Agenda / Day

Tuesday, July 21, 2026 / 3:30 PM - 6:30 PM JST

Registration Desk

Registration and Information

Registration and Information hours for the day.

Wednesday, July 22, 2026 / 8:00 AM - 9:30 AM JST

Palais Royal D

Arrival Refreshments

Enjoy some light coffee and refreshments before the conference.

Wednesday, July 22, 2026 / 8:00 AM - 5:00 PM JST

CISO Circle Lounge

CISO Circle Lounge

This is a lounge for CISO Circle Members only.

Wednesday, July 22, 2026 / 8:00 AM - 7:30 PM JST

Registration Desk

Registration and Information

Registration and Information hours for the day.

Wednesday, July 22, 2026 / 9:30 AM - 10:15 AM JST

Palais Royal C

Gartner Opening Keynote: Seize the Moment

It feels like everything is happening, everywhere, all at once. But amidst the chaos, there are opportunities, “moments” that we can seize, to ensure Cybersecurity’s success. What if we could use our organizations’ rush to AI as an opportunity to modernize both human and machine identity? What if we could turn the inevitability of cyber-attacks into a learning cycle that continuously makes us smarter, stronger, faster and more resilient? What if we could monetize our innovation with a cycle of continuous learning to fund even more innovation? Join this keynote and learn how to seize these moments!

Wednesday, July 22, 2026 / 10:15 AM - 11:00 AM JST

Exhibit Showcase

Refreshment Break

Join us for refreshments in a brief break between sessions.

Wednesday, July 22, 2026 / 10:15 AM - 7:30 PM JST

Exhibit Showcase

Exhibit Showcase Open Hours

Visit the Exhibit Showcase to evaluate industry offerings that can move your business forward. Engage with your peers, Gartner analysts, and exhibitors. Attend a theater session to see technology in action.

Wednesday, July 22, 2026 / 10:15 AM - 6:30 PM JST

Gartner Showcase

Gartner Showcase

Discover cutting-edge tools, diagnostics and actionable resources at the Gartner Showcase. Visit our demo space for a personalized walkthrough of our business and technology insights platform and learn how Gartner's leading tools like Third-Party Cybersecurity Insights Platform and Cybersecurity Business Value Benchmark can help you make faster, smarter decisions on your mission-critical priorities.

Wednesday, July 22, 2026 / 10:25 AM - 10:45 AM JST

Theater 1

[Theater] Aeye Security Lab: AI-Mediated Security to Break the Deadlock

Since Claude Mythos, we've discussed how AI changes security, but rarely how we use AI to change it. As we live in an era with human-level AIs, we should let them handle the "unwanted" work. To non-experts, "Plus Security" is a burden; for security teams, "Plus Business" is just as draining. Yes, the security-business boundary is the area where the most complex and "unwanted" work lies. This session explores using AI as a mediator to resolve friction between the Front and Second Lines. Join us to define a new security standard that finally breaks the deadlock together.

Wednesday, July 22, 2026 / 10:25 AM - 10:45 AM JST

Theater 2

[Theater] CyberArk : Unified Identity Security: Human, Machine, and AI

Cyberattacks now heavily target "identities," rapidly expanding from humans to machines and autonomous AI agents. Do you accurately track and control which AI agents exist in your organization, their identities, and their privileges? Even as targets evolve, core defense relies on Discover, Control, and Govern. This session explores universal identity security for the AI era. We will discuss combining dynamic privilege management with ITDR for real-time risk detection and remediation, sharing practical use cases like eliminating excess privileges and automated threat blocking.

Wednesday, July 22, 2026 / 11:00 AM - 11:30 AM JST

Chatelet

Outlook for Infrastructure Security: Navigating the Complexities of a Modern Enterprise

The infrastructure security landscape is undergoing unprecedented threats, necessitating innovative solutions and a proactive approach. Discover insights into how infrastructure security integrates workspace security, network security and cloud security to combine innovation and action in addressing the ever-changing threats to infrastructure.

Wednesday, July 22, 2026 / 11:00 AM - 11:30 AM JST

Palais Royal C

Ransomware Preparedness: Responding to the Question Are We Safe?

When asked “are we really safe?”, what should corporate representatives present and how should they respond? This session explains the essential measures for ransomware defense and the controls that minimize organizational damage, offering a clear approach to answer this critical question with confidence.

Wednesday, July 22, 2026 / 11:00 AM - 11:30 AM JST

Palais Royal D

Top Cybersecurity Predictions for 2026

Change is the only constant in cybersecurity. This session examines the future of cybersecurity, identifying and explaining Gartner's top cybersecurity predictions for the coming year.

Wednesday, July 22, 2026 / 11:00 AM - 11:30 AM JST

Palais Royal A

Foundational Requirements for Addressing Data Security Debt to Secure AI

The rise of AI has revealed data security debt concerns that require attention. This session helps cybersecurity leaders to prioritize key areas of data security debt to address to secure AI.

Wednesday, July 22, 2026 / 11:45 AM - 12:15 PM JST

Palais Royal A

Tanium: Is Your Organization Ready to Fight in a World of Weaponized AI?

AI has compressed the cycle from vulnerability discovery to weaponization from weeks to minutes. Attackers strike with overwhelming speed and scale, yet many organizations still respond with monthly scans and stale, static asset inventories. This widening asymmetry has become the defining business risk of our time. The answer lies in dynamic endpoint management that runs autonomously, built on real-time visibility and control. This session explores the future state of endpoint management, drawing on the latest metrics that leading global organizations are adopting — KPIs, ODM, and PLA.

Wednesday, July 22, 2026 / 11:45 AM - 12:15 PM JST

Palais Royal C

KnowBe4: AI Resilience Management: Building Security Culture for Adaptive Success

In the AI era, autonomous AI is a partner and an extension of human capability. As IT environments grow complex, predicting every risk is impossible. This shift demands a strategic move from rigid risk management to agile "Resilience Management." The core challenge lies in establishing "Trust" between humans and AI. To thrive, organizations must build a robust security culture as a strategic foundation. This session explores the essentials of resilience and provides actionable insights on fostering a culture that empowers human-AI synergy and navigates the unexpected.

Wednesday, July 22, 2026 / 11:45 AM - 12:15 PM JST

Palais Royal D

ITOCHU Techno-Solutions: Information coming soon

More information is coming soon.

Wednesday, July 22, 2026 / 12:30 PM - 1:00 PM JST

Palais Royal A

How to Control Security Risk of AI Agents

AI agent is a transformative technology that can dramatically advance enterprise innovation. However, security risks associated with AI agents are very complicated and very difficult to control. In this session, we will provide an overview of the security risks that organizations should be aware of when leveraging AI agents for data analysis and business process, along with recommended best practices for addressing these risks.

Wednesday, July 22, 2026 / 12:30 PM - 1:00 PM JST

Palais Royal C

Take Your Cybersecurity Mesh Architecture and Build Your Defense in Depth Platform of the Future!

How do you take your CSMA strategy and turn it into reality? This session will discuss the latest innovations in CSMA from architecture to vendor solutions.

Wednesday, July 22, 2026 / 12:30 PM - 1:00 PM JST

Palais Royal D

A New Framework for Cybersecurity Board Reporting

Board reporting on cybersecurity must be clear, concise and consistent. Using a framework derived from financial reporting standards will help CISOs and CIOs achieve this goal.

Wednesday, July 22, 2026 / 1:00 PM - 2:15 PM JST

Exhibit Showcase

Attendee Lunch

Join other attendees for lunch and take advantage of the opportunity to network and catch up on the day's activities so far.

