Programme

Supernova Jaarbeurs, Utrecht

24 March 2026

9:00 - 16:45

The first sessions of 2026

How do you translate strategy into implementation? How do you prepare yourself so that you are resilient? Risk, Compliance & Business Continuity. Security Awareness. Legislation and regulations. Threats and opportunities of Artificial Intelligence. Security of complex cloud environments. Data protection and privacy. Incident Response. Technology tracks and security best practices.

Reception & Registration

The Heliview team will welcome you to Supernova (Jaarbeurs), Utrecht centrally located directly next to Utrecht Central Station.

The Heliview team will welcome you to Supernova (Jaarbeurs), Utrecht centrally located directly next to Utrecht Central Station.

In addition to being easily accessible by public transport, the venue has:

  • 3.000+ parking spaces with 40+ charging points. Parking ticket is included in the free end-user ticket.
  • Enjoy cookies from the Koekfabriek, a selection of sweets, mini cinnamon rolls, mini börek with spinach and cheese, and a New York croissant roll, while fresh coffee and tea are waiting for you!
Martijn Hoogesteger

Martijn Hoogesteger

Digital Detective at Hunted and CTO of S-RM

Opening by the chair & Link up: The Connection Kickoff

Martijn Hoogesteger, Digital Detective at Hunted and CTO of S-RM

Martijn Hoogesteger is a Digital Detective from the TV Program Hunted. Besides being a digital detective he is a cybersecurity expert. Martijn opens the conference with “The Connection Kickoff”. This interactive networking session will break the ice and is the starting point of meaningful connections.

The Connection Kickoff is the perfect opportunity to meet fellow security leaders, share your interests, and start expanding your network of peers who can inspire and support you during and beyond the conference. Let’s make the first connection count!

Cas Schiopu

Cas Schiopu

Senior Manager Cyber Security, Data Privacy & AI at EY

Martijn Hoogesteger

Martijn Hoogesteger

Digital Detective at Hunted and CTO of S-RM

Aart Jochem

Aart Jochem

Chief Information Security Officer and Taskforce Digital Sovereignty

Talkshow: Control, Dependency and Risk: The Sovereignty Challenge for IT Security Leaders

Cas Schiopu, Senior Manager Cyber Security, Data Privacy & AI of EY | Martijn Hoogesteger, Digital Detective at Hunted and CTO of S-RM | Aart Jochem, CISO and Taskforce Digital Sovereignty of Centric

We open the conference with an interactive panel discussion on technical and operational sovereignty. As organisations increasingly rely on complex architectures, cloud platforms, and strategic vendors, maintaining control over technology, operations, and risk becomes a key leadership challenge.

From an architecture and risk management perspective, the panel explores what sovereignty means in practice and addresses the difficult choices security leaders face, the dependencies they inherit or create, and the moments where control, accountability, and risk exposure must be deliberately accepted, or challenged.

Sheetal Joseph

Sheetal Joseph

CISO of Bitvavo

Laying Security Foundations That Scale

Sheetal Joseph, CISO of Bitvavo

Building a security program whether from zero in a lean startup or rebooting one in a mature organization is as much about context as it is about controls. There’s no one-size-fits-all blueprint, but there is a repeatable framework that adapts to your organization’s size, risk profile, and growth trajectory.

In this talk, I’ll walk through a practical, four-phase model that helps you build or rebuild security with clarity and purpose. From facing the right direction, to getting the basics right, embedding them sustainably, and if needed scaling to a more strategic and advanced level.

Morning Break at The Network Square With 1-To-1 Meetings

Enjoy fresh coffee, tea and snacks on the network square.

  • Network with peers, speakers and partners.
  • The first round of scheduled 1-to-1 meetings take place.
  • Check your EventManager for your personal programme.
Omar Ali

Omar Ali

CISO and IT Director at PostNL

Deep Dive Session: Balancing Security and Cost Optimisation: A New Reality for Security Leaders

Omar Ali, CISO and IT Director of PostNL

As security demands continue to grow, budgets, resources, and talent do not scale at the same pace. Security leaders must make deliberate choices, recognising that full coverage is neither feasible nor cost-effective.

In this Deep Dive Session, led by Omar Ali, CISO and IT Director at PostNL, we examine how to balance security ambitions with financial reality. Through a risk-based approach, we explore how security leaders can actively control and reduce costs.

The session focuses on identifying overspend, rationalising tooling, optimising the use of people and capabilities, and consciously accepting certain risks to avoid unnecessary expense.

Mark Molyneux

Mark Molyneux

CTO Northern Europe of Commvault

Breakout session: Commvault: From Cyber Security to Cyber Resilience

Mark Molyneux, CTO Northern Europe of Commvault

Threats are exponential, AI is only accelerating, and “cloud-first” is no longer a distant vision, but the reality of every global enterprise.

Join Commvault EMEA CTO, Mark Molyneux, as he shares powerful insights into the constantly evolving cyber-attack surface and demonstrates the importance of why a focus on creating an optimised cyber resiliency strategy is imperative.

