X World 2026
25-26 AUGUST • NAARM | MELBOURNE
TUESDAY 25 AUG 2026
10:00am
WELCOME
10:15am - Special PresentationG.01/02
YES, AND: IMPROV, IT, AND THE PARTNERSHIP BETWEEN ADMINS AND USERS
Katie English, Jamf
IT is a demanding gig, and we're all expected to get more done with fewer resources year after year. It's easy to get stressed, and to get seriously annoyed every time you get yet another ticket from That One Helpless User.
(We all know the grumpy IT admin glowering at their desk, discouraging any who might seek their assistance. Sometimes we *are* that grumpy IT admin.)
But what if we reframed IT as a partnership? What if we learned to say "Yes, and" to our users and make them part of the team?
The "rules" of improv comedy don't just make for a good joke, they can also help you build rapport, solve problems, and hate your ticket backlog a little less.
This is not a technical topic; this talk is about finding affinity between admins and the users they support while we're all trying to get our jobs done.
About the presenter
Katie is a career Apple admin with experience ranging from technical support and professional services to product development and delivery, and has presented on tech topics around the globe. As Principal Product Manager at Jamf she focuses on customer value and workflow validation for new Apple management features. She occasionally dabbles in podcasting and has absurdly strong opinions about microphones.
11:00am G.01/02
YOUR NEW JUNIOR MACADMIN IS A BOT
Harrison Ravazzolo, Fleet Device Management
AI coding agents can now draft osquery policies, write remediation scripts, and open pull requests — all from a Slack message. This talk explores how IT teams can use tools like Kilo Code to accelerate the boring-but-critical work of endpoint security: detecting unwanted software, writing uninstall scripts across macOS, Windows, and Linux, and wiring it all together through GitOps. We’ll look at what these agents get right, where they stumble, and how to build a review workflow that lets your team move faster without shipping broken scripts to production.
About the presenter
Bio: Harrison Ravazzolo is a security, identity and client platform engineer formerly with Deputy and other companies in Silicon Valley. He is a chef & baker who does real gigs in real restaurants in San Francisco, CA. He is also a rock climber and is a huge fan of Yogi Bear (or maybe Yoga…) Harrison is currently a Solutions Consultant with Fleet Device Management.
11:00am G.03
DOES YOUR MAC FLEET NEED AN EDR? A FIELD GUIDE FOR MAC ADMINS
Victor Lyuboslavsky, Fleet Device Management
Sooner or later, your security team or your CISO will ask if your Macs need an EDR. You get a vendor demo, a price quote, and a slide deck full of acronyms. What you might not get is a clear answer to whether you actually need one, what an EDR does that your MDM, Santa, and osquery do not, and how to tell a strong EDR from a noisy one.
This session fills that gap. On macOS, an EDR is one or two system extensions watching process, file, and network events, with behavioral rules on top. We walk through what that gives you beyond an MDM compliance check or osquery scheduled query, where it overlaps with Santa, and how to read a feature list, whether commercial or open source. We then map the decision against real factors: organization size, regulatory environment (Essential 8 ML2 versus ML3), incident history, and what your existing tools already cover.
Attendees will leave able to answer three questions. Do we need an EDR? If yes, what should we ask the vendor? If no, what should we tighten first inside the tools we already run?
About the presenter
Victor Lyuboslavsky is a software engineering leader, author, and speaker with over 25 years of experience building products and leading teams. He has co-founded startups, held technical leadership roles at AMD, and now architects secure, scalable systems for enterprise IT at Fleet Device Management, covering fleets of macOS, iOS, and other major platforms. Victor's work bridges hands-on technical execution and strategic leadership. His talks draw on lessons from startups, open source communities, and creating an open source macOS EDR, with a focus on Apple platform security, hardware-backed identity, and endpoint telemetry.
11:40am G.01/02
MAKING AGENTS USEFUL FOR APPLE ADMINS
Sammy Myers
An agent can give you a very convincing answer and still not have done the job. For Apple admins, getting useful results is less about finding a magic prompt and more about setting the work up properly: a clear finish line, access to the right live context, sensible permissions, checkpoints, and evidence you can actually inspect.
