The new cybersecurity playbook, told by IT Leaders

The new cybersecurity playbook, told by IT Leaders

Explore the latest event agenda below, and check back soon for updates.

Thursday, March 19

Morning Plenary Sessions
09:00 - 09:05
CSO ThreatScape Opening Remarks

Join our host, Georgina Owens, who will open the day by setting the scene for today’s evolving threat landscape, introducing the key themes shaping cyber risk, resilience and leadership, and framing the conversations ahead to turn insight into practical, strategic action.

Moderator
Georgina Owens Contributing Editor CIO
Opening Keynote Presentation
09:05 – 09:30 
From Prevention to Resilience: Redefining Cybersecurity in 2026

Geopolitics, accountability, and the resilience-first agenda

As global interdependence deepens, traditional borders no longer define risk. Supply chains, partners, and data flows now form a single, extended attack surface. This keynote explores how leaders can build resilience in a world where prevention alone is not enough,linking geopolitical instability, regulatory accountability, and supply chain exposure into a unified resilience agenda.

Key topics:

• Resilience as the organising principle of modern cyber strategy

• Managing risk across extended and interdependent supply chains

• Embedding accountability and resilience culture at board level

Speaker
National Cyber Security Centre Senior Representative
Opening Panel
09:50 – 10:30
The New Regulatory Reality: Preparing for the New Era of Cyber Accountability

Navigating Overlap: Turning Regulatory Chaos into Coherent Strategy

From NIS2 and TSA to DUAA, CRA, and DORA, 2026 brings an avalanche of regulatory demands. For global organisations, the challenge is not understanding each rule but reconciling them. This panel unpacks how boards and CISOs are aligning competing frameworks, identifying overlaps, and turning compliance into a unified resilience strategy rather than a patchwork of obligations.

Key topics:

• Harmonising global frameworks: NIS2, TSA, DUAA, CRA, and DORA

• Building governance models that work across jurisdictions

• Turning compliance complexity into strategic advantage

Moderator
Amy Lemberger vCISO Lemberger & Associates
Speaker
Manoj Bhatt Founder Cyberhash
Speaker
David McIlwaine Global Head of Cyber Pinsent Masons
10:30 – 11:00 
Networking Break
TRACK 1 Geopolitics and Regulation
11:15 – 11:45 
Geopolitics and Cyber Threats: UK Resilience in a Shifting Global Order 

From war in Europe to US policy, what comes next?

Global instability is redrawing the cyber threatscape. From the continuing impact of the war in Ukraine to the direction of US cyber policy under a new presidency, international events are shaping the risks UK organisations face. This panel explores how leaders can incorporate geopolitical intelligence into cyber strategy, incident response, and resilience planning.

Key topics:

• How war and conflict reshape the cyber threat environment

• The influence of US and allied policy on UK resilience

• Integrating geopolitical intelligence into risk management and continuity planning

Moderator
Georgina Owens Contributing Editor CIO
Speaker
David Edwards Vice President of Information Security Payroc
Speaker
Reza Salari Chief Information Security Officer Pacific Life Re
Speaker
Lee Morton Head of Cyber Security GBG Plc
12:00- 12:30
Fireside Chat: AI and Cyber Strategy: Planning for an Automated Threatscape

Artificial intelligence is reshaping both attack and defence. This discussion explores how AI is transforming cyber strategy: from enhancing detection and response to enabling adversarial tactics such as deepfakes and automated intrusions. Leaders will reflect on how to embed AI into resilience planning, workforce models, and decision-making while anticipating its future impact on the cyber landscape.

Key Topics:

• Leveraging AI to strengthen resilience and operations

• Preparing for adversarial AI and automation-driven threats

• Adapting strategy, culture, and workforce to an AI-driven future

Moderator
Georgina Owens Contributing Editor CIO
Speaker
Neil Manfred Group IT Director Airswift
Speaker
Daniel Dresner Professor of Cyber Security University of Manchester
TRACK 2 Defence and Resilience
11:00 - 11:40
Resilience Under Fire: Lessons from Real-World Breach Containment

Breaches are inevitable, but catastrophic disruption is not. This panel examines real-world case studies of organisations that contained cyberattacks before they spiralled out of control. Leaders will uncover hard-won lessons on segmentation, zero trust, and rapid response, and how these principles can be embedded to protect operations.

Key Topics:

• Real-world breach containment lessons

• Minimising operational impact through zero trust and segmentation

• Turning recovery into competitive advantage

Host
Christelle Heikkila Contributing Editor CIO
Speaker
Daniel Blackman Group IT and Security Director McLaren Construction Group
Speaker
Tom Gormley Senior Security Specialist Everywhen
11:55 – 12:30
Operational Technology Resilience: Defending the Systems that Keep the Nation Running

OT systems underpin national infrastructure, from power grids to water treatment to transport. With the NCSC emphasising definitive asset records, clear architecture maps, and strong separation between IT and OT, resilience has become non-negotiable.

This panel brings together OT and cyber leaders to examine how to map, defend, and recover critical systems under escalating technical, regulatory, and threat pressures.

Key Topics:

• Applying NCSC guidance: asset inventory, segmentation, and record-keeping

• Mitigating IT–OT convergence risks under regulatory and attacker pressure

• Developing robust recovery and continuity plans for key services

Host
Christelle Heikkila Contributing Editor CIO
Speaker
Elmar Yusifzade Security Controls Partner NatWest
Speaker
Andrej Kurlovic Chief Information Security Officer Home Bargains
12:30 – 13:30 
Networking Lunch Break
TRACK 1 Geopolitics and Regulation
13:55 – 14:20 
Fireside Chat: Strengthening Global Supply Chain Resilience Amid Regulatory Pressure

Turning the weakest link into a strength

Supply chain compromise remains one of the most common sources of cyber incidents. With new laws holding boards accountable for third-party resilience, this panel explores strategies for visibility, monitoring, and assurance. Leaders will discuss how to enforce higher standards and build trust across extended ecosystems.

