15 May 10:00Hotel At Six

INTRODUCTION 

It is with great pleasure we invite you to Verdane Cybersecurity Day 2025 on the 15th May. All relevant information about the event and the registration can be found on this page. 

The day will be held at Hotel At Six in Stockholm, Sweden. Kindly note that guests are asked to arrange their own flights, transport and accommodation; costs are borne by each attending company/the company that you represent.

Please scroll down to "Practicalities" for the hotel booking link.

The event is all about making valuable connections with peers, discussing common challenges, and getting practical tips from security experts through captivating sessions and breakouts.

For any questions, please email events@verdane.com.

Best wishes, Lina Lynås & Thomas Baasnes on behalf of the Verdane team


SCHEDULE

10:00

Coffee, networking & registration

10:30

Welcome to the Verdane cybersecurity day

Lina Lynås
Cyber Security Senior Associate
Thomas Baasnes
Cyber Security Director
10:50

Scaling cloud security for startups

Scaling cloud security doesn’t have to wait for a massive team or budget. This presentation is a safari through proven approaches in resource-constrained environments. We'll explore proactive tactics around deploying invariants, managing vulnerabilities, and how to leverage the limitations of desirable security.

Read more
Rami McCarthy
Principal Security Researcher in Wiz
11:30

Break

11:45

Insides from real attacks

Are your defences strong enough to withstand even the most basic cyber-attacks? This presentation will delve into trends observed from several incident response cases investigated by Angela and her teams over the past few years. These include everything from multi-year, complex intrusions involving nation-state threat actors, to small and medium sized enterprises crippled by ransomware.

Read more
Angela Wong
CTO Defendable
12:15

Getting management on board with cybersecurity and building a security culture

The presentation will focus on strategies to effectively communicate the importance of cybersecurity to executive leadership. Per will share practical approaches for aligning cybersecurity initiatives with business objectives, demonstrating the value of security investments, and fostering a culture of security awareness at the management level. This session aims to equip CISOs and security personnel with the tools to gain executive buy-in and support for their cybersecurity programs.

Read more
Per Gustavsson
CISO Stratsys
12:35

Break


Read more
12:45

Cloud security transformation: A guide to a more secure utilization of cloud technologies

Whether you've already embarked on your cloud journey, are midway through migration, or are still in the early stages of cloud adoption., security is hopefully at the forefront of your mind. But let's be honest: Cloud security isn't a walk in the park, especially when facing a shortage of experts with an in-depth comprehension of cloud security. This presentation will focus on giving advice to succeed on your cloud transformation journey.

Read more
Olav Østbye
Partner and Co-founder O3 Cyber
Håkon Sørum
Partner and Co-founder O3 Cyber
13:30

Lunch

14:30

Developer experience: How to build a great developer experience that optimises for security? (And why you should do it)

Discover how to build a great developer experience that optimises for security, and how this can be used to attract & retain great talent that is productive and happy. This presentation will delve into why security matters "more than you think", and measure its value in terms of customer trust, satisfaction and revenue. Gain practical insights with 10 quick wins your team can do TODAY to become a lot more secure and avoid getting hacked.

Read more
Mackenzie Jackson
Developer and Security Advocate in Aikido
14:50

The beauty of AppSec - Ensuring Product Security at Booksy

Booksy, a leading online appointment scheduling platform for the beauty industry, will present how their security engineers built their product security stack. We will share the techniques, integrations and tools (commercial, open-source, custom) we used to achieve a 92% reduction in software security issues!

Read more
Marcin Szydłowski
Director of Enterprise Technology at Booksy
Łukasz Gaweł
Senior Security Engineer leading AppSec at Booksy
15:20

Introduction to breakout sessions

The speakers of the day will facilitate a workshop related to their presentation to enable further discussions and knowledge-sharing in smaller groups. No need to register for sessions in advance.


