IT Security Summit Barcelona
Securing an AI-Powered Business
Navigating the new frontier of trust, compliance and innovation
The IDC IT Security Spain Summit 2026 is the definitive event for business, security, and technology leaders to explore how to embed trust, governance, and resilience at the core of digital transformation.
Spain is entering a decisive phase in its digital and cybersecurity evolution. According to IDC’s latest research, IT security spending in Spain is projected to grow at a double-digit rate through 2028, driven by increasing cyber threat activity, AI adoption, and cloud modernization initiatives. The country’s cybersecurity agenda, aligned with the EU AI Act, NIS2 Directive, and DORA, underscores a national commitment to resilience, data protection, and digital sovereignty. IDC also notes that software, cloud-native security, and analytics solutions will represent the fastest-growing segments of Spain’s cybersecurity market, as organizations move toward integrated and intelligence-led protection models.
Agenda
The IDC IT Security Summit, is the ultimate meeting point for business, security, and technology leaders looking to embed trust, governance, and resilience at the heart of their digital transformation strategies.
Join IDC analysts and industry experts to explore how to build trusted digital ecosystems that combine innovation with assurance. Gain insights into Spain’s most dynamic sectors — including finance, energy, manufacturing, and public services — and walk away with actionable frameworks to make security a strategic differentiator, not just a reactive cost.
2026 Prediction
By 2028, 40% of enterprises will use autonomous agent–powered cyber-risk quantification platforms to turn security metrics into financial exposure, guiding budgets, controls, and M&A risk assessments.
Main Themes
Regulation, Resilience and Value Creation
Regulatory compliance is no longer a back-office burden, it’s a strategic enabler. We will explore how organizations can embed regulatory mandates (data privacy, cybersecurity laws, emerging AI/tech rules) into core operations, turning requirements into levers for resilience, stakeholder trust, and business value. Keytopics include cyber-by-design, auditability, vendor accountability, and continuity in the face of disruption.
AI, Automation and Responsible Innovation
AI and intelligent agents are transforming how security is delivered, but with great power comes risk. We will explore pragmatically deploying AI: governance models, guardrails for misuse, prioritization of high-impact use cases, and aligning AI systems with trust, transparency, and accountability.
Operations, Analytics and Resilience Engineering
Detection, response, and recovery are now continuous cycles rather than discrete events. We’ll delve into advanced analytics, managed detection & response, orchestration, external threat visibility (supply chain, third parties), and resilience metrics to operationalize security effectiveness.
The Human Factor: Leadership and Culture
Technology alone doesn’t guarantee security. Leadership, culture, and skill development must align. We will focus on transforming teams, embedding security ownership across functions, and equipping leaders to speak the language of risk and trust to the board, CEOs, and business lines.
Incident and Trust Recovery
Breaches will happen, but what matters is how an organization responds. We will cover crisis communication, forensic response, regulatory handling, insurance, stakeholder trust restoration, and turning adversity into credibility.
Sector and Domain Security Challenges
Different industries and environments pose unique security demands. We will focus on securing critical infrastructure (energy, utilities), connected devices and IoT, healthcare, finance, and emerging environments like smart cities or industrial systems.
2026 Prediction
By 2028, AI agents will be triaging 80% of SOC alerts in the majority of SOCs worldwide.
Speakers
Joel Stradling
As research director for IDC’s European Security practice, Joel Stradling leads the content and analyst team for tracking the European security segment. His main focus area is the integration of network plus security and evolution of network architectures towards software-defined secure access.
Stradling has 20 years of experience as an analyst of international managed enterprise network and IT services. He is a regular speaker at major industry conferences talking about emerging technologies in B2B enterprise network and IT and wholesale carrier-to-carrier services. Joel is a well-known and highly regarded expert in the industry, offering insight and advice to C-level executives on technology competitive landscapes and emerging technologies, such as SD-WAN, 5G, SDN/NFV, and cyber-security.
Event Sessions
One Day Event 9:45 am
IDC Keynote Session: Securing an AI-Powered Business – Navigating the New Frontier of Trust, Compliance & Innovation
Luis Fernandes
Event Sessions
One Day Event 1:20 pm
PANEL. Leadership and Culture: Building Human-Centric Cyber Resilience
Technology alone cannot ensure security without leadership, culture, and talent. This exclusive end-user panel will bring together CISOs, CIOs, and business leaders to discuss how to embed security into organizational culture, communicate risk to the board, and attract specialized talent. It will also address human risk management, awareness, and the role of leadership as a driver of digital trust
One Day Event 12:30 pm
PANEL. Resilient Security & Digital Sovereignty – Redefining Trust for the Next Era
Security has entered a new era—one where success is defined not only by stopping threats, but by empowering organizations to stay in control, adapt fast, and bounce back stronger than ever.
In this high‑impact panel, we’ll explore how leading organizations are modernizing their infrastructures and unifying platforms to turn resilience into a true operational advantage—leveraging advanced capabilities like MDR/XDR, observability, and cloud‑native protection.
We’ll dive into next‑generation trust models, Zero Trust strategies, and digital sovereignty frameworks that enable companies to retain control of their data, infrastructures, and vendor ecosystem—without compromising agility, innovation, or interoperability.
