Official Cybersecurity Summit Boston 2026: Agents Arrive on the Vendor Floor

Table of Contents

Event

Field Value
Event The Official Cybersecurity Summit: Boston, 12th edition
Organizer CyberRisk Alliance
Date Thursday, 8 October 2026, 08:00–18:00
Venue The Westin Copley Place, 10 Huntington Ave, Boston MA 02116
Format Single track, ballroom; no parallel sessions
Cost 250 USD standard; a government rate exists, amount unpublished
Audience Screened: practitioners with purchasing influence; students, educators, the unemployed and sales or marketing roles excluded
Credits CPE/CEU certificate for full-day attendance

Two disambiguations, both easy to get wrong:

  • CyberRisk Alliance runs two Boston editions in 2026, on May 6 and October 8, at the same venue. This is the October one.
  • It is not the Minneapolis cybersecuritysummit.org, not the Massachusetts Public Sector Cybersecurity Summit, and not FutureCon Boston.

The free-admission code

The meetup slide advertised CSS26-MASSCC for free admission by October 8. The code is publicly documented on MassCyberCenter's events page, and MASSCC is MassCyberCenter itself, a division of the Massachusetts Technology Collaborative and a summit partner. CSS26-<PARTNER> is the organizer's standard partner-comp pattern; other live instances include CSS26-OS and CSS26-WICT.

Verified on 2026-09-17 by registering: the code produces a Standard Attendee order at 0.00 USD, payment status "No Fees", registration Confirmed. Eligibility screening passed without challenge.

The verification is dated and does not generalise forward. It was used 21 days before the advertised "by Oct. 8" deadline, and a partner comp is the kind of thing that runs to a quiet cap rather than to its stated date. Anyone trying it in October should expect to pay and be pleasantly surprised, not the reverse.

Until registering, this was unverifiable from outside, because the page renders identically for the real code and for a deliberately invalid control code; validation happens only after the form is submitted, which is either an absence of client-side validation or a deliberate refusal to confirm which partner codes exist. The published offer terms are non-transferable, new registrations only, no retroactive use, subject to eligibility review.

Confirmed is not the same as admitted

The eligibility terms are worth reading after registering rather than before, because they apply afterwards. Admission is restricted to active practitioners responsible for defending an enterprise; students, interns, educators, anyone not currently employed in IT, and anyone in a sales or marketing role are excluded. All registrations are subject to review, and the terms add that if the organizers cannot verify an identity from what was given at registration, attendance may be cancelled.

The sentence that matters for a comp registration: "these qualifications pertain to all attendees, including members of our partner organizations." A partner code buys the fee, not the seat. A confirmed registration is therefore a claim on a seat pending review, not an admission ticket, and the review happens on their schedule rather than at the door.

The organizers' own framing

The summit page groups the day under three key issues, which is a more honest guide to what will actually be discussed than the session titles: AI and emerging-tech risk, supply chain and third-party and identity attack surface, and resilience as a business-alignment problem.

Two things stand out in that copy. Identity is described as "the new security perimeter" and zero trust appears as an access-governance strategy, both inside the supply-chain theme rather than as sessions of their own, which matches the agenda: no talk is titled for either. And the AI theme promises to "separate hype from reality" across generative models, autonomous security systems and deepfake detection, which is a claim to hold them to given that nine of fourteen slots are vendors.

Featured speakers are Deidre Diamond (CyberSN), Randy Rose (Center for Internet Security) and R. Mike Tetreault (CISA), so the non-vendor content is led by a staffing founder, a threat-intelligence operator and a federal advisor.

Sessions that bear on work here

Three, all vendor-presented, which is the interesting part: agent security has reached the stage where it is sold rather than discussed.

Measuring risk when your workforce includes agents (12:15, Mimecast)

The closest thing on the agenda to agent identity and authorization. Its abstract is the argument in one line: agents now hold credentials, reach systems, and decide on behalf of the business, so apply one measurement approach to human and agent behaviour alike.

Whether a single measure over both is right is exactly the question trust boundaries as a typed category pushes against: a delegated agent identity and a human identity differ in what may be inferred when each misbehaves.

From vibe coding to wire fraud (14:15, TrendAI)

The most technically specific slot on the agenda. Names indirect prompt injection, system prompt leakage, and Model Context Protocol abuse directly, and proposes a control plane enforcing before, during and after the model runs. Adjacent to elenctic vibe code review on the authorship side and to the egress-proxy thread on the enforcement side.

Mythos-Ready (10:10, Sonatype)

AI-accelerated vulnerability discovery and supply-chain component gating. Worth recording that the abstract is pegged to a model release, opening with the claim that the arrival of Anthropic Mythos "fundamentally altered the cyber threat landscape." That is the vendor's framing, not a finding, and the pegging of a security posture to a named model version is itself the thing to watch.

Shape of the programme

Of roughly fourteen content slots, nine are vendor presentations or "Innovation Spotlights." The non-vendor content is two keynotes (CISA opening, FBI closing) and three panels, of which two list fewer panelists than a panel implies, so the agenda is still filling in.

This is a vendor floor with a conference schedule attached, and worth attending on that basis rather than despite it: the useful signal is which agent-security claims are considered sellable to a CISO audience in October 2026, which is a different question from which are true.

Two panels touch the research threads without being about them: "AI and Emerging Tech at the 2026 Security Frontline" and "Securing the Extended Ecosystem: Supply Chains, Vendors, and Identities". Zero trust appears twice in marketing copy and in no session title.

Not verified

  • The government rate.
  • Full panelist rosters; four slots are published as bare vendor names.
  • Sponsor tiers: the page renders logos without machine-readable tiers.

Attending

Registered 2026-09-17. Everything above is the published programme; notes from the day go below after 8 October.