Asma Oualmakran

Back to the list of Speakers and Sessions

Asma Oualmakran , Toreon

Asma is a principal cybersecurity consultant passionate about securing systems and enhancing development practices. With expertise in code analysis and scanning technologies, she specializes in identifying vulnerabilities throughout the software development lifecycle. Asma has conducted research into leveraging generative AI for security improvements, exploring how artificial intelligence can enhance threat detection and automate vulnerability assessment. As a trusted advisor to development teams, she combines technical depth with practical strategies to help organizations build robust security into their development processes.


Training: Beyond Whiteboard Hacking: Master AI-Enhanced Threat Modeling

This intensive, hands-on training provides an immersive dive into practical threat modeling, refined over a decade of Black Hat delivery and grounded in 25 years of expertise. Avoiding a lecture-heavy format, 70% of the course is dedicated to real-world exercises and scenario-based learning, ensuring participants gain practical, immediately applicable skills.

The training is annually updated with the latest threat intelligence for 2025/2026, including crucial vulnerabilities in LLM and Agentic AI systems. Participants will work in teams on diverse case studies—from microservices and cloud systems to AI-driven chatbots and Agentic architectures—covering data flow diagramming, STRIDE analysis, attack tree construction, and applying GDPR risk patterns.

Key features include using MITRE ATT&CK for threat-informed defense and integrating threat modeling into DevOps/security-by-design workflows. A pre-training assessment ensures foundational readiness. Upon completion, passing an examination and a submitted threat model earns the "Certified Threat Modeling Practitioner" certificate, supported by continued access to a Threat Modeling Playbook and one year of online resources.