This practical session looks at how to brief, supervise, redirect, and verify agents while tackling real administrative tasks. Personal-project experiments and clearly labelled workplace “what ifs” will cover Mac troubleshooting, OS update research, compliance-baseline assessment, change preparation, and safe maintenance. We’ll also break down what makes a reusable agent skill genuinely useful: when to use it, what it may access or change, how it handles failure, and what proof it must leave behind.
This is for Apple administrators and support practitioners, not just developers. Attendees will leave with a six-question task brief, a simple inspect–act–check loop, and practical patterns for deciding when an agent should proceed, ask for help, or stop.
About the presenter
Sammy is a Melbourne-based Apple platform practitioner and independent sloperator with hands-on experience across macOS administration, Jamf, automation and recently agentic development and workflows. Their recent projects explore how AI agents can move beyond clever answers and become genuinely useful collaborators for real tasks. They are particularly interested in the unglamorous bits: clear boundaries, useful failures, human approval at the right moments, and evidence that the work actually finished. They also spend far too much time turning repeated workflows into tools, skills, and automations so they do not have to solve the same problem twice.
11:40am G.03
STOP CLICKING AND START COMMITTING: A PULL-REQUEST WORKFLOW FOR DEVICE MANAGEMENT
Kitzy, Fleet
Device management is still mostly ClickOps. Config in a GUI, changes made by hand, no audit trail, no rollback, no way to answer "who changed this and why." The case for GitOps, version control, pull request review, and a single source of truth, has been clear for years. What's changed is the urgency.
AI is going to fundamentally change how devices are managed. Not eventually, it's already happening. The ergonomic barrier that made config-as-code feel like homework, knowing the schema, writing the YAML, getting the scoping right, is gone. AI coding agents can already turn a sentence of intent into a pull request against your MDM configuration. Teams that have GitOps discipline are positioned to move as each new capability lands. Teams with config in a GUI are going to be doing a migration while everyone else is already running.
This session covers why GitOps is the prerequisite for AI-accelerated device management, what that workflow looks like in practice, and what the job looks like when the authoring is handled and the review is what's left. Attendees will leave with a concrete path from ClickOps to a workflow that's ready for what's already here.
About the presenter
Kitzy is a Customer Solutions Architect at Fleet and co-founder of the Mac Admins Slack. They bring over 15 years of device management experience, including nearly a decade building the discipline at Fastly and prior work as a Professional Services Engineer at Jamf.
12:15pm
LUNCH
1:20pm G.01/02
MCP IS TEAM RADIO FOR IT
Weldon Dodd, Iru
Agentic AI is transforming IT and device management. MCP Servers are the interface between your IT tools and your AI provider or agent platform. We'll look at how MCP works, show examples of using agentic AI with device management, discuss integrating MCP servers across your IT stack, and point towards resources that can help you build your own MCP servers.
About the presenter
Weldon Dodd began his career running a campus Mac lab and NeXT lab at the University of California. He then went to wireless telecom just as digital networks and the Internet came to mobile. The next stage was automating large Apple deployments and running the Apple Authorized Training Center in Colorado. Weldon joined Kandji in early 2020 where he has built and led several teams, and now serves as a Distinguished Engineer.
2:00pm G.01/02
MANAGING WINDOWS ON A MAC? IT JUST GETS EASIER!
Raj Singh, Canva
The presentation is about Parallels and their new declarative configuration that simplifies Windows virtual machine setup on macs. Ensuring VMs are managed from the beginning, secure and ready to go with minimal setup required from the user. With declarative configuration, it allows for the enrollment package to be deployed to the Parallels console without bundling it with Windows and creating a golden image. I will be showcasing the previous instructions on how Parallels suggested we manage Windows VMs and enrol them into Intune, what new features have been introduced and how we use it to deploy Windows VMs that are ready to go and compliant within 30 minutes. Making it eaiser for IT Support and our team to manage as well as making it easier for the user to pickup and go.