      Read more
      15:30

      Break

      Find your way to the breakout session 

      Read more
      15:45

      Breakout session 1

      Choose two different sessions for Breakout 1 & 2 

      Read more

      Scaling cloud security for startups

      Rami McCarthy
      Principal Security Researcher in Wiz

      How to build a great developer experience that optimises for security

      Mackenzie Jackson
      Developer and Security Advocate in Aikido

      Cloud and App Security

      Olav Østbye
      Partner and Co-founder O3 Cyber
      Håkon Sørum
      Partner and Co-founder O3 Cyber

      Getting management on board and building a security culture

      Per Gustavsson
      CISO Stratsys

      Insights from real attacks: practical application and mitigating controls

      Angela Wong
      CTO Defendable

      Building product security using Open-Source tools

      Łukasz Gaweł
      Senior Security Engineer leading AppSec at Booksy
      Marcin Szydłowski
      Director of Enterprise Technology at Booksy

      Generative AI: How to secure it, how to use it, and how to protect from it

      Koen van Blijderveen
      Principal Security Specialist Security Solutions Architect Amazon Web Services
      Priyam Awasthy
      Senior Security Specialist Amazon Web
      16:30

      Break

      Find your way to the second breakout session 

      Read more
      16:40

      Breakout session 2

      Sessions as explained under Breakout session 1 

      Read more
      17:25

      Closing comments

      Lina Lynås
      Cyber Security Senior Associate
      Thomas Baasnes
      Cyber Security Director
      17:45

      Drinks & mingling

      18:30

      Dinner

      SPEAKERS

      Rami McCarthy
      Principal Security Researcher in Wiz

      Rami McCarthy is a security professional with extensive experience in starting and scaling security programs for cloud-native companies. He is known for his contributions to cloud security, having spoken at numerous industry conferences and written extensively on security topics for different platforms. 

      He works in Wiz, a cloud security platform that provides unified visibility and security across code, CI/CD, and cloud environments, helping organizations protect their cloud infrastructure.

      LinkedIn: Rami McCarthy | LinkedIn

      Read more

      Scaling cloud security for startups

      Scaling cloud security doesn’t have to wait for a massive team or budget. This presentation is a safari through proven approaches in resource-constrained environments. We'll explore proactive tactics around deploying invariants, managing vulnerabilities, and how to leverage the limitations of desirable security.

      Read more

      Scaling cloud security for startups

      Angela Wong
      CTO Defendable

      Angela Wong is the Chief Technology Officer of Norwegian cyber security company Defendable. She has previously helped build advanced detection and response capabilities as the Incident Response Lead at Telenor CERT, and served as a senior intrusion analyst at the Australian Signals Directorate battling nation-state actors. She is a highly skilled and experienced incident response lead and has supported numerous companies in managing cybersecurity attacks. 

      Defendable specializes in advisory services, security testing, incident response, and 24/7 monitoring. Their mission is to help organizations become resilient against cyber threats by providing comprehensive and tailored security solutions.

      Angela Wong | LinkedIn

      Read more

      Insides from real attacks

      Are your defences strong enough to withstand even the most basic cyber-attacks? This presentation will delve into trends observed from several incident response cases investigated by Angela and her teams over the past few years. These include everything from multi-year, complex intrusions involving nation-state threat actors, to small and medium sized enterprises crippled by ransomware.

      Read more

      Insights from real attacks: practical application and mitigating controls

      Olav Østbye
      Partner and Co-founder O3 Cyber

      Olav Østbye is the CEO and co-founder of O3 Cyber, a Norwegian cybersecurity firm. With extensive experience in cloud security and a passion for innovative solutions and knowledge sharing, Olav has become a trusted expert in the field. 

      Olav Østbye | LinkedIn

      Read more

      Cloud security transformation: A guide to a more secure utilization of cloud technologies

      Whether you've already embarked on your cloud journey, are midway through migration, or are still in the early stages of cloud adoption., security is hopefully at the forefront of your mind. But let's be honest: Cloud security isn't a walk in the park, especially when facing a shortage of experts with an in-depth comprehension of cloud security. This presentation will focus on giving advice to succeed on your cloud transformation journey.

