ISMG Engage - London
Engage May 11, 2023
ISMG Engage London will explore diverse topics from the art and science of risk (essentially a new way to approach it), the future threat landscape and much more. Following the Keynote Address, our closed door "Deep Dives," moderated by true experts will be innovative in content, interactive, and most of all, incredibly useful to you going forward.
ISMG Engage provides an in-person opportunity for executives to learn from each other and network. Join the largest community of security leaders for on-site, closed-door ’Deep Dive’ discussions designed to provide engaging insight on the latest threats, technology and solutions to apply in your place of work.
London
Name :
London
Ash Hunt
Group Head of Information Security
Sanne Group
Grant Schneider
Senior Director for Cybersecurity services ( Former U.S. federal CISO)
Venable LLP
Ari Redbord
Head of Legal and Government Affairs
TRM Labs
Mat Schwartz
Executive Editor
ISMG
John Kindervag
Creator of Zero Trust, Senior Vice President, Cybersecurity Strategy, ON2IT Group Fellow
ON2IT Cybersecurity
Que Tran
Head of IT, Europe
DP World
Anna Delaney
Director, ISMG Productions
ISMG
Tom Field
Chief Executive of Editorial
ISMG
Troy Leach
Chief Strategy Officer
Cloud Security Alliance
David Pollino
Former CISO
PNC Bank
Ian Thornton-Trump
CISO
CYJAX
Michael Novinson
Managing Ediitor
ISMG
Jeremy Grant
Managing Director-Technology Business Strategy
Venable LLP
Adam Wedgbury
Head of Enterprise Digital Security Architecture
Airbus
Wedgbury is the head of enterprise digital security architecture at Airbus, reporting directly to the global CISO. He is responsible for building and maintaining the core security controls framework, alongside the design of security standards and architecture patterns. Wedgbury started...
Glen Hymers
Head of Data Privacy and Compliance
Cabinet Office
Don Gibson
Global CISO
Kinly
Don has been a Global Security Architect and a Head of Cyber/CISO across a number of businesses in a wide variety of sectors. He’s seen some things…
Dom Lucas
Head of Security
British International Investment
Martyn Booth
CISO
dunnhumby
View Agenda
Welcome and Keynote Address
Paul Crichard, CISO, Serco
Martyn Booth, CISO, dunnhumby
Paul Crichard
Martyn Booth
  • 03:59 PM
  • 08:59 PM
Networking Break
  • 04:45 PM
  • 04:59 PM
Deep Dive Discussions: Topic-Based Intimate Sessions

Meet with security industry leaders in a boardroom setting to converse with peers and gain insight into leading security trends and technology. Participate in one of the following topic-based closed door Deep Dive Discussions.

  • Mental Healthcare of Security Teams
  • Cyber Risk & Loss Exposure 
  • Supply Chain Cybersecurity Strategies 
  • Data Protection in the Public & Private Sector
  • 04:59 PM
  • 05:59 PM
  • 05:00 PM
  • 05:59 PM
Dom Lucas
Deep Dive: Translating Cyber Risk and Loss Exposure into Quantifiable Measures: Strategies for Creating a Common Risk Language and Encouraging Accountability
Dom Lucas, Head of Security, British International Investment

As every business faces unique cyber risks, it is crucial for cybersecurity teams to not only identify these risks but also help business leaders understand the operational risks they pose and quantify the resulting business risks. This Deep Dive will delve into the art and science of translating cyber risk and loss exposure into quantifiable measures, with a focus on strategies for creating a common risk language and encouraging accountability.

Join us for an interactive Deep Dive session where we will delve into the following topics and actively encourage participation and discussion from all attendees.