About the presenter
Raj's IT journey started at the age of 3, when the first desktop arrived in his house as one of the only ways to watch a DVD. His career began at the Department of Education, where he wore all the hats across a mix of device scenarios, building a deep understanding of Windows management while starting his journey into macOS. Now a Systems Engineer at Canva, he works in a fleet that's predominantly Mac, keeping Windows a first-class citizen whether on physical devices or running as VMs on Apple silicon, and making it easy to pick up whenever it's required.
2:00pm G.03
STOP LOSING A DAY TO SETUP
James Smith, Commonwealth Bank of Australia
Every terminal sessions drifts. Tool versions creep apart, the setup steps live in someone's head, and a new starter can lose days before anything runs.
This talk shows how you can optimise that local environment, check some of it into a repo, while retaining customisation on just your machine. I'll cover pinning tool versions with mise, turning common jobs into shared tasks anyone can run, and keeping secrets off disk with fnox. The examples are from real admin work: mise tasks that wrap Terraform commands to deploy Jamf config, with credentials that never land on the filesystem.
You'll leave with patterns you can drop straight into your own team, so everyone gets the same setup every time.
About the presenter
James Smith is a Principal Engineer at Commonwealth Bank of Australia, where he looks after the tooling and automation behind around 2000 developer Macs. This is his third time at X World. He spoke on GitHub Actions for Mac admins in 2023, on turning Python scripts into packages in 2024, and co-ran the Next Level AutoPkg workshop that same year. Most of his work is about making Mac management reproducible, from packaging and infrastructure as code through to the local environment developers use every day.
2:40pm G.01/02
BUILDING THE BEST MACOS ONBOARDING EXPERIENCE
Daniel MacLaughlin, Jamf
First impressions matter. For many end users, the moment they open a brand-new Mac is that first impression — and it sets the tone for how they feel about IT long after setup is done.
Jamf Pro's native macOS Onboarding feature already lets admins deploy policies, profiles, and apps automatically when Self Service for macOS first opens. This session builds on that foundation with two open-source Jamf Concepts tools that take onboarding further: Setup Manager, which replaces the default macOS Setup Assistant with a fully branded, customizable interface, and Setup Checklist, which guides users through a first-login checklist so nothing gets missed.
Topics include how native macOS Onboarding, Setup Manager, and Setup Checklist fit together in a real Automated Device Enrollment workflow, what gaps each layer closes, and how admins can configure all three to match their organization's branding and setup requirements. Expect a live demo, practical configuration guidance, and an honest look at where each tool helps most.
Attendees will leave with a clear blueprint for building onboarding that works for end users and admins alike.
About the presenter
Daniel is a Senior Consulting Engineer at Jamf with 11 years at the company and nearly two decades in IT. Based in Sydney, he and the wider Consulting Engineering team support projects globally, contributing to Jamf Concepts — Jamf's innovation program for tools built by the people who work in the field. Daniel is passionate about automation: turning manual, repetitive admin work into something faster and smarter, from onboarding workflows to AI-assisted tooling. When he's not deep in Jamf APIs, you'll find him at a D&D table, shuffling a Magic: The Gathering deck, brewing beer, or talking someone's ear off about whisky.
2:40pm G.03
INTRODUCTION TO MANAGING JAMF WITH TERRAFORM
Mike Harris, RMIT University
In the modern technology operations world, Infrastructure as code is extremely popular and has many benefits over the traditional ClickOPS approach when it comes to managing infrastructure and configuration. Some of those benefits include configuration drift detection, source/version control, peer reviewing changes, easy roll backs and automating changes using CI/CD pipelines.
This presentation is an introduction to managing JAMF resources using the popular IAC tool Terraform, while demonstrating how we are using Terraform for the management of our large staff and student facing Mac fleet.
Some of the topics covered will include:
• Initialling the JAMF Pro and JAMF Platform providers and authenticating to JAMF.
• Managing the Terraform state file.
• Reviewing and Applying changes to your JAMF configuration.
• Different approaches to importing existing JAMF configuration into Terraform.