      Read more

      Cloud and App Security

      Håkon Sørum
      Partner and Co-founder O3 Cyber

      Håkon Sørum is also co-founder of O3 Cyber, and offers industry insights into the implementation of secure design practices within cloud development teams while supporting the business in achieving its goals. He has broad experience as a developer, security engineer and architect.  

      They also run a cybersecurity podcast where they discuss various cybersecurity topics with industry experts. The O3 Cyber Security Podcast is now in its fifth season, focusing only on Cloud Security.

      Håkon Nikolai Stange Sørum | LinkedIn

      Read more

      Cloud security transformation: A guide to a more secure utilization of cloud technologies

      Whether you've already embarked on your cloud journey, are midway through migration, or are still in the early stages of cloud adoption., security is hopefully at the forefront of your mind. But let's be honest: Cloud security isn't a walk in the park, especially when facing a shortage of experts with an in-depth comprehension of cloud security. This presentation will focus on giving advice to succeed on your cloud transformation journey.

      Read more

      Cloud and App Security

      Mackenzie Jackson
      Developer and Security Advocate in Aikido

      Mackenzie Jackson is a passionate advocate for code security. With extensive experience in demonstrating how malicious actors exploit vulnerabilities, he collaborates closely with research teams to enhance security practices. 

      Mackenzie is known for his engaging presentations that bridge the gap between developers and security experts, making complex security concepts accessible and actionable.

      He works in Aikido, a developer-centric software security platform that simplifies vulnerability management for both code and cloud environments. Their  mission is to empower developers to focus on writing code while ensuring robust security.

      Mackenzie Jackson | LinkedIn

      Read more

      Developer experience: How to build a great developer experience that optimises for security? (And why you should do it)

      Discover how to build a great developer experience that optimises for security, and how this can be used to attract & retain great talent that is productive and happy. This presentation will delve into why security matters "more than you think", and measure its value in terms of customer trust, satisfaction and revenue. Gain practical insights with 10 quick wins your team can do TODAY to become a lot more secure and avoid getting hacked.

      Read more

      How to build a great developer experience that optimises for security

      Per Gustavsson
      CISO Stratsys

      Per Gustavsson is a specialist in information security and currently works as the CISO at Stratsys. He is also a popular lecturer in the field and frequently participates as an expert in various interest organizations, such as ISACA. With his extensive experience, Per has a deep understanding of the challenges that organizations face in today's rapidly changing society, where new laws and regulations must be quickly implemented in businesses. His expertise spans risk management, privacy, and strategic planning, making him a key figure in advancing Stratsys' security initiatives.

       Stratsys is a Verdane portfolio company, that provides strategic planning and performance management solutions. Their platform helps organizations manage regulatory requirements, streamline operations, and achieve their goals efficiently.

      Per Gustavsson, PhD I LinkedIn

      Read more

      Getting management on board with cybersecurity and building a security culture

      The presentation will focus on strategies to effectively communicate the importance of cybersecurity to executive leadership. Per will share practical approaches for aligning cybersecurity initiatives with business objectives, demonstrating the value of security investments, and fostering a culture of security awareness at the management level. This session aims to equip CISOs and security personnel with the tools to gain executive buy-in and support for their cybersecurity programs.

      Read more

      Getting management on board and building a security culture

      Marcin Szydłowski
      Director of Enterprise Technology at Booksy

      Marcin has over 10 years of security experience in both engineering and leadership roles. He believes that effective product security relies on automation and strong collaboration between security professionals and software engineers.

