Navigating the OWASP GenAI Landscape
Details
Generative AI is rapidly changing the way we build, deploy, and interact with software, but securing these systems requires more than traditional application security practices.
In this session, Callian Berends, will take a practical tour through the OWASP GenAI Security Project and its growing ecosystem of security guidance, frameworks, tools, testing methodologies, and governance resources.
Rather than focusing on a single OWASP publication, this talk will explore how the different projects and resources fit together and how security practitioners can use them throughout the AI security lifecycle.
The session will cover four key areas:
🔹 Core Guidance & Frameworks
Understanding resources such as the OWASP GenAI LLM Top 10, security guidance, verification approaches, and emerging guidance for agentic AI.
🔹 Tools & Automation
Exploring GenAI security testing, red teaming, evaluation, benchmarks, and the growing ecosystem of solutions available to security teams.
🔹 Best Practices & Resources
A practical look at the knowledge bases, cheat sheets, research, community resources, and other materials available to help practitioners build their GenAI security knowledge.
🔹 Governance & Trust
Looking beyond vulnerabilities to explore AI governance, privacy, security risk management, trust, safety, and responsible adoption.
The talk will also connect these resources to real-world GenAI security scenarios, including prompt injection, data exposure, RAG security, agentic workflows, excessive agency, and AI supply-chain risks.
Key Takeaways
- Understand the OWASP GenAI Security Project ecosystem
- Know which OWASP resources to use at different stages of the AI security lifecycle
- Understand the difference between GenAI security guidance, testing, red teaming and governance
- Discover practical resources for getting started with AI security
- Learn how OWASP guidance can complement existing AppSec and DevSecOps practices
- Leave with a practical roadmap for continuing your GenAI security journey
Whether you work in Application Security, DevSecOps, Cloud Security, Red Teaming, Software Engineering, Governance, or AI Security, this session will provide a practical introduction to the resources available to help you navigate the rapidly evolving GenAI security landscape.
🎤 Guest Speaker: Callian Berends
📅 Date: 3 October 2026
🤝 Registration & Networking: 10:00 am - 10:50 am
⏰ Event Start: 11:00 am
🏁 Event End: 13:00 pm
🍽️ Lunch & Networking: 13:00 pm – 14:00 pm
📍 Location: AWS Skills Center, Cape Town
⚠️ Attendee Limit: 60
🎯 Who Should Attend: Security professionals, developers, AppSec and DevSecOps practitioners, cloud engineers, AI/ML professionals, and anyone interested in securing Generative AI systems.
Explore the OWASP GenAI Security Project:
genai.owasp.org
Join the AI Security Engineers, Cape Town community:
AI Security Engineers – Cape Town, ZA