Wednesday, July 22, 2026 / 1:15 PM - 1:45 PM JST

Palais Royal C

[Luncheon] Rubrik: AI Era Business Sustainability-Strengthening Cyber Resilience

In the AI era, cyberattacks are more sophisticated, making business continuity a boardroom priority. Modern "Cyber Resilience" must be built on the assumption of breach; rapid recovery is now essential for long-term sustainability. This session analyzes the latest AI-driven threats and provides strategic frameworks to minimize damage and maintain stability. Discover how Rubrik’s solutions provide a definitive path to rapid data recovery, ensuring your organization can withstand ransomware and systemic malfunctions to achieve true operational endurance.

Wednesday, July 22, 2026 / 1:15 PM - 1:45 PM JST

Palais Royal D

[Luncheon] Proofpoint: Frontier AI Reshaping Security: Guardrails for Citizen Dev

AI is no longer just an efficiency tool—it is central to national security and corporate competitiveness, driven by frontier AI and its use in modern conflicts. In Japan, labor shortages and currency pressures accelerate the need for AI-driven automation and citizen development. However, risks like shadow AI, data leakage, agent misuse, and prompt injection are growing. Rather than restricting AI, organizations must enable secure adoption. This session explores evolving threats and defenses, and presents practical approaches to building guardrails for safe, scalable AI use.

Wednesday, July 22, 2026 / 1:15 PM - 1:45 PM JST

Chatelet

[Luncheon] Yubico: MFA to Strengthen Account Security in the Agentic AI Era

As AI rapidly advances its ability to mimic human behavior and bypass authentication, account takeovers have become a strategic concern for CISOs and executive leaders. Traditional MFA is proving insufficient as phishing resistant factors and strong assurance levels are increasingly required. This session highlights the emerging authentication risks in the AI era, explains the effectiveness of hardware based approaches in preventing unauthorized actions, and outlines how organizations can maintain human verified approval as AI systems operate autonomously.

Wednesday, July 22, 2026 / 1:15 PM - 1:45 PM JST

Etoile

[Luncheon] MACNICA: The Traps of "Standard" Security ― the Limits and Future

Believing ASM, SASE, and SIEM are "silver bullets" has led many organizations into an operational quagmire. Teams are drowning in vulnerability floods, unmanaged devices, and relentless alert fatigue. In this session, Mr. Tsunemoto, an expert on the Japanese market, and Mr. Ohara, based in Silicon Valley, engage in a cross-border dialogue to dissect the limits of these staples. They contrast Japan’s operational pain with the US trend toward AI-driven autonomous security. By bridging local challenges with global shifts, this discussion provides CISOs with a strategic 2026 roadmap.

Wednesday, July 22, 2026 / 1:15 PM - 1:45 PM JST

Palais Royal A

[Luncheon] TD SYNNEX: AI-Driven Threats: Security Decisions with Limited Resources

The cybersecurity landscape for Japanese enterprises is rapidly evolving, driven by ransomware, generative AI misuse, and zero trust adoption. As AI advances, even low-risk vulnerabilities can combine into significant threats, expanding the scope of protection and challenging fragmented approaches. This session explores these issues from a leadership perspective, emphasizing integrated visibility and how to optimally control risk with limited resources while prioritizing investments for a sustainable security strategy.

Wednesday, July 22, 2026 / 1:50 PM - 2:10 PM JST

Theater 1

[Theater] Splunk Services: Data-Driven Security Risk Management with AI and Humans

As AI agents become part of enterprise operations, organizations face challenges such as unmanaged assets, fragmented visibility, and AI explainability. This session introduces a data-driven approach to security risk management. It explains how organizations can connect risk data, decision-making, and actions through the NIST Cybersecurity Framework. The session also demonstrates how technical risks can be translated into business context to support decisions and management actions through a dashboard.

Wednesday, July 22, 2026 / 1:50 PM - 2:10 PM JST

Theater 2

[Theater] Cloudbase: From Theory to Practice: CTEM Starts with Asset Management

In the AI era, cyberattack automation is accelerating. Siloed defenses cannot continuously track ever-changing attack surfaces, and response falls behind. While CTEM gains industry attention and methodologies emerge, security leaders still ask: "The framework is clear, but how do we implement it within our own organization?" The gap between framework and practice persists. This session positions infrastructure asset management as the starting point. Building on our cloud-native CNAPP foundation, we share Cloudbase's approach to hybrid environments including on-premises.

Wednesday, July 22, 2026 / 2:15 PM - 2:45 PM JST

Palais Royal A

Zscaler: Deceive & Neutralize Attackers with Zero Trust and Deception

Frontier AI accelerates exploits, rendering legacy defenses obsolete. We explore bridging the "defense gap" during your Zero Trust Architecture (ZTA) transition using Deception technology. By deploying decoys across endpoints, AD, and VPNs, you can trick and trap attackers. Pairing ZTA's attack surface reduction with Deception's instant detection creates a proactive defense. Through case studies of halting lateral movement and ransomware, learn the architectural roadmap needed to neutralize threats in the AI era.

Wednesday, July 22, 2026 / 2:15 PM - 2:45 PM JST

Palais Royal C

Google: Three Governance Strategies For Unknown Threats in the Frontier AI Era

The global rise of Agentic AI drives business forward but unleashes "machine-speed" threats like hijacked agents, rapid exploits, and deepfakes. Since 100% perimeter defense is impossible, CISOs must adopt a assume-breach mindset to ensure business continuity. This session details Google’s governance for unknown threats: using Wiz to block toxic combinations, Chrome Enterprise for frictionless endpoint protection, and an Agentic SOC for autonomous defense that beats passive AI. Protect your organization without halting innovation.

Wednesday, July 22, 2026 / 2:15 PM - 2:45 PM JST

Palais Royal D

SentinelOne: The Threat Landscape in APJ

AI is now the attacker's standard tool, shrinking exploitation timelines from weeks to hours. Kris Day, SVP of APJ at SentinelOne, examines three trends reshaping the region—AI as a new attack surface, the data crisis, and data sovereignty—and presents an AI-native defense built on behavioral detection, on-device AI, and the autonomous SOC.

Wednesday, July 22, 2026 / 3:00 PM - 3:30 PM JST

Palais Royal B

AI Risks: What Should We Handle, and to What Extent?

As AI advances, many organizations face increased risks related to security, privacy and other areas. This session will discuss how cybersecurity leaders should approach AI risks, what they should address and to what extent, and how to translate this into practical initiatives.

Wednesday, July 22, 2026 / 3:00 PM - 3:30 PM JST

Palais Royal A

Outlook for SOC: The Ultimate Cybersecurity Remix

The era of the siloed SOC is over. To handle modern threats, security leaders must integrate Incident Response, Threat Hunting, and Exposure Management into a single, synchronized ecosystem. This session will outline the strategic roadmap to the "Ultimate Cybersecurity Remix," where diverse security areas work together to extract maximum value from existing investments.

Wednesday, July 22, 2026 / 3:00 PM - 3:30 PM JST

Palais Royal C

Seeing Your Organization Through the Eyes of an Attacker

Understanding the attack surface is key to defending your organization. Today’s threats don’t respect boundaries — your attack surface is everywhere. Are you defending what matters or guessing in the dark? Seeing through the eyes of an attacker is the key to building true resilience.

Wednesday, July 22, 2026 / 3:00 PM - 3:30 PM JST

Palais Royal D

From Strangled to Strategic: 3 Steps for CISOs to Master Cyber Regulations

Today, CISOs are increasingly challenged by the growing complexity and volume of cyber regulations, which can overwhelm resources and hinder strategic progress. This presentation will examine the regulatory landscape, highlight common pain points and provide practical approaches for managing compliance without sacrificing security objectives. Learn how to prioritize regulatory requirements, streamline compliance efforts and develop strategies to remain agile and effective in a highly regulated environment.

