Conference Description
Key Takeaways
- Two-day conference addressing cyber security challenges in critical infrastructure sectors including energy, utilities and manufacturing
- Focus on IT/OT convergence, supply chain security and the shift from reactive to preventive security approaches
- Eight dedicated tracks with over 35 expert speakers covering technical, regulatory and strategic perspectives
- Hands-on training courses available in operational technology and cyber security fundamentals
- Designed for CISOs, IT/OT security managers, compliance officers and executives responsible for protecting critical systems
Introduction
The Cyber Security for Critical Industries Conference brings together security professionals, regulators and technology specialists in London to examine the evolving threat landscape facing essential services and industrial operations. As critical infrastructure becomes increasingly connected and reliant on digital systems, organisations face mounting pressure to protect assets that underpin national security and economic stability. This two-day event addresses the technical, operational and regulatory dimensions of securing systems where cyber incidents can have consequences extending far beyond data loss.
About This Event
Organised as an in-person gathering, the conference features eight dedicated tracks designed to accommodate both technical practitioners and executive-level decision-makers. With more than 35 speakers drawn from across the UK’s cyber security ecosystem, the programme combines strategic discussions with practical case studies from sectors including energy, utilities, transport and manufacturing. Networking opportunities include a drinks reception and morning walk, providing informal settings for peer-to-peer exchange alongside the structured sessions.
The Convergence of IT and Operational Technology
A central theme throughout the conference is the integration of information technology and operational technology environments. Historically, these domains operated in isolation, with OT systems managing physical processes in industrial settings while IT handled business applications and data. The increasing connectivity between these environments creates efficiency gains but also introduces vulnerabilities that traditional IT security approaches may not adequately address. Industrial control systems, SCADA networks and programmable logic controllers now require protection strategies that account for their unique operational constraints, including systems that cannot be easily patched or taken offline for updates.
The conference examines how organisations can bridge the cultural and technical gaps between IT and OT teams, developing unified security architectures that protect both corporate networks and industrial processes without disrupting operations.
Regulatory Developments and Compliance Challenges
Government policy and regulatory updates form a significant component of the programme. Critical infrastructure operators face an evolving compliance landscape as authorities respond to the growing sophistication of state-sponsored and criminal cyber threats. The conference provides insight into current regulatory expectations and emerging requirements, helping attendees understand their obligations and prepare for forthcoming changes. For organisations operating across multiple jurisdictions or supply chains, navigating these requirements presents particular complexity.
Supply Chain Security and Organisational Resilience
Modern critical infrastructure depends on extensive supply chains encompassing hardware manufacturers, software vendors, maintenance contractors and service providers. Each connection represents a potential attack vector, as demonstrated by high-profile incidents where adversaries have compromised trusted suppliers to gain access to target organisations. The conference addresses strategies for integrating cyber security considerations throughout procurement, vendor management and ongoing supplier relationships.
Beyond prevention, the programme emphasises building organisational resilience, recognising that determined attackers may eventually succeed despite defensive measures. This includes developing incident response capabilities, business continuity planning and recovery procedures that minimise operational disruption when breaches occur.
Practical Training Opportunities
Complementing the conference sessions, hands-on training courses offer participants the opportunity to develop practical skills in OT security and cyber security fundamentals. These courses address the persistent skills gap in industrial cyber security, where demand for qualified professionals continues to outpace supply. For organisations struggling to recruit experienced OT security specialists, developing internal capabilities through targeted training represents an increasingly important strategy.
Who Should Attend
The conference serves professionals with responsibility for protecting critical systems, including chief information security officers, IT and OT security managers, control systems engineers, compliance officers and risk managers. Executives seeking to understand the strategic implications of cyber risk for their organisations will find relevant content alongside technical practitioners. The event also attracts representatives from government agencies, academic institutions and technology providers working in the critical infrastructure protection space.
Industry Support
The conference draws participation from established technology providers and specialist security firms including Axians, Bridewell, Capula, Schneider Electric, Siemens and TXOne, alongside supporting organisations such as RITICS, GAMBICA, SASIG and TechUK. This breadth of involvement reflects the collaborative approach increasingly recognised as essential for addressing threats to critical infrastructure.