• Structuring your code and using outputs to make resources available between different Terraform projects.
• Terraform (HCL) features that promote reusable and minimal code.
• And much more!.
About the presenter
Mike Harris is a Senior Apple Engineer and higher education IT specialist with over 25 years of industry experience. He has spent the last 13 years managing RMIT University's extensive Apple fleet through Jamf.
3:10pm
AFTERNOON TEA
3:40pm G.01/02
TESTING TESTING... IS THIS THING ON?
Marcus Ransom, Jamf | Mac Admins Podcast
Every year in June, Apple moves the cheese and we all need to rapidly prepare ourselves for when the betas metamorphosise into production releases. The challenge for Client Platform Engineers is very different to the way that developers or consumers approach beta season. We don't just need to test the new capabilities of the operating system, we need to rapidly understand the new management frameworks, and often most importantly - how it intergates with all the other tools we have in our environment. Lets look at all the different tools we have at our disposal, what we should be testing against, and how we can help each other to be ready for when Septober comes.
About the presenter
Marcus Ransom has been managing Macs across Education and Enterprise for over two decades. He is always curious to understand where we are now, what is coming next, and how this can help people overcome challenges and get the most out of their Apple technology. In addition to being a Senior Sales Engineer at Jamf, Marcus is also one of the hosts of the Mac Admins Podcast.
3:40pm G.03
JAMF-CLI A UNIFIED CLI FOR JAMF PLATFORM API GATEWAY, JAMF PRO, JAMF PROTECT, AND JAMF SCHOOL
Cameron Kay, UNSW Sydney
Jamf provides a number of separate APIs for managing Jamf Pro, Jamf Protect, and Jamf School. jamf-cli provides a unified CLI with full API coverage for these systems that's familiar to shell programmers. This talk covers the installation and setup of jamf-cli and Jamf's new Platform API Gateway, along with a number of real-world uses with Jamf Pro.
About the presenter
Cameron Kay has been managing fleets of Macs in universities in New Zealand & Australia for 30 years. An active member of the Mac Admin community sharing knowledge and providing feedback.
4:20pm G.01/02
A PARACHUTIST’S REFLECTION ON DEVICE MANAGEMENT IN SCHOOLS
Daniel Woo, UXED Pty Limited
Over almost a decade I’ve had the unusual privilege of working with many schools from the outside. Rather than managing a single environment, I’ve repeatedly been “parachuted” into different institutions to deploy Apple technologies, solve problems, support teachers, and help build sustainable workflows.
This presentation is a reflection on the patterns that emerge when you see many schools rather than just one.
We’ll explore practical experiences with Apple School Manager, Managed Apple Accounts, Jamf School and Jamf Pro, Managed App Configuration, Shared iPad, TestFlight, classroom deployment, storage constraints, digital books and content distribution, and the realities of supporting teachers and students in increasingly diverse learning environments.
We’ll look beyond the technology itself and provide a perspective shaped by experience as a UX designer, software developer and educator.
Rather than presenting a definitive guide or a list of best practices, this session offers observations gathered from years of working across many educational settings. The goal is to encourage developers, administrators and educators to think differently about device management - not simply as deploying hardware, but as designing experiences that enable teaching and learning.
About the presenter
Daniel Woo, PhD is a UX designer, software and electrical engineer, photographer and musician. He was recognised as an Apple Distinguished Educator in 2011. His work spans user experience, software development, education and creative practice, bringing together engineering, design and storytelling across Apple’s platforms. Daniel enjoys sharing ideas that encourage educators, students and developers to explore new technologies and build software that makes a difference.
5:00pm
DRINKS, LIGHT MEAL
We appreciate that some of you will want to move on to local pubs for informal catchups. For those wanting to stick around, we'll have drinks (from 5pm) and food options (from 6pm). Some fuel before you head out for the day. This event ends at 7pm.
WEDNESDAY 26 AUG 2026
10:00am
WELCOME, HOUSEKEEPING
10:15am G.01/02
DETECTING NATION-STATE MALWARE ON IOS
Julien vander Straeten, Yaska
Commercial spyware like Pegasus can compromise iOS without any user interaction (zero-click attacks) that bypass traditional security.
