#RISK Digital Global — 15 September 2026
LIVE & ONLINE · 15 SEPTEMBER 2026 · 10:00–17:00 BST

Straight answers on risk, straight to your screen.

One day. Thirty-plus risk, compliance and cyber leaders. No slides you've seen before, no scripts, no travel. Just the conversations you'd have if you could get everyone in one room — live, unscripted, and free to attend from wherever you're logged in.

ON THE AGENDA
10:00 — #RISK QT: live Q&A on GRC, hosted by Nick James 12:00 — The Automation Shift: compliance readiness to continuous proof 13:00 — Third-Party Ecosystem Risk: the cascading domino effect 14:15 — The New Perimeter: cloud postures & autonomous AI pipelines 15:00 — Anatomy of a Crisis: front-line lessons from major cyber shocks 15:45 — DORA Deadlines & Model Risk Governance for financial services 16:15 — Translating PQC Risk Into Revenue: Quantum PQC Risk Quantification and Board Strategy 10:00 — #RISK QT: live Q&A on GRC, hosted by Nick James 12:00 — The Automation Shift: compliance readiness to continuous proof 13:00 — Third-Party Ecosystem Risk: the cascading domino effect 14:15 — The New Perimeter: cloud postures & autonomous AI pipelines 15:00 — Anatomy of a Crisis: front-line lessons from major cyber shocks 15:45 — DORA Deadlines & Model Risk Governance for financial services 16:15 — Translating PQC Risk Into Revenue: Quantum PQC Risk Quantification and Board Strategy
8
Hours of live programming
30+
Risk, compliance & cyber leaders
9
Sessions, panels & fireside chats
0
Miles travelled to attend
WHY IT'S WORTH THE MORNING

Built around the risks actually keeping you up at night.

Every session on 15 September was shaped by practitioners, not marketers. Expect fewer frameworks, more of what's actually working — and what isn't.

GRC

Governance, risk & regulatory change

From the UK Corporate Governance Code to the EU Cyber Resilience Act — where manual assurance is breaking, and what intelligent GRC actually looks like.

TPRM

Third-party & ecosystem risk

Hidden dependencies, cascading failures, and how resilient organisations are getting visibility beyond their direct suppliers.

CYBER

Cyber resilience & crisis response

Front-line lessons from major enterprise cyber shocks — the systems, people and culture that determine whether you recover stronger or don't recover at all.

AI & CLOUD

AI governance & cloud security

Securing the new perimeter — cloud postures, autonomous AI pipelines, and the guardrails that keep innovation from outrunning oversight.

DORA

Financial services resilience

Turning DORA deadlines and model risk governance from a compliance scramble into sustainable operational resilience.

BOARD

Risk in the boardroom

How to quantify cyber and operational risk in language the board actually understands — and turn insight into strategic weight.

THE AGENDA — 15 SEPTEMBER 2026 · BST

Nine sessions. Zero fluff.

Log in when it suits you, or block out the whole day. Every session is moderated by a practitioner, not a presenter.

10:00
–10:40OPENER

#RISK QT: Everything you wanted to know about GRC and risk but were afraid to ask

Live Q&A

No slides, no scripts — just straight answers from people who've been there, on the regulatory shifts and practical challenges facing risk and compliance teams today.

Hosted by Nick James, Founder, #RISK Europe, with Stefan Gershater (Strategic Risk Thinker, Provocative on Risk Orthodoxy, Practitioner), Justin Crump (CEO, Sibylline) and Emma Price (Former Big 4 Partner & NED, BRAVE)

10:40
–11:20

Modernising Control Self‑assessment in EMEA: From Manual Burden to Intelligent Assurance

Sponsored by: Auditboard

Control self‑assessment (CSA) is a priority across EMEA as organisations face rising non‑financial regulatory expectations, including the UK Corporate Governance Code and the EU Cyber Resilience Act. Yet, most companies still rely on manual, spreadsheet‑driven CSA processes that create operational friction, inconsistent control execution, and audit fatigue for control owners.

Annemie Pelgrims (TriFinance Risk Advisory Belgium) and Joke Hoste (Global ERM & Internal Controls Manager, Bekaert)

11:20
–12:00

How Ready Are You to Recover? Benchmarking Operational Resilience and Third-Party Risk Maturity

Most organisations have resilience plans. Far fewer have a connected view of the services, suppliers and cyber dependencies that determine whether recovery will work when disruption occurs.

Gary Lynam, Managing Director EMEA, Protecht

12:00
–12:40

The Automation Shift: Moving from Compliance Readiness to Continuous Proof

Panel

As regulatory demands grow, organisations must move beyond reactive compliance and manual evidence gathering. This session explores how automation and connected GRC strategies can help teams maintain continuous assurance, reduce workloads, and provide real-time proof of compliance.

Moderated by Cha'Von Clarke-Joell (CKC Cares), with Priyanka Chatterjee (CEO, London School of Cybersecurity), Rene Clayton (Byte Strategy AI), Stefano Barone (AML/CTF Consultant), Christoph Becker (Compliance Solutions Director, Impero) and Mick Amelishko (Senior Engineering Manager, SumSub)

12:40
–13:00

Improving Risk Maturity: What to Fix First, and What Can Wait

Knowing your organisation’s current level of risk maturity is only the starting point. This practical session explores how to prioritise the improvements that create real value, identify what can wait, and sequence change without adding unnecessary process or headcount. Attendees will learn how to build maturity incrementally using the people and capabilities they already have.

Matej Dammer, Clew

13:00
–13:40

The Cascading Domino Effect: Redefining Third-Party Ecosystem Risk

Panel

Third-party risk now extends far beyond direct suppliers, with hidden dependencies creating new vulnerabilities. This panel explores how organisations can improve visibility, identify emerging risks, and build stronger, more resilient supplier ecosystems

Moderated by Matthew Crane (Cboe Global Markets), with Susanne Bitter (Cyber Security Forum Initiative), Eni Xhaferaj (Veethah Orbital), Philipp Wiegand (CEO, Bayshore), and Michael Keslassy (CTO and Co-Founder of Vendict)

14:15
–15:00

The New Perimeter: Guarding Cloud Postures and Autonomous AI Pipelines

Cloud adoption and AI innovation are redefining the boundaries of eneterprise security. This session examines how organisations can protect expanding digital environments, strengthen visibility, and secure the systems, data and AI pipelines powering modern business.

Moderated by Jill S. Heinze (Principal AI Strategist, GroundSpring), with Michael Kurzer (Shareholder, Vedder)

15:00
–15:45

Anatomy of a Crisis: Front-Line Lessons on Systems, People & Culture from Major Enterprise Cyber Shocks

Panel

Major cyber incidents expose more than technical weaknesses - they test people, processes and culture. Leaders share real-world lessons on crisis response, communication, resilience, and building organisations that can recover stronger.

Moderated by Frank Brown (GRR Consulting), with Dr Marc Pharoah, Nicola Cain (Handley Gill), Xenia Bogomolec (Quant-X Security & Coding), Cameron Brown (Ariel Re), and Stephan Trenker (Senior Associate Consultant, DataGuard)

15:45
–16:15

Financial Services Resilience: Navigating DORA Deadlines and Model Risk Governance

Sponsored by: Drata

Financial firms must transform regulatory compliance into sustainable operational resilience. This session explores DORA, AI and model risk governance, highlighting how integrated controls can support stronger, smarter financial services operations.

Moderated by Simon Robinson (CAIO, Boardman), with Dr. Nathalie Moreno (Partner, Kennedys), and Lindsay Vogel (Managing attorney at Gamut Privacy)

16:15
–17:00CLOSER

Translating Risk Into Revenue: Cyber Risk Quantification and Board Strategy

Panel

Risk leaders must communicate cyber and operational threats in a language the board understands. This panel explores how organisations can quantify risk, demonstrate business impact, and turn risk insight into strategic decision-making.

Moderated by Priyanka Chatterjee, with Steven O'Sullivan Cameron Brown (Ariel Re), and Tom Teixeira (Head of Resilience, Arthur D. Little)

CONFIRMED SPEAKERS

A selection of our keynotes and pannelists.

CEOs, board advisers and heads of risk who deal in this every day — not case studies, the current situation.

NJ
Nick James
Founder, #RISK Europe
JC
Justin Crump
CEO, Sibylline
EP
Emma Price
Former Big 4 Partner & NED
PC
Priyanka Chatterjee
CEO, London School of Cybersecurity
MC
Matthew Crane
Enterprise Risk Oversight, Cboe Global Markets
NC
Nicola Cain
CEO & Principal Consultant, Handley Gill
NM
Dr. Nathalie Moreno
Partner, Kennedys
CB
Cameron Brown
Head of Cyber Threat & Risk Analytics, Ariel Re
JH
Jill S. Heinze
Principal AI Strategist, GroundSpring
FB
Frank Brown
Director, GRR Consulting
XB
Xenia Bogomolec
CEO, Quant-X Security & Coding
SO
Steven O'Sullivan
Chief Digital Officer, PQC & Emerging Tech
FREE TO ATTEND

Your Place is held. For now.

Two minutes to register, eight hours of the risk conversations that matter, no travel required.

Register & Invite Your Team →
#RISK Digital Global
15 SEPTEMBER 2026 · LIVE & ONLINE · 10:00–17:00 BST
Stefan Gershater Strategic Risk Thinker, Provocative on Risk Orthodoxy, Practitioner
Justin Crump CEO, Sibylline
Frank Brown Director, GRR Consulting
Priyanka Chatterjee  CEO, London School of Cyber Security, and Co-Founder, Sinevis
Susanne Bitter Head of Regional Strategic Alliances, Cyber Security Forum Initiative
Michael Keslassy  CTO & Co-Founder, Vendict
René Clayton  CEO, Byte Strategy AI & AI Solutions Architect
Simon Robinson CAIO, Boardman
Dr. Marc Pharoah Risk Governance & Risk Culture Innovation Lead, Voxsynta
Dr. Nathalie Moreno Partner, Kennedys Law LLP
Michael Kurzer Shareholder, Vedder
Xenia Bogomolec CEO, Quant-X Security & Coding GmbH
Eni Xhaferaj Founder & CEO, Veethah Orbital
Cha'Von (CJ) Clarke-Joell Founder & CEO, CKC Cares Group

Stefan Gershater

Strategic Risk Thinker, Provocative on Risk Orthodoxy, Practitioner

Justin Crump

CEO, Sibylline

Frank Brown

Director, GRR Consulting

Priyanka Chatterjee

CEO, London School of Cyber Security, and Co-Founder, Sinevis

Susanne Bitter

Head of Regional Strategic Alliances, Cyber Security Forum Initiative

Michael Keslassy

CTO & Co-Founder, Vendict

René Clayton

CEO, Byte Strategy AI & AI Solutions Architect

Simon Robinson

CAIO, Boardman

Dr. Marc Pharoah

Risk Governance & Risk Culture Innovation Lead, Voxsynta

Dr. Nathalie Moreno

Partner, Kennedys

Michael Kurzer

Shareholder, Vedder

Xenia Bogomolec

CEO, Quant-X Security & Coding GmbH

Eni Xhaferaj

Founder & CEO, Veethah Orbital

Cha’Von (CJ) Clarke-Joell

Founder & CEO, CKC Cares Group