RVAsec 15 Speaker Feature: Kyle Flaherty

Empathy, Not Telepathy: How Embedded Engineering Teams Scale Cyber Response (<– add to your schedule)

The real issue of AI isn’t just the speed of the adversary, but the unprecedented noise they’ve created which makes finding the signal through traditional means nearly impossible. This talk explores how embedding engineers into the cyber lifecycle helps drown out the noise and empowers analysts to focus on high-leverage response at scale.


Kyle Flaherty:
Kyle is based out of Richmond and leads the Cyber Intelligence Engineering function at Capital One, where his teams work directly with Cyber Intelligence Analysts to empower them to respond at scale.

Kyle has spent 7 years at Capital One and has prior security work with the U.S. Navy and NSA. His interest in Cyber is rooted in service: a love for technology combined with a desire to serve, inspired by growing up in a military family. Kyle holds a degree in Computer Science from Wake Forest University.

Come see Kyle Flaherty at RVAsec 15!


RVAsec 15 Speaker Feature: Ryan Bird

AI SOC and Securing your Environment (<– add to your schedule)

This discussion is designed to help teams figure out where AI fits in their environment from an analysis perspective, it is vendor agnostic and includes agentic deployments, as well as AI SOC services, novel attack vectors from independent research, and the overarching philosophy of how the threat landscape has just massively changed and how to adapt to it.


Ryan Bird:
Ryan Bird moved to the MVA area in 2017 with his wife. He helped train the United States Army in their ASOT level one program as well as MCTOG in 29 Palms through 2019 with Obsidian Solutions Group before working at Annapolis Defense in a Maritime Security role. After Covid hit he went on to start school at University of Maryland Global Campus and began work in his first cyber security role at RSM Defense when it was being stood up with Unit 26, He then went on to support the Department of States’ Personal Security Device program, and on to FEMA at Mount Weather supporting their internal SOC with One Zero Solutions. He has since been hired at GuidePoint as a Security and Delivery Engineer supporting Elastic and CrowdStrike.

In 2019 he was also part of the Storm the Hill event at IAVA – assisting the IAVA team by talking to congressman and women about veteran suicide in order to get the Commander Scott Hannon bill passed, which changed the VA healthcare system to auto enroll service members upon discharge. He additionally did Disaster relief work during Hurricane Florence, and supported his Uncle running for Commonwealth’s Attorney in 2025 in the City of Fredericksburg.

He has brought common security knowledge from the physical security philosophy to the cyber side of things and holds a unique mindset and experience working his way from an Analyst position to a key member at GuidePoint’s Mid Atlantic SECOPS team.

Come see Ryan Bird at RVAsec 15!


RVAsec 15 Speaker Feature: Nancy Coblenz

Gigawatts and Governance: The Data Security Crisis No One Is Talking About (<– add to your schedule)

Gigawatts of power. Trillions in investment. A data security crisis hiding in plain sight. The explosive growth of AI data centers has created an infrastructure layer most security frameworks were never designed to govern. When ownership of that infrastructure determines who truly controls the data inside it, conventional perimeter thinking is not enough. This session makes the case that infrastructure governance is the defining data security challenge of our generation.


Nancy Coblenz:
Nancy Coblenz is a transformational leader, tech visionary, and global strategist redefining what digital sovereignty means in the 21st century. As Co-Founder and President of Stellenium, she is pioneering sovereign AI infrastructure at a scale never before attempted, empowering governments to take control of their digital futures. With over 15 years of experience in technology, innovation policy, and large-scale systems strategy, Nancy combines geopolitical insight with human-centered design to solve urgent digital equity challenges.
Nancy served as CEO of MyBrand AI, an AI strategy and implementation firm that laid the groundwork for Stellenium. She held senior leadership roles at a private equity firm and a multibillion dollar global workforce solutions provider, scaling dozens of business units. Her early ventures, including a spatial computing agency, showcased her pioneering spirit.
Through deep government and enterprise partnerships, Nancy built innovation ecosystems that aligned global solutions with regional realities. Stellenium’s strategic roadmap includes sovereign infrastructure initiatives ranging from $500M to $3B.These projects go beyond AI data centers and energy plants; they include full-stack digital infrastructure and workforce programs like the Institute for Sovereign Infrastructure & Innovation (ISII), which provides accredited degrees, certifications, and apprenticeships through national university partnerships.
Nancy has cultivated relationships with government leaders and ministries across Africa, positioning Stellenium as a trusted partner in national digital transformation. She was a featured speaker at the IMF World Congress African Summit, where she addressed ministers of finance and ambassadors on the future of AI sovereignty.
Currently, Stellenium is building one of the world’s first sovereign AI cloud platforms, a fully autonomous, air-gapped system giving countries complete control over their data, infrastructure, and AI governance. This innovation marks a historic shift in global technology independence.
Nancy’s impact has been recognized globally. Her accolades include Los Angeles Time’s Most Inspirational Leader in Innovation (Finalist), Global Tech Awards’ Infrastructure Technology Winner, Stevie Awards Woman of the Year, Best Woman CEO in IT (USA), WomenTech Global Mentor of the Year, and recognition from cover feature for CEO Monthly, Los Angeles Business Journal, MSN, SIA’s 40 Under 40, and the International PlayMaker Digital Leader Award. She exemplifies what it means to lead with courage, clarity, and purpose, building not just infrastructure, but a future where every nation can own its digital destiny.

