Saturday October 3, 2026 | Georgia Tech Hotel & Conference Center

BSides Atlanta brings together the practitioners actually doing the work, not just the vendors selling around it.
This year, risk3sixty is excited to be leading five sessions, covering everything from AI governance to MCP security to reverse-engineering a game cheat with an AI agent.
Stop by our table to talk GRC, offensive security, or what it actually takes to build a security career that lasts. Also on-site: Security Leader Networking Days: a grassroots community built by security leaders, for security leaders, with no vendor pitch attached. Come find the table, meet Christian, and hear about the SLND Fall Summit coming November 12.
Let's Connect At B-Sides
Event Highlights
-
5 sessions from risk3sixty practitioners: See the full lineup below
-
Meet risk3sixty / Armada: Our tables will be staffed all day. Come meet the team!
-
Security Leader Networking Day: Learn about our upcoming Fall Summit (Nov. 12)
-
A first look at our joint report with Digital Citizens Alliance on nation-state and terrorist broadcaster activity via IPTV
Security Leader Networking Days
Security Leader Networking Day is a community built by security leaders, for security leaders. No pitches, just people comparing notes. SLND runs four forums a year in small groups of twelve, working through real leadership challenges together.
If you're a security leader looking for a room full of peers instead of a room full of vendors, this is it.
Find the SLND table at BSides to learn more, or register for the Fall Summit.

JOINT RESEARCH REPORT
risk3sixty partnered with the Digital Citizens Alliance to investigate something most organizations aren't watching for: nation-state and terrorist-affiliated broadcasters distributing content through consumer IPTV services. The findings have already caught the attention of local and national media - WSB Atlanta picked up the story within days of release, with more coverage on the way.
This isn't theoretical. It's the kind of exposure risk3sixty's threat intelligence and exposure management work is built to find before someone else does. Stop by our table to discuss the report.
| Title | Summary | Speaker(s) |
|---|---|---|
| Reverse Engineering with AI: Dissecting a Modern Game Cheat | Using an agentic approach to reverse-engineer a real aimbot cheat, from detection models to a licensing system more obfuscated than the malware itself. | Steve Guris |
| MCP Security: The Audit You Didn't Know You Were Running | What building a production MCP server the right way exposed about authorization gaps already sitting in existing systems. | Zach Fey |
| More Than a Member: Our Experience Investing in Cybersecurity Affinity Communities | A framework for evaluating which security communities are worth real investment, built on two years inside WiCyS. | Grace Pfohl & Lindsey Nicholas |
| From Doer to Builder: Reinventing Yourself in an Industry That Never Sits Still | Why reinvention has to be a habit, not a one-time pivot, for security careers and the firms that build them.ble cell. | Jessica Andree |
| GRC in the Age of AI Never Sits Still | Folding AI governance into existing compliance programs — ISO 42001, ISO 23894, NIST AI RMF — rather than bolting on something new. | Grace Pfohl |
Meet the Presenters
Steve Guris
Threat Intelligence Lead
Steve leads threat intelligence at risk3sixty — cybercrime research, threat actor monitoring, and incident response across the full lifecycle, from pre-incident profiling to active investigation support. He's best known publicly for his work in gaming security, including expert declarations and jury trial testimony in federal litigation over commercial game cheats, and has spoken at GDC on gaming security topics.
Zach Fey
Staff Engineer, AI Platform
Zach owns the AI platform for a GRC SaaS product, where he built the MCP server infrastructure, semantic search, and RAG systems that put AI in front of production data. He's pursuing his MS in Computer Science at Georgia Tech and writes about applied AI engineering.
Grace Pfohl
AI Advisory Team Lead
Grace is a Senior Consultant on risk3sixty's ethOS Compliance Consulting team, leading AI governance, security, and privacy engagements. She's helped organizations achieve some of the earliest ISO/IEC 42001 certifications, holds BS and MS degrees in Computer Science from Georgia Tech, and is a certified ISO 42001 Lead Auditor and Implementer.
Jessica Andree
VP of People & Vibes
A former Army HR officer and West Point grad, Jessica leads people strategy at risk3sixty. She's built the company's high-performance culture around continuous learning and employee wellbeing since joining in 2020, with a simple philosophy: take care of your people, and they'll take care of the business.




