Conference Description
Key Takeaways
- Governance, Risk, and Compliance conference covering audit, information security, AI governance, and cybersecurity
- Hybrid format with in-person attendance in San Diego and virtual participation options
- Up to 17 CPE credits available for in-person attendees and 5 for virtual participants
- Designed for CISOs, compliance officers, risk managers, and IT governance leaders from regulated industries
- Sponsors include Deloitte, EY, KPMG, Protiviti, and Black Kite
About CRX
CRX, formerly known as Audit & Beyond, is a three-day conference running October 13 to 15, 2026, focused on governance, risk, and compliance. Organized by Optro, the event brings together practitioners and industry leaders to examine current challenges in audit, risk management, information security, and regulatory compliance. The conference offers both in-person attendance in San Diego, California, and virtual participation.
The program includes keynote presentations, breakout sessions, hands-on workshops, and product training. Networking receptions provide opportunities for attendees to connect with peers and solution providers. In-person participants can earn up to 17 Continuing Professional Education credits, while virtual attendees can earn up to 5 CPE credits.
Core Topics and Focus Areas
CRX addresses the intersection of traditional GRC disciplines with emerging technology challenges. Sessions cover responsible AI implementation, AI governance frameworks, cybersecurity practices, and data governance. The conference examines how organizations can integrate these considerations into daily workflows and operational processes.
Additional subject matter includes implementing effective GRC frameworks, managing evolving risk landscapes, maintaining regulatory compliance, and leveraging technology to improve audit and risk processes. The program explores both operational and strategic dimensions of risk management.
Sponsors and Solution Providers
The conference features participation from major consulting firms and specialized technology vendors. Sponsors include Deloitte, EY, KPMG, Protiviti, Grant Thornton, Crowe, and RSM. Cybersecurity and compliance technology providers such as Black Kite, Delinea, A-LIGN, DFIN, and 360 Advanced are also represented.
Who Should Attend
CRX targets senior professionals responsible for audit, risk, compliance, and information security functions. The audience includes Chief Information Security Officers, Chief Compliance Officers, Heads of IT Risk, Directors of Data and AI Governance, and Risk Managers. The conference is particularly relevant for executives working in finance, healthcare, technology, and other regulated sectors where GRC requirements are substantial.