With thousands of confirmed infections and 50,000 suspected targets since 2016, this threat extends beyond journalists and activists to strategic sectors: energy, transport, telecommunications, and defence.
Learn how nation-state spyware works on iOS, see real evidence of infections, and discover how forensic-grade detection tools can protect executive teams and board members in high-value organisations.
Coruna and DarkSword are two recent spyware toolkits that were discovered. Depending on the lengths of the presentation, I can prepare a lab that will demonstrate how a real iPhone can get compromised by such a toolkit, and how commercially available tools will detect these.
About the presenter
Julien started in Apple automation and security. His role evolved towards mobile forensics for the last couple of years. While being a niche market, it applies to many industry leaders. These leaders often misunderstand what nation state malware is and why tools from regular security vendors can't detect these. His mission in 2026 is to build awareness amongst these industry leaders to help them understand what nation state malware is and whether it applies to their users or not.
11:00am G.01/02
WORKBREW: DEFENDING THE OPEN SOURCE SUPPLY CHAIN
Brandon Valentine, Workbrew
Homebrew, the app store for developers and one of the most active projects in the history of GitHub, is used on over 35 million developer endpoints. Thanks to the AI boom that number is growing faster than ever. But Homebrew, and open source in general, are under attack. In 2025 open source supply chain attacks were up 73% year over year, and 2026 is making 2025 look like the warmup lap.
Open source software is the backbone of the modern tech industry and trillions of dollars of economic activity depend on it. We can't afford to lose its force multiplying effect. But security and compliance teams are worried, with good reason, about how much longer we can continue to trust it.
At Workbrew we've built the missing compliance and security stack for Homebrew, and much more. I want to show you first hand what we're doing to fight back against open source supply chain security, and why so many Enterprises around the globe are turning to us in the face of growing mistrust of open source.
About the presenter
Brandon Valentine began his career in 2000 as a systems administrator managing large-scale fleets, quickly becoming an active contributor to open source package managers. Over the years, he expanded his expertise to include Ruby development, consulting, and professional sales. A devoted Homebrew contributor and enthusiast, Brandon spent five impactful years at GitHub before joining Workbrew, where he is focused on customer success and reconnecting with his systems administration roots.
11:40am G.01/02
A DECLARATIVE CRASH COURSE
Katie English, Jamf
Declarative management is our new standard, and it radically changes what we know about devices and when we know it. This talk will dig into the technical differences between the legacy protocol and new declarations, admin priorities for the OS 27 era, and how to start working with activation predicates.
About the presenter
Katie is a career Apple admin with experience ranging from technical support and professional services to product development and delivery, and has presented on tech topics around the globe. As Principal Product Manager at Jamf she focuses on customer value and workflow validation for new Apple management features. She occasionally dabbles in podcasting and has absurdly strong opinions about microphones.
11:40am G.03
FASTER, SMARTER, STILL IN CONTROL: AI-ACCELERATED DEVICE MANAGEMENT
Kitzy, Fleet
Device management teams are asked to do more with less. More platforms, more compliance requirements, more endpoints, and often the same headcount.
AI doesn't solve that by replacing the engineer. It solves it by making each engineer faster, more accurate, and less dependent on tribal knowledge they haven't had time to build yet.
In this talk, we'll explore what AI-accelerated device management looks like in practice. We'll cover how to give an AI assistant the context it needs to produce accurate, platform-appropriate output, how to validate what it generates, and how to build review practices that keep humans in the loop on what actually ships.
We'll demo AI-assisted policy authoring across macOS, Windows, and Linux, showing how to go from a compliance requirement to a tested, production-ready configuration in a fraction of the time it would take manually.
You'll leave with a methodology you can apply to your tooling of choice, practical patterns for writing context that makes AI output trustworthy, and a clearer picture of what device management looks like when AI is doing the work it's actually good at.
