Conference Description
Key Takeaways
- Two-day cybersecurity conference addressing agentic AI threats, supply chain vulnerabilities, and geopolitical cyber conflict
- Designed for security leaders and technical practitioners in manufacturing, energy, healthcare, and technology sectors
- Strong emphasis on Zero Trust architecture, critical infrastructure protection, and operational resilience
- Features expert-led sessions, panels, and networking opportunities with more than 350 attendees expected
- Addresses practical challenges of AI governance, legacy system modernisation, and third-party risk management
Introduction
The 2026 Secure Carolinas Conference brings together cybersecurity professionals to examine the convergence of artificial intelligence, geopolitical tensions, and increasingly complex supply chain dependencies that now define the threat landscape. Hosted by AegisX in Greenville, South Carolina, the event targets security leaders and technical practitioners working in critical infrastructure and regulated industries who must defend interconnected environments against rapidly evolving attack methods. With agentic AI systems capable of autonomous decision-making now being weaponised by threat actors, and nation-state cyber operations intensifying globally, the conference arrives at a moment when organisations face unprecedented pressure to rethink their defensive strategies.
About This Event
The conference takes place at the Roam Center in Greenville and follows a multi-track format combining keynote presentations, panel discussions, technical sessions, and hands-on workshops. More than 350 cybersecurity professionals are expected to attend, with approximately 70 percent representing organisations with over 1,000 employees. The programme balances executive-level strategic content with technically focused sessions aimed at engineers, architects, and analysts. Networking opportunities include structured breaks, an awards ceremony, and a rooftop reception. More than 20 exhibitors will be present, including Arctic Wolf, Microsoft, Cobalt.io, Torq, ThreatLocker, IBM, and AWS.
Agentic AI and the Shifting Threat Landscape
A central theme of the conference is the emergence of agentic AI as both a defensive tool and an attack vector. Unlike earlier generations of machine learning systems that required human oversight, agentic AI can autonomously plan, execute, and adapt its actions. For defenders, this creates opportunities for self-healing systems and automated incident response. For adversaries, it enables attack automation at speeds and scales that overwhelm traditional security operations. Sessions will explore how organisations can deploy AI-driven defences while establishing governance frameworks that mitigate the operational risks of autonomous systems.
The programme also addresses practical applications of technologies such as Retrieval-Augmented Generation and Microsoft Purview for data security, alongside discussions of SOC automation and AI integration within existing security architectures.
Supply Chain Risk and Third-Party Dependencies
Supply chain vulnerabilities have become a persistent concern following high-profile incidents that demonstrated how a single compromised vendor can cascade across thousands of downstream organisations. The conference dedicates significant attention to third-party risk management, vendor assessment methodologies, and the challenge of maintaining visibility across complex supplier ecosystems. For organisations in manufacturing, energy, and healthcare, where operational technology environments often depend on legacy systems and specialised vendors, these discussions carry particular relevance.
Zero Trust and Critical Infrastructure Protection
Zero Trust security models feature prominently throughout the programme, reflecting the architecture’s growing adoption as organisations move away from perimeter-based defences. Sessions will examine implementation challenges specific to operational technology environments, where network segmentation and identity verification must accommodate industrial control systems that were never designed with modern security requirements in mind. The intersection of IT and OT security presents unique difficulties, particularly when legacy modernisation must proceed without disrupting critical operations.
Geopolitical Context and Nation-State Threats
The current geopolitical environment has elevated cyber operations to a primary instrument of state power, with critical infrastructure increasingly targeted by nation-state actors. The conference addresses how security teams can incorporate threat intelligence about geopolitical developments into their defensive planning, and how regional collaboration between public and private sector organisations can strengthen collective resilience.
Who Should Attend
The conference is designed for CISOs, security directors, and technical leaders responsible for enterprise and critical infrastructure security. Engineers, architects, and analysts working on cloud-native platforms, Kubernetes, DevOps, and security automation will find technically focused sessions relevant to their work. Risk, compliance, and governance professionals navigating AI adoption and regulatory requirements will benefit from discussions of AI governance and operational risk quantification. The event also serves IT and OT managers in regulated industries seeking practical strategies for securing converged environments.
Building Organisational Resilience
Beyond technical controls, the conference emphasises the human factors that determine whether organisations can withstand and recover from cyber incidents. Workforce development, security culture, and the ability to communicate cyber risk in business terms all receive attention. For security leaders who must justify investments and align security programmes with organisational objectives, sessions on risk quantification and business resilience offer frameworks for translating technical concerns into strategic priorities.