Wednesday, July 22, 2026 / 3:45 PM - 4:15 PM JST

Palais Royal A

Akamai: Cyber Resilience in the AI Era - Securing What You Can’t Yet See

As AI adoption accelerates, security leaders face growing risks from expanding API exposure, increased machine-to-machine communication, and limited visibility into AI-driven data flows. These challenges can lead to lateral movement, data leakage, and compliance gaps. This session explores how organizations can securely scale AI initiatives while maintaining resilience and governance. Attendees will learn practical approaches to protecting AI-related APIs, improving visibility, and strengthening auditability while enabling innovation.

Wednesday, July 22, 2026 / 3:45 PM - 4:15 PM JST

Palais Royal C

Recorded Future: How to Counter the Threat of AI Speed

As symbolized by the emergence of Claude Mythos, AI is fundamentally transforming the nature of cyberattacks and defense. As threats become increasingly sophisticated and widespread, organizations must move beyond reactive measures and adopt proactive security strategies that take the initiative, backed by the investments necessary to support their implementation. In this session, we will outline the current state of threats in the AI era and explain how to leverage threat intelligence to take proactive action. Furthermore, we will introduce our solutions designed to support these efforts.

Wednesday, July 22, 2026 / 3:45 PM - 4:15 PM JST

Palais Royal D

Serverworks: Cloud Security in the AI Era: AWS Frontline Realities & Defenses

AI-driven attacks escalate at superhuman speeds following access key leaks. While building resilience through an "assume breach" mindset—prioritizing rapid detection and recovery—is essential, it is not enough. To survive overwhelmingly fast threats, organizations must return to basics and fortify initial intrusion prevention. Based on real-world incidents from the AWS frontline, this session proposes actionable cloud defense strategies. We will explore how to balance proactive prevention with post-breach response to protect your business.

Wednesday, July 22, 2026 / 4:30 PM - 5:00 PM JST

Palais Royal A

Executive Story: Security Transformation in Japanese Manufacturing: The YKK AP Journey

This session shares YKK AP’s experience in implementing security initiatives in a Japanese manufacturing environment. Using real examples, it describes how security measures were planned and rolled out while working within organization-specific culture and constraints, including the operation of security committees and risk communication with executive management. It also discusses how security leaders have acted to drive organizational action as the environment changes and the use of AI continues to grow. Rather than focusing on ideal models or best practices, the session focuses on what was actually done and the thinking behind those actions, offering a practical perspective from the field.

Wednesday, July 22, 2026 / 4:30 PM - 5:00 PM JST

Palais Royal C

High-Value AI Use Cases for IAM

While AI holds promise for automation and efficiency, not all IAM use cases are equally suited for AI enablement. This session will walk through Gartner research related to AI for IAM use cases, including agentic AI, and help cybersecurity leaders focus their AI adoption plans on the most beneficial use cases.

Wednesday, July 22, 2026 / 4:30 PM - 5:00 PM JST

Palais Royal D

Zero Trust Unlocked: 8 Execution Steps CISOs Need to Succeed

Zero trust isn’t just a technology decision — it’s a strategic journey. In this breakout session, we’ll reveal eight essential milestones that lay the foundation for a successful zero-trust initiative. These actionable steps help organizations reduce risk, align stakeholders, and accelerate adoption. Whether you’re just starting or refining your approach, this session will equip you with a roadmap to drive meaningful outcomes and avoid common pitfalls.

Wednesday, July 22, 2026 / 5:00 PM - 5:45 PM JST

Exhibit Showcase

Refreshment Break

Join us for refreshments in a brief break between sessions.

Wednesday, July 22, 2026 / 5:10 PM - 5:30 PM JST

Theater 1

[Theater] Eltes: Uncovering Insider Threats and Shadow AI Through Log Analysis

With insider data leaks and Shadow AI worsening, traditional rule-based security faces its limits. The key is shifting from isolated monitoring to catching early signs of fraud through behavior log continuity. Based on Eltes’ 500 billion+ log entries, this session explains defensive approaches using UEBA. We will share case studies that detected sophisticated theft before execution—bypassing rules through "highly unnatural sequences of actions," such as late-night access and copying personal data. We explore effective UEBA measures amid blurring lines of data handling due to rapid AI growth.

Wednesday, July 22, 2026 / 5:10 PM - 5:30 PM JST

Theater 2

[Theater] Saviynt: Securing AI and Preventing the Next Crisis through Identity

As AI agents and autonomous systems scale, identity becomes the enterprise control plane for governing their access and actions. This session explores how to secure AI agents and how attackers can exploit unmanaged human and non-human identities to fuel the next wave of ransomware. Learn how CISOs can apply identity-centric controls—Zero Standing Privilege, just-in-time access, and continuous governance—to secure AI ecosystems, reduce attack surface, and prevent large-scale breaches before they occur.

Wednesday, July 22, 2026 / 5:45 PM - 6:30 PM JST

Palais Royal C

Guest Keynote: Agentic AI Security

The focus of security research on agentic AI is rapidly shifting from the safety of standalone models to the security of entire systems that integrate planning, tool use, memory, and multi-agent coordination. It is no longer sufficient for an LLM simply to refrain from generating harmful text. What matters increasingly is whether an agent can be manipulated—accidentally or deliberately—while formulating plans, invoking tools, consulting memory, and adaptively revising its goals in response to external inputs. Research from Stanford University, exemplified by Cybench, demonstrates that state-of-the-art LLMs can solve difficult Capture the Flag (CTF) challenges used in hacker competitions with striking speed, underscoring the inseparability of capability evaluation and misuse-risk assessment. Meanwhile, OpenAgentSafety, developed by researchers at Carnegie Mellon University and the Allen Institute for AI, introduces more than 350 multi-turn tasks in realistic tool-use environments involving browsers, code execution, file systems, bash, and messaging. Their results show that current models still exhibit unsafe or inappropriate behaviors at a high rate, revealing the limitations of existing safeguards and the need for more robust defensive techniques. This talk will examine the security threats posed by agentic AI through concrete case studies and discuss several emerging approaches to mitigation, drawing on recent research in the field.

Wednesday, July 22, 2026 / 6:30 PM - 7:30 PM JST

Exhibit Showcase

Exhibit Showcase Networking Reception

Join us for a networking reception on the Exhibit Showcase where you can engage with your peers, Gartner analysts, and exhibitors while enjoying delicious food and beverages. Evaluate industry offerings that can move your business forward. Attend a theater session to see technology in action.

Wednesday, July 22, 2026 / 6:40 PM - 7:00 PM JST

Theater 1

[Theater] JOSYS: Cyber Incidents and Countermeasures at Major Japanese Firms

Cyberattacks on businesses are intensifying. The rise of advanced AI now lets even non-professionals launch sophisticated attacks, and in last year's incidents, stolen "internal credentials" were frequently exploited. In response, Josys, an advocate of identity security, conducted an independent survey of dark web credential leaks across the 225 Nikkei Stock Average companies and roughly 9.56 million people (March 2023–June 2026). Serious leaks were confirmed at 75% of them. This session covers the survey, the risks facing Japan's large enterprises, and how to protect your organization.

Thursday, July 23, 2026 / 8:30 AM - 9:30 AM JST

Palais Royal D

Arrival Refreshments

Enjoy some light coffee and refreshments before the conference.

Thursday, July 23, 2026 / 8:30 AM - 5:45 PM JST

CISO Circle Lounge

CISO Circle Lounge

This is a lounge for CISO Circle Members only.

Thursday, July 23, 2026 / 8:30 AM - 5:45 PM JST

Registration Desk

Registration and Information

Registration and Information hours for the day.

