BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//Virginia Cyber Security Partnership (VCSP) - ECPv6.18.0//NONSGML v1.0//EN
CALSCALE:GREGORIAN
METHOD:PUBLISH
X-ORIGINAL-URL:https://vacsp.com
X-WR-CALDESC:Events for Virginia Cyber Security Partnership (VCSP)
REFRESH-INTERVAL;VALUE=DURATION:PT1H
X-Robots-Tag:noindex
X-PUBLISHED-TTL:PT1H
BEGIN:VTIMEZONE
TZID:America/New_York
BEGIN:DAYLIGHT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
TZNAME:EDT
DTSTART:20250309T070000
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
TZNAME:EST
DTSTART:20251102T060000
END:STANDARD
BEGIN:DAYLIGHT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
TZNAME:EDT
DTSTART:20260308T070000
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
TZNAME:EST
DTSTART:20261101T060000
END:STANDARD
BEGIN:DAYLIGHT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
TZNAME:EDT
DTSTART:20270314T070000
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
TZNAME:EST
DTSTART:20271107T060000
END:STANDARD
END:VTIMEZONE
BEGIN:VEVENT
DTSTART;TZID=America/New_York:20260917T120000
DTEND;TZID=America/New_York:20260917T130000
DTSTAMP:20260903T131826Z
CREATED:20260903T131826Z
LAST-MODIFIED:20260903T131826Z
UID:4947-1789646400-1789650000@vacsp.com
SUMMARY:VCSP Member Meeting - Vulnerability Management in the Age of AI | September 2026 Webinar
DESCRIPTION:**Vulnerability Management in the Age of AI** \nVulnerability management was designed for software written by people\, shipped on a schedule\, and tracked in a spreadsheet. That assumption no longer holds. Frontier models now discover flaws\, write working exploits\, and do it at a speed and volume no triage queue was built to absorb. The same models can read a codebase\, propose a fix\, and open the pull request\, which raises a harder question – how much remediation are you willing to hand over\, and what breaks when you do? Add agents and machine identities that no CVE feed covers\, and the old model stops working. This session looks at what vulnerability management should become when both attack and repair run at machine speed in this age of Artificial Intelligence (AI). \nSpeaker bio: \nMegan Elliot | Director\, Cloud Security Engineering; Elliot Security Intelligence Consulting \nChandan Reddy Bokka is a Senior Manager in Deloitte Risk and Financial Advisory. He has spent 12 years securing digital identity and cloud infrastructure for public sector and enterprise clients. He built the first and largest FIDO passwordless system in the U.S. public sector\, a 2024 national award finalist\, and directed an identity modernization program for one of the largest States. He also has extensive experience in vulnerability & risk management for cloud-native environments\, threat modeling before production\, CVSS scoring\, SBOM supply chain checks in the build pipeline\, and an AI-driven DevSecOps pipeline that cut mean time to detect. His current work covers AI agents\, non-human identity\, and the move to post-quantum cryptography. CISSP and CCSP certified\, with MIT xPRO training in quantum computing.
URL:https://vacsp.com/event/vcsp-member-meeting-vulnerability-management-in-the-age-of-ai-september-2026-webinar/
END:VEVENT
BEGIN:VEVENT
DTSTART;TZID=America/New_York:20261022T120000
DTEND;TZID=America/New_York:20261022T130000
DTSTAMP:20261006T195853Z
CREATED:20261006T165848Z
LAST-MODIFIED:20261006T195853Z
UID:4954-1792670400-1792674000@vacsp.com
SUMMARY:VCSP Member Meeting - 10 Properties of Secure Open-Source Software | October 2026 Webinar
DESCRIPTION:  \n**10 Properties of Secure Open-Source Software** \nWith over 98% of companies using open-source software when they develop their systems and applications\, software supply chain security has become a crucial concern. Recent high-profile attacks such as the University of Minnesota researchers injecting malicious code into the Linux Kernel\, the Log4Shell exploit affecting Log4j\, and the PyPI phishing campaign (among others) underscore the growing risk to anyone who uses or develops software. \nAs a result\, the US government has issued several executive orders and guidelines to improve software assurance and supply chain security. There are more mandates and guidelines to come. Which begs the question\, how do we protect our software supply chain in a world where open-source software is developed by unknown contributors from all over the globe? \nAfter all\, can we really trust the software we use if we can’t trust the developers who wrote it? \nThe answer\, of course\, is no. And\, our training session\, “10 Properties of Secure Open-Source Software\,” aims to address this question and provide practical guidance for securing your software supply chain. By attending this training\, you will learn the properties that contribute to secure open-source software\, how to detect bad actors\, how to prevent the injection of malicious code\, and how to measure the health and status of the package. While no solution is foolproof\, adhering to these principles will give you a fighting chance against supply chain exploits\, enabling you to (finally) trust your applications and systems and deploy them with confidence. \nSpeaker bio: \nMichael Mehlberg | CEO\, Dark Sky Technology \nMichael Mehlberg is the CEO of Dark Sky Technology with over 20 years of experience in systems security\, cryptography\, and embedded software protection. He holds a Computer Science degree from Purdue University\, co-authored a patent on AI-driven software security\, and earned certifications in software project management\, sales\, and marketing. Michael leads advancements in software supply chain security and has worked on high-stakes national security projects\, technical leadership in cryptographic security\, and growing tech businesses into multi-million-dollar enterprises. He’s held executive roles in engineering\, sales\, and marketing\, and served on the Board of Directors at Star Lab\, where he played a key role in its acquisition and expansion into the defense sector. With deep expertise in reverse engineering\, anti-tamper security\, and system vulnerability analysis\, he’s led research in automated software protection\, AI for cybersecurity\, and advanced threat detection. His insights have been featured in EE Times\, Forbes\, RTC Magazine\, Authority Magazine\, and Intelligent Aerospace\, and he’s appeared on podcasts including Cybercrime Magazine\, Intel’s Embracing Digital Transformation\, and Via Satellite. Michael lives in the Washington D.C. area with his wife and three children\, and enjoys reading\, photography\, martial arts\, technology\, and RV camping.
URL:https://vacsp.com/event/vcsp-member-meeting-10-properties-of-secure-open-source-software-october-2026-webinar/
END:VEVENT
END:VCALENDAR