Talk + Q&A
Build a shared understanding.For leadership teams, communities and university audiences. Concrete cases explained without requiring programming experience.
Questions to bring back to the team and selected reading.
Companies · Governments · Universities
Cybersecurity and AI agent training for the people making everyday decisions.
Talks, practical workshops and tailored programs. Learn what to delegate, which data to protect and how to check an agent’s work before it affects your organization.

Three audiences. Different needs.
Choose an audience to explore the topics, an example exercise and the materials we can prepare.
Business leaders, operations, engineering and security teams.
Work through a task your team recognizes. Decide what the agent can do, what needs review and how to check the result.
A session example · Fictitious data
A support agent prepares a customer refund.
A customer message tells it to skip the refund limit.
Separate drafting from issuing a refund. Require approval in the system that processes the payment.
A workflow with permission boundaries, approval points and test cases.
Public-sector leaders, service teams, procurement and IT.
Connect everyday cyber hygiene with AI use: account access, sensitive records, supplier claims and decisions that need a responsible person.
A session example · Fictitious data
An assistant compares proposals for a public project.
An attachment instructs it to send the proposals to an external site.
Treat the attachment as evidence to read. Restrict external transfers and verify the comparison against its sources.
A data-handling checklist and questions to test an AI supplier’s claims.
Students, faculty, research groups and university outreach teams.
Start with an accessible talk, then explore a practical exercise for the audience’s level. Technical labs can examine tools, prompt injection and evidence.
A session example · Fictitious data
A student builds an assistant that searches course material.
One document asks the assistant to reveal a fictitious API key.
Inspect the request, restrict access to the key and record whether the attempted read was blocked.
An annotated exercise, discussion questions and a reading list.
Choose the format
For leadership teams, communities and university audiences. Concrete cases explained without requiring programming experience.
Questions to bring back to the team and selected reading.
A group works with fictitious data, reviews an output and checks permissions. Technical prerequisites are agreed in advance.
A documented exercise, results and controls still to address.
Connected sessions for business, technology and security roles, with learning goals and exercises tailored to each group.
Responsibilities, evaluation criteria and next steps.
Remote sessions in Spanish for Latin America. In-person availability, dates, duration and pricing are agreed in the proposal.
What we teach
An agent can act through connected systems. Training needs to cover the accounts, data and permissions behind those actions, as well as the quality of its answers.
Use separate access for a task, protect credentials and remove permissions that are no longer needed.
Can this assistant read the support records without changing customer accounts?
Recognize when a document or tool response tries to redirect the agent. Decide which information may leave the organization.
Does this attachment contain facts to summarize—or instructions it should never follow?
Review the source and permissions of a tool, MCP server or skill, then check what changes after an update.
Did a new version add a network destination or request more access?
Check outputs against evidence, rehearse escalation and test recovery in a controlled environment.
Who can stop this workflow, and have we tested how to restore the affected data?
The work behind the teaching
Oktsec connects security research with practical controls for AI agents. Sessions use that work to explain how to inspect a tool, test a permission and preserve useful evidence.
Use Aguara to discuss suspicious instructions and configuration risks in agent tools and skills. Review the findings and the limits of an automated scan.
Explore our open-source workUse a prepared Oktsec example to compare a permitted action with a denied one at a configured control point. Review what the resulting record actually proves.
See how Control works
Founder of Oktsec · 20 years in technology, 12 as CTO.
Background and public security researchConnections across Latin America
Conversations with companies and institutions in Barranquilla and Panama inform our cybersecurity and AI agent training proposals.
How we prepare
Identify roles, experience and one relevant task. Separate groups when they need different levels of detail.
Work through a prepared case. Review the result, challenge an unsafe instruction and check the permissions.
Record what participants demonstrated, what still needs work and who can take it forward. Agree on any follow-up in the proposal.
Before we meet
Companies and startups, government and public institutions, and universities. We separate introductory sessions for nontechnical audiences from workshops that require coding or integration experience.
Yes. A talk with questions can help a leadership team, faculty or student audience understand the risks and decide what to learn next. A practical workshop or a longer program has a separate agreed scope.
The offering is designed for remote sessions in Spanish across Latin America. Tell us your location and audience to discuss in-person availability. Language, dates, duration, participant numbers and pricing are confirmed in the proposal.
No subscription is required. Exercises use fictitious or prepared data. We may demonstrate Oktsec and Aguara, but the learning applies to the tools your organization uses. Any use of your environment requires an agreed scope and access arrangements.
The proposal defines the sessions, exercises and materials. Training does not certify compliance or establish that a production system is secure. An assessment, penetration test or implementation is scoped separately.
Plan a talk, workshop or program
Tell us who will participate and which decisions they need to make. We will help define a suitable format, learning goals and scope.
No platform subscription required. Sessions, deliverables and pricing are agreed before the program starts.
info@oktsec.com