      Marcin Szydłowski | LinkedIn

      Read more

      The beauty of AppSec - Ensuring Product Security at Booksy

      Booksy, a leading online appointment scheduling platform for the beauty industry, will present how their security engineers built their product security stack. We will share the techniques, integrations and tools (commercial, open-source, custom) we used to achieve a 92% reduction in software security issues!

      Read more

      Building product security using Open-Source tools

      Łukasz Gaweł
      Senior Security Engineer leading AppSec at Booksy

      A huge fan of new technologies and automation in every aspect of life, committed to making security effortless for developers. Weightlifter - because more strength means more donuts.

      Łukasz Gaweł | LinkedIn

      Read more

      The beauty of AppSec - Ensuring Product Security at Booksy

      Booksy, a leading online appointment scheduling platform for the beauty industry, will present how their security engineers built their product security stack. We will share the techniques, integrations and tools (commercial, open-source, custom) we used to achieve a 92% reduction in software security issues!

      Read more

      Building product security using Open-Source tools

      Lina Lynås
      Cyber Security Senior Associate

      Lina joined Verdane Elevate in the Oslo office in 2024. She is a part of the Cybersecurity team that assists Verdane’s investment teams in sourcing and DD processes and supports the portfolio companies in cybersecurity matters.

      Prior to Verdane, Lina worked as a cybersecurity consultant for four years and has experience with assessing and implementing cybersecurity measures in different industries (Bank, Shipping, Government & Security).

      Education: Lina holds a MSc in Industrial Economics and Technology Management from the Norwegian University of Science and Technology (NTNU), and a bachelor’s degree in economics and business administration from the Norwegian School of Economics (NHH).

      Read more

      Welcome to the Verdane cybersecurity day

      Closing comments

      Thomas Baasnes
      Cyber Security Director

      Thomas joined Verdane’s Oslo office as a Cyber Security Manager in 2022. Thomas has worked professionally with cyber security since 2016. He has experience from being CISO, Team Lead, and Cyber Security Advisor mainly within the industries of IT, Finance, and Government. His key expertise is assessing, establishing and managing cyber security programs to enable companies to stay resilient and vigilant against relevant cyber threats.

      As part of the Elevate team, he is responsible for supporting Verdane’s portfolio companies and investment teams on cybersecurity-related topics (e.g., sourcing, DD, advisory and building cybersecurity programs). He will also be responsible for supporting Verdane’s internal cyber security program to ensure it improves and stays effective.

      Thomas holds a MSc in Strategy, Organization and Leadership from Copenhagen Business School (CBS).

      Read more

      Welcome to the Verdane cybersecurity day

      Closing comments

      Priyam Awasthy
      Senior Security Specialist Amazon Web

      Priyam Awasthy is a Senior Security Specialist at Amazon Web Services with over 12 years of experience in technical and leadership roles across cybersecurity. A recognized expert in cloud and AI security, Priyam has guided global organizations through secure digital transformation journeys. Drawing from extensive experience, Priyam helps customers implement cloud and AI technologies while ensuring robust security and responsible innovation.

      Read more

      Generative AI: How to secure it, how to use it, and how to protect from it

      Koen van Blijderveen
      Principal Security Specialist Security Solutions Architect Amazon Web Services

      Koen van Blijderveen is a Principal Security Specialist Security Solutions Architect at Amazon Web Services with over 15 years of Enterprise IT experience in roles ranging from security specialist to IT manager. Koen helps customers meet or exceed their business goals in the cloud, and cultivate a culture of security, without compromising their security posture.

      Read more

      Generative AI: How to secure it, how to use it, and how to protect from it

      PRACTICALITIES

      Date: Thursday, May 15, 2025

      Place: Hotel At Six, Brunkebergstorg, Stockholm 

      Preferential booking code:  NHRCORP10
      NB: Guests are asked to arrange their own flights and accommodation; costs are borne by each attending company.

      Questions: events@verdane.com

      Organised by

      Verdane
      events@verdane.com

      The preferred growth partner to tech-enabled and sustainable growth companies in Europe.