
Security Day | Singapore
Defending the Digital Enterprise: Strategies for Evolving Threat Landscapes
Singapore
Hosted by Factor
- 2 attendees
- 8 hours
Overview
In today's dynamic security landscape, the CISO's role is more critical than ever. Gain insights into how security leaders can stay ahead of the rapidly evolving threat landscape, leverage AI and machine learning for threat detection, and foster a culture of security within digital transformation initiatives. Discuss how to create a proactive, resilient security strategy that aligns with regulatory requirements and emerging technologies like quantum computing and IoT security.
What we will cover
- Cybersecurity Continuity Exploring strategies to ensure uninterrupted business operations by building resilient cybersecurity frameworks that protect against disruptions, while balancing risk and growth.
- Threat Detection Investigating the latest technologies and approaches for real-time threat detection and incident response, with a focus on minimising impact from sophisticated threats like ransomware and zero-day exploits.
- Zero Trust Examining the adoption of Zero Trust frameworks, where access is continuously verified across networks, devices, and users, as a critical defence strategy against modern cyber threats.
- Cloud Security Exploring key strategies for securing cloud environments, with an emphasis on data confidentiality, identity management, and compliance in a multi-cloud world.
- Digital Security Investigating how CISOs can support digital transformation initiatives without compromising security, focusing on integrating security protocols throughout the innovation lifecycle.
- Risk Management Evaluating strategies for managing risks associated with third-party vendors and supply chains, ensuring security practices extend to all external partners.
- AI in Cybersecurity Exploring the role of AI and machine learning in automating threat detection, predictive analytics, and incident response to enhance cybersecurity defences.
- Compliance Privacy Navigating the complex landscape of data protection regulations, including GDPR and Australia's privacy laws, while ensuring data security and avoiding penalties.
- Insider Threats Examining approaches to identify, monitor, and mitigate insider threats, including both malicious and unintentional data breaches within organisations.
- Cybersecurity Leadership Discussing strategies to attract, develop, and retain skilled cybersecurity professionals while fostering leadership that aligns security goals with business objectives.
- IoT Security Exploring how to secure IoT devices and networks, focusing on reducing vulnerabilities through segmentation, regular updates, and continuous monitoring.
- Cybersecurity Culture Fostering a company-wide culture of cybersecurity awareness, encouraging employee engagement in security practices, and reducing human-related risks across the organisation.
Agenda
- Registration and Welcome Coffee(Security Day Singapore) Welcome to the start of an exciting day! Please join us for registration upon arrival, where you will be greeted by our team and receive your event materials. This is the perfect time to enjoy a cup of coffee, meet fellow delegates, and network before the formal agenda begins. We encourage you to use this opportunity to connect with peers, explore the venue, and settle in for a day filled with insightful discussions and innovative ideas.
- Welcome Address & Introduction by Host(Security Day Singapore) Join us for the official opening of our event with a warm welcome address from our host, followed by an introduction from our esteemed CEO, Josh Heid. This session will set the stage for the day’s proceedings, highlighting the key themes and objectives of the conference. Josh will also share insights into the evolving landscape of technology and innovation, providing a backdrop for the discussions that will unfold throughout the day.
- Breaking Down Singapore’s Cyber Threat Crisis, Insights by Factor(Security Day Singapore) Cyberattacks in Singapore have escalated, with the Cyber Security Agency of Singapore (CSA) reporting that 84% of organisations experienced ransomware attacks between March 2022 and March 2023. These incidents, including phishing and data breaches, have significant financial and reputational repercussions. This session examines the evolving cyber threat landscape and its implications for Singaporean businesses. By analysing key trends and risks, CISOs will gain insights into prioritising resources and strengthening their organisations against imminent threats. Collaboration and adaptability are essential to build resilience in a constantly shifting threat environment. Discussion Points: The most common cyberattack patterns affecting Singaporean businesses. The impact of AI and automation in modern cyber threats. Collaboration strategies to enhance nationwide cyber defenses.
- The Collective Enterprise & Security Megatrends and the Power of C-Suite Fusion(Security Day Singapore) Join an expert C-Suite panel as they explore how partnerships among top executives are essential for addressing today’s global security challenges. Moving beyond the buzzwords of fusion teams, this discussion will focus on the importance of collaborative leadership in navigating shifts in cybersecurity, technology and governance, showcasing how integrated strategies can bolster organisational resilience and agility. Discussion Points: Leveraging diverse executive perspectives to tackle complex security challenges. Developing adaptable frameworks to meet governance, technological, and economic shifts. Fostering cross-functional alignment to drive innovation and gain a competitive edge.
