Brief Agenda

October 6, 2026

08:00 am

08:30
09:00
Registration & Morning Networking

09:00 am

09:00
09:10
Conference Chair’s Welcome Remarks

John Erik Setsaas

Setsaas Trust Advisory
09:10
10:10
Morning Power Hour Panel Session - Setting the Stage
Identity First Security: The New Foundation of Enterprise Trust
  • What does “Identity First Security” really mean in practice?
  • Why is identity becoming the primary security perimeter?
  • Is Zero Trust evolving into an outcome of Identity First Security?
  • How are AI, machine identities and autonomous agents reshaping enterprise trust?
  • Why are non-human identities (NHI) becoming the next major security challenge?
  • How should organisations prepare for Identity Threat Detection & Response (ITDR)?
  • Why do security transformations struggle when moving from strategy to enterprise-wide execution?
  • How do identity, data and cyber resilience work together as one security strategy?
  • How do leaders balance resilience, innovation and user experience?
  • Are legacy IAM programmes ready for cloud-native and AI-driven enterprises?
  • Where should organisations prioritise investment: IAM, PAM, ITDR, AI Security or Identity Governance?
  • How are DORA, NIS2 and the European Digital Identity framework influencing security priorities?
  • What will separate Identity First security leaders from laggards by 2030?

Pawel Bildziuk

Hapag-Lloyd AG

Andrea Szeiler

MVM

Nils Kaiser

Robert Bosch

Ray Irving

Sygnum Bank

John Erik Setsaas

Setsaas Trust Advisory (Moderator)

10:00 am

10:10
10:30
Sovereignty by Design: From Bring Your Own Key to Full Architectural Control
  • Why data sovereignty and digital sovereignty are not the same question
  • Bring Your Own Key to Hold Your Own Key: mapping the real spectrum of control
  • Why customer-held keys mean even a government subpoena can't unlock your data
  • From air-gapped on-premises to hosted control — where sovereignty actually lives

Philipp Wittek

Kiteworks
10:30
10:50
Product Cybersecurity Governance in the AI Era
  • Product cybersecurity an emerging problem
  • Overview of cross domain cybersecurity regulation
  • Highlight AI governance as the shared frontier

Dr. Ioana Teodoreanu

AUMOVIO
10:50
11:10
Navigating Permanent Disorder
  • How continuous disruption is reshaping resilience and security leadership
  • Bridging the gap between boardroom strategy and frontline execution
  • Building organisational agility through faster decision-making and empowered teams
  • Turning uncertainty into resilience, adaptability, and competitive advantage

Valeria Castellani

Prada Group

11:00 am

11:10
11:35
Morning Networking Break/ Pre-Arranged Meetings (25 minutes)
11:35
12:15
Panel 2: Securing Identity & Access in Real Time
  • Why has identity become the primary control layer in modern cybersecurity?
  • How are organisations evolving IAM beyond authentication and access administration?
  • Where do IGA programmes still struggle at enterprise scale?
  • How are organisations addressing privileged access risks across employees, third parties and cloud?
  • What impact will the EUDI Wallet and Europe’s digital identity framework have on enterprise IAM?
  • How are SCA/2FA and continuous authorisation evolving across digital banking channels?
  • What does continuous authorisation and adaptive access look like in practice?
  • How should identity and data protection strategies work together in real time?
  • How can real-time fraud monitoring leverage identity context to protect digital interactions?
  • How are organisations securing machine identities, APIs, service accounts and workloads?
  • What role can behavioural analytics and ITDR play beyond authentication?
  • How should IAM evolve as AI agents access enterprise systems and data?
  • How can organisations balance security, data protection, user experience and DORA/NIS2 compliance?
  • How does AI-driven automation make authorization more critical?
  • How can trust move from one-time authentication to continuous assessment?
  • How can organisations verify payment intent beyond a valid OTP?
  • Can the EUDI Wallet simplify onboarding and strong authentication?

Anmol Singh

Olympus Corporation

Francesco Aicardi

European Commission

Andreas Avato

Deutsche Bank

Carine Hohmann

Independent Consultan (Moderator)

12:00

12:15
12:35
Identity-First Architecture: Bridging Compliance & Continuous Trust
  • From legacy IAM to identity as the primary security perimeter
  • Balancing frictionless access with real-time risk and privilege management
  • Aligning identity security with business agility and regulatory compliance

Roland Baum

Umbrella.Associates
12:35
13:35
Networking Lunch/ Pre-arranged Meetings (60 mins)

13:00

13:35
14:15
Panel 3: AI vs AI: Defending Against Autonomous Cyber Threats
  • How is AI changing the nature and speed of cyberattacks?
  • Are we already seeing fully autonomous attack patterns in the wild?
  • How are organisations deploying AI within SOC and threat detection?
  • Should every enterprise AI agent have a governed identity, and who owns that identity?
  • How are AI and autonomous agents reshaping the cyber threat landscape?
  • Are autonomous cyberattacks already a reality, and how should organisations respond?
  • How is AI transforming SOC operations, threat detection and incident response?
  • How do you detect AI-generated threats such as deepfakes and synthetic attacks?
  • How should AI agents authenticate and access enterprise resources?
  • How do organisations prevent excessive privileges for AI agents?
  • Can existing IAM and PAM secure AI agents, or is a new model needed?
  • How do you detect rogue, compromised or impersonated AI agents?
  • How should trust between AI agents and machines be established?
  • How are deepfakes and synthetic identities changing identity security?
  • How do organisations balance autonomous defence with human oversight?

Nils Kaiser

Robert Bosch

Adrian Iacomi

Siemens Energy

Diana P.

Yunex Traffic

Can Yildiz

CYI-Consulting

Amela Gjishti

Women in Cybersecurity AI Affiliate (Moderator)

14:00

14:15
14:35
Do You Really Know Your Customers? Trust, Digital Onboarding & Deepfakes
Deepfakes are making it increasingly difficult to verify who is really behind a digital identity. As digital onboarding evolves, traditional safeguards are being challenged by increasingly sophisticated fakes.
What are the consequences of fake identities entering your system, and how can businesses stay ahead?

John Erik Setsaas

Setsaas Trust Advisory
14:35
14:55
Networking Break (20 minutes)
14:55
15:35
Panel 4: Fraud, Identity Threats & Digital Trust in an AI-Driven World
  • How is fraud evolving with AI, automation, and identity attacks?
  • How are deepfakes, synthetic identities and impersonation changing digital fraud?
  • What role does identity verification and proofing play in fraud prevention today?
  • Where should KYC, authentication, behavioural intelligence and fraud detection intersect?
  • How are organisations detecting account takeover and identity fraud in real time at scale?
  • How can financial institutions and enterprises balance frictionless experiences with stronger identity assurance?
  • What role does behavioural analytics play in detecting compromised or manipulated identities?
  • How is AI changing the relationship between cybersecurity, fraud and FinCrime teams?
  • How is liability evolving when AI-driven identity fraud gets through?
  • What does continuous identity assurance look like beyond onboarding and initial KYC?
  • How can organisations protect customer trust as identity attacks become more sophisticated?

Eduard Singer

neusinger GmbH

Susann Gäbler

Openbank Deutschland

Kameliya Stoeva

KBC Bank & Verzekering

Sven Hezel

24metrics.com

Andres Maurer

Prod AG (Moderator)

15:00

15:35
16:15
Panel 5: Building Cyber Resilience in a Volatile World
  • How are geopolitical tensions reshaping cybersecurity and identity-security strategies?
  • What are the biggest risks within third-party, supply-chain and privileged-access ecosystems?
  • How should organisations approach cyber resilience beyond prevention?
  • What role do identity governance and data governance play in enterprise resilience?
  • How are organisations aligning security programmes with DORA, NIS2 and evolving European regulation?
  • How should enterprises prepare for identity-provider, access-control or other critical security-service disruption?
  • What does a resilient enterprise architecture look like across cloud, legacy and distributed environments?
  • How are boards and leadership teams engaging with cyber and identity risk?
  • What role do simulations, stress testing and incident exercises play in readiness?
  • What will define cyber-resilience leaders over the next 3–5 years?

Andrea Szeiler

MVM

Uko Valtenberg

Eesti Energia

Sina Yazdanmehr

Aplite

Irina Rosensaft

FITKO (Moderator)

16:00

16:15
16:20
Conference Chair’s Closing Remarks

John Erik Setsaas

Setsaas Trust Advisory
16:20
17:00
Drinks Reception (40 mins)

17:00

17:00
Close of Identity First Security Summit, 2026. See you next year!
Kinfos Events (UK) Pvt Ltd. (HQ):
506 Milton Road,
Broughton Milton Keynes,
England MK10 9RJ,
United Kingdom
Phone:+44 (0)207 0787651
Kinfos Events (India) Pvt Ltd.
No. 3, Ground Floor,
Unitech Cyberpark, Sector-39,
Gurgaon -122003,
Haryana, India

Newsletter

    Copyright © 2024 Kinfos Events Private Limited with number 07713454, registered office 506 Milton Road, Broughton, Milton Keynes, England, MK10 9RJ