Speaker
Description
Cybersecurity increasingly depends on transparency, collaboration, and trust. Yet many organizations still rely on closed platforms and opaque security technologies that limit autonomy and collective defense. Over the past 15 years, the open-source security community has demonstrated that an alternative model is not only possible but highly effective.
Projects such as MISP and the broader ecosystem of open tools developed around it show how independently built technologies can form a complete stack supporting threat intelligence sharing, incident response, and collaborative analysis across organizations and countries. Through the operational experience of the Computer Incident Response Center Luxembourg (CIRCL), these projects have helped shape new models of information sharing and open collaboration between CSIRTs, governments, private sector organizations, and research communities.
This practical experience demonstrated that open-source development is not only about publishing code. It is about creating trusted communities where security knowledge and intelligence can be shared effectively.
This talk explores why building and maintaining a fully open cybersecurity ecosystem is essential for digital autonomy. Open-source tools allow organizations to control their infrastructure, control their security capabilities, and avoid strategic dependencies on proprietary platforms.
More importantly, open source enables something technology alone cannot provide: networks of trust between defenders. By openly sharing code, methodologies, and intelligence, communities can build resilient ecosystems where improvements benefit everyone.
Drawing from more than a decade of operational and development experience, this talk highlights how investing in open-source security projects strengthens collective defense, fosters innovation, and supports long-term cybersecurity sovereignty.