@swyx: It's time to get serious about Security x AI. One of the joys of doing AIE is helping others start their own high quali…
Summary
The AI Security Summit 2026 (Oct 15, San Francisco) is announced, with swyx and Snyk as founding partners, covering agent security, AI-powered attacks, and enterprise AI risk in response to a rapidly growing threat landscape.
View Cached Full Text
Cached at: 10/03/26, 04:52 AM
It’s time to get serious about Security x AI.
One of the joys of doing AIE is helping others start their own high quality conferences in their countries and domains. Every single 2025 partner has come back — and the 2nd AI Security Summit is now way more important than before. Proud to be back as a founding partner with @snyksec!
Join the event: https://aisecuritysummit.com
The landscape has completely transformed since we started this a year ago. An exploding number of rogue agents, more breaches, more AI-driven attacks. now more than ever, security must be at the center of the AI conversation. With so much more hacks and vulnerabilities, this stuff is no longer theoretical…
AI Security Summit San Francisco 2026
Source: https://aisecuritysummit.com/ oct 15 / san franciscowestin st. francissingle track
This is the AISSflagshipevent.
One full day. One room. No filler.
The people building with AI and the people who own the risk, on the same stage: agent identity, attacks at machine speed, AI-powered defense, and where the money is (or should be) going.
our-partners/
Interested in sponsoring an AI Security Summit edition? Partner with us at the San Francisco flagship event or one of our satellite regional editions, and put your work in front of people who evaluate on technical merit. Email us to register your interest:[email protected]
room.audience()
who-should-attend/
The people who own AI risk at the org level: setting budgets, signing off on vendors, and writing the governance playbook in real time.
- CISOs, CTOs, VPs of Security and Heads of AI
- Leaders who set risk budgets and choose vendors
- The people who answer to the board when something goes wrong
topics we’ll cover
- Trusting what the AI software factory ships
- Agent identity, auth, and where to start on agent security
- Attacks at machine speed, and what the research shows
- Open source and open models in AI-powered defense
- How enterprise leaders, investors, and CISOs are weighing AI risk
register.now()
save-your-seat/
One room, sized for the people who own AI risk. Register to claim your seat at the Westin St. Francis.
What’s included
- A full day in one room: keynotes, fireside chats, panels, and the people doing the work, up close
- Zero vendor fluff: published research and trade-offs from the people who made them
loading registration form
agenda.schedule()
agenda/
The hard calls on AI risk: budgets, vendors, and deciding what your org defends vs. what it accepts.
speakers.featured()
We book speakers who’ve done the work: made the calls on AI risk at scale, owned the outcomes, and can show what happened next. Our bar is high. More speakers are announced as they’re confirmed.
- 09:00 – 09:30Breakfast & Registration
- 09:30 – 10:0030 min keynote The AI Hurricane Is Here: Cut Through the Opera. Build for the Storm. - Snyk
- 10:00 – 10:2525 min keynote How to Build Trusted Delivery by the Software Factory - Tessl
- 10:25 – 10:5025 min fireside chat Open Source at the Inflection Point: A Fireside Chat with Anthropic on AI-Powered Defense - Anthropic - Snyk
- 10:50 – 11:00Break
- 11:00 – 11:2525 min panel How Enterprise Leaders Are Sequencing AI Investment and Weighing Risk - Telus Digital - Snyk
- 11:25 – 11:5025 min keynote The Criticality of Open Models Has Never Been More Relevant - Faisal TameeshNVIDIA
- 11:50 – 12:1525 min panel Investor Panel: What Investors Are Actually Seeing in AI Security - boldstart ventures - BlackRock - Ken Mac
- 12:15 – 13:15Lunch
- 13:15 – 13:5035 min panel AAuth: Moving Beyond OAuth - Keycard - Keycard - hello.co - Insecure Agents
- 13:50 – 14:2030 min fireside chat Cyber Autonomy: When Attacks Move at Machine Speed - Carnegie Mellon - Max Baader
- 14:20 – 14:4525 min panel The Last Mile of Agentic AI: Securing Where Agents Actually Touch Your Data - Cyera - Jason TrunkIsland - Chris Suen
- 14:45 – 15:00Break
- 15:00 – 15:2525 min keynote The Agent Baseline: Where Should You Start? - Keycard - Docker
- 15:25 – 15:5025 min talk The Attack That Only Works Sometimes: Reproducing Probabilistic Prompt Injection - Arize AI
- 16:30 – 17:301 hr networking Happy Hour Networking before the official AISS after-party.
