All times are listed in Central Standard Time – San Mexico City, CDMX, Mexico (GMT-6)
Día 1 · August 17
Día 2 · August 18
Día 3 · August 19 - Track 1
Día 3 · August 19 - Track 2
| Día 1 · August 17 | |
|---|---|
| 08:30 – 09:00 | Registro TLP:CLEAR |
| 09:00 – 09:20 | MX Alberto Avalos (PRYSE CYBER CERT, MX); Oscar Cárcamo (IBM X-Force Incident Response, MX) TLP:CLEAR |
| 09:20 – 10:05 | Keynote by Trend Micro TLP:CLEAR |
| 10:15 – 11:00 | CO Carlos Álvarez (FIRST / Zero Fox, CO) TLP:CLEAR |
| 11:10 – 11:55 | US Framework Fatigue is not a Strategy: Five OT controls to Fund First Brendan Clemmer (Service Now, US) TLP:CLEAR |
| 12:20 – 13:05 | BR Self Hosting Nightmare - Exploiting AI Models for Supply Chains Attacks Davidson Mizael (IBM X-force, BR) TLP:CLEAR |
| 13:15 – 14:00 | MX Una Década de riesgos en Infraestructuras empresariales y financieras Ulises Cervantes Diaz (Confidencial, MX) TLP:RED |
| 15:15 – 16:00 | MX De CTI a Defensa automatizada, perfilado de APTs con MITRE ATT&CK, D3FEND y Plataformas TIP Paulo Gutiérrez Resendiz (Sith Intel Cybersecurity & BlackCoreSecurityLab, MX) TLP:CLEAR |
| 16:10 – 16:55 | MX Pentesting con Inteligencia Artificial Agéntica Edgar Chillón Escárcega (BHACKING, MX) TLP:CLEAR |
| 17:20 – 17:50 | MX Construye tu propio SOC: Ingeniería de Detección y Caza de Amenazas (Threat Hunting) Carolina Chavez Morales (Independiente, MX) TLP:GREEN |
| 18:00 – 18:45 | MX Optimización en la respuesta a incidentes, alertas que generan valor Sixto Huerta Abraham (ARTERIA, MX) TLP:GREEN |
| Día 2 · August 18 | |
|---|---|
| 09:00 – 09:45 | IL When Attackers Tune In: Weaponizing LLM Fine-Tuning for Stealthy C2 and Exfiltration Noa Dekel (Palo Alto Networks, IL) TLP:CLEAR |
| 09:50 – 10:35 | MX Force Multiplier: How AI is Compressing the Attack Timeline and what SOCs can Actually do about it Eduardo Patricio Sanchez Diaz (Bishop Fox, MX) TLP:CLEAR |
| 10:45 – 11:30 | MX Carmen Denis (LAC Digital Academy, MX) TLP:CLEAR |
| 11:40 – 12:25 | CO Jerónimo Echeverri (7 Way Security, CO) TLP:GREEN |
| 12:35 – 13:05 | RO Own Your Own AI: Autonomy and Survivability in the Era of AI Agents Juan Pablo Betancourt (Arcana AI, RO) TLP:CLEAR |
| 14:20 – 15:05 | GB Eficiencia Operativa en CTI: Construyendo un Aprendiz Cognitivo para Equipos pequeños Omar Saenz Herrera (Google, GB) TLP:GREEN |
| 15:15 – 16:00 | CO Steal Credentials, Scale Attacks: Dissecting the Infostealer Ecosystem in Mexico and LATAM William Forero Cruz (X-Force Incident Response - IBM, CO) TLP:GREEN |
| 16:05 – 16:55 | MX Ciberseguridad con Casco y Botas: Respuesta a Incidentes en OT y Seguridad Funcional Alexandro Fernández (Marelli, MX) TLP:GREEN |
| 17:00 – 17:45 | MX Beyond Phishing: “How Threat Actors Move Victims Outside Corporate Defenses” José Eduardo Vázquez (Nestlé, MX) TLP:GREEN |
| 17:50 – 18:35 | MX The End of Manual CTI? Building an AI-Powered Intelligence Pipeline Jesús Vallejo (PepsiCo, MX) TLP:GREEN |
| Día 3 · August 19 - Track 1 | Día 3 · August 19 - Track 2 | |
|---|---|---|
| 09:00 – 17:00 | LT Tracking Threat Actors Across Sovereign Internets Vytenis Benetis (Consultant Sr, LT) TLP:AMBER | TT Rick Logan-Stanford (TTCSIRT, TT) TLP:AMBER |
Rick Logan-StanfordRick Logan-Stanford (TTCSIRT, TT)
Rick Logan-Stanford, TT-CSIRT A results-driven cybersecurity professional with 11+ years designing, maintaining, and troubleshooting complex systems. His expertise spans incident response, cyber law, and diplomacy, blending technical depth with strategic vision to safeguard critical infrastructure and strengthen resilience through cross-border cooperation on today's evolving threat landscape.