About the presenter
Kitzy is a Customer Solutions Architect at Fleet and co-founder of the Mac Admins Slack. They bring over 15 years of device management experience, including nearly a decade building the discipline at Fastly and prior work as a Professional Services Engineer at Jamf.
12:15pm
LUNCH
1:20pm G.01/02
THINGS EVERY INFOSEC PROFESSIONAL SHOULD KNOW ABOUT CRYPTOGRAPHY
Louis Cremen, Lumify Work
STOP! I know the talk title says Cryptography! I know that means you think this will be a confusing, inflated talk about maths and cryptography - but I promise - I will use pictures and simplify the complexity of cryptography.
You should trust me. I'll keep it simple :)
Have you ever been curious about:
* Why we have symmetric and asymmetric encryption?
* What a certificate is?
* What is an IV, Diffie-hellman, GCM, ECB, RSA, ECC?
* How to be ready for a quantum world?
Or maybe you're just interested in a talk that tries to make cryptography more accessible. We'll have some fun and learn something along the way.
About the presenter
Louis is the lead cybersecurity instructor at Lumify Work, specialising in various security certifications including Advanced AI Security Management (AASIM), CISSP, CISM, CGRC, C|CISO, CISA, CRISC, CEH, Security+, PenTest+ CySA+, among others. He holds ISO 27001 Lead Implementer and Lead Auditor certifications and leads Lumify's internal audit for 27001 and 27701 ISO standards. With a background as a software company director and security engineer, he has contributed to award-winning products, worked with global government agencies, and ensured secure software solutions. Louis loves keeping his knowledge and skills up to date in the latest innovation trends exploring information security, AI, and neurotechnology, and has a graduate certificate in Neuroscience to understand how the brain learns and works.
1:20pm G.03
ADMIN SHORTCUTS EVERYWHERE WITH POCKETMDM
Damian Cavanagh, Compnow
Shortcuts for device management workflows got a huge boost earlier this year with the release of PocketMDM, a Shortcuts companion app that provides securely authenticated actions for Jamf Pro, Jamf School, Microsoft Intune, Apple Business and Apple School Manager.
One single app Including these five key systems is significant enough on its own, but PocketMDM goes further with support for all Apple platforms - not just macOS! This enables secure mobile Shortcuts workflows that go far beyond what's possible with device management UIs or bash scripts, which have not previously been possible without authentication workarounds many environments could never approve for production use.
This session will deep dive on PocketMDM's capabilities for each supported system, compare free vs paid functionality, and close with demonstrations of admin Shortcuts putting it into action.
Whether it's ideas that will save your own time, effort and mental energy, or app-level solutions that do the same for your team or even your whole organisation, you'll leave this session inspired to see how Shortcuts can make your admin life easier!
About the presenter
Damo has been working in the Apple world for over 15 years and is passionate about making technology work for all humans. He is the Apple Experience Manager at Compnow, working within their national Apple Practice team to support key partners and customers on the applied use of Apple technology in business and education. Damo has pioneered using Shortcuts for device management workflows, enjoys home automation and 3D printing, and might just be Australia's most experienced user of Apple Vision Pro with over 1,600 hours logged.
2:00pm G.01/02
BUILDING AN OPEN SOURCE MACOS EDR: LESSONS FROM APPLE'S ENDPOINT SECURITY FRAMEWORK
Victor Lyuboslavsky, Fleet Device Management
Every modern macOS EDR (Endpoint Detection and Response) is an Endpoint Security client. Whatever vendor name is on the agent, they all subscribe to the same Apple framework underneath. The Endpoint Security Framework is the feed that makes a macOS EDR possible. Its limits are the limits of every EDR built on it.
This session goes inside that framework. We walk through what ESF actually emits: exec, fork, exit, open, and the distinction between notify and auth events. We then cover what an EDR can block versus only observe, the entitlement gauntlet to ship a system extension, and the performance trap that can put a Mac on its knees. The tour is grounded in an open-source macOS EDR built on ESF. Every architectural choice and gotcha applies to any vendor's product.
Attendees will leave able to answer practical questions. When a vendor says "we monitor process execution," what specifically does that mean? When they say "we can block," which subset of events did they actually subscribe to? And what does an ESF-based agent actually need from your MDM?
