All 2025 Conference Sessions

Gartner Security & Risk Management Summit 2025 dove deep into key topics for cybersecurity leaders around AI, risk management, cloud security and more.

Session Takeaways

Dive into some of the key takeaways you may have missed from Gartner Security & Risk Management Summit.

Gartner Opening Keynote: Harness the Hype: Turning Disruption Into Cybersecurity Opportunity

Speakers:

  • Patrick Hevesi, VP Analyst, Gartner
  • Oscar Isaka, Sr Director Analyst, Gartner

Key takeaways

  • Hype drives disruption and confusion, but we can turn that into an opportunity for cybersecurity and organizations.
  • Reframe executive conversations to emphasize critical exposures.
  • With clear communication and strong decision making, exceptional leadership can guide your organization through complexity.

Being Comfortable in the Hot Seat: Having Cybersecurity Conversations With Executives

Speaker:

  • Paul Furtado, VP Analyst, Gartner

Key takeaways

  • Cyber risk management should be holistic and aligned with business objectives, using outcome-oriented metrics (such as Return on Risk and Protection Level Agreements) instead of focusing solely on traditional ROI.

  • Preparation and incident response are essential, including detailed response plans, regular business continuity testing, and rapid detection and containment capabilities to keep pace with the speed of cyberattacks.

  • Executive engagement and clear communication are fundamental: keep leadership informed, base security investments on business value, and prepare the board for realistic expectations by prioritizing proactive and measurable cybersecurity practices.

Be the first to receive the 2026 conference agenda

Get the latest details around the 2026 conference agenda, speakers, and more straight to your inbox.

By clicking the "Continue" button, you are agreeing to the Gartner Terms of Use and Privacy Policy.

Contact Information

All fields are required.

background wave background wave background wave
Look back at 2025 Conference Sessions

Dozens of conference sessions were presented each day at the 2025 Gartner Security & Risk Management Summit. While we work to develop next year’s agenda, filter to see sessions that align with your role and interests.

Show Filters

Filter Sessions Cancel
Showing 4 Sessions
Clear All
Tuesday, 05 August, 2025

11:00 AM - 11:30 AM BRT

Executive Story: Petrobras: Challenges and Benefits in the Continuous Threat Exposure Management (CTEM) Journey

Samara Silva Braz, Chief Information Security Officer, Petrobras
Learn in detail about Petrobras’ implementation of Continuous Threat Exposure Management (CTEM), highlighting the challenges faced and lessons learned throughout this project. Adopting CTEM requires a significant cultural shift and collaboration between threat intelligence teams, infrastructure, and business units. Understand how the organization structured this collaboration and integrated technologies to prioritize vulnerability treatment, improving security posture, and reducing the risk of cyber incidents. The experience also highlights the importance of balancing automation and human judgment in vulnerability management. ... Show More Show Less

02:30 PM - 03:00 PM BRT

Executive Story: Vivo (Telefônica Brasil): Third-Party Risk Management: The TPRM Program That Transformed the Security of Partners and Affiliates

Gregory Isnardi, Senior Digital Security Manager, Vivo (Telefônica Brasil)
Learn more about Vivo (Telefônica Brasil)’s Third-Party Cyber Risk Management (TPRM) Program, designed to address the challenges of supply chain interdependencies and ensure cyber resilience. The initiative, driven by regulations such as the LGPD and BACEN Resolution 4,893, seeks to continuously monitor the security posture of the most critical third parties, promoting innovation and secure growth. Understand how collaboration between internal areas and suppliers, the use of frameworks and technological solutions increased the visibility of vulnerabilities and helped reduce incident response time. The program reinforces the importance of effective communication and cyber risk consulting, resulting in mutual benefits and greater flexibility in contract management. ... Show More Show Less
Wednesday, 06 August, 2025

10:30 AM - 11:00 AM BRT

Executive Story: Albert Einstein: Risk Management with Scalable IoT Security for Connected Devices

Diego Mariano, CISO & Head of Digital Channels, Hospital Israelita Albert Einstein
Discover how Hospital Israelita Albert Einstein implemented a scalable IoMT (Internet of Medical Things) security solution, starting with 11,000 IoT (Internet of Things) and 1,000+ IoMT devices, to address critical risks and enhance operational resilience. With the new platform, the organization achieved 68% greater risk visibility, with only 0.6% of devices classified as critical risk, while enabling 90% faster incident containment through EDR (Endpoint Detection and Response) integration. Also, it provided adaptability to medical workflows, and ability to integrate with existing security tools, Vulnerability Management, Firewall and Network Access Control. This initiative not only secured high-volume medical imaging traffic but also laid the foundation to scale across its entire ecosystem of connected devices, setting a new standard for healthcare cybersecurity in Latin America. ... Show More Show Less

02:00 PM - 02:30 PM BRT

Executive Story: Secretaria de Governo Digital (SGD/MGI): CyberOps, AI and Resilience – Strategic Lessons from Global Events in Brazil

Leonardo Rodrigo Ferreira, Director of Privacy and Information Security (CISO), Secretaria de Governo Digital (SGD)
Over the past two years, Brazil has hosted major international events, such as the G20, the BRICS meetings, and COP30, which have tested the limits of cybersecurity and organizational resilience, also highlighting the importance of artificial intelligence as both an ally and a threat in the CyberOps scenario. These events required unprecedented cyber preparedness to face threats such as ransomware, disinformation, and hybrid attacks. Learn more about the CyberOps model developed, which integrated real-time monitoring, Zero Trust architecture, and AI-based automation. This model not only ensured the security of the events, but also set a new standard of cyber resilience for government and business operations. Based on the experience of the Digital Government Secretariat (SGD) of the Ministry of Management and Innovation in Public Services (MGI), see how companies and governments can adopt these lessons to strengthen their cyber operations and resilience strategies, preparing for a safer digital future. ... Show More Show Less

... Show More Show Less
Items per page: 19 of 4 Items
1 of 0 Pages

Sorry, no sessions match your criteria. Please refine your filters to display sessions.

“A high-level event that connected renowned experts to critical topics for the current security landscape. The discussions and shared insights were fundamental for refining our cybersecurity strategy, providing us with a clearer view of the next steps.”

Júlio Lorenz 
CISO, Banrisul

Discover what it’s like to experience #GartnerSEC