Key Topics:

• Strengthening supply chain visibility and assurance

• Meeting new regulatory demands for vendor resilience

• Ensuring accountability across the extended enterprise

Moderator
Georgina Owens Contributing Editor CIO
Speaker
Bennet Morka Group Information Security Officer Mott MacDonald
14:20 – 14:35 
Presentation: AI-Driven Attacks: The Next Generation of Threats

Preparing for adversarial AI and automation

Attackers are already leveraging AI for phishing, deepfakes, and automated intrusions. This keynote explores the emerging threat of adversarial AI and how organisations can defend against it. Attendees will gain insights into detection strategies, resilience planning, and the future of AI-driven cyber conflict.

Key Topics:

• Understanding adversarial AI techniques

• Defending against deepfakes and AI-augmented attacks

• Preparing resilience strategies for an AI-driven threatscape

14:35 – 15:10
Sustainable Cyber Teams: Addressing Burnout and Building Resilient Workforces

UK surveys suggest half of UK cyber professionals are considering leaving their roles due to stress, alert fatigue, and unsustainable workloads. In this candid conversation, leaders share strategies for retaining talent, addressing burnout, and embedding a culture of resilience. Cybersecurity depends on people as much as systems, this session offers human-centred leadership insights.

Key Topics:

• Tackling stress and alert fatigue in security teams

• Building a culture of resilience and recognition

• Ensuring leadership succession and continuity

Moderator
Georgina Owens Contributing Editor CIO
Speaker
Rebecca Fox Founder & CIO Relentica
Speaker
Martin Astley CISO
Speaker
Lee Morton Head of Cyber Security GBG Plc
TRACK 2 Defence and Resilience
13:40 – 13:55
Presentation: Cyber ROI: Measuring Value Across Tech and Human Risk

Cybersecurity budgets continue to rise, yet organisations face increasing pressure to prove measurable value. This keynote explores how leaders can demonstrate clear ROI by linking security investment to business resilience, regulatory confidence, and meaningful risk reduction.

The session also highlights the growing impact of human-risk reduction. From identity hygiene to behavioural analytics and cultural resilience, we’ll examine how investment in people is fast becoming a significant driver of measurable security outcomes and board-level decision-making.

Key Topics:

• Demonstrating ROI from cyber investment
• Aligning security spend with business risk
• Winning board-level support through meaningful metrics

Speaker
Oindrilla (Dri) Choudhury Head of Human Risk & Technology Evangelist Syngenta
14:10 – 14:25
Presentation: Cloud Security in 2026: Resilience for the Multi-Cloud Era

Adapting security to evolving architectures

Cloud is the backbone of digital transformation, yet it remains a complex risk. This keynote examines evolving multi-cloud strategies, regulatory challenges, and new resilience models. Security leaders will learn how to adapt their cloud security approach to stay ahead of threats and business needs.

Key Topics:

• Building resilient multi-cloud security strategies

• Meeting compliance across cloud platforms

• Embedding adaptability into cloud security models

Speaker
Nigel Gibbons Director & Senior Adviser NCC Group
14:40 – 15:10
Fireside Chat: Security by Design – Building Defences into Emerging Technologies 

Embedding resilience into AI, IoT, and cloud systems

Emerging technologies are only as strong as the security built into them. This discussion examines how security leaders can drive “secure by design” principles across AI, IoT, and cloud. The panel will explore embedding cyber expertise at the development stage to reduce risk and future-proof digital transformation.

Key Topics:

• Security by design for AI, IoT, and cloud platforms

• Embedding cyber leadership at the innovation stage

• Reducing long-term risk through design principles

Host
Christelle Heikkila Contributing Editor CIO
Speaker
Luke Collinson Head of Cyber Security JLA Group
Speaker
Sajid Iqbal CISO Arcus FM
15:10 – 15:40 
Networking Break
Closing Panel
15:40 – 16:15
Leadership in the Age of Cyber Resilience – What Directors and Boards Must do Next

Cybersecurity is no longer a technical issue, it is a leadership mandate. This final discussion brings together CISOs and board directors to define what effective governance looks like under new regulatory and geopolitical pressures. Attendees will leave with a roadmap for embedding cyber resilience into corporate strategy at the highest level.

Key Topics:

• Redefining governance for resilience-first leadership

• Board accountability and oversight in practice

• Building the next generation of cyber leaders

Moderator
Georgina Owens Contributing Editor CIO
Speaker
Greg Emmerson Group IT Director for Security & Operation Applegreen
Speaker
Shaun Barry IT Director Pret A Manger
One Last Challenge
16:15 – 17:00 
Cybersecurity Incident Quest

To close the day, we will shift gears with a thought-provoking cybersecurity game. Over a drink or two, you’ll team up with fellow leaders to test instincts, challenge assumptions, and explore real-world threat scenarios in a relaxed setting.

Can you survive a ransomware attack while underfunding your SOC? Would you cut your CISO to save budget, or invest in phishing training instead? In this hands-on, team-based workshop, participants role-play fictional companies facing realistic cyber dilemmas, starting with a fixed cybersecurity budget to spend on controls, staff, insurance, and awareness.

Think of it like playing monopoly but make it cybersecurity!

It’s a chance to unwind, compare perspectives, and leave the summit with a few new insights.

Speaker
Manoj Bhatt Founder Cyberhash
Host
Meera Tamboli Cybersecurity Professional
17:00
Closing Remarks & End of Summit