About the presenter
Victor Lyuboslavsky is a software engineering leader, author, and speaker with over 25 years of experience building products and leading teams. He has co-founded startups, held technical leadership roles at AMD, and now architects secure, scalable systems for enterprise IT at Fleet Device Management, covering fleets of macOS, iOS, and other major platforms. Victor's work bridges hands-on technical execution and strategic leadership. His talks draw on lessons from startups, open source communities, and creating an open source macOS EDR, with a focus on Apple platform security, hardware-backed identity, and endpoint telemetry.
2:40pm G.01/02
WHAT MACOS USERS NEED TO KNOW ABOUT TODAY'S THREAT LANDSCAPE
Doug Brown, CrowdStrike
As Mac adoption has grown in the enterprise, so too have the threats targeting its users. macOS may have technical controls superior to other platforms, but adversaries have simply moved their focus to the user. This session walks macOS administrators and developers through the techniques we see every day on the frontline, from social engineering through to persistence and exfiltration. Attendees will leave with the knowledge and tools to understand these threats and educate their users.
About the presenter
Doug works in CrowdStrike’s engineering organisation, developing detection logic for the Falcon MacOS sensor. Prior to joining CrowdStrike, Doug worked for 6 years as a security analyst at a software vendor, performing SIEM detection development and incident response. Before that, Doug worked for 4 years in higher-education performing security administration, and has a master's by research in formal methods for protocol verification. Doug is returning to XWorld having previously given workshops on securing macOS over 15 years ago - before macOS even had an App Store!
3:10pm
AFTERNOON TEA
3:40pm G.01/02
SURVIVING THE POST-QUANTUM SHIFT
Andy Rana, Iru
Project Titanium: The 2030 Forensic Briefing
Step into 2030 as a forensic investigator tracing a catastrophic data breach — one where the attacker never broke the encryption, they just waited. This session unpacks "Harvest Now, Decrypt Later" (HNDL): the practice of capturing today's RSA/ECC-protected traffic now, so it can be decrypted the moment quantum computing catches up.
Through three live, audience-driven scenarios, attendees investigate how Shor's Algorithm threatens classical key exchange, why lattice-based post-quantum cryptography (ML-KEM) resists it, and how a single "compatibility" fallback flag can quietly undo a migration and reopen the door to harvesting.
From there, the session moves into a technical deep dive: the 30-year timeline from Shor's original 1994 paper to Australia's ASD-mandated RSA/ECC sunset, real-world implementations like Apple's Contact Key Verification, and the infrastructure costs (handshake size, MTU issues) that catch migrations off guard.
Attendees leave with a practical audit checklist: how to test their own TLS handshakes, hunt down dangerous fallback flags, and map their exposure window before the deadline hits.
About the presenter
Andy Rana is Director of Solutions (International) at Iru (formerly Kandji), the Apple-focused endpoint management, identity, compliance, and EDR platform, where he leads the Solutions Engineering team across North America, EMEA, and APAC. With 15+ years of hands-on experience in Apple IT, spanning device management, endpoint security, identity, and compliance, Andy holds Jamf 200, 300, CCE, and CJA certifications, along with an Apple Certified Macintosh Technician credential. A long-standing member of the Sydney and Melbourne Mac admin communities, he has spent his career at the intersection of Apple platform expertise and enterprise security, working directly with organisations navigating the practical challenges of managing and securing modern Apple fleets.
4:15pm
CONFERENCE CLOSE
4:45pm G.01/02
MAC ADMINS PODCAST - LIVE RECORDING
Marcus Ransom and James Smith, Mac Admins Podcast
Join your hosts Marcus Ransom and James Smith (sorryjames) for a live recording of an episode of the Mac Admins Podcast!
About the presenter
A podcast for Mac admins by Mac admins! The aptly-named Mac Admins Podcast features a panel of Mac admins joined by members of the Mac admin community to discuss the latest news, issues, and challenges of managing Apple devices. New episodes weekly.