One day. Thirty-plus risk, compliance and cyber leaders. No slides you've seen before, no scripts, no travel. Just the conversations you'd have if you could get everyone in one room — live, unscripted, and free to attend from wherever you're logged in.
Every session on 15 September was shaped by practitioners, not marketers. Expect fewer frameworks, more of what's actually working — and what isn't.
From the UK Corporate Governance Code to the EU Cyber Resilience Act — where manual assurance is breaking, and what intelligent GRC actually looks like.
Hidden dependencies, cascading failures, and how resilient organisations are getting visibility beyond their direct suppliers.
Front-line lessons from major enterprise cyber shocks — the systems, people and culture that determine whether you recover stronger or don't recover at all.
Securing the new perimeter — cloud postures, autonomous AI pipelines, and the guardrails that keep innovation from outrunning oversight.
Turning DORA deadlines and model risk governance from a compliance scramble into sustainable operational resilience.
How to quantify cyber and operational risk in language the board actually understands — and turn insight into strategic weight.
Log in when it suits you, or block out the whole day. Every session is moderated by a practitioner, not a presenter.
No slides, no scripts — just straight answers from people who've been there, on the regulatory shifts and practical challenges facing risk and compliance teams today.
Hosted by Nick James, Founder, #RISK Europe, with Stefan Gershater (Strategic Risk Thinker, Provocative on Risk Orthodoxy, Practitioner), Justin Crump (CEO, Sibylline) and Emma Price (Former Big 4 Partner & NED, BRAVE)
Sponsored by: Auditboard
Control self‑assessment (CSA) is a priority across EMEA as organisations face rising non‑financial regulatory expectations, including the UK Corporate Governance Code and the EU Cyber Resilience Act. Yet, most companies still rely on manual, spreadsheet‑driven CSA processes that create operational friction, inconsistent control execution, and audit fatigue for control owners.
Annemie Pelgrims (TriFinance Risk Advisory Belgium) and Joke Hoste (Global ERM & Internal Controls Manager, Bekaert)
Most organisations have resilience plans. Far fewer have a connected view of the services, suppliers and cyber dependencies that determine whether recovery will work when disruption occurs.
Gary Lynam, Managing Director EMEA, Protecht
As regulatory demands grow, organisations must move beyond reactive compliance and manual evidence gathering. This session explores how automation and connected GRC strategies can help teams maintain continuous assurance, reduce workloads, and provide real-time proof of compliance.
Moderated by Cha'Von Clarke-Joell (CKC Cares), with Priyanka Chatterjee (CEO, London School of Cybersecurity), Rene Clayton (Byte Strategy AI), Stefano Barone (AML/CTF Consultant), Christoph Becker (Compliance Solutions Director, Impero) and Mick Amelishko (Senior Engineering Manager, SumSub)
Knowing your organisation’s current level of risk maturity is only the starting point. This practical session explores how to prioritise the improvements that create real value, identify what can wait, and sequence change without adding unnecessary process or headcount. Attendees will learn how to build maturity incrementally using the people and capabilities they already have.
Matej Dammer, Clew
Third-party risk now extends far beyond direct suppliers, with hidden dependencies creating new vulnerabilities. This panel explores how organisations can improve visibility, identify emerging risks, and build stronger, more resilient supplier ecosystems
Moderated by Matthew Crane (Cboe Global Markets), with Susanne Bitter (Cyber Security Forum Initiative), Eni Xhaferaj (Veethah Orbital), Philipp Wiegand (CEO, Bayshore), and Michael Keslassy (CTO and Co-Founder of Vendict)
Cloud adoption and AI innovation are redefining the boundaries of eneterprise security. This session examines how organisations can protect expanding digital environments, strengthen visibility, and secure the systems, data and AI pipelines powering modern business.
Moderated by Jill S. Heinze (Principal AI Strategist, GroundSpring), with Michael Kurzer (Shareholder, Vedder)
Major cyber incidents expose more than technical weaknesses - they test people, processes and culture. Leaders share real-world lessons on crisis response, communication, resilience, and building organisations that can recover stronger.
Moderated by Frank Brown (GRR Consulting), with Dr Marc Pharoah, Nicola Cain (Handley Gill), Xenia Bogomolec (Quant-X Security & Coding), Cameron Brown (Ariel Re), and Stephan Trenker (Senior Associate Consultant, DataGuard)
Sponsored by: Drata
Financial firms must transform regulatory compliance into sustainable operational resilience. This session explores DORA, AI and model risk governance, highlighting how integrated controls can support stronger, smarter financial services operations.
Moderated by Simon Robinson (CAIO, Boardman), with Dr. Nathalie Moreno (Partner, Kennedys), and Lindsay Vogel (Managing attorney at Gamut Privacy)
Risk leaders must communicate cyber and operational threats in a language the board understands. This panel explores how organisations can quantify risk, demonstrate business impact, and turn risk insight into strategic decision-making.
Moderated by Priyanka Chatterjee, with Steven O'Sullivan Cameron Brown (Ariel Re), and Tom Teixeira (Head of Resilience, Arthur D. Little)
CEOs, board advisers and heads of risk who deal in this every day — not case studies, the current situation.
Two minutes to register, eight hours of the risk conversations that matter, no travel required.
Register & Invite Your Team →