|
09:00 - 09:10
|
Chairman's welcome
|
|
09:10 - 09:30
|
►Compliance as a Consequence: Driving Security, Enabling Assurance Simon Turner, Head of Security Governance and Compliance, BT Group - Reframing compliance as the natural result of strengthening governance, managing risk, and designing effective controls, rather than treating it as a standalone or periodic activity.
- Unifying GRC efforts by embedding clear ownership, aligned controls, and security practices into daily operations while meeting overlapping regulatory and certification requirements.
- Strengthening resilience and reducing waste by moving from chasing audit evidence to building systems where compliance is the outcome of doing security the right way.
|
|
09:30 - 09:50
|
►Building a Modern OT Security Program: From Asset Visibility to Uptime Julian Smith, Principal Solutions Engineer, Claroty - How to overcome IT/OT integration challenges, bridge organisational silos, and prioritise the visibility blind spots that matter most across complex CNI environments.
- Why behavior-based monitoring outperforms vulnerability-driven risk scoring when protecting legacy devices and safeguarding system uptime.
- Best practices for prioritising high-impact risks aligned with regulatory frameworks like NIS2 and NCSC CAF, maximising operational resilience without overloading team capacity.
|
|
09:50 - 10:10
|
►Run Like a Business: What 196,000 Leaked Ransomware Chats Teach CNI Defenders Chris Butchart, Senior Solutions Engineer, BeyondTrust - Inside the leaked internal chats of a major ransomware operation: roughly 196,000 messages revealing a group run like a business, with salaries, management structure and office hours.
- Why the front door is remote access, not malware: what the group's own communications show about buying, brute-forcing and reusing VPN and remote access credentials instead of burning zero days.
- The weakest link in converged IT/OT environments: unmanaged third-party and vendor privileged access, and why the traditional VPN and jump host model cannot answer "who did what, where, and with which credential".
- What good looks like: closing the remote access gap with identity-first controls, including just-in-time access, credential injection and full session recording."
|
|
10:10 - 10:30
|
►Defending Tomorrow: The Future of SOC and Cybersecurity Adam Abdat, SOC Lead, easyJet - Enhancing Tier-1 SOC workflows by improving signal quality, reducing alert fatigue, and supporting faster, more accurate triage.
- Bringing together security, cloud, and IT insights to improve collaboration and cross-team decision-making.
- Strengthening incident response by improving visibility, reducing tool sprawl, and streamlining operational processes.
- Tackling emerging threat patterns — including human, machine, and AI-driven behaviours — through improved detection and analysis.
|
|
10:30 - 10:35
|
Comfort Break
|
|
10:35 - 10:55
|
►Third-Party Risk? Managed! Andrea Szeiler, Group CISO, MVM Ltd - Understanding Your Third-Party Ecosystem: Mapping vendors, services, and business dependencies to identify what truly matters.
- From Compliance to Control: Turning regulatory requirements into a practical approach for assessing and managing third-party risks.
- Trust, Verify, Collaborate; Strengthening resilience through effective partnerships, clear responsibilities, and shared preparedness
|
|
10:55 - 11:15
|
►Decrease Your Attack Surface Whilst Decreasing Costs - The Perfect Win-Win Richard Meeus, Senior Director Security Technology and Strategy, EMEA, Akamai - As cyber threats become more sophisticated, traditional network security approaches are no longer enough.
- In this webinar, we will explore how microsegmentation capabilities help organizations reduce attack surfaces, limit lateral movement, and strengthen security across hybrid and distributed environments.
- We’ll look at how microsegmentation works, the key benefits for modern IT and security teams, and how Akamai can help implement effective segmentation without adding unnecessary complexity.
- Participants will also gain practical insights into securing applications and workloads against today’s evolving threats.
|
|
11:15 - 11:35
|
►From Telco to Quantum Telco: Reskilling for the Quantum Era Julio Gonzalez-Saenz, Quantum Engagement Lead, Vodafone - Quantum and the Telco's Role
- Quantum Telco Pillars
- Current Initiatives & Skills Transition
- Reskilling Framework
- Engagement& Culture
|
|
11:35 - 11:40
|
Comfort Break
|
|
11:40 - 12:00
|
►Securing the Autonomous Frontier: Guardrails, Governance, and Agentic AI Nathan Wyatt, Information Security Engineer, The Telegraph Group - Securing Autonomous Agents
- Hardening the MCP Integration Layer
- Bringing Shadow AI to Light
- Defending the CNI Boundary
- Actionable Security Playbook
|
|
12:00 - 12:20
|
►Protecting Critical National Infrastructure in a Changing Threat Landscape Robert FitzSimons, Sales Engineering Manager, Huntress - Critical national infrastructure is increasingly targeted by attackers who do not need to break in, they simply log in using stolen credentials, compromised identities, or trusted tools.
- This session explores how organisations can move beyond alert fatigue and respond to the threats that matter most. We will discuss the modern attack chain, the importance of detecting initial access and lateral movement early, and how human-led threat hunting and security posture management can help protect essential services and strengthen resilience before an incident becomes a national-impact event.
|
|
12:20 - 12:40
|
►From Visibility to Velocity: Turning OT Intelligence into Decisive Action Natalie Gristwood, Associate Principal Consultant, Dragos - The visibility paradox: more data, slower decisions. Most organizations have deployed visibility tools. So why are response times still measured in days? How are leading organizations using intelligence to cut through noise and move from detection to action in hours, not weeks?
- Intelligence-driven prioritization: Now, Next, Never. Not all threats are equal. How are CISOs and OT leaders using threat context and adversary behaviour to separate what needs immediate action from what can wait—and what never needs to be touched? The difference is measured in operational risk and team capacity.
- From board questions to board confidence. Executive teams and regulators demand defensible answers: Where is the real risk? What are we doing about it? How do we know it's working? Intelligence-grounded decisions give you the narrative that sticks.
- Speed as a competitive advantage in incident response. When an incident strikes, velocity matters. How are organizations leveraging pre-incident intelligence and investigation frameworks to shrink mean time to respond (MTTR) and limit operational impact?
- Building a decision-support function, not just an alerting function. The gap between security tool alerts and board-level decisions is where most programs stall. What does a true intelligence-informed decision framework look like in practice?
|
|
12:40 - 13:00
|
►Invisible Leaks: The Hidden Risks of Chatting with AI Manit Sahib, Ethical Hacker & Former Head of Penetration Testing & Red Teaming, Bank of England - AI Privacy Risks: How tools like ChatGPT, Claude, and Co-Pilot can end up knowing more about you than your best friend (and never forget a thing). The hidden dangers of casually sharing information with AI
- When Small Details Add Up: Why a few “harmless” details can combine to paint a full picture & How scattered information can reveal sensitive data without you realising
- The Myth of Security: Why AI models aren’t as secure as we might think & How attackers can trick them into spilling information
- Simple, Practical Steps: For employees: how to keep personal and company data safe & For organisations: reducing AI-related risks before they grow
|
|
13:00 - 13:05
|
Chairs Closing Remarks
|