Complimentary Session
OWASP finalized the OWASP Top 10 for Large Language Model Applications in September 2026, establishing the first formally recognized, community validated risk framework for LLM powered systems. This release followed the major December 2025 update to the traditional OWASP Top Ten, which introduced new categories, refined definitions, and a sharper focus on web application risks. Together, these updates reshape how auditors evaluate both AI driven and conventional applications. This session builds on the initial session offered by ISACA NJ on 8/27 and delivers a practical, risk driven walkthrough of the most critical vulnerabilities auditors must be prepared to identify and assess.
As modern web applications increasingly embed AI models and autonomous decision components, auditors must evaluate not only traditional issues but also AI specific risks such as model manipulation, insecure integrations, data poisoning paths, and unintended model behavior. This session equips participants to assess both classic and AI augmented applications, understand how AI shifts threat modeling, and identify the evidence required to validate secure design in today’s evolving landscape.
Countdown to the Event
- Days0
- Hours0
- Minutes0
- Seconds0
