Early-bird Discount
expires in
Register Now

Agenda

Governance in Enterprise Security

Governance in Enterprise Security

Combined Session
Thursday, May 08, 2025 14:30—15:30
Location: B09

Challenges in Governance of Converged Security Systems in Enterprises
14:30—14:50
 

The integration of IT, operational technology (OT), and physical security into converged security systems presents a transformative opportunity for modern enterprises, offering enhanced risk management and incident response capabilities. However, this convergence also introduces significant governance challenges. This presentation explores the complexities of managing converged security frameworks, emphasizing the need for unified governance to address operational silos, technological evolution, and regulatory compliance. Through case studies and best practices, it highlights strategies to foster collaboration, adaptability, and a proactive security culture. Attendees will gain insights into overcoming governance barriers and aligning security measures with organizational objectives, ensuring a robust defense against evolving threats.

Dr. Vladimir Bunic
Global Cyber Physical Security Expert
Nestlé
Vladimir Bunic, Ph.D., is a distinguished Converged Security Expert at Nestlé, based in Barcelona, Spain. With a robust background in cybersecurity, physical security, and risk management,...
Privileged Access Management in Hybrid IT Environments
14:50—15:10
 
With nearly three in four organizations worldwide operating in hybrid IT environments, the systems’ interconnections introduce unique security challenges. A breach in one area—whether on-premises or in the cloud—can quickly ripple across the entire infrastructure. For example, a compromised on-premises privileged account could provide a gateway for attackers to exploit cloud environments like Entra ID.
Misconfigurations, overly permissive service accounts, and exposed credentials are common entry points for these attacks, enabling lateral movement and potentially leading to a data breach. Threat actors often exploit simple oversights, such as privileged accounts with excessive permissions or poorly secured local admin accounts tied to cloud identities.
This discussion will explore how these attacks unfold and practical steps to mitigate risks. We'll dive into strategies like just-in-time access and zero-standing privilege to help reduce attack paths and strengthen overall security in hybrid IT environments.
Join this session to learn how to:
- Mitigate the Entra ID / On-Prem hybrid attack path.
- Leverage just in time orchestration to prevent lateral movement.
- Dynamically delegate just-enough access (JEA) for administrators.
- Move to a Zero Standing Privilege (ZSP) strategy for your organization.
- Deploy friction-free tools to facilitate access.
Martin Cannard
VP of Product Strategy
Netwrix
Accomplished VP of Product Strategy at Netwrix with 30-year track record of success from startups to enterprise software organizations, Martin Cannard is specifically experienced in the privileged...
Building Enterprise-Grade GenAI Applications with Fine-Grained Access Controls
15:10—15:30
 
As organizations move to implement generative AI solutions, securing these applications with proper access controls remains a critical challenge. In this session, we will demonstrate how to design and implement enterprise-grade generative AI applications that maintain stringent security standards. Through a real-world insurance claims processing example, we'll explore how to implement fine-grained access controls for AI agent workflows, combine role-based and attribute-based access control, and seamlessly integrate authentication flows. Attendees will learn practical patterns for building secure AI applications that respect user permissions and data access boundaries, while maintaining the integration of agent frameworks that make generative AI so powerful. This technical deep-dive will include building block fundamentals, architecture patterns, and lessons learned from real customer implementations.
Manuel Heinkel
Solutions Architect
Amazon Web Services (AWS)
Manuel is a Solutions Architect at Amazon Web Services (AWS), working with software companies in Germany to build innovative and secure applications in the cloud. With his expertise in security and...
Almost Ready to Join the EIC 2025?
Reach out to our team with any remaining questions
Get in touch