blog: http://www.darkoperator.com/

Jaime Andrés Restrepo Gomez (COL) - @dragonjar

Telecommunications and Systems Engineer from Universidad de Manizales. Jaime is an information security researches with over 10 years experience in Ethical Hacking, Pen Testing, vulnerability and forensic analysis.

He is the co-founder of ACK Security Conference and founder of one of the largest infosec group in Latin America: DragonJAR.

Jaime is a frequent speaker at security events such as EKO Party in Argentina, iSummit in Ecuador, e-Security Guayaquil, Campus Party, Encuentro Internacional de Seguridad informática, Congreso de Hacking Ético, SegurINFO, and others.

Boris Sverdlik (USA) - @jadedsecurity

Boris Sverdlik is a Senior Partner at Jaded Security Consulting. He is a Solutions-oriented Information security consultant with a proven record of directing a range of security initiatives; adhering to best practices and regulatory requirements. I have been at the forefront of information security spanning more than a decade. I have been on both sides of the fence, protecting assets as head of security within the financials as well as performing penetration tests as an external entity. The value I believe I bring to the table is that breadth of experience.

I do defense during the day and offense at night. I love absolutely every minute of it.

ISD Podcast Co Host.

Georgia Weidman (USA) - @georgiaweidman

Georgia Weidman is a penetration tester, security researcher, and trainer. She holds a Master of Science degree in computer science, secure software engineering, and information security as well as holding Certified Information Systems Security Professional (CISSP), NIST 4011, Certified Ethical Hacker (CEH) and an Offensive Security Certified Professional (OSCP) certifications.

Her work in the field of smartphone exploitation has been featured in print and on television internationally. She has presented her research at conferences around the world including Shmoocon, Hacker Halted, Security Zone, and Bsides.

Georgia has delivered highly technical security training for conferences, schools, and corporate clients to excellent reviews. Building on her experience, Georgia recently founded Bulb Security LLC (http://www.bulbsecurity.com), a security consulting firm specializing in security assessments/penetration testing, security training, and research/development.

She was awarded a DARPA Cyber Fast Track grant to continue her work in mobile device security.

Keynote Speakers

Andy Ellis
CSO
Akamai

More about Andy


Wim Remes
Manager Information Security
Ernst and Young ITRA FSO in Belgium

More about Wim


Presenters

Ian Amit
VP Consulting
Security Art
www.security-art.com

More about Ian


James Arlen
Consultor Senior
TAOS
www.taos.com

More about James


Marco Balduzzi
PhD
ISECLAB
www.iseclab.org

More about Marco


Jeffrey Steve Borbón
CISO
Education Department - District of Bogota

More about Jeffrey


DUAL CORE
nerdcore hip hop group
int0x80

More about Dualcore


Ciro Dussan
Information Security Consultant

More about Ciro


Martin Fisher
CISO
Large Healthcare Group

More about Martin


Stefan Friedli
Senior Security Consultant
scip AG
www.scip.ch/

More about Stefan


John Jairo Hernandez
Information Security Analyst
http://world-of-dino.blogspot.com/

More about John jairo


Marc "Van hauser" Heuse
IT security crack & Consultant
mh-sec
www.mh-sec.de

More about Marc


Matias Katz
Dir. Professional Services
Mkit
http://www.mkit.com.ar/

More about Matias


Dave Kennedy
CISO
Fortune 1000 Company

More about Dave


Philippe Langlois
Founder
P1 Securities
http://www.p1security.com

More about Philippe


Rafal Los
Chief Security Evangelist
Hewlett Packard Software
http://www.hp.com

More about Rafal


Joe McCray
Founder Strategicsec
http://strategicsec.com

More about Joe


Wendy Nather
Research Director, Enterprise Security
451 Research
https://451research.com/

More about Wendy


Chris Nicherson
CEO
Lares
www.lares.com

More about Chris


Nichola Percoco
Senior Vice President
SpiderLabs, Trustwave
www.trustwave.com

More about Nick


Carlos Perez
Director of Reverse Engineering
Security Vendor
http://www.darkoperator.com/

More about Carlos


Jaime Andrés Restrepo
Infomation Security Researcher
Dragonjar
http://www.dragonjar.org/

More about Jaime


Boris Sverdlik
Senior Partner
Jaded Security Consulting
www.jadedsecurity.com

More about Boris


Georgia Weidman
CEO
Bulb Security LLC
www.bulbsecurity.com

More about Georgia