Thursday, July 23, 2026 / 9:30 AM - 10:15 AM JST

Palais Royal C

Gartner Keynote: Top Agenda for Security and Risk Management in Japan, 2026

Many organizations struggle to develop strategies and plans that look several years ahead in the ever-evolving field of cybersecurity. This session will outline key considerations for cybersecurity leaders, based on the latest trends in global and Japanese cybersecurity threats, as well as the risks posed by new technologies such as AI.

Thursday, July 23, 2026 / 10:15 AM - 11:00 AM JST

Exhibit Showcase

Refreshment Break

Join us for refreshments in a brief break between sessions.

Thursday, July 23, 2026 / 10:15 AM - 5:00 PM JST

Exhibit Showcase

Exhibit Showcase Open Hours

Visit the Exhibit Showcase to evaluate industry offerings that can move your business forward. Engage with your peers, Gartner analysts, and exhibitors. Attend a theater session to see technology in action.

Thursday, July 23, 2026 / 10:15 AM - 5:45 PM JST

Gartner Showcase

Gartner Showcase

Discover cutting-edge tools, diagnostics and actionable resources at the Gartner Showcase. Visit our demo space for a personalized walkthrough of our business and technology insights platform and learn how Gartner's leading tools like Third-Party Cybersecurity Insights Platform and Cybersecurity Business Value Benchmark can help you make faster, smarter decisions on your mission-critical priorities.

Thursday, July 23, 2026 / 10:25 AM - 10:45 AM JST

Theater 1

[Theater] Sophos: How Companies Keep Operating When AI Accelerates Cyberattacks

AI is changing the speed and scale of cyberattacks. Tools such as Mythos show that attackers can find more entry points faster, but their path after intrusion still follows familiar patterns: identity abuse, lateral movement, data theft and disruption. For CEOs, the key question is no longer how many alerts can be detected, but how quickly the organization can make evidence-based decisions. This session explains how to reduce business downtime by designing cyber operations around three capabilities: see, decide and recover, across identity, endpoint, network, cloud and group-wide environments.

Thursday, July 23, 2026 / 10:25 AM - 10:45 AM JST

Theater 2

[Theater] Darktrace: Securing the AI Duality - Empowering Enterprise by Securing AI

AI is reshaping enterprises, driving unprecedented speed, scale, and productivity while transforming the cyber threat landscape. As organizations adopt AI‑driven workflows and infrastructure, they face risks like autonomous attackers, machine‑speed attacks, and blurred boundaries between humans, AI, and systems. This session explains why the AI era demands a new cybersecurity approach. Using self‑learning AI to understand behavior across users, models, applications, networks, cloud, and OT, organizations gain visibility, detect threats, respond autonomously, and strengthen cyber resilience.

Thursday, July 23, 2026 / 11:00 AM - 11:30 AM JST

Chatelet

Supply Chain Cyber Risk Management: 2026

Incidents caused by the supply chain continue to occur, signaling the end of an era where cybersecurity could be discussed solely within the confines of one’s own organization. Companies now face potential supply chain risks and must take action to address them. This session will explain the current state of supply chain cyber-risk management and provide practical solutions.

Thursday, July 23, 2026 / 11:00 AM - 11:30 AM JST

Palais Royal A

Technical Insights: Microsoft 365: Top Security and Identity Features to Implement

This is the yearly update on the M365 Tops security and identity features session. Come learn what you need to do to secure your M365 tenant. This session will offer an ordered list of all the features of Microsoft or third-party alternatives that you need to enable now!

Thursday, July 23, 2026 / 11:00 AM - 11:30 AM JST

Palais Royal C

Leadership Vision for 2026: Cybersecurity

Cybersecurity leaders are key enablers of digital business and are accountable for helping the enterprise balance associated risks and benefits. This “Leadership Vision for 2026” helps SRM leaders plan for 2026 and develop presentations for leadership, peers and teams.

Thursday, July 23, 2026 / 11:00 AM - 11:30 AM JST

Palais Royal D

Technical Insights: Four Strategies for SIEM Cost Reduction

Are soaring SIEM costs forcing you to choose between visibility, retention and budget? With exploding log volumes and ingestion-based pricing, SOCs face tough trade-offs. This session covers four practical strategies — selective use case design, detection at the edge, advanced ETL pipelines and affordable storage — to help you optimize SIEM spend.

Thursday, July 23, 2026 / 11:45 AM - 12:15 PM JST

Palais Royal A

ServiceNow: You Cannot Secure What You Cannot See—When AI Outruns Governance

AI agents are embedded in your workflows, accessing systems and making decisions. Often, no one knows how or why. Adoption is racing ahead. Governance isn't. Where do your AI agents run? Who granted their permissions? What data have they touched? Most security and risk teams can't say. This session unpacks the blind spots of AI governance. Discover every AI agent. Enforce least privilege at machine scale. Shut down agents that go off script, in real time. For AI leaders, the next move. For newcomers, the first step. Both find what they need.

Thursday, July 23, 2026 / 11:45 AM - 12:15 PM JST

Palais Royal C

Keeper: The New Identity in the AI Era - Securing Organisations in the Agentic AI Era

As AI agents become part of business operations, organizations must secure more than human identities. Non-Human Identities (NHIs) now outnumber human identities, while many AI-powered tools access critical systems without consistent governance. This session explores the latest threats and explains how to discover, govern, and secure AI agents and NHIs. Learn practical strategies for unifying human, machine, and AI identities through password management, Privileged Access Management (PAM), and Endpoint Privilege Management (EPM) to enable secure AI adoption and strengthen security governance.

Thursday, July 23, 2026 / 11:45 AM - 12:15 PM JST

Palais Royal D

Fortinet: Cyber Risk & Proactive Defense Against Machine-Speed AI Threats

Generative AI has hyper-accelerated threats into societal challenges. Defeating these machine-speed attacks demands proactive defense, built on complete IT asset visibility and understanding RTO. This foundation enables frontline teams to instantly identify anomalies and act autonomously via agile governance. In this session, we present a new strategic and operational model. We explore how transforming security culture fosters "individual autonomy and collective harmony," empowering your frontline to resolve edge anomalies swiftly while ensuring full accountability.

Thursday, July 23, 2026 / 12:30 PM - 1:00 PM JST

Palais Royal A

Develop an Effective Cybersecurity Strategy Through Benchmarking

Progressive CISOs and cybersecurity leaders benchmark their programs, controls and resources to ensure optimal prioritization in their strategy. In this session, learn how these inputs can help you assess your current state and build a roadmap to prioritize your strategic investments going forward by leveraging tools such as IT Score, CCA, IT Key Metrics and ODMs.

Thursday, July 23, 2026 / 12:30 PM - 1:00 PM JST

Chatelet

How to Stop Deepfake Identity Impersonation Attacks

Attackers are increasingly using deepfakes to try and defeat automated voice biometrics and identity verification processes. Additionally, IAM and security leaders are dealing with deepfake-augmented social engineering, such as attackers impersonating company executives to request money transfers from employees. Join this session to learn about the current state of the art in deepfake detection and approaches to mitigation.

Thursday, July 23, 2026 / 12:30 PM - 1:00 PM JST

Palais Royal C

Future of AI in Cybersecurity: AI Predictions and Roadmap Challenges for 2026-2029

This session delves into key AI predictions and current challenges, providing CISOs with actionable insights to build effective and resilient three-year roadmaps. Learn how to optimize AI initiatives for cybersecurity and adapt security programs to align with future business uses.

Thursday, July 23, 2026 / 12:30 PM - 1:00 PM JST

Palais Royal D

Network Security Trend 2026 in Japan

As technology evolves, corporate networks and related security measures are also being forced to change. This session will discuss the key points of these technological changes and strategies for building a system and adapting to them in a timely manner.