- 17:30 – 20:303 hr networking Official AISS after-party: AAuth Night 111 Minna Gallery, 111 Minna St, San Francisco, CA 94105. Free. Separate registration on Luma.
venue.details()
Westin St. Francis
335 Powell St, San Francisco, CA 94102
directions A San Francisco landmark on Union Square, open since 1904. The event spaces have the bones to match — grand ballrooms with carved ceilings and gilt pillars in the historic Landmark Building, and floor-to-ceiling views of the Bay Bridge and Golden Gate from the 32nd floor. The kind of venue where the room does some of the work for you.
after.hours()
official-after-party/
Official AISS after-party
AAuth NightMoving Beyond OAuth
The summit’s official after-party, co-hosted with Insecure Agents. After happy hour, head to 111 Minna Gallery for live demos of AAuth, the agent auth protocol from OAuth’s author Dick Hardt, lightning talks, and drinks.
Registration is free and separate from your summit pass.
mission.why()
the-mission/
The best AI security knowledge right now lives inside companies. It’s in incident reports that nobody publishes, in architecture decisions that never leave the engineering org, in red team findings that stay in internal wikis. AISS exists to get that knowledge on stage.
San Francisco is where it all started. AISS launched here in 2025 and sold out, the city has been its flagship ever since. Satellite editions take AISS to other cities around the globe: Copenhagen and Sydney follow on November 25.
We select talks the way peer review works: show us what you found, how you tested it, and what happened once it hit production.
There’s no place for platitudes, no panels where everyone agrees: the tough conversations are welcome here.
That’s the deal: practitioners share what they’ve found, built, broken, or defended. Leaders share the real-life trade-offs behind the decisions they’ve made. In a room of the people who own AI risk, that level of honesty is worth it.
75+speakersacross five events
500+attendeesbuilders and defenders
45+sessionstalks, workshops, panels
latest-videos/
register.now()
secure-the-thing- everyone-is-shipping/
Similar Articles
@swyx: !!!!! it's been a huge huge pleasure to serve @arizeai these past years with AIE, and this could not happen to better p…
The article promotes the AI Engineer NYC 2026 conference, focusing on AI deployment in financial services, with details on agenda, speakers, and networking opportunities for technical leaders.
@swyx: we have been scaling without slop by working with aligned domain experts to add coverage with both oai and ant launchin…
Promotion of the AI Engineer World's Fair 2026, a major industry conference for AI engineers featuring top labs, founders, and Fortune 500 CTOs, taking place June 29 - July 2 in San Francisco.
@Beccalytics: I CAN FINALLY TALK ABOUT IT The last few months, my team at @g2i_ai has been helping organize AIE Code Summit in SF thi…
The team at g2i_ai is organizing the AI Engineer Code Summit in San Francisco this November, bringing together experts in AI-powered software development.
@OpenHandsDev: AI agents are a new attack surface. Join @OpenHandsDev and @GraySwanAI for a sharp discussion on prompt injection, agen…
OpenHands and Gray Swan are hosting an event to discuss AI agent security risks, including prompt injection and agent-specific threats, and how to build secure agents.
@djmalvarado: I was at the first AI Engineer Summit @aiDotEngineer ~500 people, limited admission, felt like a secret. Next week it t…
The AI Engineer World's Fair 2026, taking over Moscone West in San Francisco, has grown from 500 to thousands of attendees with 400+ sessions. A highlight is a talk on evals-driven development for a mental health AI coach, emphasizing safety and ethical guardrails.