United We TransformCreate teamsGrade your agenda
Atlas/Events/Eucyberact 2027
action-oriented convening agenda analysis

Eucyberact 2027

This action-oriented convening in Technology / AI / Startup shows 53 visible agenda rows from eucyberact.org and scores 44/100: a moderate design signal with incomplete evidence. The clearest public signals sit in Learning Transfer and Future-of-Work Fit; the main limits are Participation Architecture and Follow Through. Visible mechanisms include Participant work, Commitments, Feedback, and Network design. Follow-through or tracking is at least visible enough to inspect, though causal proof still depends on... A practical reading: For a reader, this is a useful but still incomplete public example: it reads as an action-oriented convening, with the strongest visible signal in learning transfer and future-of-work fit and the biggest open question around participation architecture and follow through. The practical test is whether the published agenda connects the room to post-event continuation and evidence. This page is an original public-evidence analysis, not a copy of the source agenda or an endorsement of the event. The score places the visible agenda in the moderate design signal band. The strongest visible pillars are Learning Transfer, Future-of-Work Fit, and Evidence Maturity; the thinnest visible pillars are Participation Architecture, Follow Through, and Network Design. Visible mechanisms include Participant work, Commitments, Feedback, Network design, and Learning transfer. The extracted agenda preview includes 101 visible rows. The most common formats are Unknown, Presentation, and Panel; the most common inferred purposes are Unknown, Knowledge Transfer, and Discussion.

Primary source evidence: eucyberact.org ↗ · Archived copy (2025-01-23)

Eight-pillar fingerprint

Hover any pillar to see what it measures and, where it scored low, what the agenda is missing.

Participation Architecture?30
Participation Architecture - 30/100. Participant work, contribution, interaction, and alternatives to passive broadcast.Missing: Turn passive airtime into participant work: practice, sensemaking, decisions, critique, or artifact creation.
Follow Through?33
Follow Through - 33/100. Owners, dates, commitments, progress checks, and accountability after the room.Missing: Add named owners, dates, implementation checkpoints, and a visible post-event continuation path.
Problem Specificity?40
Problem Specificity - 40/100. A clear costly problem, objective, decision, or performance target.
Personalization?39
Personalization - 39/100. Role, path, goal, preparation, or connection tailoring for participants.
Network Design?34
Network Design - 34/100. Structured weak ties, bridge-building, mixers, and relationship persistence.Missing: Replace generic networking blocks with designed introductions, ask-offer exchanges, peer groups, or bridge-building rituals.
Learning Transfer?71
Learning Transfer - 71/100. Applied practice, feedback, workplace use, refreshers, and 30-90 day transfer.
Evidence Maturity?45
Evidence Maturity - 45/100. Baseline, comparison, follow-up, isolation, and attribution confidence.
Future-of-Work Fit?67
Future-of-Work Fit - 67/100. Value against time, hybrid reality, accessibility, AI, and meeting load.

Fix the gaps

Field-tested exercises matched to this agenda's weakest pillars, from the exercise library.

Participation Architecture (30/100)

Exercises that strengthen it: Make A World · Awestruck 3 Minutes · Spectrum Mapping

Follow Through (33/100)

Exercises that strengthen it: Mental Toughness Workshop • WorkshopBank · 15% Solutions • WorkshopBank · Network Patches

Agenda Preview

The actual agenda we captured. Every block is classified by format and purpose. Open any block to see how we read it; the colored edge shows whether it is participant work, broadcast, logistics, or a showcase.

Room vs wrapper

6 percent of the 101 classified blocks put participants to work; the rest broadcast, show, or handle logistics. That mix is what drives the participation score.