Thursday, July 23, 2026 / 1:00 PM - 2:15 PM JST

Exhibit Showcase

Attendee Lunch

Join other attendees for lunch and take advantage of the opportunity to network and catch up on the day's activities so far.

Thursday, July 23, 2026 / 1:15 PM - 1:45 PM JST

Palais Royal A

[Luncheon] NTT TechnoCross: Beyond PAM: Understanding Privileged Risk

As PAM adoption continues to grow, ransomware and insider threats continue to highlight a critical challenge: controlling privileged access alone is no longer enough to gain a clear understanding of privileged risk. As hybrid and cloud environments become more complex, CISOs need greater visibility into how privileged identities, entitlements, and access are assigned and used across the enterprise. This session explores how PAM is evolving into a broader risk-oriented strategy that combines privileged access management, privileged activity visibility, and identity governance.

Thursday, July 23, 2026 / 1:15 PM - 1:45 PM JST

Palais Royal C

[Luncheon] Island: Enterprise Browser for the SASE and AI Era

As generative AI, SaaS, third-party access, and BYOD expand, traditional perimeter security and VDI/VPN struggle to control user actions and data at the last mile. This session introduces the Enterprise Browser concept: turning the familiar browser used by billions into a secure application delivery platform. Learn how SASE, ZTNA, DLP, and AI governance can be unified at the browser layer to deliver seamless UX and strong security, with practical use cases.

Thursday, July 23, 2026 / 1:15 PM - 1:45 PM JST

Palais Royal D

[Luncheon] Rapid7: Staying Ahead of Attacks in the AI Era: Proactive to Preemptive

Reactive defense alone is no longer enough to meet today’s social responsibilities. A fundamental shift is required. The era of “proactive defense”—simply preparing for the worst—has passed. We must now embrace “Preemptive Defense,” using AI to anticipate attacker behavior and prevent attacks before they occur. This session explores practical approaches, including AI-driven visibility into IT assets and risks, identifying vulnerable areas, and neutralizing threats in advance. It also highlights the key investments and leadership executives need to protect business growth.

Thursday, July 23, 2026 / 1:15 PM - 1:45 PM JST

Chatelet

[Luncheon] XM Cyber: Why CTEM & Attack Path Analysis Stops Zero-Day AI/Ransomware

Security gaps leave enterprises exposed to zero-day AI and ransomware attacks. Traditional reactive defenses fail to stop sophisticated, multi-stage threats before damage occurs. This session explores why Continuous Threat Exposure Management (CTEM) is the ultimate solution. By leveraging advanced attack path analysis, organizations can shift from basic vulnerability patching to proactive risk mitigation. Learn how to see your network through the eyes of an attacker, identify critical choke points, and eliminate the hidden systemic risks that automated AI threats exploit first.

Thursday, July 23, 2026 / 1:15 PM - 1:45 PM JST

Etoile

[Luncheon] Thales DIS: Data Sovereignty and AI Risk—DSPM Strategy

Enterprise data protection faces a critical turning point. While generative AI accelerates innovation, it also creates new security risks. Organizations now face autonomous AI threats like “Claude Mythos,” capable of attacks beyond human response. Rising data sovereignty demands are also forcing a rethink of perimeter security. This session explores DSPM and independent key management to achieve data sovereignty. By separating cryptographic keys from infrastructure, organizations can keep data unreadable during breaches. A live demo presents a PQC-ready data sovereignty strategy.

Thursday, July 23, 2026 / 1:50 PM - 2:10 PM JST

Theater 2

[Theater] LRM: Designing Security Education Through Human Risk Management

Generative AI is reshaping cyberattacks at scale, yet most security training remains "one-size-fits-all, once-a-year." Our 1,000-employee survey found 62.7% see no behavioral change after training, and one in three skip reporting suspicious emails due to the burden. This session introduces Human Risk Management (HRM): a people-centric approach that changes behavior, not just awareness. We cover risk-based personalization, behavioral-data intervention, and friction-free reporting — a practical roadmap for CISOs shifting from "check-the-box training" to data-driven security education.

Thursday, July 23, 2026 / 1:50 PM - 2:10 PM JST

Theater 1

[Theater] Penta Security: Data Protection in Rising Cyber Risks - Encryption & Cases

Today’s cyberattacks involve expanding threats such as diversified attack surfaces, ransomware-driven disruption, and AI-discovered vulnerabilities. Security risks are no longer expected to decline. As threats grow more complex and sophisticated, any organization may be targeted, making it urgent to define essential measures for business continuity. Responses are also shaped by global laws and compliance.This session examines data security in business operations and encryption challenges for IT professionals, and introduces South Korea case, where personal data encryption is legally mandated.

Thursday, July 23, 2026 / 2:15 PM - 2:45 PM JST

Palais Royal A

Skill Development in the AI Era: How to Drive Practice and Embed Learning

In the AI era, workforce development requires more than just knowledge acquisition — practice and sustained adoption are the keys to success. This session will explore how IT leaders can design skill-building programs that incorporate security, implement them effectively in the workplace, and embed them into organizational culture. We will present practical approaches and actionable strategies to achieve these goals.

Thursday, July 23, 2026 / 2:15 PM - 2:45 PM JST

Palais Royal C

Negotiate Cybersecurity Protection Levels With Your Executives

Why don't executives fund cybersecurity according to their risk appetite? They have no idea how to do so. PLAs are concrete assertions of risk appetite. Negotiating PLAs determines your executives’ desired level of protection within their willingness to pay for it. They sharply guide investment, create stakeholder defensibility and are hard to ignore.

Thursday, July 23, 2026 / 2:15 PM - 2:45 PM JST

Palais Royal D

Cyber Insurance Under Pressure: What CISOs Must Know Before the Next Renewal

The cyber insurance market is tightening due to frequent and severe cyberthreats — bringing higher premiums, stricter underwriting and narrower coverage. This session offers CISOs and security leaders insights on how threats like ransomware are changing insurer expectations and policy terms. Learn what underwriters seek, how to prepare for renewals and avoid red flags that lead to denied claims or reduced payouts. We offer practical guidance on aligning security controls with insurance requirements and making cyber insurance a strategic asset.

Thursday, July 23, 2026 / 3:00 PM - 3:30 PM JST

Palais Royal A

Okta: Trust & Risk Management Strategy in the AI era Based on Global Regulations

As technological innovation and regulatory waves sweep across all industries, AI risk is defined as a critical management risk. In this session, we will explain the strict regulatory trends in regions such as the US, Europe, and South Korea, and present a comprehensive risk management framework compliant with international standards like NIST. We will introduce a roadmap centered on identity that balances AI governance with business growth.

Thursday, July 23, 2026 / 3:00 PM - 3:30 PM JST

Palais Royal C

Exabeam: The Insider Isn’t Human: Securing AI Agents as the Newest Insider Threat

Insider threats are now the top security risk, and a new class of insider has arrived: AI agents. Acting as themselves or on behalf of humans, these non-human insiders bring massive productivity gains—and equally massive risks. This session will give security leaders a concrete framework to evolve insider threat programs to detect and defend against them.

Thursday, July 23, 2026 / 3:00 PM - 3:30 PM JST

Palais Royal D

SecurityScorecard: How Toshiba Group Makes Supply Chain Risk Manageable

Cyberattacks through the supply chain now threaten business continuity, not just data. Yet managing thousands of vendors through traditional methods is neither scalable nor cost-effective. Amid tightening global regulations, Toshiba Group built a supplier management process combining vendor criticality with security ratings, and runs security seminars to reduce risk through direct supplier dialogue. Toshiba shares their program structure, outcomes, and lessons learned. CISOs and third-party risk managers will leave with practical insights to apply to their own programs.