Come see Nancy Coblenz at RVAsec 15!


Concentric AI – RVAsec 15 Gold Sponsor

RVAsec is pleased to present Concentric AI as an RVAsec 15 Gold sponsor!

Autonomous data discovery, classification, risk monitoring, and remediation with Concentric AI, the Data Security Governance Platform.

https://concentric.ai/
X (Twitter):

RVAsec 15 tickets are available now!


RVAsec 15 Speaker Feature: Nick Copi

Hacking Customized IDE Distributions: Methodology Behind Six Figures in Bug Bounties (<– add to your schedule)

Customized IDE distributions pose a lucrative attack surface due to the interconnected systems they interact with, usually highly privileged. This talk covers high level technical ecosystem architectures, IDE threat modeling, common attack vectors, and takes a stab at defining an IDE exploitation kill chain. While specific bug bounty targets and findings remain undisclosed, the methodology developed while producing them will be covered.


Nick Copi:
Nick Copi is a full time bug bounty hunter targeting web applications, cloud infrastructure, desktop apps, and pretty much anything with an attack surface. His background spans application security engineering, full stack development, and a long track record of CTF competition wins. He’s presented technical talks at security conferences and regularly publishes and reviews security research. A Richmond area native, Nick skipped his own high school graduation to attend his first RVASec, so he keeps coming back. When he’s not chaining interesting gadgets into full exploits, he’s probably thinking about it.

Come see Nick Copi at RVAsec 15!


Pentera – RVAsec 15 Gold Sponsor

RVAsec is pleased to present Pentera as an RVAsec 15 Gold sponsor!

The Pentera Platform executes AI-driven adversarial testing in production to validate exploitability, prioritize remediation, and reduce exposure.

https://pentera.io
X (Twitter): @penterasec

RVAsec 15 tickets are available now!


RVAsec 15 Speaker Feature: Andrew Skatoff

From OSINT to Detection: Building an Agentic CTI Pipeline (<– add to your schedule)

Modern threat intelligence moves fast, but detection engineering lags. This talk presents an agentic workflow that transforms OSINT into actionable detections using structured extraction, LLM reasoning, and automated validation. Transparent, auditable pipelines accelerate the CTI lifecycle, from ingestion to Sigma rules, while preserving analyst control, reducing time-to-detection from days to hours.


Andrew Skatoff:
Andrew is a cybersecurity senior leader with over 20 years of experience protecting critical financial infrastructure within the national financial infrastructure. He leads large-scale programs spanning incident response, threat hunting, and detection engineering, and has served as Incident Commander for nationally significant cyber events.

He is the creator of Huntable CTI Studio, an open-source agentic workbench that transforms threat intelligence reports into actionable detections using transparent, auditable AI workflows. His work focuses on applying AI as a force multiplier for security teams—without sacrificing rigor, trust, or control.

Come see Andrew Skatoff at RVAsec 15!


Sublime Security – RVAsec 15 Gold Sponsor

RVAsec is pleased to present Sublime Security as an RVAsec 15 Gold sponsor!

Sublime stops more email attacks with less work. Our autonomous platform protects inbound, internal, and outbound email while continuously expanding organization-specific detection coverage without vendor bottlenecks. AI agents triage messages and generate new detections, with full transparency and control when needed.

https://sublimesecurity.com

RVAsec 15 tickets are available now!


RVAsec 15 Speaker Feature: David Reign

A Peek Behind the Curtain: How A.I. Works (<– add to your schedule)

“A Peek Behind the Curtain: How A.I. Works” offers a clear, non-technical tour of how modern AI systems learn from data and generate predictions or content. The talk demystifies key concepts like training, inference, and model limitations so attendees can better understand what AI can—and can’t—do.


David Reign:
David Reign is a Security Analyst at Oracle with seven years of experience in information security, including three years supporting enterprise environments at scale. His work focuses on cloud security, virtualization, and strengthening security posture through practical risk management and control implementation. David holds a B.S. in Mathematics from Hampton University and an M.Eng. in Cybersecurity from the University of Maryland. He also maintains industry certifications including CompTIA Security+, CompTIA PenTest+, and GIAC Cloud Security Essentials (GCLD).

Come see David Reign at RVAsec 15!


Forcepoint – RVAsec 15 Gold Sponsor

RVAsec is pleased to present Forcepoint as an RVAsec 15 Gold sponsor!

Protect sensitive data everywhere work happens. Forcepoint unifies DSPM, DLP and DDR to prevent breaches, reduce AI risk and stop data loss.

https://forcepoint.com
X (Twitter): @websense

RVAsec 15 tickets are available now!