- Proven Tactics for Battling the Ever-Evolving Ransomware Epidemic(Security Day Singapore) Ransomware attacks have surged globally, with Singaporean businesses reporting an average ransom demand of approximately SGD 1.7 million per incident. The financial and reputational damages caused by these attacks are debilitating, compelling organisations to rethink their defence strategies. This session delves into the anatomy of ransomware campaigns and equips CISOs with tactics to prevent, detect, and recover from such incidents. Attendees will explore cutting-edge defense tools, response frameworks, and real-world case studies that highlight both successes and lessons learned from ransomware incidents. Discussion Points: Multi-layered defense approaches against advanced ransomware variants. Incident response techniques to minimize financial and operational losses. Insights from real-world case studies to identify successful resilience strategies.
- Mitigating Shadow IT and Ensuring Compliance in Hybrid Workplaces(Security Day Singapore) As hybrid work environments become the norm, organisations face escalating risks from shadow IT—unauthorised applications and services that evade traditional oversight. This session delves into strategies to uncover, manage, and mitigate shadow IT risks while maintaining compliance with regulatory frameworks. Attendees will gain actionable insights into balancing flexibility with control, ensuring their teams can collaborate effectively without compromising security or governance. Discussion Points: Effective methods for identifying and monitoring unauthorised applications and devices in hybrid work setups. Implementing policies and tools to streamline governance and compliance without stifling innovation. Balancing employee autonomy with IT oversight to reduce shadow IT risks and foster secure collaboration.
- Networking Break & Morning Tea(Security Day Singapore) Join us for a morning tea where you can engage in meaningful 1:1 discussions with industry peers and vendors. This session is designed to foster collaboration and exchange insights in a relaxed, informal setting. Whether you're looking to forge new partnerships, discuss industry challenges, or share innovative ideas, this networking opportunity is an ideal platform to connect and conceive potential solutions with fellow professionals.
- Best Practices for Asean Enterprises(Network Protection) Explore effective methods to safeguard network infrastructures amidst increasing cyberattacks in Asia.
- Optimising Security Information and Event Management for Asean Businesses(Incident Monitoring) Delve into enhancing SIEM systems to effectively detect and respond to security incidents within the Singaporean context.
- Implementing Effective Gateways in Organisations(Web Security) Explore the deployment of secure web gateways to control and monitor web traffic, ensuring safe internet usage in the workplace.
- Addressing Emerging Threats in Singapore(Vulnerability Assessment) Discuss the importance of continuous vulnerability assessment and remediation to protect organisations from cyber threats.
- Enhancing Endpoint Security in the Asean Threat Landscape Discuss strategies for fortifying endpoint defences against evolving cyber threats targeting organisations.
- Navigating Compliance and Security in Singapore(Identity Management) Examine approaches to streamline identity and access management while adhering to Singapore regulatory requirements.
- Maximising IT Asset Visibility and Control for Enhanced Cybersecurity Resilience(Security Day Singapore) With the growing complexity of IT environments, maintaining visibility and control over your IT assets has never been more crucial. This session explores how organisations can leverage IT asset management to minimise risks, improve compliance, and enhance security posture. We'll discuss strategies for unifying data across disparate systems, automating manual processes, and ensuring real-time asset monitoring to enable proactive decision-making. Discussion Points: The importance of unified IT asset visibility in mitigating cyber threats. Strategies for automating asset discovery and management. How to leverage asset data for informed security and compliance decisions.
- Navigating Data Privacy Regulations in Singapore’s Digital Landscape(Security Day Singapore) Singapore’s Personal Data Protection Act (PDPA) is evolving, with stricter enforcement and higher penalties for breaches. Non-compliance can result in fines of up to SGD 1 million, making data governance a critical focus for CISOs. This session provides an in-depth look at how Singaporean organisations can navigate these regulations while ensuring secure and ethical use of data. Attendees will explore frameworks to balance compliance with innovation and protect sensitive information in a digital-first economy. Discussion Points: Key updates to the PDPA and their implications for businesses. Implementing data governance frameworks to ensure compliance. Balancing innovation with privacy considerations in data management.
- Mitigating Insider Threats in Singapore’s Hybrid Work Environment(Security Day Singapore) Insider threats account for 35% of cyber incidents globally, and Singaporean businesses are not immune. Remote and hybrid work models have increased opportunities for data leaks and malicious actions. This session delves into identifying, managing, and reducing insider risks through behavioural analytics, least privilege principles, and employee engagement. CISOs will learn practical steps to minimise the human risk factor while fostering trust within their organisations. Discussion Points: Leveraging analytics to identify and mitigate insider risks. Implementing adaptive access controls to limit exposure. Strategies for fostering a security-first culture in hybrid work environments.