  • Creating a common risk language that is understood by all stakeholders in the organization, from IT to business leaders, to facilitate effective communication and decision-making.
  • Building a playbook that helps the business identify actual exposure to cyber risks and their potential impact on the organization.
  • Strategies for making cybersecurity everyone's responsibility, encouraging a culture of accountability and empowering employees to take ownership of their role in protecting the organization from cyber threats     
  • 05:00 PM
  • 05:59 PM
Adam Wedgbury
Deep Dive: Building Resilient Supply Chain Cybersecurity Strategies for 2023 and Beyond
Adam Wedgbury, Head of Enterprise Digital Security Architecture, Airbus

2023 is a crucial year for supply chain cybersecurity as current trends indicate a rise in more severe and frequent cyberattack. Organizations face a plethora of new threats on a daily basis that endanger their critical networks. As a result, cybersecurity leaders are increasingly prioritizing gaining visibility into the security risks posed to their organization by their supply chain or third-party vendors. To effectively mitigate third-party cyber risk, next-generation cybersecurity practices will necessitate organizations aligning both internal and external cybersecurity risk processes to create a standardized process.

In this interactive Deep Dive session, we will explore

  • Explore the intersection of third-party risk management and internal cybersecurity practices
  • Learn how to map external third-party risk to internal cybersecurity controls and evaluate control effectiveness against both internal and external risks

Prioritize cyber/third-party risk projects based on control gaps and domain inefficiencies to build a united cybersecurity program that protects against internal and external threats

  • 05:00 PM
  • 05:59 PM
Don Gibson
Deep Dive: Protecting the Health of Our Cybersecurity Teams: Strategies for Personal Resilience and Wellbeing
Don Gibson, Global CISO, Kinly

Last year, the UK government announced its National Cyber Strategy for 2022, a comprehensive plan aimed at creating a more secure and resilient nation. However, with the constantly shifting threat landscape, long work hours, a lack of resources, and high staff turnover, cybersecurity teams are at risk of experiencing stress and burnout, which can ultimately affect their ability to keep the nation secure.

To ensure the success of the National Cyber Strategy, it is crucial to prioritize the personal resilience and wellbeing of cybersecurity teams. Understanding how stress and burnout are emerging in the workplace today and the impact they can have on individuals and teams.

In this interactive Deep Dive session, we will explore the following topics in depth and encourage discussion and participation from all 

  • The importance of leaders showing vulnerability and leading by example to create a culture of openness and support.
  • Tools and techniques to build personal resilience, manage stress, and prevent burnout, such as mindfulness, exercise, and time management strategies.
  • How organizations can take proactive steps to protect the wellbeing of their cybersecurity teams, including creating supportive policies and providing access to mental health resources
  • 05:00 PM
  • 05:59 PM
Glen Hymers
Deep Dive: Data Protection in Practice: Case Studies and Lessons Learned for Public and Private Organizations
Glen Hymers, Head of Data Privacy and Compliance, Cabinet Office

In this Deep Dive session, we will discuss the increasingly critical role of data protection in both public and private sector environments. We will explore the legal responsibilities of organizations in the UK under various pieces of legislation, as well as the moral imperative to protect individuals' data. The significance of protecting all aspects of information, including sensitive data about individuals, in both public and private sector environments.

In this interactive Deep Dive session, we will explore:

  • The legal responsibilities of organizations in the UK to protect personal data, including the Data Protection Act, the General Data Protection Regulation, and other relevant legislation.
  • The moral obligation of organizations to act in their customers' best interests and protect their personal data.
  • Best practices and strategies for ensuring effective data protection in both public and private sector environments, including risk assessments, training and awareness, and implementing appropriate technical and organizational measures.

               

Refreshment Break
  • 06:00 PM
  • 06:29 PM
  • 06:30 PM
  • 07:29 PM
Adam Wedgbury
Deep Dive: Building Resilient Supply Chain Cybersecurity Strategies for 2023 and Beyond
Adam Wedgbury, Head of Enterprise Digital Security Architecture, Airbus

2023 is a crucial year for supply chain cybersecurity as current trends indicate a rise in more severe and frequent cyberattack. Organizations face a plethora of new threats on a daily basis that endanger their critical networks. As a result, cybersecurity leaders are increasingly prioritizing gaining visibility into the security risks posed to their organization by their supply chain or third-party vendors. To effectively mitigate third-party cyber risk, next-generation cybersecurity practices will necessitate organizations aligning both internal and external cybersecurity risk processes to create a standardized process.