Thursday, July 23, 2026 / 3:45 PM - 4:15 PM JST

Palais Royal A

New World: Gaining Digital Defensive Capabilities in the Age of the AI Industrial Revolution

As AI continues to evolve, attacks by unknown adversaries are becoming the norm. Enterprises must recognize this shift as a new world shaped by an industrial revolution and a digital war. While advancing AI as a transformative force, companies must also reinforce their defensive capabilities in line with the changing era. This session explores these megatrends and the new capabilities enterprises must acquire.

Thursday, July 23, 2026 / 3:45 PM - 4:15 PM JST

Palais Royal C

Top Cybersecurity Trends

Cybersecurity leaders face unprecedented external forces — from geopolitical tensions to rapid AI growth — testing the limits of existing programs. This session details Gartner’s top eight trends for 2026, providing the strategic pivot needed to manage risk and build resilience across three core themes: transforming governance, securing new frontiers and empowering AI adoption.

Thursday, July 23, 2026 / 4:15 PM - 5:00 PM JST

Exhibit Showcase

Refreshment Break

Join us for refreshments in a brief break between sessions.

Thursday, July 23, 2026 / 4:25 PM - 4:45 PM JST

Theater 1

[Theater] Machina Record: Cyber Intelligence Practices for Japanese Enterprises

Japan faces barriers to adopting threat intelligence due to the high cost of global platforms, limited expertise, and unclear operational models. This session introduces “Kagura,” a cyber intelligence platform designed for Japanese enterprises beginning to operationalize intelligence. Rather than simply collecting data, Kagura focuses on monitoring priorities, risk evaluation, and decision-making workflows. Attendees will gain practical insights into building sustainable cyber intelligence practices within realistic organizational and budget constraints.

Thursday, July 23, 2026 / 4:25 PM - 4:45 PM JST

Theater 2

[Theater] Splunk Services:Data-Driven Security Risk Management with AI and Humans (Repeat)

As AI agents become part of enterprise operations, organizations face growing challenges such as unmanaged assets, fragmented risk visibility, and AI explainability. This session introduces a data-driven approach to security risk management based on the latest cybersecurity trends in the AI era. It explains how organizations can connect risk visibility, executive decision-making, and operational action through an integrated platform aligned with the NIST Cybersecurity Framework. The session also discusses collaboration between AI agents and human professionals in modern security operations.

Thursday, July 23, 2026 / 5:00 PM - 5:45 PM JST

Palais Royal C

Guest Keynote: How Individuals Can Maximize Their Potential and Drive Organizational Success

What do top athletes who have competed on the world stage think about, and how do they act? Aya Sameshima, former member of the Japan Women’s National Soccer Team with extensive experience on the global stage, will share the mindset she developed for achieving goals, the thought habits necessary for sustained high performance, and the practical approaches she has used to maximize both individual and organizational capabilities. Her insights, cultivated through her athletic career, offer valuable perspectives and actionable strategies that can be applied to daily work and organizational development.

Friday, July 24, 2026 / 8:30 AM - 9:30 AM JST

Palais Royal D

Arrival Refreshments

Enjoy some light coffee and refreshments before the conference.

Friday, July 24, 2026 / 8:30 AM - 5:00 PM JST

CISO Circle Lounge

CISO Circle Lounge

This is a lounge for CISO Circle Members only.

Friday, July 24, 2026 / 8:30 AM - 5:30 PM JST

Registration Desk

Registration and Information

Registration and Information hours for the day.

Friday, July 24, 2026 / 9:30 AM - 10:15 AM JST

Palais Royal C

Guest Keynote: Techniques for Turning “No” into “Yes” - The 90% Rule of Communication -

Do you think it’s only natural to be turned down? In fact, by slightly changing the way you communicate, you can turn a “no” into a “yes.” Keiichi Sasaki, author of the bestseller “The 90% Rule of Communication,” will clearly share the language techniques he has developed through years of practice. No difficult skills are required—these are practical methods that anyone can use right away, dramatically improving your sales, negotiations, and everyday communication. This is a practical lecture for anyone who wants to improve their communication skills.

Friday, July 24, 2026 / 10:15 AM - 11:00 AM JST

Exhibit Showcase

Refreshment Break

Join us for refreshments in a brief break between sessions.

Friday, July 24, 2026 / 10:15 AM - 5:00 PM JST

Exhibit Showcase

Exhibit Showcase Open Hours

Visit the Exhibit Showcase to evaluate industry offerings that can move your business forward. Engage with your peers, Gartner analysts, and exhibitors. Attend a theater session to see technology in action.

Friday, July 24, 2026 / 10:15 AM - 5:00 PM JST

Gartner Showcase

Gartner Showcase

Discover cutting-edge tools, diagnostics and actionable resources at the Gartner Showcase. Visit our demo space for a personalized walkthrough of our business and technology insights platform and learn how Gartner's leading tools like Third-Party Cybersecurity Insights Platform and Cybersecurity Business Value Benchmark can help you make faster, smarter decisions on your mission-critical priorities.

Friday, July 24, 2026 / 10:25 AM - 10:45 AM JST

Theater 1

[Theater] Darktrace: Securing the AI Duality - Empowering Enterprise by Securing AI (Repeat)

AI is reshaping enterprises, driving unprecedented speed, scale, and productivity while transforming the cyber threat landscape. As organizations adopt AI‑driven workflows and infrastructure, they face risks like autonomous attackers, machine‑speed attacks, and blurred boundaries between humans, AI, and systems. This session explains why the AI era demands a new cybersecurity approach. Using self‑learning AI to understand behavior across users, models, applications, networks, cloud, and OT, organizations gain visibility, detect threats, respond autonomously, and strengthen cyber resilience.

Friday, July 24, 2026 / 10:25 AM - 10:45 AM JST

Theater 2

[Theater] Check Point: Mythos AI Accelerates Attacks — Preparing for CTEM Defense

AI systems like Claude Mythos are enabling attackers to automate the full pipeline — from vulnerability discovery to PoC generation to active exploitation — compressing what once took weeks into minutes or hours. Defenders, meanwhile, still require days to weeks to deploy patches, creating a critical window of exposure where zero-day threats go unmet. This session introduces a defensive model built on Continuous Threat Exposure Management (CTEM): attacker-centric prioritization and virtual patching that closes the gap — before attackers can act.

Friday, July 24, 2026 / 11:00 AM - 11:30 AM JST

Palais Royal A

Strategic Security Governance Rooted in Business Reality – Perspectives from a Global CISO

As cyber threats become increasingly sophisticated, security departments are expected to demonstrate greater business acumen and accountability than ever before. In this session, we will explore a strategic approach to security governance through the following three key pillars: 1. Optimizing Security Investment Utilizing the Enterprise Risk Management (ERM) framework to visualize risks—analyzing impact, probability, and vulnerability—in a way that allows for direct comparison with other corporate priorities. 2. Risk Layering and Structuring A systematic approach to organizing risks across corporate infrastructure, products, and suppliers, and translating those risks into actionable projects. 3. The Next Generation of Security Talent Moving beyond technical expertise to focus on ""business literacy"" and ""strategic balance."" This includes organizational strategies for effectively leveraging external partners as true subject matter experts. This session provides a practical guide for translating operational challenges into the language of executive management to build a truly effective and resilient security organization.

Friday, July 24, 2026 / 11:00 AM - 11:30 AM JST

Chatelet

Outlook for Data Security: Going from Reactive to Resilient

Many organizations find it challenging to move beyond reactive data security measures despite increasing threats and regulatory pressures. This session outlines a strategic approach to maturing toward a posture of resilience through data-centric security, leveraging AI-driven adaptive controls and strengthening incident response and business continuity.

