Session

Vulnerability Management in the Age of AI

Vulnerability Management just got even harder to do. An avalanche of AI-assisted attackers, combined with enormous waves of security updates, makes it even more challenging than it already was. As defenders, we know that there was security debt in keeping up with all the security updates, vulnerabilities, and defensive actions that we could take. Before AI, defenders were mostly able to keep up with patching. But now the security debt is due, and many of the defenders have trouble keeping up. Jeroen will present his ideas on efficiently dealing with the firehose of vulnerability information. We can finally let go of the CVSS score, focus on the technical and organisational aspects of vulnerabilities, with a way to lure the hidden IT systems out of the shadows.

About the speaker

Jeroen van der Ham-de Vos

Jeroen van der Ham-de Vos

Associate Professor at University of Twente
Jeroen van der Ham-de Vos is an associate professor at the University of Twente in the DACS group. He is intrigued by the concept of cybersecurity vulnerabilities, and especially the socio-technical angle of the problem-space around vulnerabilities. This can range from topics like coordinated vulnerability disclosure policies, vulnerability management in organisations, to ethics of cybersecurity and computer science in general.
Read more …
Copyright © 2026
 
Swiss Cyber Storm
Hosting graciously provided for free by Nine