Developersummit
  • HOME
  • SPEAKERS
  • SESSIONS
  • BUY TICKETS
  • CONTACT
saltmarch

GIDS news media, articles, insights and virtual events educate and illuminate its audiences so they can be fully prepared to deal with the new realities at work and in their professions.

Saltmarch On-Demand
Media

Our Experts

Videos On Demand

Insights

Call for Papers

Connect

About Us

Privacy Policy

Terms & Conditions

Code of Conduct

Contact Us

Subscribe to Developersummit

Get the latest event updates, and insights from today's leading voices.

© 2026-2027 Saltmarch. All rights reserved.

AI Security for Developers and Practitioners
RegisterTwitterLinkedInFacebook

< session />

AI Security for Developers and Practitioners

Thu, December 10Trust, Security & GovernanceAI-Native Applications & Product Systems

In the past, software security focused primarily on securing code. AI systems introduce a different challenge: inputs can influence model behaviour in ways that affect decisions, actions, and access to information. A few lines of text hidden in an email, web page, or retrieved document can redirect a model, expose data, or influence the tools it uses.

This session begins with a review of real AI security incidents and examines where attacks occur in modern AI systems, including prompts and context, RAG pipelines, agents, and tools accessed through MCP. We will then walk through each layer of the stack and pair common attack patterns with practical, developer-focused defense-in-depth strategies.

Attendees will explore approaches such as handling untrusted retrieved content, placing guardrails around model interactions, applying least-privilege access to tools, and incorporating observability and red-teaming practices. The session is grounded in the OWASP LLM Top 10 and MITRE ATLAS frameworks and focuses on building a containment-first approach to AI security. Participants will leave with a practical understanding of how to reduce the impact of compromised prompts, tools, or identities within AI systems.

What You Will Learn:

  • Common attack paths across prompts and context, RAG systems, agents, and MCP-connected tools
  • Practical defense-in-depth strategies including guardrails, least-privilege tool access, observability, and red-teaming
  • How to apply concepts from the OWASP LLM Top 10 and MITRE ATLAS to AI systems

Who Should Attend:

  • Software engineers
  • AI engineers
  • Platform engineers
  • Security engineers
  • Application security practitioners
  • Technical leads
  • Architects building AI-enabled systems
  • Teams working with RAG, agents, or MCP-connected tools

< speaker_info />

About the speaker

Brent Laster

Brent Laster

Author & AI Software Engineering Educator

Brent Laster is a global trainer, author, and speaker on open-source technologies, as well as an experienced developer, manager, and director. He is also the founder and president of Tech Skills Transformations, LLC – a company dedicated to making technology understandable and usable. Throughout his career in software development and management, Brent has always made time to learn and develop both technical and leadership skills and share them with others. He believes that regardless of the topic or technology, there’s no substitute for the excitement and sense of potential that come from providing others with the knowledge they need to accomplish their goals.

Related Talks

The Enterprise AI Security Blueprint: Guardrails, Governance & Architecture That Scales

Wed, December 9

The Enterprise AI Security Blueprint: Guardrails, Governance & Architecture That Scales

Brent Laster
The Trust Ladder: How Agentic Systems Earn the Right to Act

Wed, December 9

The Trust Ladder: How Agentic Systems Earn the Right to Act

Russ Miles
The Padlock Problem: Governance as Architecture, Not Monitoring

Wed, December 9

The Padlock Problem: Governance as Architecture, Not Monitoring

Corbett Wadingham