
Short, sharp and interactive: keynotes and case studies from practitioners, live panels you vote in, peer roundtables on the problems you name, and two hours of structured networking by design.

Speakers from recent AI + Data Security World editions worldwide. The London 2027 line-up is announced on a rolling basis — sign up for updates to hear it first.
























All times BST. Sessions are announced and updated on a rolling basis.
Beat the rush and join us early for complimentary barista-made coffee and breakfast.
Generative and agentic AI have moved from experimentation to production faster than most security and governance functions can keep pace with, and the organisations getting this right are treating security and trust as design requirements, not afterthoughts bolted on post-launch. This opening keynote frames the day: what "trustworthy AI" actually requires in practice, and the shape of the threats and expectations now converging on organisations running AI at scale.
As AI copilots, agents, and analytics tools require broader, faster access to enterprise data to deliver value, organisations face a widening tension between empowering AI-augmented employees and maintaining the access discipline that data protection has always depended on.
Threat actors have moved from experimenting with AI to industrialising it, using it to scale phishing, write malware, and compress attack timelines from weeks to hours. This panel brings together practitioners tracking this shift to unpack what's actually changed in attacker tradecraft, and what defenders need to do differently as a result.
With employees adopting AI tools faster than IT could track or approve them, one security leader built a discovery and governance approach that brought unauthorised AI usage into the light — without triggering a workforce backlash or slowing legitimate innovation.
A hands-on, interactive session working through a real AI security and governance scenario as a room. Details announced soon.
With critical infrastructure and legacy platforms too costly or risky to replace outright, one security leader built a layered protection strategy that meaningfully reduced risk exposure without waiting for a full modernisation program.
Prompt injection remains the leading cause of agentic AI security failures in production, and as agents gain the ability to act, not just respond, the blast radius of a successful injection grows sharply. This case study walks through a real prompt injection incident against an agentic system, what it exposed about the architecture, and the guardrails built afterward.
As AI systems make decisions with real legal and financial consequences, organisations are discovering that liability frameworks built for human decision-making don't map cleanly onto AI-driven processes; leaving legal, privacy, and security leaders to navigate accountability, contracts, and customer trust largely without settled precedent.
Small-group, discussion-based sessions where you'll work through real AI security and governance challenges with peers in similar roles. Roundtable topics will be announced soon.
Put your knowledge to the test in this fast-paced quiz covering real-world trivia, key concepts, and emerging trends. Compete for bragging rights — and a voucher — as the top scorer takes the crown.
Facing a security team stretched thin and alert fatigue eroding response quality, one CISO restructured detection and triage around automation and prioritisation; dramatically compressing the time between compromise and containment.
Boards are being asked to oversee AI risk without always having the technical grounding to interrogate it properly, and regulators are starting to expect documented accountability, not just good intentions. This closing keynote translates AI security and governance risk into the language and cadence boards actually need.
As enterprises rely on growing networks of AI vendors, SaaS platforms, and outsourced service providers, sensitive data increasingly flows through systems organisations neither built nor fully control; turning vendor risk management into one of the hardest unsolved problems in data protection.
Unwind with your peers for a couple of drinks on us!
