Explore the Agenda

8:00 am Check-In & Morning Coffee

8:50 am Chair’s Opening Remarks

Vice President, Chief Information Security & Privacy Officer, Turner Construction Company

Compliance, Contracts & Cost in Construction Cybersecurity

9:00 am The CISO’s Guide From Present to 2030: AI & Data Sovereignty

Vice President, Chief Information Security & Privacy Officer, Turner Construction Company
  • Understand how quantum computing will impact encryption, data protection, and longterm project risk, and what construction firms need to do now to prepare
  • Explore how agentic AI and autonomous security operations is reshaping how construction teams monitor, respond, and manage risk with limited resource
  • Assess how data sovereignty will change where project data is stored, accessed, and controlled across global portfolios, and what this means for clients, contracts, and compliance

Practical Takeaway: Leave with a forward-looking roadmap to prepare for emerging risks from quantum computing, agentic AI and data sovereignty before they become business critical challenges

9:30 am Audience Discussion: Right-Sizing Compliance Without Breaking the Business

Manager, Cyber Risk & Controls, Turner Construction Company
  • Design compliance approaches that meet CMMC and client requirements without inflating cost or slowing projects
  • Manage responsibility across subcontractors with varying levels of maturity without creating bottlenecks
  • Balance compliance, contract eligibility, and commercial viability across your pipeline

Practical Takeaway: Leave with practical approaches for meeting CMMC and client requirements without creating unnecessary cost, project delays, or supply chain disruption

10:00 am Morning Networking Break

Incident Response, Recovery & Business Continuity

11:00 am War Game: Ransomware Attack on a Live Project

  • What happens when payments stop, delivery slips, and clients are exposed?
  • Respond to a simulated ransomware attack disrupting schedules, subcontractors, and payment flows
  • Make real-time decisions on whether to stop work, how to communicate with clients, and how to manage contractual exposure
  • Map how disruption spreads across cashflow, delivery timelines, and stakeholder relationships, not just IT systems

Practical Takeaway: Leave with a tested incident response framework for managing ransomware disruption across projects, payments, stakeholders and client relationships

12:00 pm Networking Lunch

Resource Optimization & Human Factors

1:45 pm Panel Discussion: Vendor Consolidation & Tool Rationalization

Senior Director of Security Operations, Turner Construction Company
Director of Cybersecurity, Guarantee Electrical Company
  • Identify where tool sprawl is creating blind spots, alert fatigue, and unnecessary cost without reducing real risk
  • Decide what to consolidate, what to retain, and what to remove based on operational impact and response capability
  • Evaluate whether your current stack would hold up under a real incident affecting projects, payments, or data

Practical Takeaway: Leave with a practical methodology for evaluating cybersecurity tools, reducing complexity, and prioritising investments that deliver measurable business value

1:45 pm Case Study: Operating with Enterprise Maturity on Limited Resources

IT Director & Chief Information Security Officer, Maple Reinders
  • Focus effort on the risks that directly impact project delivery, payments, and contract performance
  • Extend capability through partners, automation, and AI without losing accountability or visibility
  • Build investment cases that link cyber maturity to reduced disruption, stronger client confidence, and contract protection

Practical Takeaway: Leave with practical strategies for maximizing cyber impact with limited resources, helping small teams focus investment where it most protects the business

2:15 pm Closing Panel: What Would Break Your Business Tomorrow?

Senior Director of Cyber security & Service Operations, Ledcor
IT Director & Chief Information Security Officer, Maple Reinders
  • Identifying the risks that construction leaders are still not prepared for
  • Pressure-test where your organisation is most exposed across projects, payments, subcontractors and client data
  • Hear where peers remain vulnerable despite investment in tools, compliance, and training
  • Define the decisions you need to make in the next 12 months to avoid disruption, client impact and commercial loss

Practical Takeaway: Leave with a prioritised view of the risks most likely to disrupt your business and a clearer understanding of the decisions needed to strengthen resilience over the next 12 months

3:00 pm Chair’s Closing Remarks & End of Summit

Vice President, Chief Information Security & Privacy Officer, Turner Construction Company