The conversation will also unpack the metrics and reference models shaping how European industries and critical sectors measure security maturity, effectiveness, and readiness for what’s coming next.
One Day Event 10:35 am
PANEL. AI, Automation and Responsible Cybersecurity
Artificial Intelligence and intelligent automation are redefining cybersecurity—from de-tection to decision-making. However, responsible use is essential. This panel will ex-plore how to deploy AI securely, with transparency and governance, turning innovation into trust. Discussions will cover AI-driven analytics, orchestration, automation, and eth-ical frameworks that ensure accountability across the digital ecosystem
Laura Caballero
Daniel Puente Pérez
Event Sessions
One Day Event 1:20 pm
PANEL. Leadership and Culture: Building Human-Centric Cyber Resilience
Technology alone cannot ensure security without leadership, culture, and talent. This exclusive end-user panel will bring together CISOs, CIOs, and business leaders to discuss how to embed security into organizational culture, communicate risk to the board, and attract specialized talent. It will also address human risk management, awareness, and the role of leadership as a driver of digital trust
Gabriel Moliné
Event Sessions
One Day Event 10:35 am
PANEL. AI, Automation and Responsible Cybersecurity
Artificial Intelligence and intelligent automation are redefining cybersecurity—from de-tection to decision-making. However, responsible use is essential. This panel will ex-plore how to deploy AI securely, with transparency and governance, turning innovation into trust. Discussions will cover AI-driven analytics, orchestration, automation, and eth-ical frameworks that ensure accountability across the digital ecosystem
Erik Alejos Agusti
Partners
SOFTENG
Softeng is a technology consulting firm specializing in artificial intelligence and cybersecurity, recognized as a Microsoft Top Cloud Partner. Its mission is to support its clients by maximizing the power of the Microsoft cloud to drive digital innovation with security and intelligence, offering the advice and guidance of an elite team of experts with proprietary methodologies and solutions.
With more than 15 years of experience in the cloud, it is present in the most significant sectors of the economy and society, with the vision of enabling all ambitious companies to continuously adopt digital innovation, remaining secure in order to progress and remain competitive.
Horizon3.ai
Horizon3.ai helps organizations eliminate attack paths before attackers can exploit them. Our flagship product, the NodeZero® platform, empowers you to continuously find, fix, and verify your exploitable attack surface with autonomous pentesting and other security operations.
ESET
Con presencia en 202 países y más de 110 millones de usuarios protegidos, ESET es la mayor compañía de soluciones de seguridad con sede en la UE. Su amplia cartera de productos abarca todas las plataformas y ofrece a empresas y usuarios finales de todo el mundo el equilibro perfecto entre velocidad, detección y facilidad de uso.
En España, Ontinet.com, con una red de más de 6.000 distribuidores, es el representante y distribuidor oficial de los productos ESET y sus alianzas tecnológicas.
S2GRUPO
Somos una compañía europea especializada en ciberseguridad, ciberinteligencia y ciberdefensa, con más de 20 años de experiencia protegiendo infraestructuras críticas y sectores estratégicos.
Diseñamos soluciones avanzadas que cubren todo el ciclo de vida de la ciberseguridad: desde la detección temprana hasta la respuesta, recuperación y mejora continua. Nuestra capacidad para integrar IT y OT en una defensa unificada nos permite garantizar la seguridad, continuidad y resiliencia operativa de organizaciones públicas y privadas en entornos altamente exigentes.
Contamos con un equipo multidisciplinar de especialistas, tecnología propia y una visión estratégica que refuerza la capacidad de anticipación de nuestros clientes. Hoy operamos en más de 35 países, ayudando a las organizaciones que no pueden permitirse fallar a protegerse frente a las amenazas más sofisticadas.
Venue
Fundació Joan Miró
The Fundació Joan Miró is a museum and creative space as unique and inspiring as the artist who created it. Its main goal is to make Miró’s work, modern art and contemporary art accessible to everyone.
The Fundació is housed in a building designed by Josep Lluís Sert, and it is one of the few examples of museums in which the artist and the architect have established a collaborative dialogue between the work and the spaces that display it.
Parc de Montjuïc | 08038 Barcelona
Knowledge Hub
The NIS 2 directive – where are we now?
The deadline for the transposition of the EU’s second Network and Information Systems Security directive (NIS 2) came and went in October 2024 with only a handful of member states having completed the task.
European ICT spending implications of NATO’s 5% GDP spending target
At the 2025 NATO Summit in The Hague a few weeks ago, member states pledged to allocate 5% of their annual GDP to core defense requirements and defense- and security-related expenditures by 2035.
IAM 2025: The Rise of the Machines
Identity and access management (IAM), and by extension, identity security, is one of the most pervasive and impactful challenges facing all European organizations today, from an operational and risk management perspective.
Not the right event for you?
Don’t worry! We organize a variety of events designed to inspire original ideas, share the latest industry insights, and connect professionals like you. Simply sign up for event invitations, and we’ll notify you whenever a new event matches your interests.
Sign up