Speaking
I talk about security leadership, WAAP and application-layer defense, cloud-native protection, and the bridge between security strategy and product — often from the seat of someone who's been the CISO in the room you're trying to sell to.
Topics I speak on
- Security leadership at venture-backed companies — building security functions from the first hire, ISO 27001 as an operational discipline not a checkbox, and what metrics actually move the room.
- WAAP & application-layer defense — what modern web and API protection looks like when the attack surface is cloud-native and the attackers know it.
- Supply-chain incident response — lessons from the engineer seat and the CISO seat on the same class of problem.
- AI for defensive security — what earns its keep in detection, triage, and IR, versus what's just a demo.
Recent
- November 2024GDS Security Insight Summit, DublinOptimising Security Investments for Maximum Impact: Balancing Innovation, AI and Security — as CISO, Moonfare.
Booking
For speaking enquiries, workshops, or panels — security@hmussana.com.
Short bio. Hassan Mussana is VP of Cybersecurity Strategy & WAAP Product at Link11. He previously built and led Moonfare's security function from the first hire to a 16-person organisation across information security, cloud infrastructure, and enterprise IT. His career spans SOC operations, DevSecOps, incident response at HelloFresh (including the Codecov supply-chain incident), and CISO leadership. Based in Berlin and Frankfurt.