August 19, 2026 09:00-17:00
José Eduardo VázquezJosé Eduardo Vázquez (Nestlé, MX)
José Eduardo Vázquez, Incident Response Sr, Nestlé Jose is a Cyber Security and Incident Response Senior Specialist within Nestlé’s Global CSIRT. He has extensive experience in incident response, threat intelligence, and security operations automation through SOAR platforms. As an Incident Commander, he leads the coordination of critical security incidents and cyber crises involving global teams, strategic third parties, and organizations M&A. https://www.linkedin.com/in/eduardo-vazrey/
August 18, 2026 17:00-17:45
Alexandro FernándezAlexandro Fernández (Marelli, MX)
Alexandro Fernández, Global OT Cybersecurity Leader, Marelli Strategic leader in industrial cybersecurity with over 25 years of international experience. His background precisely blends 18 years in information asset protection with 7 years fully dedicated to security posture hardening, cyber resilience, and incident containment within OT/ICS environments and critical infrastructure. An expert in operational crisis management and cyber-physical threats.
August 18, 2026 16:05-16:55
Carolina Chavez MoralesCarolina Chavez Morales (Independiente, MX)
Carolina Chavez Morales, Coordinadora SOC-NOC, Independiente Ingeniera y líder de ciberseguridad con más de 10 años de experiencia en el sector financiero, especializada en gestión de SOC y respuesta a incidentes. Exmiembro del grupo de ciberseguridad del Ejército Mexicano, organizadora de WomenCON y creadora de contenido en "Or4kM4c Ciberseguridad", enfocada en el desarrollo de laboratorios y capacitación técnica práctica impulsando el talento femenino en. https://www.linkedin.com/in/carolina-ch%C3%A1vez-morales-093828145/
August 17, 2026 17:20-17:50
Paulo Gutiérrez ResendizPaulo Gutiérrez Resendiz (Sith Intel Cybersecurity & BlackCoreSecurityLab, MX)
Paulo Gutiérrez Resendiz, Cybersecurity Executive & Founder, Sith Intel Cybersecurity & BlackCoreSecurityLab Paulo Gutiérrez Resendiz is a cybersecurity leader and founder with 28+ years of experience across enterprise technology, security operations, cyber threat intelligence, and risk governance. He focuses on strengthening executive visibility, detection, response, and intelligence-driven cyber resilience https://www.linkedin.com/in/paulogutierrezr/
August 17, 2026 15:15-16:00
Omar Saenz HerreraOmar Saenz Herrera (Google, GB)
Omar Saenz Herrera, Global Partner Customer - Security Specialist, Google Omar is a security engineer and technology consultant with a passion for innovation and helping organizations adopt new technologies securely and ethically. "I'm also passionate about inspiring new generations of professionals and meeting people from all walks of life"." I'm also passionate about inspiring new generations of professionals and meeting people from all walks of life". https://www.linkedin.com/in/omarsaenz/
August 18, 2026 14:20-15:05
Carlos ÁlvarezCarlos Álvarez (FIRST / Zero Fox, CO)
Carlos Álvarez, Director, FIRST Board Member / Zero Fox Carlos is Director of ZeroFox's Disruption Partnerships and Signals Research Programs, where he leads threat intelligence research and coordinates abuse mitigation efforts across domain registrars, hosting providers, and social media platforms.