6
89
6
Participant workBroadcastShowcaseLogistics
08:00-09:00RegistrationRegistrationLogistics+
Format · LogisticsRegistrationCheck-in and logistics, not agenda content.
Evidence basisOutcome inferred from formatInferred from format
09:00-10:30Plenary Keynote SessionKeynoteExpert framing+
Format · BroadcastKeynoteA featured talk from the stage. Builds awareness and energy, produces no participant output on its own.
Evidence basisNo participant output visible from this rowRead from source, no work signal
09:00Welcome and Introduction , Jose Ruiz, Program Director, 2019 International Conference on the EU Cybersecurity ActOpeningOrientation+
Format · BroadcastOpeningFormat not classified from the source; treated as a broadcast block by default.
Evidence basisNo participant output visible from this rowRead from source, no work signal
09:10Conference Plenary Keynote Address (P10a) Juhan Lepassaar, Executive Director, European Union Agency for Cybersecurity (ENISA)KeynoteExpert framing+
Format · BroadcastKeynoteA featured talk from the stage. Builds awareness and energy, produces no participant output on its own.
Evidence basisNo participant output visible from this rowRead from source, no work signal
09:50Conference Welcome Presentation: The Cybersecurity Act is Here, But What Does This Mean? (P10b) Sergio Lombán Lage, VP, Digital Trust Services, SGS Group, SpainOpeningOrientation+
Format · BroadcastOpeningFormat not classified from the source; treated as a broadcast block by default.
Evidence basisNo participant output visible from this rowRead from source, no work signal
11:20-12:30Track SessionsPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
all eventPanel Discussion (Ballroom 1&2)PanelDiscussion+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisNo participant output visible from this rowRead from source, no work signal
all eventPanel Moderator:Jacques Kruse Brandao, Head of Advocacy Digital Trust Services, SGS Group, GermanyPanelDiscussion+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisNo participant output visible from this rowRead from source, no work signal
11:20ETSI Security Evaluation Standardization Initiatives (A11a) Sonia Compans, Technical Officer, ETSI, FrancePresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
11:55Lessons Learnt in the Commercial Use of Security Certification - From Setting Standards to an Innovator’s Perspective (A11b) Boris Balacheff, HP Fellow & VP, Chief Technologist for Security Research and Innovation, HP Labs Security Lab, FranceWorkshopParticipant work+
Format · Participant workWorkshopParticipants work on a problem and produce something. The strongest signal of participation architecture.
Evidence basisParticipant work is implied by the formatInferred from format
13:50Update on ENISA Operations and CSA Implementation (B12a) Slawomir Górniak, Security Tools and Architecture Expert, European Union Agency for Cybersecurity, (ENISA), GreecePresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisSession topic references decisions or metrics; event-level follow-through is not shownRead from source
15:00ECSO’s Outlook on the EU Cybersecurity Act (B12c) Roberto Cascella, Senior Policy Manager, ECSO, BelgiumPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
15:30Security Needs to be Consistent - The Role of Process in the Cybersecurity Act (B12d) David Martin, Head of International Assurance, NCSC, United KingdomPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
13:50Vendor Self-Assessment - The Good, The Bad, and the Ugly (A12a) Helmut Kurth, Chief Scientist and Laboratory Director, atsec information security, GermanyWorkshopParticipant work+
Format · Participant workWorkshopParticipants work on a problem and produce something. The strongest signal of participation architecture.
Evidence basisParticipant work is implied by the formatInferred from format
14:25ISCI WG (International Smartcard Initiative) Who Are We? What Do We Do? How Do We Do It? And How Do We Contribute to The EU Cyber Act? (A12b) Rachel Menda-Shabat, Director of Security Solution Certification Division, ISCI WG sub-chair, Winbond, IsraelPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
15:00Update on The EU Cybersecurity Act: Is The Feared Balkanization of Common Criteria Being Reversed? (A12c) Martin Chapman, Senior Director, Standards Strategy and Policy EMEA, Oracle, IrelandPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
15:30The Certification Landscape and What Industry Needs (A12d) John Boggie, Director, Head of Cybersecurity Certification NXP Semiconductors UKPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
16:30CEN-CENELEC JTC13 WG3 Security Evaluation Standardization Initiatives (S13a) Miguel Bañon, Global Technology Leader for Cybersecurity, Epoche and Espri (a DEKRA company), SpainPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
17:00Comparing National Lightweight Methodologies around Europe (S13b) Javier Tallon, CoFounder and COO, jtsec Beyond IT Security SL, SpainPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
