Explore the Agenda
8:00 am Check-In & Morning Coffee
8:50 am Chair’s Opening Remarks
Compliance, Contracts & Cost in Construction Cybersecurity
9:00 am The CISO’s Guide From Present to 2030: AI & Data Sovereignty
- Understand how quantum computing will impact encryption, data protection, and longterm project risk, and what construction firms need to do now to prepare
- Explore how agentic AI and autonomous security operations is reshaping how construction teams monitor, respond, and manage risk with limited resource
- Assess how data sovereignty will change where project data is stored, accessed, and controlled across global portfolios, and what this means for clients, contracts, and compliance
Practical Takeaway: Leave with a forward-looking roadmap to prepare for emerging risks from quantum computing, agentic AI and data sovereignty before they become business critical challenges
9:30 am Audience Discussion: Right-Sizing Compliance Without Breaking the Business
- Design compliance approaches that meet CMMC and client requirements without inflating cost or slowing projects
- Manage responsibility across subcontractors with varying levels of maturity without creating bottlenecks
- Balance compliance, contract eligibility, and commercial viability across your pipeline
Practical Takeaway: Leave with practical approaches for meeting CMMC and client requirements without creating unnecessary cost, project delays, or supply chain disruption
10:00 am Morning Networking Break
Incident Response, Recovery & Business Continuity
11:00 am War Game: Ransomware Attack on a Live Project
- What happens when payments stop, delivery slips, and clients are exposed?
- Respond to a simulated ransomware attack disrupting schedules, subcontractors, and payment flows
- Make real-time decisions on whether to stop work, how to communicate with clients, and how to manage contractual exposure
- Map how disruption spreads across cashflow, delivery timelines, and stakeholder relationships, not just IT systems
Practical Takeaway: Leave with a tested incident response framework for managing ransomware disruption across projects, payments, stakeholders and client relationships
12:00 pm Networking Lunch
Resource Optimization & Human Factors
1:45 pm Panel Discussion: Vendor Consolidation & Tool Rationalization
- Identify where tool sprawl is creating blind spots, alert fatigue, and unnecessary cost without reducing real risk
- Decide what to consolidate, what to retain, and what to remove based on operational impact and response capability
- Evaluate whether your current stack would hold up under a real incident affecting projects, payments, or data
Practical Takeaway: Leave with a practical methodology for evaluating cybersecurity tools, reducing complexity, and prioritising investments that deliver measurable business value
1:45 pm Case Study: Operating with Enterprise Maturity on Limited Resources
- Focus effort on the risks that directly impact project delivery, payments, and contract performance
- Extend capability through partners, automation, and AI without losing accountability or visibility
- Build investment cases that link cyber maturity to reduced disruption, stronger client confidence, and contract protection
Practical Takeaway: Leave with practical strategies for maximizing cyber impact with limited resources, helping small teams focus investment where it most protects the business
2:15 pm Closing Panel: What Would Break Your Business Tomorrow?
- Identifying the risks that construction leaders are still not prepared for
- Pressure-test where your organisation is most exposed across projects, payments, subcontractors and client data
- Hear where peers remain vulnerable despite investment in tools, compliance, and training
- Define the decisions you need to make in the next 12 months to avoid disruption, client impact and commercial loss
Practical Takeaway: Leave with a prioritised view of the risks most likely to disrupt your business and a clearer understanding of the decisions needed to strengthen resilience over the next 12 months