Friday, July 24, 2026 / 11:00 AM - 11:30 AM JST

Palais Royal D

Outlook for Cyber Resilience

In today’s digitally connected world the reality that many businesses face is the constant potential for a cyber attack leading to catastrophic business impacts . As cyber threats evolve with fresh sophistication, the question is not if your organization will be targeted, but when. Join this session to explore the main considerations and challenges for cyber resilience in the future, and discover what strategies you will need to put in place to ensure your cyber resilience strategy is fit for the threats ahead.

Friday, July 24, 2026 / 11:00 AM - 11:30 AM JST

Palais Royal C

Mitigating the Top 5 Microsoft 365 Copilot Security Risks

Is your company rolling out Microsoft 365 Copilot, but you don't know what are the top security risks? Heard about overpermission or oversharing being the biggest security risk and not sure how to deal with it? Do you know RCE is being redefined as remote Copilot execution? Join this session to hear about the top five security risks of Microsoft 365 Copilot and how to mitigate them.

Friday, July 24, 2026 / 11:45 AM - 12:15 PM JST

Palais Royal A

Fileforce: A New Design Principle for File Management in the AI Era

As GenAI and AI agents spread, files are created and reused faster than ever, breaking the idea that they stay in a managed place. An "unmanaged file layer" now sprawls across cloud and PCs. Cloud data is protected, but control over data on PCs stays limited - a governance blind spot widening as AI adoption grows. VDI and thin clients help but add cost and complexity. With 25,000+ customers, Fileforce introduces Converged File Governance: "dataless PCs" fusing cloud and endpoint, unifying data control without changing how users work to deliver leak prevention, governance, and efficiency.

Friday, July 24, 2026 / 11:45 AM - 12:15 PM JST

Palais Royal C

GitLab: Navigating the Claude Mythos Era: A Practical Guide to AI Native DevSecOps

As AI adoption in software development accelerates, security risks are escalating just as rapidly.As AI adoption in software development accelerates, security risks are escalating just as rapidly. A key driver of this threat is Anthropic's next-generation model, "Claude Mythos" — an AI capable of autonomously identifying vulnerabilities that went undetected for 27 years. Should this capability be weaponized, virtually no existing cyber defense would hold. This session explores practical approaches to these challenges under the banner of "AI Native DevSecOps."

Friday, July 24, 2026 / 11:45 AM - 12:15 PM JST

Palais Royal D

Menlo: The Next Billion Users Will Be Agents—Securing Workspace for Humans and Agents

In DX, enterprise workflows have converged into the browser, evolving it from a simple tool into an OS. Today, the next billion users of this OS are shifting from humans to agents. However, autonomous agents lack human skepticism. For invisible threats in websites and files, agents are ideal targets, risking becoming uncontrollable security holes that could devastate an enterprise. To turn agent-driven productivity into a business strength, a secure workspace for humans and agents is essential. We present the role of Menlo Browser Security Platform as the foundation of trust for the AI era.

Friday, July 24, 2026 / 12:30 PM - 1:00 PM JST

Palais Royal A

Cloud Security 201: The Cloud Security Cookbook

The majority of Gartner clients see cloud as business critical for their organization. This means that effective and appropriate cloud security — be it for IaaS, PaaS or SaaS — is a key element of a successful security program. This session will provide a lightning tour over the key elements of a successful approach, where they should be applied and help decode the complex range of acronyms, approaches and associated tools that are required for this success.

Friday, July 24, 2026 / 12:30 PM - 1:00 PM JST

Chatelet

Outlook for Cyber-Physical Systems Security: Adapt to New World Realities

Cyber-physical systems have become ubiquitous in today’s society. More and more "smart" assets are deployed to connect the digital to the physical world. This session will provide security leaders with insights on topics such as the security implications of this trend, the role of regulators and whether any best practices are emerging.

Friday, July 24, 2026 / 12:30 PM - 1:00 PM JST

Palais Royal C

Ransomware Reloaded: How AI Is Reshaping the Threat and the Defense

As AI rapidly advances, it is transforming the ransomware landscape, empowering both attackers and defenders. This session explores how threat actors use AI to accelerate the success of their cyberattacks, while security leaders turn to AI tools for faster detection and response. This session offers a look at the evolving AI-powered threat environment and provides actionable insights on adapting defenses, updating playbooks and preparing for the next generation of intelligent cyber extortion.

Friday, July 24, 2026 / 12:30 PM - 1:00 PM JST

Palais Royal D

Magic Quadrant for Security Information and Event Management

Since AI is a new element in security operations, selecting a SIEM has become more challenging. Not only are core selection criteria like log collection capabilities, correlation analysis and features like LLMs important, but the ability to adapt to evolving future security requirements and the extensibility of the tool are also becoming key factors in SIEM selection. In this session, we explain the key points for selecting a SIEM based on the Magic Quadrant.

Friday, July 24, 2026 / 1:00 PM - 2:15 PM JST

Exhibit Showcase

Attendee Lunch

Join other attendees for lunch and take advantage of the opportunity to network and catch up on the day's activities so far.

Friday, July 24, 2026 / 1:15 PM - 1:45 PM JST

Palais Royal C

[Luncheon] Cohesity: Required Cyber Resilience and Data Governance in the AI-era

Ransomware and other cyberattacks are intensifying, leaving many companies unable to recover quickly and facing significant business impact. As AI adoption accelerates, data security and governance are more critical than ever. To address new risks from AI agents, organizations need not only strong defenses but also integrated strategies for rapid, reliable recovery. This session presents practical approaches to data protection, security, and AI governance for next-generation enterprise resilience.

Friday, July 24, 2026 / 1:15 PM - 1:45 PM JST

Palais Royal D

[Luncheon] KELA: Resilience in AI Era - Surpassing Attacker Speed with Active Defense

GenAI has accelerated cyberattacks beyond traditional, reactive defenses. Perimeter security is no longer enough for business continuity. This session analyzes "AI for Adversary" trends using world-class threat intelligence (CTI). We present a "Proactive Cyber Defense" strategy integrating CTI, ASM, and CTEM, empowering executives to quantify readiness and enable data-driven decision-making. Featuring a live demo of our ACRD solution, we outline a preemptive strategy to neutralize ransomware and third-party risks, providing a roadmap for next-generation resilience.

Friday, July 24, 2026 / 1:15 PM - 1:45 PM JST

Chatelet

[Luncheon] Assured: Ransomware Targets Vulnerable Partners—Third-Party Business Risks

Recently, cyber incidents have surged where attackers use vulnerable third parties to breach well-secured companies. Consequently, "Third-Party Risk Management" (TPRM) has become a top priority in industry guidelines. Despite strong internal security, one weak link among subsidiaries, contractors, or cloud services can trigger a major attack. However, managing all third parties internally is extremely difficult due to high complexity and resource constraints. This presentation covers the latest TPRM trends and explains methods for highly effective management despite limited resources.

Friday, July 24, 2026 / 1:15 PM - 1:45 PM JST

Etoile

[Luncheon] NVC: Stop AI-Driven Authentication Threats with Access Controls

Is ransomware truly impossible to prevent? Even with stronger detection and resilience, attacks continue. One reason is lateral movement: attackers abuse legitimate credentials and Active Directory to expand impact. These measures are essential, but organizations need practical ways to reduce damage with limited people and budgets. This session introduces an identity-based defense approach. Learn how to add access controls to AD authentication, without changing existing infrastructure, to help stop lateral movement. For leaders seeking practical defenses beyond detection and recovery.