In this interactive Deep Dive session, we will explore

  • Explore the intersection of third-party risk management and internal cybersecurity practices
  • Learn how to map external third-party risk to internal cybersecurity controls and evaluate control effectiveness against both internal and external risks

Prioritize cyber/third-party risk projects based on control gaps and domain inefficiencies to build a united cybersecurity program that protects against internal and external threats           

      

  • 06:30 PM
  • 07:29 PM
Glen Hymers
Deep Dive: Data Protection in Practice: Case Studies and Lessons Learned for Public and Private Organizations
Glen Hymers, Head of Data Privacy and Compliance, Cabinet Office

In this Deep Dive session, we will discuss the increasingly critical role of data protection in both public and private sector environments. We will explore the legal responsibilities of organizations in the UK under various pieces of legislation, as well as the moral imperative to protect individuals' data. The significance of protecting all aspects of information, including sensitive data about individuals, in both public and private sector environments.

In this interactive Deep Dive session, we will explore:

  • The legal responsibilities of organizations in the UK to protect personal data, including the Data Protection Act, the General Data Protection Regulation, and other relevant legislation.
  • The moral obligation of organizations to act in their customers' best interests and protect their personal data.
  • Best practices and strategies for ensuring effective data protection in both public and private sector environments, including risk assessments, training and awareness, and implementing appropriate technical and organizational measures.
  • 06:30 PM
  • 07:29 PM
Dom Lucas
Deep Dive: Translating Cyber Risk and Loss Exposure into Quantifiable Measures: Strategies for Creating a Common Risk Language and Encouraging Accountability
Dom Lucas, Head of Security, British International Investment

As every business faces unique cyber risks, it is crucial for cybersecurity teams to not only identify these risks but also help business leaders understand the operational risks they pose and quantify the resulting business risks. This Deep Dive will delve into the art and science of translating cyber risk and loss exposure into quantifiable measures, with a focus on strategies for creating a common risk language and encouraging accountability.

Join us for an interactive Deep Dive session where we will delve into the following topics and actively encourage participation and discussion from all attendees.

  • Creating a common risk language that is understood by all stakeholders in the organization, from IT to business leaders, to facilitate effective communication and decision-making.
  • Building a playbook that helps the business identify actual exposure to cyber risks and their potential impact on the organization.

Strategies for making cybersecurity everyone's responsibility, encouraging a culture of accountability and empowering employees to take ownership of their role in protecting the organization from cyber threats

  • 06:30 PM
  • 07:29 PM
Don Gibson
Deep Dive: Protecting the Health of Our Cybersecurity Teams: Strategies for Personal Resilience and Wellbeing
Don Gibson, Global CISO, Kinly

Last year, the UK government announced its National Cyber Strategy for 2022, a comprehensive plan aimed at creating a more secure and resilient nation. However, with the constantly shifting threat landscape, long work hours, a lack of resources, and high staff turnover, cybersecurity teams are at risk of experiencing stress and burnout, which can ultimately affect their ability to keep the nation secure.

To ensure the success of the National Cyber Strategy, it is crucial to prioritize the personal resilience and wellbeing of cybersecurity teams. Understanding how stress and burnout are emerging in the workplace today and the impact they can have on individuals and teams.

In this interactive Deep Dive session, we will explore the following topics in depth and encourage discussion and participation from all 

  • The importance of leaders showing vulnerability and leading by example to create a culture of openness and support.
  • Tools and techniques to build personal resilience, manage stress, and prevent burnout, such as mindfulness, exercise, and time management strategies.
  • How organizations can take proactive steps to protect the wellbeing of their cybersecurity teams, including creating supportive policies and providing access to mental health resources
Closing Comments
  • 07:30 PM
  • 07:59 PM

ISMG Engage London will explore diverse topics from the art and science of risk (essentially a new way to approach it), the future threat landscape and much more. Following the Keynote Address, our closed door "Deep Dives," moderated by true experts will be innovative in content, interactive, and most of all, incredibly useful to you going forward.
ISMG Engage provides an in-person opportunity for executives to learn from each other and network. Join the largest community of security leaders for on-site, closed-door ’Deep Dive’ discussions designed to provide engaging insight on the latest threats, technology and solutions to apply in your place of work.

