Technology

Sydney Data Protection & Security Summit 2026

The Sydney Data Protection & Security Summit 2026 brings together security professionals, IT leaders, and industry experts to tackle the latest challenges in data protection and privacy. Key focus areas include the Australian Data Privacy Act, AI and ML in data security, data breach incident response, and best practices for encryption and loss prevention. At…

Visit the official siteSponsorship open
33Speakers
8Sponsors
11On the bill · sessions
36Companies · in total
§I

Speakers

Programmed at Sydney, in alphabetical order.
Akash Shrivastava
Security Architect - Banking & Financial Services
Andrew Dean
Solutions Architect · Chainguard
Angela Dunbar
Head of Privacy, Information and Knowledge Management · Australian Red Cross
Angelina Liu
Account Executive, ANZ · Aikido Security
Cole Cornford
Chief Executive Officer · Galah Cyber
Doug Hammond
Chief Information Security Officer · Uniting
Edwin Kwan
Head of Product Security · Domain Group
Eliza Knapp
Director of Privacy - Data and AI · Atlassian
Fiona Chan
Group Privacy Officer · APA Group
Gaurav Vikash
Head of Security and Risk - APAC · AXON
Geoff Morrison
Sales Engineering Director (APAC) · Varonis
Girish Darda
Head of Security · Littlepay
Gordius Mak
Head of Data · Healius
Jihad Zein
Global Head of GRC · Toll
Kanik Sachdeva
Security Engineering Manager · Medibank
Kesh Anand
Head of Architecture, Cybersecurity and Data · National Intermodal
Lisa McCallum
Chief Data Officer · Cancer Institute NSW, NSW Health
Louis Nyffenegger
Founder · PentesterLabs
Luke Bampton
Application Security Lead · Monash University
Mahendra Samawickrama
Director - AI Safety, Governance, and Policies · Centre for Sustainable AI
Matthew Golab
Director, Practice Empowerment AI - APAC · Relativity
Paul Theriault
Senior Security Architect · Atlassian
§II

Sponsors

The houses behind the program. Tiers as disclosed.
11:11 Systems
Netwrix
OneTrust
Progress
Proofpoint
Relativity
Vanta
Varonis
§III

Agenda

Selected from 11 sessions on the bill.
  • 10:10 AM

    Panel: The Evolving Supply Chain Risk Landscape: What’s Actually Breaking in Production

    Modern applications run on layered platforms, third-party extensions, and AI assisted development and tooling, each introducing dependencies that traditional supply chain controls …

  • 10:40 AM

    The Source Code Was Clean: How npm Malware Skips the Repository and What Actually Stops It

    Software supply chain attacks are shifting. Attackers aren't really hunting for vulnerabilities in source code anymore, they are going after the trust that developers put in packag…

  • 11:40 AM

    Lessons from the Software Supply Chain: What They Teach Us About Securing AI

    The rise of AI is introducing supply chain–style risks we’ve seen before in open source. The way developers pick, use, and secure components has direct parallels to how organisatio…

  • 11:55 AM

    How GitLab Solves... AI-DLC Governance from Commit to Compliance

    Governance and audit processes span disconnected tools and time-consuming evidence collection. This session explores how GitLab helps teams bring governance, policy enforcement, tr…

  • 12:10 PM

    Panel: Security vs Velocity: When to Say Yes to Risk (and How to Track What You Said Yes To)

    This panel explores how high-performing teams balance speed with security, document and monitor accepted risk, and frameworks for accountability. Coverage includes: justification f…

  • 2:35 PM

    How the Right Harness Makes LLM Vulnerability Detection More Effective and Deterministic

    LLMs can reason about security bugs, but when pointed straight at a codebase they're inconsistent, expensive, and noisy. The biggest gains come from what wraps the model. We show h…

  • 2:50 PM

    How I Solved...Redesigning Secure Code Review for an AI-Native World

    AI is changing how code is produced, diminishing the effectiveness of manual code reviews. This keynote explores why secure code review is breaking down as AI becomes core to devel…

  • 3:05 PM

    Testing Second-Order Prompt Injection in AI Agent Deployments

    Most security programs have matured around AI-generated code risks, but a critical gap remains: the injection surface introduced by autonomous AI agents. This session covers hands-…

  • 3:25 PM

    Think Tank: How AppSec Should Really Operate: Live Debate With the Audience

    This interactive session puts AppSec operating debates on screen. The audience votes live on team design, ownership boundaries, blocking power, developer experience, and how AI is …

Intermission
Part the Second · For the Buyer

What does it mean when 36 companies show up, and 3 bet on three roles at once?

36 companies. three are betting more than once.

The numbers below are derived from the speakers, sponsors, and exhibitors on this page, cross-referenced into one ledger. They are the only thing here that 10times.com cannot tell you.

Who's in the room
3All threespeak · spons · exh
5Sponsoringsponsor only
28Companies Speakingspeaker only

The Triple-Threat

OneTrust·Relativity·Varonis

Speakers by seniority

61% of the speakers carry senior titles: C-suite, Founder, VP, or Director-level.

  • C-suite515%
  • Founder / Owner13%
  • Director / Head of1442%
  • Manager / Lead412%
  • Engineer · IC721%
  • Other roles26%

Of 33 on the bill · classified by free-text title

Most-represented companies
  1. 01OneTrustSp1V
  2. 02RelativitySp1V
  3. 03VaronisSp1V
  4. 0411:11 SystemsSp
  5. 05NetwrixSp
  6. 06ProgressSp
  7. 07ProofpointSp
  8. 08VantaSp
  9. 09Atlassian2V
  10. 10Aikido Security1V
  11. 11APA Group1V
  12. 12APM1V
  13. 13Australian Red Cross1V
  14. 14Australian Signals Directorate1V
Sponsors by tier
unspecified8
100% of 8
At peer events but not here

These companies sponsored two or more peer events recently, but aren't on this program. For an organizer, that's a list of warm prospects.

Related events · by shared sponsors