August 17, 2026 10:15-11:00
Eduardo Patricio Sanchez DiazEduardo Patricio Sanchez Diaz (Bishop Fox, MX)
Eduardo Patricio Sanchez Diaz, Director Regional México, Bishop Fox Eduardo is a cybersecurity enthusiast with experience in penetration testing, DFIR, cyber intelligence, red teaming, and threat intelligence. Experienced in building and leading highly technical cybersecurity teams, holding several industry certifications including CISSP, CISM, GCIH, GWAPT. Speaker at various events such as the SANS Threat Hunting Summit, ISC2 LATAM Congress, GSMA Fraud and Securi https://www.linkedin.com/in/epsanchez/
August 18, 2026 09:50-10:35
Brendan ClemmerBrendan Clemmer (Service Now, US)
Brendan Clemmer, Principal OT Security, Service Now Brendan is a Principal Operational Technology Security Consultant who helps industrial organizations reduce cyber risk across complex, environments. He works with asset owners, engineering teams, operations leaders to design defensible architectures, strengthen incident response capabilities, implement secure access models and improve network. https://www.linkedin.com/in/clemmer/
August 17, 2026 11:10-11:55
Carmen DenisCarmen Denis (LAC Digital Academy, MX)
Carmen Denis, Fundadora y Directora, LAC Digital Academy She has a track record of over 30 years in network and internet interconnection technologies. Currently, she is an Independent Consultant, Founder and Director of LAC Digital Academy, and a member of the Board of Directors of the Latin American and Caribbean Internet Address Registry (LACNIC), Latin American and Caribbean Internet Exchange Point Association (LAC-IX). https://www.linkedin.com/in/carmendenis/
August 18, 2026 10:45-11:30
Alberto Avalos
Oscar CárcamoAlberto Avalos (PRYSE CYBER CERT, MX), Oscar Cárcamo (IBM X-Force Incident Response, MX)
Alberto Avalos CHAIR 🇲🇽 PRYSE CYBER CERT · México Áreas: Incident Response, Cyber Threat Intelligence, Digital Forensics 17 years of experience in cybersecurity, specializing in Incident Response, Threat Intelligence, and SOC operations. Current Chair of the Program Committee for FIRST TC in Mexico and member of the Program Committee for Germany LinkedIn: https://linkedin.com/betto.avalos
Oscar Cárcamo Co-CHAIR 🇲🇽 IBM X-Force Incident Response · México Áreas: Incident Response, Malware Analysis, Security Operations Oscar Cárcamo is a Cybersecurity Consultant with 10+ years of experience. One of Mexico's first two accredited FIRST Liaisons and Co-Chair of FIRST TC in México. IBM X-Force Incident Response team member, SANS Institute speaker, and founder of Hacktitud. Combining technical depth with strategic vision to put Mexico and Latin America on the global incident response map. LinkedIn: https://www.linkedin.com/in/t3njyxigq2fyy2ftbw/
August 17, 2026 09:00-09:20
Sixto Huerta AbrahamSixto Huerta Abraham (ARTERIA, MX)
Sixto Huerta Abraham, Gerente NOC/SOC, ARTERIA Cybersecurity and IT operations professional with experience in managing SOC/NOC centers, monitoring critical infrastructure, incident response, and threat intelligence. https://www.linkedin.com/in/sixto-huerta-65b24910b/
August 17, 2026 18:00-18:45
Juan Pablo BetancourtJuan Pablo Betancourt (Arcana AI, RO)
Juan Pablo Betancourt, Business Development Specialist, Arcana AI Cybersecurity Operations Executive and Technical Leader with over 15 years of hands-on experience architecting, running, and scaling mission-critical, 24x7 engineering infrastructure. Proven track record of managing high-pressure environments, processing massive data pipelines, and governing highly diverse vendor ecosystems for national security programs and global enterprises. https://www.linkedin.com/in/juanpablobr/
August 18, 2026 12:35-13:05
Edgar Chillón EscárcegaEdgar Chillón Escárcega (BHACKING, MX)