London
Name :
London

Ash Hunt
Group Head of Information Security
Sanne Group
Grant Schneider
Senior Director for Cybersecurity services ( Former U.S. federal CISO)
Venable LLP
Ari Redbord
Head of Legal and Government Affairs
TRM Labs
Mat Schwartz
Executive Editor
ISMG
John Kindervag
Creator of Zero Trust, Senior Vice President, Cybersecurity Strategy, ON2IT Group Fellow
ON2IT Cybersecurity
Que Tran
Head of IT, Europe
DP World
Anna Delaney
Director, ISMG Productions
ISMG
Tom Field
Chief Executive of Editorial
ISMG
Troy Leach
Chief Strategy Officer
Cloud Security Alliance
David Pollino
Former CISO
PNC Bank
Ian Thornton-Trump
CISO
CYJAX
Michael Novinson
Managing Ediitor
ISMG
Jeremy Grant
Managing Director-Technology Business Strategy
Venable LLP

Adam Wedgbury
Head of Enterprise Digital Security Architecture
Airbus
Wedgbury is the head of enterprise digital security architecture at Airbus, reporting directly to the global CISO. He is responsible for building and maintaining the core security controls framework, alongside the design of security standards and architecture patterns. Wedgbury started...
Glen Hymers
Head of Data Privacy and Compliance
Cabinet Office
Don Gibson
Global CISO
Kinly
Don has been a Global Security Architect and a Head of Cyber/CISO across a number of businesses in a wide variety of sectors. He’s seen some things…
Dom Lucas
Head of Security
British International Investment
Martyn Booth
CISO
dunnhumby

View Agenda
Welcome and Keynote Address
Paul Crichard, CISO, Serco
Martyn Booth, CISO, dunnhumby
Paul Crichard
Martyn Booth
  • 03:59 PM
  • 08:59 PM
Networking Break
  • 04:45 PM
  • 04:59 PM
Deep Dive Discussions: Topic-Based Intimate Sessions

Meet with security industry leaders in a boardroom setting to converse with peers and gain insight into leading security trends and technology. Participate in one of the following topic-based closed door Deep Dive Discussions.

  • Mental Healthcare of Security Teams
  • Cyber Risk & Loss Exposure 
  • Supply Chain Cybersecurity Strategies 
  • Data Protection in the Public & Private Sector
  • 04:59 PM
  • 05:59 PM
  • 05:00 PM
  • 05:59 PM
Dom Lucas
Deep Dive: Translating Cyber Risk and Loss Exposure into Quantifiable Measures: Strategies for Creating a Common Risk Language and Encouraging Accountability
Dom Lucas, Head of Security, British International Investment

As every business faces unique cyber risks, it is crucial for cybersecurity teams to not only identify these risks but also help business leaders understand the operational risks they pose and quantify the resulting business risks. This Deep Dive will delve into the art and science of translating cyber risk and loss exposure into quantifiable measures, with a focus on strategies for creating a common risk language and encouraging accountability.

Join us for an interactive Deep Dive session where we will delve into the following topics and actively encourage participation and discussion from all attendees.

