Agenda
The agenda for mysecurityevent Frankfurt 2027 has not been published yet. Until then, we are showing you the reference agenda from mysecurityevent Munich 2026.





CISO strategies for implementing third-party risk management programs
Third-party risks as a growing business factor.
Show session details
Tailored TPRM strategies instead of standard solutions.
Practical insights from a CISO.


No BCM Is No Solution Either – Not Just from a NIS2 Perspective
Basic NIS2 requirements and opportunities for business continuity management.
Show session details
BCM opportunities arising from NIS2.
Resilience as a competitive factor.
Preparing and conducting a cyber crisis simulation from the perspectives of a globally operating corporate group and a utility company.


The Power of Transparency: Identifying and Reducing Attack Surfaces
Stop shadow IT: exposure management reveals hidden systems and lowers risk.
Presented byRapid7
Show session details
End the silos: a central approach effectively reduces attack surfaces.
Automated security identifies threats early and enables proactive countermeasures.

Cyber Resilience in Action: Crisis Simulations as Key to Modern Cyber Defense
See how realistic simulations keep teams capable of acting in an emergency.
Show session details
Continuous resilience instead of one-off awareness.
When technology, people and scenarios come together, real strength emerges.

The Hugging Face Hack as a Commercial Solution
An AI breaks out of a secure sandbox and attacks another company.
Show session details
What if an AI could challenge applications, including mobile apps, APIs and other AIs at the push of a button – always from the attacker’s perspective?
Tenzai finds not only IT vulnerabilities but also exploitable weaknesses in processes.

Move the Needle - From red to green in a few clicks
How agentic vulnerability management sharpens the focus on what matters.
Show session details
Why finding problems alone is not enough – automation makes the difference.
Can compliance be automated?


Secure AI innovation with AI-SPM – the CSPM for Artificial Intelligence
New opportunities and risks from AI in the cloud.
Show session details
AI-SPM as a key component of modern cloud security.
Effectively securing and accelerating AI innovation.


Countering Cyber Threats with Zero Trust Cyber & Identity Resilience
From prevention to resilience – a paradigm shift in cyber security.
Show session details
Why purely defensive mechanisms no longer withstand modern attacks.
Operational resilience as a strategic capability for companies.


Self-attacking AI: still a “myth”?
The vulnerability nobody really wants to acknowledge · Identify and assess risks · Speed as a guarantee of security
Show session details
- The vulnerability nobody really wants to acknowledge
- Identify and assess risks
- Speed as a guarantee of security

In the Cyber Trenches: War Stories from 180,000 pentests
To defeat the adversary, we must move beyond tracking their tools – we must understand their mind.
Show session details
Traditional cyber security has focused on the technical what (malware signatures and TTPs) and the macro why (geopolitics and economics).
The next intelligence and defense frontier is the who: the personality dynamics driving threat actor groups, and autonomous tools that can follow in their footsteps.






Panel Discussion
Join the discussion: NIS2 – more security, or simply more bureaucracy?





Panel Discussion
Join the discussion: OT security between production and protection – how secure can industry really be?


Thanks for Standstills: Attackers Reveal What OT Strategies Are Missing
An analysis of the current cyber threat landscape and the differences between OT and IT security.
Show session details
Using advanced technologies to strengthen resilience against cyber attacks.
Developing innovative, sustainable strategies to protect critical production systems.

Hardcoded Secrets as Attack Vectors: Lessons from Recent High-Profile Supply Chain Breaches (Shai-Hulud, Trivy, LiteLLM)
Recent supply-chain attacks (Shai-Hulud, Trivy and LiteLLM) have set a new standard for credential-based exploitation.
Show session details
These high-profile incidents show a recurring pattern: initial supply-chain compromise followed by weaponized secret scanning for persistence and cross-platform lateral movement.


When Email Attacks Look Like Real Communication – Lessons from EvilTokens, VENOM & Co.
How AI-assisted defense detects sophisticated attacks and exposes attacker intent.
Show session details
Insights from the current threat landscape: how attackers exploit trust, identities and context – and why classic IOC/IOA-based defenses miss these attacks.
How behavior-based, AI-native security identifies and stops new and future attack patterns before damage occurs.
Practical lessons: can behavior-based AI security solutions be integrated quickly and simply, ready to use without complex rules?


The human factor when nerve lines break.
Cyber attacks are not purely technical incidents, but put people under strain. The focus is on defenders who must decide under extreme pressure about stability, safety and livelihoods.
Show session details
The calm before the storm.
The siege begins.
When nerves are stretched to breaking point.


Information Security in Higher Education
Classify and protect research, examination and personnel data.
Show session details
Secure decentralized IT structures with consistent security standards.
Awareness training for students and staff reduces the risk of attacks.

Recruitment as a key factor in reducing cyber risks
A shortage of cyber expertise increases risks.
Show session details
Strong recruiting improves IT security.
A talent shortage weakens cyber defense.