- Lunch Break - Peer Connect & Executive Roundtables(Security Day Singapore) Take a well-deserved break and enjoy a delicious lunch while networking with your peers and industry leaders. This session is an excellent opportunity for attendees to build relationships, exchange ideas, and discuss collaborative opportunities in a casual and friendly atmosphere. It's the perfect setting to reconnect with colleagues, meet new faces, and engage in deep dives into the day's topics or explore new trends affecting your industry.
- Effective Strategies for Incident Response(incident Management) Explore key learnings on designing and implementing strategies that minimise downtime and disruption during complex cyber incidents.
- Robust Identity Management Strategy Learn advanced techniques for securing access control through robust authentication and identity governance solutions.
- Enhancing Cloud Security Discover comprehensive approaches for safeguarding workloads, data, and applications in dynamic hybrid and multi-cloud environments.
- Ransomware Defence Preparation Delve into actionable strategies to prevent, detect, and recover from ransomware attacks, ensuring business continuity.
- Countering Emerging Threats(Security Day Singapore) Latest insights on how organisations can harness actionable data to anticipate, detect, and counter emerging threats effectively.
- Strengthening Data Privacy Gain a deeper understanding of how to ensure compliance with evolving regulations while protecting sensitive information across diverse systems.
- AI: The Double-Edged Sword of Cyber Defence(Security Day Singapore) [Fireside Chat] Artificial Intelligence (AI) is revolutionising cyber defence, offering enhanced capabilities for threat detection, response, and risk mitigation. However, its dual nature also presents significant challenges. Cybercriminals exploit AI for sophisticated attacks, while organisations grapple with ethical dilemmas, data security, and potential biases in AI-driven systems. This session explores how businesses can harness AI's potential while safeguarding against its inherent risks. Discussion Points: Balancing Benefits and Risks. Ethical and Bias Challenges. Future Preparedness.
- Building a Zero Trust Framework to Safeguard Enterprise Networks(Security Day Singapore) With perimeter-based security models proving insufficient in today’s threat landscape, Zero Trust architecture has emerged as a transformative approach. Gartner predicts that by 2025, over 75% of organisations will adopt Zero Trust strategies to protect their networks. This session explores the principles of Zero Trust, its implementation challenges, and how it helps organizations mitigate risks from both external and insider threats. Attendees will leave with a clear understanding of how to design and scale Zero Trust frameworks tailored to their enterprise needs. Discussion Points: Key principles of Zero Trust and its implementation challenges. Technologies and practices that enable seamless Zero Trust adoption. Measuring the effectiveness of Zero Trust models in real-world scenarios.
- Building a Cybersecurity Culture Across the Board(Security Day Singapore) Building a robust cybersecurity culture is vital for organisations to safeguard against ever-evolving threats. It requires embedding security awareness and practices into all levels of the organisation, from the boardroom to entry-level employees. By fostering collaboration, accountability, and a shared understanding of cybersecurity’s importance, organisations can create a resilient defence against potential risks. Discussion Points: Leadership’s Role in Cybersecurity Culture. Effective Employee Engagement Strategies. Key Indicators of Success.
- Closing Remarks By Host(Security Day Singapore) Join us for the closing remarks by our host and Factor CEO, Josh Heid. In this final segment, Josh will reflect on the day's panels, keynotes, fireside chats, and acknowledge the invaluable contributions of all participants and speakers. He will highlight key takeaways from the day's discussions and express gratitude for their insightful inputs and engagement throughout the event. Don't miss this opportunity to wrap up the event on a high note and gain valuable insights from Josh as he concludes the proceedings.
- End of Day Drinks(Security Day Singapore) Join us for "End of Day Drinks," a networking session designed to foster connections and camaraderie among attendees. This gathering provides the ideal setting to mingle, exchange insights, and build relationships with industry peers. Raise a glass to a day of fruitful discussions and continue the conversation over refreshing beverages and light snacks. Whether you're keen to expand your professional network or unwind after a day of learning, our End of Day Drinks event offers a relaxed and welcoming atmosphere for meaningful interactions and networking.
Speakers
Josh Heid · CEO & Head of Platforms, Factor Josh brings with himself years of leadership experience as the driving force behind Factor and Panelist, where he has shaped the future of business strategy through his expertise in Product Design, Customer Experience, and Engineering. An innovator at heart, Josh excels in Product Design, where he combines aesthetic sensibility with functional purpose to create solutions that resonate with users and deliver measurable results. His approach bridges customer needs and cutting-edge technology, ensuring that every product is not only visually compelling but also highly effective in meeting market demands. In the realm of Customer Experience, Josh has consistently championed the importance of understanding user journeys and fostering engagement through intuitive design and seamless interactions. He has implemented frameworks that elevate user satisfaction, ensuring that Factor’s offerings remain at the forefront of customer-centric innovation. Josh's engineering mindset adds a unique layer to his leadership. His ability to translate complex concepts into actionable development processes has resulted in robust, scalable applications and systems. By integrating engineering principles with strategic thinking, Josh has driven operational excellence while maintaining a sharp focus on delivering top-tier solutions to clients. With a deep understanding of Leadership Strategy, Marketing, and Sales, Josh has built Factor and Panelist into trusted names in their industries, continuously setting new benchmarks for innovation and success.
Bobby Sacagiu · Executive Director Deputy, Head of Solutions Architecture, Cybersecurity, Digital Transformation, DBS Bank
Alan Ng · Regional Information Security Officer, LVMH Perfumes & Cosmetics Alan Ng Wei Lun is Regional Information Security Officer at LVMH Perfumes & Cosmetics (LVMH Beauty Tech), a world leader in fragrances, makeup and skincare. His role covers 16 Maisons across 9 Countries in APAC. He has over 5 years of experience in cybersecurity leadership, specializing in Governance, Risk & Compliance (GRC) and over 10 years of experience as an IT practitioner for various domains/companies of vary scale. He is a business technologist who understands the synergies and dynamics of technology with business. He has a strong background in designing, implementing and managing technology solutions for complex and diverse environments. His knowledge across Development, Security and Infrastructure Operations make him a true practitioner of DevSecOps. He has successfully led and coordinated IT projects and initiatives across multiple teams and stakeholders. He is passionate about staying updated on the latest trends and best practices in cybersecurity, as well as pursuing relevant certifications and training. His goal is to leverage his skills and expertise to become a strategic partner for the organization's security vision and objectives. Off work, he maintains his own Microsoft Cloud presence on alanng.com. He is also a wine/spirits aficionado with certifications from WSET and a credit card hacker who knows how to optimize his rewards without hurting his credit standing.
Hwee Cher Tan · Group Head, Information Security & Data Governance, CGS International Securities Group Hwee Cher, as Group Head of IT Security & Governance of CGS-CIMB, oversees group-wide initiatives and operations to improve security posture while aligning with business objectives of the company. She has more than 25 years of information security experience acquired across various industries. Prior to CGS-CIMB, Hwee Cher spearheaded the global IT Audit program in Olam and was the Information Security Leader with The Walt Disney Company where she built the APAC studio content protection team and established global standards. Earlier, she held appointments that led the security programs and implementations in the government, financial, utilities, technology sectors.
Veronica Tan · Director, Safer Cyberspace, Cyber Security Agency of Singapore (CSA) Veronica oversees the Safer Cyberspace portfolio in the Cyber Security Agency of Singapore (CSA), where she leads the development of cybersecurity risk assessment frameworks to help organisations manage their digital risks. This led to the publication of the Cyber Essentials and Cyber Trust certification as national cybersecurity standards. Veronica takes an active interest in emerging technologies and was previously involved in developing technology roadmaps for emerging tech such as AI and blockchain in the Infocomm Media Development Authority (IMDA). She is a Fellow with the Singapore University of Social Sciences (SUSS) and volunteers as a resource person to support the university’s Fintech teaching and research activities. Before joining the public sector, Veronica was in a network engineering role, managing carrier-grade networks in a leading ISP.
Justin Ong · APAC CISO, Panasonic Asia Pacific Pte. Ltd.
Partners
Netskope
Sophos Sophos evolves to meet every new challenge, protecting more than 400,000 organizations of all sizes in more than 150 countries from today’s most advanced cyber threats. Powered by SophosLabs, our cloud-native and AI-enhanced solutions are able to adapt and evolve to secure endpoints and networks against never-before-seen cybercriminal tactics and techniques. Managed through our award-winning, cloud-based platform, Sophos Central, our best-of-breed products work together through our unique Synchronized Security system to share threat intelligence and respond to evolving threats. The Sophos suite of products secures networks and endpoints against automated and active-adversary breaches, ransomware, malware, exploits, data exfiltration, phishing, and more.
Cohesity
Okta Okta frees everyone to safely use any technology — anywhere, on any device or app. Our Workforce and Customer Identity Clouds enable secure yet flexible access, authentication, and automation that transforms how people move through the digital world and puts Identity at the heart of business security and growth.
Nuix Nuix (www.nuix.com) creates innovative software that empowers organizations to simply and quickly find the truth from any data in a digital world. We are a passionate and talented team, delighting our customers with software that transforms data into actionable intelligence and helps them overcome the challenges of litigation, investigation, governance, risk, and compliance. Our intuitive platform identifies hidden connections between people, objects, locations, and events—providing real-time clarity, control, and efficiency to uncover the key facts and their context. Nuix and our partners deliver solutions that incorporate our global expertise in cybersecurity, law enforcement, digital forensics, investigation, intelligence, legal discovery, and information governance. We continually innovate to solve the complex challenges our customers face today and build their capacity to anticipate what’s next.
Zscaler Zscaler (NASDAQ: ZS) accelerates digital transformation so that customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Distributed across more than 150 data centers globally, the SASE-based Zero Trust Exchange is the world’s largest inline cloud security platform. Learn more at zscaler.com or follow us on Twitter @zscaler
Aqua Security Aqua Security sees and stops attacks across the entire cloud native application lifecycle in a single, integrated platform. From software supply chain security for developers to cloud security and runtime protection for security teams, Aqua helps customers reduce risk while building the future of their businesses. The Aqua Platform is the industry’s most comprehensive Cloud Native Application Protection Platform (CNAPP). Founded in 2015, Aqua is headquartered in Boston, MA and Ramat Gan, IL with Fortune 1000 customers in over 40 countries. For more information, visit https://www.aquasec.com/.
Fortinet Fortinet (NASDAQ: FTNT) secures the largest enterprise, service provider, and government organizations around the world. Fortinet empowers its customers with intelligent, seamless protection across the expanding attack surface and the power to take on ever-increasing performance requirements of the borderless network—today and into the future. Only the Fortinet Security Fabric architecture can deliver security without compromise to address the most critical security challenges, whether in networked, application, cloud, or mobile environments. Fortinet ranks number one in the most security appliances shipped worldwide and more than 500,000 customers trust Fortinet to protect their businesses.
Fastly
Tufin Tufin simplifies and automates the security policy management of some of the largest, most complex networks in the world, centralizing control across thousands of firewall and network devices and hybrid cloud infrastructures.
Trend Micro
Extrahop
Commvault Commvault is the gold standard in cyber resilience, leading the charge to protect the world against ransomware and other cyber threats by helping companies reduce risk, minimise downtime, and control costs. The new Commvault® Cloud, powered by Metallic® AI, represents decades of innovation, industry leadership, customer trust, and a deep ecosystem of partnerships. It’s the only cyber resilience platform built for the hybrid world, offering the best data security for all workloads, anywhere combined with the rapid, enterprise-scale recovery. Commvault helps over 25,000 customers worldwide fight ransomware and achieve total resilience in face of tomorrow’s threats.
Quest Software
Archer
Tenable Tenable® is the Exposure Management company. Approximately 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. As the creator of Nessus®, Tenable extended its expertise in vulnerabilities to deliver the world’s first platform to see and secure any digital asset on any computing platform. Tenable customers include approximately 60 percent of the Fortune 500, approximately 40 percent of the Global 2000, and large government agencies. Learn more at tenable.com.
Diligent About Diligent Leading GRC SaaS company with over 1 million users, and more than 700,000 board members from 25,000+ customers worldwide Diligent One Platform that delivers a unified and connected GRC experience. Consolidate all your solutions on the broadest platform for GRC applications designed to deliver comprehensive insights into a single view of risk and associated controls. Helping free you from the unnecessary costs and frustrations of point solutions. How We Help Organizations Diligent provides a full suite of software and services across a number of business functions to help organizations lead with purpose: Audit and Analytics – Deliver strategic advantages through better insights and visibility. Boards and Governance – Connected solutions for better governance in a complex business landscape. ESG and Diversity – Turn ESG initiatives into measurable outcomes. Ethics and Compliance – Enable a purpose driven culture of compliance that protects and drives businesses forward. Risk and Strategy – A single source of truth that helps leaders make risk-informed decisions. Headquartered in New York, Diligent also has offices in Washington D.C., London, Galway, Budapest, Vancouver, Bengaluru, Munich, Singapore and Sydney. Learn more at diligent.com . Follow Diligent on LinkedIn , X (Twitter) and Facebook .
CrowdStrike
More events from this host
- Security Day | Singapore October 2026, Singapore
- Security Day | Singapore | Sponsor | Invitations July 2026
- Security Day | Singapore June 2026, Singapore
- Security Day | Singapore October 2026, Singapore
- Security Day | Sydney October 2026, Barangaroo
- Security Day | Dubai November 2026
- Security Day | Singapore June 2027, Barangaroo
- Security Day | Singapore June 2027