  • Creating a common risk language that is understood by all stakeholders in the organization, from IT to business leaders, to facilitate effective communication and decision-making.
  • Building a playbook that helps the business identify actual exposure to cyber risks and their potential impact on the organization.
  • Strategies for making cybersecurity everyone's responsibility, encouraging a culture of accountability and empowering employees to take ownership of their role in protecting the organization from cyber threats     
  • 05:00 PM
  • 05:59 PM
Adam Wedgbury
Deep Dive: Building Resilient Supply Chain Cybersecurity Strategies for 2023 and Beyond
Adam Wedgbury, Head of Enterprise Digital Security Architecture, Airbus

2023 is a crucial year for supply chain cybersecurity as current trends indicate a rise in more severe and frequent cyberattack. Organizations face a plethora of new threats on a daily basis that endanger their critical networks. As a result, cybersecurity leaders are increasingly prioritizing gaining visibility into the security risks posed to their organization by their supply chain or third-party vendors. To effectively mitigate third-party cyber risk, next-generation cybersecurity practices will necessitate organizations aligning both internal and external cybersecurity risk processes to create a standardized process.

In this interactive Deep Dive session, we will explore

  • Explore the intersection of third-party risk management and internal cybersecurity practices
  • Learn how to map external third-party risk to internal cybersecurity controls and evaluate control effectiveness against both internal and external risks

Prioritize cyber/third-party risk projects based on control gaps and domain inefficiencies to build a united cybersecurity program that protects against internal and external threats

  • 05:00 PM
  • 05:59 PM
Don Gibson
Deep Dive: Protecting the Health of Our Cybersecurity Teams: Strategies for Personal Resilience and Wellbeing
Don Gibson, Global CISO, Kinly

Last year, the UK government announced its National Cyber Strategy for 2022, a comprehensive plan aimed at creating a more secure and resilient nation. However, with the constantly shifting threat landscape, long work hours, a lack of resources, and high staff turnover, cybersecurity teams are at risk of experiencing stress and burnout, which can ultimately affect their ability to keep the nation secure.

To ensure the success of the National Cyber Strategy, it is crucial to prioritize the personal resilience and wellbeing of cybersecurity teams. Understanding how stress and burnout are emerging in the workplace today and the impact they can have on individuals and teams.

In this interactive Deep Dive session, we will explore the following topics in depth and encourage discussion and participation from all 

  • The importance of leaders showing vulnerability and leading by example to create a culture of openness and support.
  • Tools and techniques to build personal resilience, manage stress, and prevent burnout, such as mindfulness, exercise, and time management strategies.
  • How organizations can take proactive steps to protect the wellbeing of their cybersecurity teams, including creating supportive policies and providing access to mental health resources
  • 05:00 PM
  • 05:59 PM
Glen Hymers
Deep Dive: Data Protection in Practice: Case Studies and Lessons Learned for Public and Private Organizations
Glen Hymers, Head of Data Privacy and Compliance, Cabinet Office

In this Deep Dive session, we will discuss the increasingly critical role of data protection in both public and private sector environments. We will explore the legal responsibilities of organizations in the UK under various pieces of legislation, as well as the moral imperative to protect individuals' data. The significance of protecting all aspects of information, including sensitive data about individuals, in both public and private sector environments.

In this interactive Deep Dive session, we will explore:

  • The legal responsibilities of organizations in the UK to protect personal data, including the Data Protection Act, the General Data Protection Regulation, and other relevant legislation.
  • The moral obligation of organizations to act in their customers' best interests and protect their personal data.
  • Best practices and strategies for ensuring effective data protection in both public and private sector environments, including risk assessments, training and awareness, and implementing appropriate technical and organizational measures.

               

Refreshment Break
  • 06:00 PM
  • 06:29 PM
  • 06:30 PM
  • 07:29 PM
Adam Wedgbury
Deep Dive: Building Resilient Supply Chain Cybersecurity Strategies for 2023 and Beyond
Adam Wedgbury, Head of Enterprise Digital Security Architecture, Airbus

2023 is a crucial year for supply chain cybersecurity as current trends indicate a rise in more severe and frequent cyberattack. Organizations face a plethora of new threats on a daily basis that endanger their critical networks. As a result, cybersecurity leaders are increasingly prioritizing gaining visibility into the security risks posed to their organization by their supply chain or third-party vendors. To effectively mitigate third-party cyber risk, next-generation cybersecurity practices will necessitate organizations aligning both internal and external cybersecurity risk processes to create a standardized process.

