CISO Summit
Sunday, Oct 26
Fiesta 5
Agenda
8:30-8:45 am Welcome & Opening Remarks
Setting the Stage for Strategic Leadership

The CISO Summit at InfoSec World 2025 begins with a powerful welcome from two seasoned leaders who have dedicated their careers to advancing cybersecurity strategy, innovation, and developing strong communities. Parham Eftekhari and Chris Ancharski will set the tone for the day by highlighting the importance of community and how the CyberRisk Alliance can help CISOs with their most pressing issues.

8:45-9:30 am Benchmarking Session (Interactive Roundtables)
CISO Resiliency: Integrating AI Into Your Security Strategy

As artificial intelligence rapidly reshapes both the attack surface and defensive capabilities, CISOs are under mounting pressure to harness AI responsibly while ensuring resilience across their organizations. This interactive benchmarking session brings security leaders together to compare strategies, lessons learned, and best practices for integrating AI into enterprise security programs. Through guided discussion, participants will examine real-world use cases, organizational readiness challenges, and the balance between innovation and risk management.

During this session you will:

  • Gain a better understanding of how your AI adoption and integration strategies compare with peer organizations across industries.
  • Identify practical approaches for leveraging AI to enhance detection, response, and automation while mitigating new vulnerabilities.
  • Explore frameworks for aligning AI initiatives with enterprise risk management, board expectations, and long-term business resilience.
9:30-9:45 am Lightning Talk
Lightning Talk Presented by Vorlon: Defending Against SaaS Supply Chain Breaches

Supply chain SaaS risks are hitting Fortune 500s and startups alike in ways that most security teams never see coming. From the ShinyHunters’ Salesforce campaigns to the SalesLoft Drift supply chain breach, attackers are proving one thing: the weakest link isn’t inside your company, it’s in the SaaS supply chain you don’t control.

During this Vorlon lightening talk you will learn:

  • How to overcome the challenges in getting control over the third-party apps, services, and AI tools that house and move your most sensitive data.
  • Lessons from ShinyHunters’ Salesforce exploits and the SalesLoft Drift incident, what really happened, why it spread, and how enterprises responded.
  • How to harden your SaaS and AI ecosystem, detect and responsd to active threats, and get your teams to act fast and together.

9:45-10:30 am Morning Break

Recharge with a coffee and take advantage of this dedicated time to meet fellow CISOs, exchange insights, and build new connections before heading into the next round of sessions.

10:30-11:00 am Executive Session
Speak for Yourself: The Time is NOW for CISOs to Embrace Thought Leadership

Today’s CISOs can no longer stay behind the scenes. As stewards of trust in an era of relentless cyber risk, they must also be visible leaders—capable of shaping narratives in the boardroom and in the public sphere. Those who learn to speak for themselves don’t just protect their organizations; they elevate their own credibility, expand their influence, and help define the future of cybersecurity leadership.

In this thirty-minute session led by LaunchTech, you’ll discover why now is the moment for CISOs to step forward as thought leaders—and how doing so pays dividends both internally and externally.

Attendees will gain insight into how thought leadership can:

  • Strengthen board and executive relationships through clear, confident communication.
  • Bolster organizational resilience by shaping public trust during both crises and calm.
  • Enhance personal brand and visibility as an industry authority.
  • Create long-term career opportunities by owning the conversation rather than reacting to it.

You’ll leave with a compelling case for making thought leadership a priority—and concrete direction on how to begin shaping your own presence as a trusted and influential CISO.

11:10 am - 12:00 pm Benchmarking Session
CISO Voices: What's Your Cybersecurity Hot Take?

Leading security in a 24/7/365 environment means making tough calls, balancing competing priorities, and often forming strong opinions on where the industry should head next.

This is your opportunity to hear and share some of the hottest takes on today’s most pressing cybersecurity topics. From bold predictions to controversial stances, this conversation will surface the perspectives shaping how security leaders approach innovation, governance, and resilience.

