Securing AI Agents: Maximize ROI, Minimize Risk @OWASPGLOBAL
Securing AI Agents: Maximize ROI, Minimize Risk  @OWASPGLOBAL
Uploaded December 2025 | Updated September 2026, 1 week ago
The perception of the AI agent threat landscape vary widely from little concern to panic. The truth is somewhere in the middle.

To illustrate what is really new vs standard cybersecurity hygiene. We will compare the AI agent threat modeling framework MAESTRO to a modified version of STRIDE.

Michael Novack
Alceberg
Technical Product Manager & Customer Success Engineer

๐—ข๐˜ƒ๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„
I am a builder at heart. I started as a software engineer building applications and over time picked up new skills like cyber security, communication and leadership to build robust cyber security programs.

๐—–๐˜‚๐—ฟ๐—ฟ๐—ฒ๐—ป๐˜ ๐—–๐—ต๐—ฎ๐—ฝ๐˜๐—ฒ๐—ฟ
At AIceberg we are bringing AI Explainability to a different level, which will enable companies to secure their AI applications in a way they understand.

I will be helping potential and future customers understand this value in their unique context, and then bring that insight to shape the company's road map.

๐—ง๐—ฒ๐—ฐ๐—ต ๐—š๐—ฎ๐—บ๐—ฒ๐˜€ : ๐—ฆ๐—ถ๐—ฑ๐—ฒ ๐—ฃ๐—ฟ๐—ผ๐—ท๐—ฒ๐—ฐ๐˜
I am developing a series of card and board games that break down the complex topics in technology into approachable interactive learning experiences for a non-technical audience.

Using a fun first approach is a memorable way to deeply understand topics. Through play people with different levels of expertise can engage with the topic on an even playing field. This can create a community of learners from diverse backgrounds.

๐—ก๐—ฃ๐—ผ๐˜„๐—ฒ๐—ฟ : ๐—š๐—ถ๐˜ƒ๐—ถ๐—ป๐—ด ๐—•๐—ฎ๐—ฐ๐—ธ
They provides IT, cloud and cybersecurity job training to help those that need the help make a career transition.

I volunteer career coaching and guest lecture for in their security program from time to time.
linkedin.com/in/michael-novack

Managed by the OWASPยฎ Foundation
owasp.org
Securing AI Agents: Maximize ROI, Minimize RiskOWASP Finance - Slide Deck Summary May 2026OWASP Global Board of Directors Meeting - April 2025The Art of Cybersecurity Mastery: From Entry-Level to Staff+Self-Discovering API Key Permissions and Resources - Joseph Leon, Dylan AyreyOWASP IoT Security Testing Guide (ISTG) - Aaron GuzmanFixing My Fixing Talk: What We Got Wrong (and Right) About AI Auto-RemediationOWASP Global AppSec EU 2025 BarcelonaGlobal AppSec Dublin: Passwordless Future: Using WebAuthn And Passkeys In Practice - Clemens HรผbnerInfoSecMap x OWASP CollaborationThe Most Common AppSec Failures in Fortune 500 Companies and BeyondAutomatic application hardening by leveraging container runtime behavior analysis - Amit Schendel
OWASP Foundation |

Securing AI Agents: Maximize ROI, Minimize Risk

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER