In-Person

UK & Ireland CISO Community

Executive Summit

13 October 2026 | Convene at 155 Bishopsgate

13 October 2026
Convene at 155 Bishopsgate

Collaborate with your peers

Get together with UK & Ireland's top CISOs to tackle shared business challenges and critical priorities facing your role today. Participate in this one-day, local program with peer-driven topics and interactive discussions with your true C-level peers.

Join your peers to discuss the most critical issues impacting CISOs today:

Embedding Security as a Core Enterprise Strategy

Unlocking Innovation While Mastering Emerging Tech Risk

Rethinking Cybersecurity for an Unpredictable World

UK & Ireland CISO Governing Body

The Governing Body Co-Chairs shape the summit agenda, ensuring that all content is driven By CISOs, For CISOs®.

What to Expect

Interactive Sessions

Hear from CISO practitioners and thought leaders on how they're solving critical challenges impacting your role today in Keynote sessions, and join smaller, interactive discussions with your peers in Breakout and Boardroom sessions.

Community Networking

Make new connections and catch up with old friends in casual conversations during dedicated time for networking designed to better acquaint you with your UK & Ireland CISO community.

Peer-to-Peer Meetings

Connect with like-minded peers in a private, one-on-one setting through Peer-to-Peer Meetings. You will be matched with peers in your community based on your shared interests and priorities.

Agenda

12 October 2026

13 October 2026

18:00 - 21:00  Governing Body Private Dinner

Governing Body Welcome Reception

Join for dinner with peers: 

Ironmongers' Hall, Shaftesbury Place, Barbican, London EC2Y 8AA

08:00 - 09:00  Registration & Breakfast

09:00 - 09:45  Keynote

Responsible AI in Practice — A CISO's Guide to Security and Trust

Michael Tremante headshot

Michael Tremante

Field CTO

Cloudflare

As AI adoption accelerates, CISOs face growing pressure to enable innovation while managing an increasingly complex risk landscape. Across cloud, SaaS, edge, APIs, and AI-powered applications, threat actors are exploiting trusted services, automated attacks, and expanding digital ecosystems to operate undetected. To stay ahead, security leaders must build security, governance, and resilience into the foundation of AI and modern application strategies, ensuring innovation can be scaled responsibly without compromising trust.

Join this session to explore:

  • Managing emerging risks across AI, cloud, and SaaS ecosystems
  • Strengthening governance and controls for responsible AI adoption
  • Improving threat detection and resilience in distributed environments

09:45 - 10:00  Break

10:00 - 10:45  Breakout Session

Your Newest Employees Don't Have Badges— Governing the AI Agent Workforce

Adenike Cosgrove headshot

Adenike Cosgrove

CMO

Mimecast

Shadow IT took years to become a problem. Shadow AI took months. Agents are being deployed across the enterprise faster than security and governance can keep up, accessing sensitive data and acting autonomously, frequently outside anyone's line of sight and at any time of day or night.

The foundation of a secure agentic enterprise is visibility: knowing which agents exist, what they can access, and how they operate. From there, organisations can apply governance, accountability, and risk controls that enable innovation while maintaining trust and oversight.

  • Discover all AI agents
  • Govern access and permissions
  • Monitor behaviour and risk

10:00 - 10:45  Breakout Session

Securing the National Lottery — A Two-Year Digital Transformation

Mark Smith headshot

Mark Smith

CTO

Allwyn UK

Mark Hughes headshot

Mark Hughes

CSO

Allwyn UK

Allwyn has completed a groundbreaking two-year digital transformation, fundamentally reshaping the technology behind the National Lottery. Cybersecurity was embedded throughout the programme, ensuring the replacement of legacy systems strengthened security, resilience and trust at every stage. The result is a secure, future-ready platform designed to support the National Lottery's next chapter.

Join this session to learn how Allwyn has:

  • Embedded cybersecurity throughout a major transformation programme
  • Built a secure, scalable National Lottery platform
  • Strengthened resilience, trust and operational excellence

10:00 - 10:45  Executive Boardroom

From Oversight to Insight — Closing Gaps for Non-human Identities

Simon Gooch headshot

Simon Gooch

Field CIO

Saviynt

Martina Costelloe headshot

Martina Costelloe

SVP Information Security

SMBC Aviation Capital

Rob Merrett headshot

Rob Merrett

CISO

Credera

AI agents are now powerful, autonomous actors within enterprise networks—often holding more access and less oversight than human users. For CIOs and CISOs, this is a pivotal moment: identity is no longer a supporting role, but the centre piece of security strategy. As machine-to-machine interactions accelerate, so does the risk of identity exposure and unchecked access across your environment.

Join this boardroom to discuss:

  • Governance gaps for non-human identities and AI agents
  • The urgent need to unify visibility and controls across fragmented tools
  • How adaptive identity management can enable trust at the speed of innovation

10:00 - 10:45  Executive Boardroom

Proving ROI — Demonstrating AI Risk Reduction

Patricia Titus headshot

Patricia Titus

Field CISO

Abnormal AI

Neil Bennett headshot

Neil Bennett

CISO

Post Office Ltd

CISOs have moved beyond AI experimentation. Now, executives ask: Are 2026’s investments actually reducing risk? The challenge is how to operationalise AI against evolving threats—particularly the rise of sophisticated social engineering attacks—and prove its value. 

Join this session to discuss:

  • Reducing high-risk incidents—from fraud to emerging human-centric threats
  • Embedding AI into core security operations for proactive defense
  • Demonstrating measurable security improvements with actionable metrics

10:00 - 10:45  Executive Boardroom

Human Speed Is Not Enough Anymore — The Case for Autonomous Cybersecurity

Dan Jones headshot

Dan Jones

Senior Security Advisor

Tanium

Tobi Patterson-Jones headshot

Tobi Patterson-Jones

Group CISO

Compass Group PLC

Steve Treharne headshot

Steve Treharne

Group CISO

YTL UK

Enterprises are now moving faster than their operating models can support, with legacy processes, brittle architectures, and human‑centered resilience measures unable to keep pace with AI‑driven development cycles and the new agility expectations placed on CISOs. There will be a shift towards autonomous, self‑managing IT estates, but how to get there with the persistent challenges of operational drag and reactivity based models can seem an overwhelming question.
Join this session to learn:

  • A practical roadmap for evolving from manual operations to autonomous, self‑healing systems without losing governance or oversight
  • Organisational strategies to realign people, processes, and investment models around machine‑speed defence and recovery
  • A board‑ready framework for defining what autonomy is allowed to do, how actions are explained, and how to rapidly reverse errors at scale

      

10:45 - 11:55  Networking Break

10:55 - 11:45  Peer-to-Peer Meetings

Peer-to-Peer Meetings

Connect with like-minded peers in a one-on-one setting through Peer-to-Peer Meetings. You will be matched with peers in your community based on your shared interests and priorities.

11:55 - 12:40  Breakout Session

Resilience on Trial — AI Cyber Simulation for CISOs

Francesco Chiarini headshot

Francesco Chiarini

VP Cyber Resilience, CXO in residence

Rubrik

Step into a realistic cyber crisis simulation where an AI-enabled attack disrupts critical business operations and enterprise technology services. Working through key decision points, you'll explore how executive leaders make the strategic calls that shape organizational resilience - balancing continuity, stakeholder trust, and recovery to return to a secure, trusted operating state after a major cyber event. Security Leaders will challenge assumptions about preparedness and what it really takes to recover.

Join this interactive session to learn more about:

  • AI-driven attacks and their impact on business continuity
  • Balancing risk, continuity, and recovery when systems, data, and AI are compromised
  • Leading cross-functionally through crisis, from decision-making authority to stakeholder communication

11:55 - 12:40  Breakout Session

From AI Chaos to Control — Securing the Modern Platform

James Savory headshot

James Savory

Head of Northern Europe

Island

As AI adoption accelerates across UK organisations,  CISOs face a growing challenge: governing AI-driven workflows with security architectures built for a pre-AI world. Prompts, copy-paste actions, agent tool calls, and generated outputs occur at the point of work, often beyond the visibility and control of traditional network-based enforcement.

Join this session to learn more on:

  • Where SASE gaps create unseen AI risk and data exposure
  • How to adopt last-mile AI controls without disruption
  • Why AI governance breaks down at the point of work

11:55 - 12:40  Executive Boardroom

Defending at Machine-Speed — Building AI Threat Readiness

Julia Weimer headshot

Julia Weimer

Head of Solutions Engineering, UK&I

Wiz

John Dunne headshot

John Dunne

Head of IT Security

Grant Thornton

Alan Bambury headshot

Alan Bambury

CISO

Kerry Group

AI is accelerating how vulnerabilities are created, discovered, and exploited—shrinking the window to respond. Many teams are asking the same question: how do we operate in a world where vulnerabilities can be exploited faster than ever?

Join this session to learn:

  • Focus on the vulnerabilities that are truly exploitable
  • Prioritize and fix critical risk faster with code, cloud, and runtime context
  • Stay ahead of AI-driven threats with continuous threat readiness

11:55 - 12:40  Executive Boardroom

Accelerating AI with Governance — From Control to Orchestration

Simon Tong headshot

Simon Tong

Cyber Security Governance Manager

SLB

As agentic AI moves into execution, governance becomes the foundation for scale. AI agents operate across data, identities, and business processes at machine speed, making data not simply an asset, but the new control plane. CISOs must evolve from enforcing controls to orchestrating data‑centric, intent‑aware governance that enables safe, rapid AI adoption.

Join this session to learn how to:

  • Detect and govern emerging risk behaviors in autonomous AI systems
  • Implement a data-centric, intent-aware governance model that scales with AI
  • Establish the CISO as the orchestrator of AI enablement and a driver of business growth


11:55 - 12:40  Executive Boardroom

The Browser-First Perimeter — Architecting Security for the Modern Enterprise

Dean Paterek headshot

Dean Paterek

Head of EMEA - P&D Enterprise Solutions

Google

As the enterprise landscape shifts toward cloud-first operations, the browser has become the new operating system, with over 85% of enterprise work now occurring within the browser. Yet, this critical point of entry remains a significant blind spot.

With 68% of organizations reporting an increase in browser-based incidents over the last two years, security leaders are facing a critical challenge: how to secure the modern perimeter without stifling productivity.

Join this boardroom to discuss:

  • Why traditional stacks often overlook browser-based risks.
  • Balancing the "gold rush" of AI adoption with the need for data loss prevention and shadow AI guardrails.
  • Moving from legacy infrastructure protection to identity and browser-centric security.

12:40 - 13:20  Lunch Service

13:20 - 14:00  Keynote

Modernising the SOC for Machine-Speed Defence

Jay Chaudhry headshot

Jay Chaudhry

CEO, Chairman & Founder

Zscaler

Security operations centers (SOCs) are facing a new reality - attackers are leveraging AI to automate multi-step attacks, outpacing human-driven response and overwhelming traditional workflows. CISOs must reimagine their SOCs to operate at machine speed, integrating AI-driven detection, orchestration, and remediation. How should CISOs transform their SOCs with agentic workflows, closed-loop automation, and continuous red teaming that empowers security teams to contain threats faster and reduce business risk?

Join this session to learn:

  • Integrating AI-driven detection and automated response workflows
  • Operationalising continuous red teaming for proactive threat hunting
  • Accelerating containment and remediation to reduce business risk

14:00 - 14:15  Break

14:15 - 15:00  Breakout Session

Game Changers—The Technology & Strategy Required to Level Up in the Cyber Defence Arena

Richard Meeus headshot

Richard Meeus

Director, Security Technology & Strategy

Akamai Technologies

The cyber defence landscape is undergoing a fundamental shift, moving from static protection to a complex, multi-player environment where the stakes are higher than ever. As traditional threats evolve into boss-level challenges, security leaders are forced to reconsider their strategies and infrastructure. The best leadership insights don’t only come from frameworks—they come from the friction of real-world execution. Using personal anecdotes and a live dialogue, this session explores the art of levelling up in a modern security arena.

Join this session to discover:

•    Collaborative insights into solutions for our shared security challenges

•    Practical methods for prioritising active mitigation over passive visibility

•    Unique insights from Akamai’s unparalleled data and scale

14:15 - 15:00  Breakout Session

Leading Through Crisis— How CISOs Navigate Turbulent Times and Lessons from the TFL Cyber Attack

Jules Gascoigne headshot

Jules Gascoigne

CISO

Transport for London

In today’s unpredictable environment, cyber incidents are increasingly common, making them a matter of “when, not if.” This session will explore key lessons learned from the TFL incident, with a focus on the important role of human factors in resilience and recovery.Jules Gascoigne, CISO at TFL, will share practical insights on guiding teams through periods of uncertainty. CISOs are not only responsible for protecting their organisations, but also for supporting their teams during high-pressure situations. We will discuss how cyber-attacks affect the well-being of security teams and examine strategies for fostering psychological safety even during an incident.

Key Takeaways:

  • Understanding the human factors that influence response effectiveness
  • The CISO’s role in navigating crises and supporting team resilience
  • Actionable steps to maintain psychological safety and well-being within cyber security teams during incidents

14:15 - 15:00  Executive Boardroom

Scaling AI Without Losing Control— Building the Trust Layer for AI

Dana Simberkoff headshot

Dana Simberkoff

Chief Risk, Privacy, and Information Security Officer

AvePoint

Dan Evans headshot

Dan Evans

Head of Cyber Security, UK

Vodafone Group

Confidence in AI security remains high, yet security incidents continue to rise. As agentic AI drives rapid data growth and real-time risk, traditional governance models can no longer keep pace. This session explores a practical framework for continuous control, helping CISOs identify sensitive data, recover critical assets, and maintain visibility as AI scales. Attendees will gain a pragmatic approach to reducing risk, meeting regulatory requirements, and strengthening security in AI-driven environments.

Key Takeaways

  • Move from point-in-time governance to continuous control
  • Identify risk, recover critical data, and maintain control at scale
  • Support AI adoption while maintaining security and compliance

14:15 - 15:00  Executive Boardroom

From Software to AI Supply Chains — Building Trust in the Age of Autonomous Technology

Chester Wisniewski headshot

Chester Wisniewski

Director & Global Field CISO

Sophos Inc

Manish Chandela headshot

Manish Chandela

CISO

Sportradar

Hugh Gilmour headshot

Hugh Gilmour

Group CISO

Aptia Group


AI is reshaping technology supply chains and introducing new risks beyond traditional third-party risk management. As AI becomes embedded across vendor offerings, security leaders must assess governance, transparency, and accountability alongside existing security controls. This session explores how CISOs can evolve trust and risk programs to balance innovation with resilience across the AI supply chain.

Join this session to discuss:

  • How AI is changing third-party risk management and supplier assurance
  • Key considerations for evaluating AI-enabled vendors and services
  • How governance, transparency, and accountability strengthen AI supply chain resilience


14:15 - 15:00  Executive Boardroom

Offensive Security Without Human Bottlenecks — What Breaks and What Scales

Albert Ziegler headshot

Albert Ziegler

SVP of AI

XBOW

Soraya Viloria-Montes de Oca headshot

Soraya Viloria-Montes de Oca

GISO

Harvey Nichols

Modern attacks are now operating at machine speed, exposing the structural limits of human‑paced security

models. As traditional detection and validation methods fail against autonomous threats, adopting persistent, self-sustaining security practices is now critical for resilience.

Join this session to discuss:

  • Identifying which defenses break down first against machine-speed attacks
  • Adopting nonstop, automated security testing at scale
  • Scaling security to meet the new magnitude and speed of AI‑generated software

15:00 - 15:20  Networking Break

15:20 - 16:05  Breakout Session

Workshop— Tackling Today’s Biggest CISO Challenges

Malcolm Norman headshot

Malcolm Norman

CISO

AngloAmerican

Claire Davies headshot

Claire Davies

Partnership CISO

John Lewis Partnership

 Practical, discussion-led workshop exploring the challenges shaping security leadership today. Through realistic scenarios and peer discussion, participants will share perspectives and identify actionable approaches.