During this session you will:

  • Discover how fellow CISOs are tackling today’s biggest security challenges and where they see the industry headed.
  • Engage with bold, even contrarian, ideas that push you to re-examine assumptions about risk, technology, and leadership.
  • Compare your own strategies with those of peers and walk away with actionable insights to strengthen your organization’s security posture.
12:00 - 1:00 pm Lunch

Connect over lunch with fellow CISOs and industry leaders—turning meaningful conversations into stronger professional relationships.

1:00-3:00 pm SANS Workshop
SANS Cyber Executive Exercise

The SANS Executive Cyber Exercise will put you inside a simulated cyber event to help your organization understand what it takes to respond to a cyber incident from a strategic perspective. The simulated exercise will emphasize the importance of a well-practiced cyber crisis plan and the leadership skills required to deal with today’s threats. Our facilitators will use real-world experience and industry best practices to expose areas for improvement in an organization’s crisis response plans within a safe environment.

A SANS Executive Cyber Exercise (ECE) is a training activity designed to simulate a cybersecurity crisis. Exercises are conducted in a safe, open, and no-fault environment. Participants assess the severity of the attack and determine an effective strategic response.

Learning Objectives:

  • Ability to better assess organizational readiness for a business response to a cyber crisis.
  • Apply industry best practices in cybersecurity, organizational structure, and crisis communications.
  • Understand and plan for emerging trends in cybercrime.
3:30-3:45 pm Lightning Talk
Lightning Talk Presented by Cloaked: The Human Consequences of AI; How Personal Exposure Is Fueling a New Era of Attacks
AI is revolutionizing how businesses operate — accelerating insights, automating decisions, and rewriting the rules of productivity. But that same speed has created a new kind of threat. When paired with the mountains of personal data already exposed online, AI has become the ultimate weapon for cybercriminals. What once took months of research can now happen in seconds: deepfakes that sound real, phishing messages that feel familiar, and social-engineering campaigns that are almost impossible to detect. In this powerful session, Arjun Bhatnagar, Co-Founder and CEO of Cloaked, exposes how personal data is fueling AI-driven attacks — and why the next frontier of cybersecurity isn’t just protecting systems, but defending the humans behind them.
3:45-4:00 pm Lightning Talk
Lightning Talk Presented by Cobalt: The 90% Rule: Mastering Best Practices to Secure AI Ecosystems

AI is reshaping the security landscape, but are your defenses keeping up? Many organizations with strong security controls are already 90% prepared—the challenge is addressing the final 10% of AI-specific risks across applications, infrastructure, and development pipelines.

Join Andrew Obadiaru, Cobalt’s CISO, for an exclusive briefing where he’ll dive into:

  • Practical strategies for securing LLMs and their ecosystems
  • A breakdown of risks and benefits for homegrown, open-source, and LLM-as-a-Service models
  • Emerging AI threats and critical edge cases security teams must prepare for

4:00 - 4:30 pm Closing Keynote
Securing a Nation at Speed: Cyber Leadership at the Intersection of Innovation & Risk

As cyber threats evolve with the speed of innovation, the role of cybersecurity leaders, both in government and enterprise, has never been more critical or more complex. In this CISO-level conversation, Cory Simpson, CEO of the Institute for Critical Infrastructure Technology (ICIT) and Valerie Cofield, Executive Director, ICIT and former Chief Strategy Officer, CISA, will offer a behind-the-scenes look at how national cyber strategy is shifting to meet this moment.Drawing on their experience shaping federal cybersecurity policy and protecting national infrastructure, Simpson and Cofield will unpack the government’s rapid evolution toward Zero Trust, AI-driven defense, and real-time threat intelligence sharing. More importantly, they’ll challenge CISOs to consider how these efforts translate to the private sector where business risk, regulatory pressure, and board visibility continue to rise. Don’t miss this opportunity to join your peers to explore how top-down strategy, speed, and alignment are reshaping the CISO mandate in both public and private sectors.

During this interactive session you will:

  • Discuss what CISOs should learn from federal cyber modernization efforts, including wins, gaps, and governance trade-offs.
  • Explore how to operationalize public-private collaboration models in complex, risk-averse organizations.
  • Learn more about the accelerating role of AI and automation in threat modeling, policy enforcement, and incident response.
  • Review strategic frameworks to help CISOs lead amid regulatory scrutiny, business innovation, and constrained timelines
4:30-4:35 pm Closing Remarks
Closing Remarks: Strategic Leadership for What Comes Next

The CISO Summit at InfoSec World 2025 concludes with reflections from Parham Eftekhari and Chris Ancharski, who will close the day by reinforcing the value of shared insights, as well as highlighting key themes from the summit. Attendees will leave inspired, connected, and better equipped to lead with confidence in the evolving cybersecurity landscape.

4:35-5:30 pm Welcome Reception
Cybersecurity Community, CISO Summit, and InfoSec World Speakers Reception

Celebrate the voices, vision, and leadership shaping the future of cybersecurity. This gathering offers a unique opportunity to connect with peers, mentors, and change-makers in a relaxed and empowering atmosphere.

Don’t miss this opportunity to form new friendships and expand your cyber community connections!

Why attend the CISO Summit?

Join the CISO Summit at InfoSec World 2025 to gain peer-driven insights on balancing innovation with risk, building resilient cultures, and leading through disruption—while connecting with fellow security leaders shaping the future of enterprise defense.

You’ll discover:
Security Leader Insights
Gain context from summit chairs and industry peers to anchor your day in current strategic priorities.
Cross-Sector Understanding
Explore how CISOs across industries are tackling shared challenges and discovering new models of leadership.
Executive Connections
Engage in candid conversations and expand your leadership network with trusted peers.
Organizational Resilience
Learn how top security executives are aligning cybersecurity with enterprise risk frameworks.
The Future of Security Leadership
Examine the evolving expectations of CISOs in a world of accelerating digital change.
Summit Access Eligibility

Access to the InfoSec World CISO Summit is limited to the first 100 senior security and risk leaders who indicate their interest during the main event registration process. Attendance is reserved for professionals with job titles that reflect senior-level responsibility in security or risk leadership.

Eligible titles include:

  • CSO, CIO, CRO, CTO, CPO
  • ISSM, ISSO
  • Vice President and Director-level roles in:
    • Information Security
    • Cybersecurity
    • Risk and Compliance
  • Security Program Managers and equivalent leadership roles

Accepted individuals will be notified directly.

key topics cybersecurity leaders must explore
1. Cyber Strategy in the Boardroom
Translating security risks into business language and aligning cybersecurity with organizational goals.
2. Leading Through Uncertainty
Navigating geopolitical tension, macroeconomic volatility, and cyber disruption with resilience and agility.
3. Modernizing the CISO Role
From technologist to business enabler—how today’s CISOs are reshaping leadership expectations.
4. Talent, Culture, and Executive Presence
Building high-performing teams, cultivating a security-first culture, and commanding trust at the executive table.
5. Budgeting for Risk, Not Tools
Prioritizing outcomes, managing resources efficiently, and justifying security investments with business impact.
6. Regulatory Leadership
Preparing for a fragmented global regulatory environment and leading compliance with confidence.
7. Crisis Communication and Incident Readiness
Engaging stakeholders effectively during high-stress cyber events and reputational threats.
8. AI, Innovation & the Security Frontier
Strategic foresight into disruptive technologies reshaping cyber defense and enterprise risk landscapes.
Our Sponsors
Get in touch
Get in touch
Customer Service
For any and all inquiries please click the button below
Speaking Opportunities

Kris Tanaka
VP, Event Programming

InfoSec World
Stay Informed
Join our mailing list for the latest news on InfoSec World 2025.