Key learnings:

  • Understanding why unified resilience across security, identity, and recovery teams is critical to defeating modern attackers who exploit organizational silos
  • Why clean recovery matters more than fast recovery and how AI-driven techniques can surgically remove compromised data to prevent reinfection
  • How to prepare your organization for the agentic enterprise, where autonomous AI systems require new governance and protection strategies
  • Why hybrid infrastructure is permanent, and how to implement resilience strategies that work seamlessly across cloud, SaaS, and on-premises environments
Jules Wouters

Jules Wouters

Solutions Engineer at Trend Micro

From cyber risk to business value: strategic security frameworks for every stakeholder

Jules Wouters, Solutions Engineer of Trend Micro

Discover how to transform cybersecurity from a cost center into a business enabler through practical insights from three perspectives. In this session, Jules shares hands-on strategies to build measurable cyber resilience using a modern, AI-driven security platform, while providing concrete takeaways for different stakeholders:

  • For Executives: Learn how to communicate cyber risks in business terms that drive strategic decision-making and board-level conversations. Discover how advanced cyber risk quantification translates technical vulnerabilities into measurable business impact metrics that resonate with the board and other stakeholders.
  • For CISOs: Gain actionable frameworks to achieve centralized visibility across the entire attack surface. Learn how cyber risk management enables you to prioritize remediation, demonstrate compliance, and align security initiatives with business priorities through data-driven decision-making.
  • For SecOps Teams: Experience how AI-native security operations can dramatically improve efficiency and response times. Explore next-generation SIEM capabilities (processing any log type within three hours) and intelligent security orchestration that automates decision-making and accelerates incident response in the SOC.

Lunch Break at the Network Square with 1-to-1meetings

Enjoy a variety of filled sandwiches and a warm snack, featuring five types of toppings. Including one fish option, three vegetarian choices and one vegan option, accompanied by a rotating warm snack, soup from the

Verspillingsfabriek, international salads, a dessert board, and fruit juices.

During lunch there is enough time for 1-on-1 meetings and networking with colleagues, solution providers, peers and speakers.

Amir Vashkover

Amir Vashkover

Head of Data Security

Deep Dive Session: Ensuring Robust Data Protection & Privacy Measures

Amir Vashkover, Head of data security

In this Deep Dive Session, we bring security leaders together to explore how organisations can safeguard data in an environment where threats, regulations, and technologies evolve at high speed. Amir Vashkove is an Data Security Industry Leader. During this session he shares his experiences through the realities of building and maintaining resilient data protection and privacy capabilities at scale.

This interactive session encourages participants to actively exchange knowledge with peers, share practical experiences, and challenge each other’s assumptions. Together, we will explore what “robust” data protection really means today: from aligning privacy-by-design with business priorities to integrating modern detection, response, and governance practices. Key discussion themes include the human factor, data handling behaviour, and organisational accountability, offering a holistic view of what it takes to protect sensitive information in complex environments.

Afternoon break at the network square with 1-to-1 meetings

Enjoy a selection of refreshing lemonades and healthy smoothies, a cookie‑brownie treat, Bites We Love nut mixes, and mozzarella–tomato skewers.

Have 1-to-1 meetings, meet colleagues, solution providers, peers and speakers and share your gained knowledge!

Siebe Brouwer

Siebe Brouwer

Partner at Banx and Trainer at TSTC

Tawnni Castaño de la Cuesta

Tawnni Castaño de la Cuesta

Partner at Banx and Trainer at TSTC

Workshop: From Compliance to Strategic Value: How GRC Strengthens Security Leadership at Board Level

Siebe Brouwer, Partner at Banx and Trainer at TSTC | Tawnni Castaño de la Cuesta, Partner at Banx and Trainer at TSTC

Security leadership today requires more than technical controls and compliance checkboxes. Board members expect insight, control, and direction. In this deep dive session, we show how you can use GRC as a strategic leadership instrument. You will gain insight into:

  • The contribution of GRC to decision-making at board-level
  • How to focus on being “in control” rather than on compliance

Join your fellow security leaders in this deep dive to discover how GRC supports stronger security leadership and decision-making at board level.

Gustavo de Maniá

Gustavo de Maniá

Regional CISO of Heineken Nederland B.V.

Workshop: HEINEKEN’s Approach to AI-Powered Deception with Deepfakes, Voice Cloning and Emerging Cyber Risks

Gustavo de Maniá, Regional CISO of Heineken Nederland B.V.

AI-driven threats such as deepfakes, voice cloning and automated phishing are rapidly reshaping the cyber-risk landscape. In this interactive 55-minute deep dive session, you will explore how HEINEKEN tackles these emerging risks.

Join your peers in this interactive session, where you are actively challenged to analyse real-world scenarios, assess AI-powered deception techniques and consider how your own organisations would respond.

The session offers a concise, practical look at how deepfakes and voice cloning work, why they are so effective in social engineering, and which controls deliver the fastest security impact.

This session is led by Gustavo Maniá, Information Security and Risk Manager and Regional CISO for Africa and the Middle East at The HEINEKEN Company.

Content to be announced.

Break-out session SoSafe

Content to be announced.

Ronald Westerveen, CISO at Prinses Maxima Centrum

Content to be announced.

Break-out session CyberArk in collaboration with Palo Alto

Content to be announced.

Break-out session Zscaler

More sessions will follow soon...

topics coming up

  • Balancing security and cost optimizations: a new reality for security leaders
  • Cyber Resilience as Core Strategy
  • Enhancing security awareness and training
  • Ensuring robust data protection and privacy measures
  • Guide threat detection and response by leading SIEM monitoring and SOC teams
  • How to become more effective in your role as a CISO
  • How to maintain visibility for responsible leadership
  • Identity & Access Management and PAM as cornerstones of Zero Trust security
  • Securing complex cloud environments with AI driven technologies
  • Technical and operational sovereignty

Who's speaking?

Curious about who is contributing to the conference and what experience they bring with them? Quickly view the complete overview!