Edgar Chillón Escárcega, Director, BHACKING He is a Cybersecurity Strategist specializing in Offensive Cybersecurity and Artificial Intelligence. He has over 25 years of experience in Ethical Hacking, Digital Forensics, and Risk Management. Since 2020, he has integrated Artificial Intelligence and Machine Learning to enhance automated threat detection and operational efficiency in security. https://www.linkedin.com/in/edgar-chill%C3%B3n-998b96b/
August 17, 2026 16:10-16:55
Davidson MizaelDavidson Mizael (IBM X-force, BR)
Davidson Mizael, Incident Response, IBM X-force David has been coding and hacking for over 20 years, and has turned that passion into a career in IT. A Python guru, AI enthusiast, and all-around computer nerd. "I love building cool things, breaking (and fixing) systems, and diving deep into tech just for the fun of it". https://www.linkedin.com/in/davidsonmizael/
August 17, 2026 12:20-13:05
William Forero CruzWilliam Forero Cruz (X-Force Incident Response - IBM, CO)
William Forero Cruz, X-Force Incident Response - IBM William is an Incident Response and Threat Intelligence consultant at IBM X-Force, he supports organizations in Latin America and globally in managing complex cybersecurity incidents and strengthening their security posture. He participates in the delivery of proactive security services improving organizational resilience before incidents occur. https://www.linkedin.com/in/william-forero-cruz-a5a440154/
August 18, 2026 15:15-16:00
Jesús VallejoJesús Vallejo (PepsiCo, MX)
Jesús Vallejo, Cyber Threat Intelligence Specialist, PepsiCo Jesús Vallejo is a Cyber Threat Intelligence (CTI) specialist and malware analyst specializing in threat actor research, malware analysis, and intelligence-driven investigations. His work focuses on advanced threats, ransomware, banking trojans, infostealers, and APTs affecting organizations worldwide. Jesús is also an international cybersecurity speaker, having presented his research at conference.
August 18, 2026 17:50-18:35
Jerónimo EcheverriJerónimo Echeverri (7 Way Security, CO)
Jerónimo Echeverri, Threat Hunter, 7 Way Security Ingeniero en Telecomunicaciones y Analista de Threat Intelligence, especializado en Inteligencia de Amenazas, OSINT y análisis de la Deep y Dark Web. Enfocado en identificar, anticipar y comprender amenazas cibernéticas mediante inteligencia basada en datos para fortalecer la seguridad de las organizaciones. https://www.linkedin.com/in/jeronimo-echeverri https://x.com/n0r37urn
August 18, 2026 11:40-12:25
Vytenis BenetisVytenis Benetis (Consultant Sr, LT)
Vytenis Benetis, i-intelligence GmbH (Switzerland), Consultant Sr Vytenis has worked as a military intelligence analyst for a decade. His experience covers a wide range of missions and organizations including the Lithuanian Ministry of Defence, NATO, and the European Union.
August 19, 2026 09:00-17:00
Ulises Cervantes DiazUlises Cervantes Diaz (Confidencial, MX)
Ulises Cervantes Diaz, Cybersecurity Researcher, Confidencial Ulises is a cybersecurity specialist with over eight years of experience in offensive operations, incident response, threat intelligence, and risk management. He has led multidisciplinary teams in Red Team, Incident Response, and Cyber Threat Intelligence, participating in the protection of organizations in the financial, government, and critical infrastructure. https://www.linkedin.com/in/ulises-cervantes-d%C3%ADaz-06aa071a5/
August 17, 2026 13:15-14:00
Noa DekelNoa Dekel (Palo Alto Networks, IL)
Noa Dekel, Senior Threat Intelligence, Palo Alto Networks Noa Dekel is a Senior Threat Intelligence Researcher at Palo Alto Networks, specializing in threat hunting, malware analysis, and detection engineering. Noa combines offensive and defensive skill sets to uncover emerging attack vectors and turn them into practical solutions for defenders, tackling advanced threat actor tactics and global threat trends. https://www.linkedin.com/in/noa-stern-dekel-850014213/
August 18, 2026 09:00-09:45