-
08:00 – 08:45
Registration & Coffee in the Exhibition Area
-
8:45 - 8:55
Chair’s Opening Remarks
Jonathan Sander - Field CTO - Astrix Security
-
8:55- 9:00
Speed Networking – Making new connections at CISO Financial Services NY!
During this 5-minute networking session, the aim of the game is to go and meet two people you don't already know.
-
09:00 - 09:30
Opening Panel: Confessions of CISOs: What They Don’t Tell You About the Job
- How can sleepless nights, board politics, and regulator heat be managed without burnout?
- Which AI-driven threats and hybrid risks are keeping CISOs awake in 2026?
- When speed clashes with security and compliance with agility, how can the trade-offs be survived?
- What do CISOs wish had been known before stepping into the role?
Moderator: Mo Jamous, EX Chief Information Officer, Consumer & Business Banking – U.S. Bank
Matthew Presson, CISO for the Americas – Bullish
Paul Pak, Chief Information Security Officer, Head of Information Governance - Jennison Associates
Scot Miller, SVP, Information Security - Rocket (Advisory board member)
Christopher Russell, CISO & Head of Tokenization – TZERO GROUP
-
09:30 - 10:00
Presentation: Did you know your firm has crypto trading platform?
Paul Pak - Chief Information Security Officer, Head of Information Governance - Jennison Associates
From ramp and dump schemes (pig butchering) to executive assassinations/executive cyber stalking, why you need to have a Brand and Executive Protection Program in the world of AI and why you need one now.
-
10:00 - 10:40
Expert Ask-Me-Anything: AI, Risk & Regulation
An informal, interactive session where the audience will ask questions live, on the spot.
Speakers respond in real time to questions on AI risk and security, regulatory challenges (SEC, NYDFS, DORA), board-level communication, and building resilient cyber teams.
Moderator: Troy Leach, Chief Strategy Officer - Cloud Security Alliance
Mo Jamous, EX Chief Information Officer, Consumer & Business Banking – U.S. Bank
Robert LaRosa, Information Security Engineer – GELLER
Jonathan Sander, Field CTO- Astrix Security
-
10:40-11:00
Fireside chat with Fastly
Kelly Shortridge, Chief Product Officer -Fastly
-
11:00-11:30
Mid-Morning Coffee & Networking in the Exhibition Area
-
11:30-12:00
Audience Reality Check: How to Stop Compliance Spend Becoming a Black Hole?
In this interactive session, live polling and anonymous audience input will shape a practical discussion on where compliance effort is truly going, and how leaders are working to reduce duplication, demonstrate value, and move compliance from obligation to advantage.
Key themes include:
- Cutting overlap across compliance frameworks
- Making compliance spend credible as resilience investment
- Turning audit readiness into organisational trust and confidence
-
12:00-12:15
Live Poll Debate: Would You Trust AI to Act Before Your Team Can?
Experts go head-to-head, using real incidents and risks from the field. We’ll start with a live poll to see where the room stands, then run it again at the end to track if minds have shifted.
The debate centers on one tough question: should we ever let technology act on its own during a live cyber incident in financial services?
The audience is part of it too so ask your questions, share your views, and see how your take stacks up against your peers.
Moderator: Troy Leach, Chief Strategy Officer - Cloud Security Alliance
John Decker, Chief Technology Officer -Trian Partners
Mo Jamous, EX Chief Information Officer, Consumer & Business Banking – U.S. Bank
-
12:15-13:00
Discussion group: What Happens When Agentic AI Runs Your Security Ops Before You Do?
What risks come with AI-on-AI escalation between defenders and adversaries?
- How can effective oversight frameworks be built for AI-augmented SOCs?
- What early wins, and early fails are showing up in adopting agentic AI for security?
- How can human analysts stay in the loop when machines move first?
Moderated by Valery Milman - Sr. Manager, Systems Engineering - ForeScout
Scot Miller, SVP, Chief Information Security Officer– Mr. Cooper (Advisory board member)
Mahesh Addanki, Cyber Security Engineer - Saragossa
-
13:00 – 14:00
Lunch & Networking in the Exhibition Area
-
14:00-14:20
Presentation: The Five Habits of Highly Secure Organizations
Ben Rothke - Senior Information Security Manager - Experian
Companies that have developed world-class information security programs have achieved their goals by focusing on security within a risk-mitigation framework.
This session will reveal the five main habits shared by the most secure organizations. By focusing on these habits, organizations can spend much less on security while gaining a significant level of security.
-
14:20-14:40
Presentation: Beyond the Breach: What Diplomatic Targets Reveal About Financial Sector Risks
Gharun Lacy - Deputy Assistant Secretary of State for Cyber and Technology Security Bureau of Diplomatic Security - U.S. Department of State
The U.S. Department of State’s Diplomatic Security Service (DSS) protects more than 77,000 personnel across 270+ locations worldwide, often operating inside environments where nation-state cyber actors are active. This places DSS on the front line of advanced threat activity, frequently seeing tactics before they are deployed at scale against financial institutions. Drawing on real-world incidents, including the response to Storm-0558, this session shares how DSS detects and responds to sophisticated attacks in real time, operates under the assumption of breach, and maintains operations during active compromise. Attendees will gain practical insight into reducing response times, managing vendor risk, strengthening human-layer defenses, and applying government-grade intelligence to financial services environments facing the same adversaries.
-
14:40-15:10
Panel Discussion: Who Owns the Fallout around when GenAI use misfires — Security, Risk, or the Board?
- Who owns AI risk when models impact lending, underwriting, or fraud detection?
- How do organisations embed AI monitoring into existing cyber and risk management frameworks?
- What guardrails help prevent AI misuse without stifling innovation?
- How should firms prepare for AI-specific incidents such as data leakage or model poisoning?
Moderator: Neil Cohen, Head of Marketing - Portal26
Robert LaRosa, Information Security Engineer – GELLER
Scot Miller, SVP, Chief Information Security Officer – Mr. Cooper
Gharun Lacy, Deputy Assistant Secretary of State for Cyber and Technology Security Bureau of Diplomatic Security -U.S. Department of State
-
15:10-15:40
Presentation: Securely Embrace the Agentic Channel
Darryl Jones - VP, Consumer Segment Strategy - Ping Identity
AI agents are rapidly becoming the next digital actors - researching, deciding, and transacting on behalf of customers. In fact, your next multi-million-dollar customer could be an AI agent.
In this forward-looking session, Ping Identity explores how the rise of the Agentic Channel is reshaping commerce and customer experience and what organizations must do to stay ahead. Learn how to securely enable AI agents with modern identity, governance, and authorization controls while protecting against emerging risks.
Discover how to:- · Embrace AI agents as a new digital channel for growth
- · Deliver seamless, trusted agent-driven experiences
- · Prevent disintermediation and maintain customer relationships
- · Secure Agentic Identities with strong authentication, authorization, and governance
Join us to understand how identity is the foundation of trust in the age of AI - and how your organization can confidently engage the agentic future.
-
15:40- 16:10
Afternoon Break & Networking in the Exhibition Area
-
16:10-16:30
Panel Discussion: Cloud Security: What’s Working and Where We’re Over-Engineering
- Where cloud security breaks in real operating environments
- Where DevSecOps enables delivery, and where it introduces friction
- Which signals drive action versus noise during cloud incidents
- What leaders would simplify or remove from today’s cloud security stack
Moderator: Julia Cherashore, Senior Fellow - Data Foundation / Adjunct Professor - Fordham University
Mahesh Addanki, Cyber Security Engineer - Saragossa
Aaron Katz, Chief Information Security Officer-THE TCW GROUP
-
16:30-17:00
Presentation: When Banks Hold the Keys: The New CISO Reality Post-SAB 122
Christopher Russell - CISO & Head of Tokenization - TZERO GROUP
- What SAB 122 changes for CISO accountability and audit scrutiny
- How “probable loss” is being interpreted, measured, and defended in practice
- The evolving institutional threat landscape once banks hold the keys
- How existing security, identity, and governance models must adapt conceptually
-
17:00 -17:05
Chair’s Closing Remarks
Johanthan Sander - Field CTO - Astrix Security
-
17:10 - 18:10
Networking drinks and Prize Draw
Not Found