In this interactive Deep Dive session, we will explore

  • Explore the intersection of third-party risk management and internal cybersecurity practices
  • Learn how to map external third-party risk to internal cybersecurity controls and evaluate control effectiveness against both internal and external risks

Prioritize cyber/third-party risk projects based on control gaps and domain inefficiencies to build a united cybersecurity program that protects against internal and external threats           

      

  • 06:30 PM
  • 07:29 PM
Glen Hymers
Deep Dive: Data Protection in Practice: Case Studies and Lessons Learned for Public and Private Organizations
Glen Hymers, Head of Data Privacy and Compliance, Cabinet Office

In this Deep Dive session, we will discuss the increasingly critical role of data protection in both public and private sector environments. We will explore the legal responsibilities of organizations in the UK under various pieces of legislation, as well as the moral imperative to protect individuals' data. The significance of protecting all aspects of information, including sensitive data about individuals, in both public and private sector environments.

In this interactive Deep Dive session, we will explore:

  • The legal responsibilities of organizations in the UK to protect personal data, including the Data Protection Act, the General Data Protection Regulation, and other relevant legislation.
  • The moral obligation of organizations to act in their customers' best interests and protect their personal data.
  • Best practices and strategies for ensuring effective data protection in both public and private sector environments, including risk assessments, training and awareness, and implementing appropriate technical and organizational measures.
  • 06:30 PM
  • 07:29 PM
Dom Lucas
Deep Dive: Translating Cyber Risk and Loss Exposure into Quantifiable Measures: Strategies for Creating a Common Risk Language and Encouraging Accountability
Dom Lucas, Head of Security, British International Investment

As every business faces unique cyber risks, it is crucial for cybersecurity teams to not only identify these risks but also help business leaders understand the operational risks they pose and quantify the resulting business risks. This Deep Dive will delve into the art and science of translating cyber risk and loss exposure into quantifiable measures, with a focus on strategies for creating a common risk language and encouraging accountability.

Join us for an interactive Deep Dive session where we will delve into the following topics and actively encourage participation and discussion from all attendees.

  • Creating a common risk language that is understood by all stakeholders in the organization, from IT to business leaders, to facilitate effective communication and decision-making.
  • Building a playbook that helps the business identify actual exposure to cyber risks and their potential impact on the organization.

Strategies for making cybersecurity everyone's responsibility, encouraging a culture of accountability and empowering employees to take ownership of their role in protecting the organization from cyber threats

  • 06:30 PM
  • 07:29 PM
Don Gibson
Deep Dive: Protecting the Health of Our Cybersecurity Teams: Strategies for Personal Resilience and Wellbeing
Don Gibson, Global CISO, Kinly

Last year, the UK government announced its National Cyber Strategy for 2022, a comprehensive plan aimed at creating a more secure and resilient nation. However, with the constantly shifting threat landscape, long work hours, a lack of resources, and high staff turnover, cybersecurity teams are at risk of experiencing stress and burnout, which can ultimately affect their ability to keep the nation secure.

To ensure the success of the National Cyber Strategy, it is crucial to prioritize the personal resilience and wellbeing of cybersecurity teams. Understanding how stress and burnout are emerging in the workplace today and the impact they can have on individuals and teams.

In this interactive Deep Dive session, we will explore the following topics in depth and encourage discussion and participation from all 

  • The importance of leaders showing vulnerability and leading by example to create a culture of openness and support.
  • Tools and techniques to build personal resilience, manage stress, and prevent burnout, such as mindfulness, exercise, and time management strategies.
  • How organizations can take proactive steps to protect the wellbeing of their cybersecurity teams, including creating supportive policies and providing access to mental health resources
Closing Comments
  • 07:30 PM
  • 07:59 PM

Speaker Interviews

May 11, 2023

ISMG Engage - London