Speakers
Marijke Moolenaar
Marijke Moolenaar is a Security Expert at DTX with an unconventional path into cybersecurity. With her roots deeply embedded in literature and philosophy, she brings a unique, analytical perspective to the tech world. Before diving into security, she spent time in the ring as a competitive boxer. Today, she combines her philosophical mindset, tech skills, and fighting spirit to dissect complex security challenges and protect digital infrastructures from the ghosts in the machine.
Dominique Heuff
Dominique Heuff (1989) holds a Master's Degree in Russian Studies. Currently working as a senior security analyst at the SOC of SSC-ICT - a shared service provider for IT for the Dutch government - she aims to bridge her academic background with her professional experience to place cybersecurity developments in a broader context. This presentation is the result of that ambition.
Yianna Paris
Yianna Paris is an Australian-born security researcher now causing trouble as a Senior Offensive Security Consultant at Xebia in the Netherlands. She recently founded her training and research consultancy, Luda Hex. Her experience has spanned from deeply technical, high performing engineering companies to working for checkbox-compliance leadership. She breaks things professionally, from web apps, infrastructure, the architecture behind them, and increasingly the AI-powered systems everyone's bolting on without reading the manual. Her work spans penetration testing, secure coding, hardware and RF hacking, and the OSINT legwork of figuring out what an organisation actually runs versus what it thinks it runs (the two are rarely the same).
Dorota Kozlowska
Meet Dorota Kozlowska, known as 'Woman in Red,' a renowned penetration tester, social engineering and physical audit specialist. What she brings to the table is a unique blend of technical penetration testing skills, social engineering, hands-on physical security experience, and evolving Red Teaming capabilities. As a sought-after international keynote speaker on Offensive Security related topics, she has captivated audiences at the most prominent events, and biggest stages. Her passion for sharing knowledge and expertise has been recognized with CEFCYS Cyber Woman of Hope 2023 award, and her appearance on the '40 Under 40 in Cybersecurity 2023' list by Top Cyber News Magazine. In addition to her speaking engagements, she also hosts popular Podcasts "Ethical Hacking, Guests, and Wholesomeness," and “Inspiring Ladies of Cyber” where she delves into the world of cybersecurity with guests from the industry.
Eden Stroet
Eden Stroet is a security researcher and SOC analyst at Hadrian Security in Amsterdam, where they focus on vulnerability research, automated scanning, and pentesting. They are a volunteer with the Dutch Institute for Vulnerability Disclosure (DIVD) and an active bug bounty hunter on HackerOne and Intigriti. Eden runs two online cyber security communities called Digital Overdose and Hard Way Hacking and Coding. When they're not hacking, they're on an aerial hoop or playing videogames with friends.
An van leuven
An van Leuven is a cybersecurity consultant based in Belgium who has never quite managed to stay on one side of the fence. Her work spans incident response, forensics, threat modelling, cyberdefense projects, and penetration testing, which means she spend roughly equal time thinking about how attacks happen and how organisations survive them. She spoke at Annacon in 2025 and became genuinely obsessed with what AI actually does to that balance, from both ends of the kill chain.
Ieva Salnaite
Ieva grew up in Lithuania, where the line between an attack and narrative manipulation was the backdrop of daily life. That early exposure became an academic focus (a master's in International Security at Sciences Po Paris, with Ukraine as her case study) and, later, a profession. She has worked on OT Security and operational resilience projects in Switzerland and is now at Accenture Netherlands, helping clients improve their capabilities in cyber recovery, Major Incident Management, and DORA. Much of that work involves rebuilding crisis management structures to survive contact with a real incident. She studies how attackers pair technical and narrative attacks, arguing most crisis plans still aren't prepared for it.
Kaja Möller
My name is Kaja Möller, next to my fulltime job at the government, I am the founder of CyberMaster, a fully-immersive cybercrisis simulation that puts teams under the kind of pressure no slide deck can.
The foundation for CyberMaster was laid in my background in criminology, law and technology and cybercrime, cybersecurity and riskmanagement, which is where I learned that cyber problems are rarely just technical: they're about people.
My work sits at the intersection of privacy, cybersecurity and the human factor and after guiding enough crisis teams I am convinced people are our strongest link in cybersecurity, NOT the weakest!
Garance
Hey, I am Garance, I work at Depi in the offensive security research team, and I am specialising in software supply chain security. I love understanding and learning random things in the world around me and meeting new people. If you want to chat just bring me food or drinks and I'll welcome you with a big smile :)).
Kim van Wilgen
Kim van Wilgen is CTO at Schuberg Philis and a trusted advisor to executive teams and technology leaders responsible for mission-critical digital environments. She specializes in operational resilience, cybersecurity, AI adoption, and digital sovereignty. Kim helps organizations design technology landscapes that remain adaptable in the face of cyber threats, geopolitical uncertainty, and rapid technological change. She is known for translating complex technical challenges into clear strategic choices for business leaders. Her work bridges technology, leadership, and business continuity in an increasingly digital world.
Becky Stacey
Becky is a Cyber Crime Intern at the West Midlands Regional Cyber Crime Unit in the UK and a Computer Science student at the University of Birmingham. Her work spans supporting cyber crime investigations, delivering cyber security training, and researching emerging cyber threats. Alongside this, she is involved in educational outreach and conference speaking to improve cyber awareness. She is also active in widening participation in the industry through leadership roles with CyberWomen@Birmingham and Leading Cyber Ladies Midlands.
Rosanne Pouw
Rosanne Pouw is Product Manager Awareness and Training at SURF. She helps Dutch research and education institutions increase security awareness with the Cybersave Yourself Toolkit. Her special talent is infusing cybersecurity awareness with optimism, creativity and a multidisciplinary approach.
Part of her role at SURF is stimulating the awareness community of professionals in higher education , sharing thoughts and ideas and developing materials together.
g0mb4ck
Hello everyone! This is Milena aka g0mb4ck :). I am a Hardware Security Researcher and I just started my journey in Keysight Device Security, formerly known as Riscure B.V.! My main focus is on fault injection, which is a way to test and break hardware security. My goal is to really understand how these attacks work so I can help design better defenses.
Monika Stewart
I am a data and AI consultant in the Netherlands, with around 10 years across data quality, machine learning and engineering. My current focus is AI safety and governance, including the EU AI Act, agentic AI risk and prompt injection. This talk's subject came from me combining my current work with an odd mix of interests: social engineering, a year of psychology and a university course in intelligence studies. On my blog ai.stewart.wtf I write about AI news and concerns about AI for business audiences, while keeping it grounded in science. This is my first talk, but you may have seen me as a visitor at the last EMF, WHY2025 or 39C3.
Ola Jankowska & Catharine de Jong
Ola is a Solution Architect with over twenty years of experience in designing and delivering software solutions. She works within the Dutch railway domain, focusing on building resilient systems for a critical infrastructure.
Catharine is an Information Security Officer with a focus on advising and assessment. She works within the Dutch railway domain as member of the ProRail cybersecurity team and reports to the CISO. She works as an advisor for multiple IT domains, where mission critical IT-assets are developed and maintained.
Get tickets
Thursday & Friday 29th & 30th of October 2026.
Lichtfabriek, Energieplein 73
2031 TC Haarlem, The Netherlands