Friday, July 24, 2026 / 1:15 PM - 1:45 PM JST

Palais Royal A

[Luncheon] Vectra AI: Security Is a Race Against Speed—NDR with Nippon Life Insurance

Anthropic’s Project Glasswing, which used Claude Mythos to autonomously discover thousands of zero-day vulnerabilities across major operating systems and browsers, marked a turning point in cybersecurity. When AI can find exploitable flaws at machine speed, organizations must be equally capable of detecting and disrupting attackers after compromise as they are of preventing breaches. In this session, a guest speaker from Nippon Life Insurance will share why it adopted NDR, the impact on detection speed and post-compromise visibility, and lessons learned in building a modern security operation.

Friday, July 24, 2026 / 1:50 PM - 2:10 PM JST

Theater 1

[Theater] Halcyon: Ransomware and the Japanese Threat Landscape 2026

"Our EDR has us covered." "Backups will save us." Those assumptions no longer hold. Attacks that evade EDR and target backups themselves are a working reality in Japan. Halcyon's Ransomware Research Center shares findings from "Ransomware and the Japanese Threat Landscape 2026," built for the Japan market. We cover the threat groups targeting Japan, victimology by industry, and the latest techniques bypassing existing defenses. Combining global threat intelligence with incident data from Japan, we surface the risks enterprises must confront now, and what it takes to secure business continuity.

Friday, July 24, 2026 / 1:50 PM - 2:10 PM JST

Theater 2

[Theater] SNYK: Securely Accelerating AI Adoption with AI‑SPM and Snyk

This session introduces practical strategies for addressing security risks in rapidly evolving AI environments using AI Security Posture Management (AI-SPM) and Snyk. It explains how Snyk helps detect vulnerabilities across code, open-source dependencies, containers, and AI agents early in the development lifecycle. Attendees will also learn best practices for continuously managing AI security posture while maintaining development speed, along with implementation examples for accelerating secure and scalable AI adoption.

Friday, July 24, 2026 / 2:15 PM - 2:45 PM JST

Palais Royal A

Redefining Backup: Shifting to a Recovery Strategy to Minimize Ransomware Downtime

In a ransomware attack, zero downtime is impossible. The true crisis to avoid is the "blackout" of recovery — when backups fail and no clear path to restoration exists. This session analyzes real-world cases where organizations struggled to resume operations despite having backups. We will discuss practical recovery strategies and specific technologies, including AI-driven detection and immutable vaults, designed to minimize downtime and ensure business resilience.

Friday, July 24, 2026 / 2:15 PM - 2:45 PM JST

Palais Royal C

Magic Quadrant for SASE Platforms

This session describes Gartner’s Magic Quadrant and Critical Capabilities for Single-Vendor SASE. Take a look at Gartner’s Magic Quadrant covering SASE platforms. SASE platforms deliver converged network and security capabilities to connect and secure distributed users, devices, and locations to resources in the cloud, edge, and on-premises.

Friday, July 24, 2026 / 2:15 PM - 2:45 PM JST

Palais Royal D

Technical Insights: How to Keep Your Access Management Implementation Up to Date

New requirements such as zero-trust mandates, IAM modernization, deeper support for legacy applications and improving resilience demand continuous change in organizations' AM implementations. In this session we will discuss how to adapt AM to new identity trends and threats.

Friday, July 24, 2026 / 3:00 PM - 3:30 PM JST

Palais Royal A

Wiz: AI-APP: Mastering 2026 Cloud Threats to Drive Business Acceleration

In 2026, as AI implementation reaches new heights, balancing "maximum development agility" with "robust governance" has become a top priority for CISOs. Traditional, fragmented security tools are no longer sufficient to handle this speed and complexity. This session explores the full spectrum of the AI Application Protection Platform, the emerging industry standard. We will dive into architectures designed to secure complex software supply chains and cloud-based AI infrastructures, transforming security from a bottleneck into a powerful business driver.

Friday, July 24, 2026 / 3:00 PM - 3:30 PM JST

Palais Royal C

Infoblox: Achieving Preemptive Cyber Defense with Predictive Threat Intelligence

As ransomware and supply chain attacks grow in sophistication, reactive security is no longer sufficient. Organizations must adopt a preemptive approach that identifies threats before compromise. This session explores how Infoblox’s predictive threat intelligence uncovers early indicators during attack preparation stages, correlating external intelligence with internal signals to enable actionable defense.

Friday, July 24, 2026 / 3:00 PM - 3:30 PM JST

Palais Royal D

Abnormal AI: How Behavioral AI Is Redefining the Way Security Teams Work

Attackers already leverage AI. FBI data shows global BEC losses have surpassed $55 billion. Today's targeted attacks and AI-powered impersonation need no malware; they exploit human judgment alone.With 90%+ of breaches coming from emails, conventional security tools remain ill-equipped. The session will cover how AI-driven autonomous incident response is transforming SOC operations, the essence of the paradigm shift from "threat hunting" to "behavioral anomaly detection," and practical methods for visualizing the return on security investment.

Friday, July 24, 2026 / 3:45 PM - 4:15 PM JST

Palais Royal A

The CISOs Guide to Your First Year in Role

Your first year as a CISO determine your success in creating a security-conscious organization. This session provides guidance and support to new cybersecurity leaders to help maximize their success during this pivotal transition phase.

Friday, July 24, 2026 / 3:45 PM - 4:15 PM JST

Palais Royal C

Hunt, Block and Lock Down Your Supply Chain Risks

Supply chain compromises can bypass traditional defenses and directly impact your enterprise. This session equips CISOs with cybersecurity strategies to hunt for hidden cybersecurity risks, block malicious actors and lockdown vendor ecosystems using zero trust, threat intelligence and governance best practices.

Friday, July 24, 2026 / 3:45 PM - 4:15 PM JST

Palais Royal D

How to Manage Risk From IT Vendors With AIAgentic AI Services

AI is being incorporated into every IT vendor’s services and is procured by both IT and business units. However, many companies are yet to establish governance policies for such vendors, leaving AI-specific risks unaddressed, such as data ownership and IP. In this session, we will propose management strategies to implement at each stage of AI-related service selection, contract, use and termination.

Friday, July 24, 2026 / 4:15 PM - 5:00 PM JST

Exhibit Showcase

Refreshment Break

Join us for refreshments in a brief break between sessions.

Friday, July 24, 2026 / 4:25 PM - 4:45 PM JST

Theater 1

[Theater] HP: Endpoint Security from Detection to Design — HP’s Hardware Evolution

Sophisticated cyberattacks mean detection alone cannot protect endpoints. For 25+ years, HP has advanced endpoint security with hardware as the root of trust. Recently, HP integrated hardware-assisted virtualization to isolate applications and workspaces, shifting focus from preventing intrusion to isolating impact after compromise. This addresses the limits of detection-heavy security and redefines endpoints as the organization-wide root of trust. This session explores the practical value of hardware-rooted security design using recent attack examples.

Friday, July 24, 2026 / 4:25 PM - 4:45 PM JST

Theater 2

[Theater] Varonis: Overview of Data Visualization and Control to secure AI Use

~Secure AI and the data that powers it~ To get the most out of AI, it is important that organizations can use it without any risk. This is to prevent data breach, secure AI, guardrails and to monitor data, and corrective action. And executives must be accountable to use AI safely. To achieve this, real-time visibility of the entire process - AI, prompts, data AI references, access permissions – and continuous control are necessary. So how should we start? In this session, we will clearly explain the root causes of risks associated with AI adoption and its solutions.

Friday, July 24, 2026 / 5:00 PM - 5:30 PM JST

Palais Royal C

Gartner Closing Keynote: Evolving With Change: Smarter, Faster, Stronger

To maintain competitiveness, organizations must make smarter security decisions, respond faster and build stronger resilience. In this session, we will summarize the insights gained over the three-day summit and connect them to your next actions.