  • Frontier AI: Machine-speed threats and opportunities.
  • Security Culture: Behavior over awareness, phycological safety, and shared responsibility.
  • Board Engagement: Shift to resilience metrics.

15:20 - 16:05  Executive Boardroom

The Security Implications of Shadow Engineering, Unmanaged Devices and AI Consumption

Jon Abbott headshot

Jon Abbott

CEO

THREATAWARE

Dan Mullen headshot

Dan Mullen

Head of Cyber & Data Security

Vertu Motors

David Bowen headshot

David Bowen

CISO

Tesco Mobile

Jaspal Bains headshot

Jaspal Bains

CISO NGET

National Grid

Most AI security conversations focus on attackers. This session looks at the impact inside organisations, where AI is breaking three assumptions governance relies on: knowing who builds software, what exists in the environment, and what it costs. AI is enabling unreviewed application development, expanding the risk posed by unmanaged devices, and making technology costs harder to predict and control. This discussion explores what leaders must be able to measure and why deterministic answers remain critical.

The three discussion topics

  • Shadow IT is becoming shadow engineering, including within security teams.
  • Unmanaged devices now create significantly greater risk.
  • AI consumption costs are unpredictable and can be influenced by attackers.

15:20 - 16:05  Gartner Boardroom

Transform Your Cybersecurity Operating Model to Enhance Risk Oversight

Derek Taylor headshot

Derek Taylor

Executive Partner, Gartner for CISO Executive Programs

Gartner

According to Gartner, 55% of CISOs highlight outdated organisational structures as the biggest challenge to improving their cybersecurity posture. Siloed teams and reactive approaches leave critical gaps in cyber risk oversight. How can CISOs shift to a model which puts business needs first and creates clear accountability?

Join this Executive Boardroom to discuss more on how to:

  • Rethink your operating model to predict change and risks rather than react
  • Customise cybersecurity frameworks to respond to business needs to ensure resilience
  • Implement RASCI frameworks to clarify accountability and enhance efficiency

16:05 - 16:15  Break

16:15 - 17:00  Keynote

The Need For Businesses to Deal With Disinformation in a World Without Truth

Dave Aron headshot

Dave Aron

Distinguished VP Analyst

Gartner

In a world defined by uncertainty, the value of truth has never been higher; or more under siege. Organisations aren’t just battling “fake news” anymore; they’re up against weaponised narrative attacks. The challenge is no longer just defending the brand, but safeguarding the foundations of decision-making. In this new era, Technology Leaders are well positioned to lead the C-Suite forward, urging them to take true ownership of organisational trust, making it a strategic asset.

Join this session from Dave Aron, Gartner Research Fellow, to learn how you can:

  • Understand the emergence of disinformation, and insulate your organisation from harm, inefficiency, and distrust
  • Establish proactive monitoring systems, and ensure information integrity
  • Draw from practical examples to leverage the unforeseen threats of AI, and strengthen the efficacy of the board

17:00 - 18:00  Closing Comments and Prize Drawing

12 October 2026

13 October 2026

We look forward to seeing you at an upcoming in-person gathering

Gartner cares about the health and safety of our community. If you are feeling unwell, please refrain from attending the conference. At this time, Gartner does not have any health-related requirements in place for attendance. Should this change, we will follow up with updated guidance.

Location

Venue & Accommodation

Convene at 155 Bishopsgate
More Information

Your Community Sponsors

Global Thought Leaders

CIO Thought Leader

CISO Thought Leader

Key Sponsors

Program Sponsors

Community Programme Manager

For inquiries related to this community, please reach out to your dedicated contact.

Chloe Stevenson

Manager, Communities

+44 (0)7701 308 236

chloe.stevenson@gartner.com