17:30Implementing and Maintaining a Cybersecurity Program - The Role of Standards (S13c) Raymond Romero, Deputy Director, Board of Governors of the Federal Reserve Systems, United StatesPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
16:30Toward the European Cloud Security Certification Scheme: The CSPCERT Final Public-Private Recommendation (C13a) The European Cloud Service Provider Certification Working Group, Saurabh Ghelani, EMEA Strategic Trust Leader, Google Cloud, et al.PresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisExplicit action or follow-through languageRead from source
17:00The EU-SEC Framework (C13b) Lefteris Skoutaris, Research Analyst, Cloud Security Alliance, GreecePresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
17:30Addressing GDPR Requirements Using the ISO/IEC 27701 Standard. Is the CSA Looking At It? (C13c) Willy Fabritius, Global Portfolio Champion for Information Resiliency, BSI Group, United StatesPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
18:00Tuesday 19 NovemberPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
08:00-09:00Grand Ballroom FoyerPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
9:00Embedded Systems for IoT Products: What is the Current Certification Offer? (I20a) Dr. Claire Loiseaux, CEO, Internet of Trust, France; Alexander Schasse, IT Security Consultant bei TÜV Informationstechnik GmbH - TÜViT, GermanyPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
09:30SESIP: A Practical, Operational, Lightweight CC Methodology (I20b) Wouter Slegers, CEO, TrustCB, NetherlandsPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
10:00EUROSMART IoT Security Certification Scheme (eIoT SCS) (I20c) Roland Atoui, Managing Director, Red Alert Labs/EUROSMART, France; and Ayman Khalil COO & Managing Partner Red Alert LabsWorkshopParticipant work+
Format · Participant workWorkshopParticipants work on a problem and produce something. The strongest signal of participation architecture.
Evidence basisParticipant work is implied by the formatInferred from format
10:30X-Gateway as a Modular Part of IoT (I20d) Markus Bartsch, Business Development, TUViT, GermanyPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
09:00Foundations and Perspectives of the EU’s 2019 Cybersecurity Act Certification Legislation for the Industrial Automation and Control Systems (T20a) Paul Theron, Advisor & Cyb’Air Research Chair, Thales, FrancePresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
09:30Beyond the Theory of the Cybersecurity Act (T20b) Stefano Bracco, Knowledge Manager, European Union Agency for the Cooperation of Energy Regulators, ItalyPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
10:00IEC 62443: From Industry Recognized Standard to Base for Security Certification (T20c) Razvan Venter, Group Lead Product Certification, Secura BVPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
11:30Common Criteria as Backbone of IoT Security Certification (I21a) Thomas Billeau, Head of Certification, NXP, GermanyPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
12:00OWASP IoT Project: A Great Ally for the IoT Candidate Schemes (I21b) Jose Alejandro Rivas Vidal, Security Lab Manager, Applus+ Laboratories, SpainWorkshopParticipant work+
Format · Participant workWorkshopParticipants work on a problem and produce something. The strongest signal of participation architecture.
Evidence basisParticipant work is implied by the formatInferred from format
all eventPanel Discussion (Ballroom 3)PanelDiscussion+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisNo participant output visible from this rowRead from source, no work signal
all eventPanel Moderator:Miguel Banon, Global Technology Leader for Cybersecurity, Dekra, SpainPanelDiscussion+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisNo participant output visible from this rowRead from source, no work signal
11:30Standardization and the EU CSA (P21a) Discussion on standardization efforts under various national frameworks. Panelists:Sonia Compans, Technical Officer, ETSI, France; Helge Kreutzmann, Standardisation Expert, BSI; Philippe Magnabosco, Standardisation...PanelDiscussion+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisNo participant output visible from this rowRead from source, no work signal
13:30SOGIS View on the Cybersecurity Act (L22a) Bernd Kowalski, Chairman, SOG-IS, GermanyPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
14:00Overview of Current and Future NIAP and US Government Certification Initiatives (L22b) Mary Baish, Director, NIAP, United StatesPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
14:30BSI View on the EU Cybersecurity Act (L22c) Matthias Intemann, Head of Section, BSI - Federal Office for Information Security, GermanyPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
15:00The ROI of Security Evaluations (L22d) Dirk-Jan Out, CEO, BrightsightPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
13:30Addressing the Continuity of Software Security for Embedded Devices (N22a) Jasmina Omic, Product Manager Services, Riscure, NetherlandsPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
14:00Updating Certified Products (N22b) Gabor Hornyak, CTO, CCLab, HungaryWorkshopParticipant work+
Format · Participant workWorkshopParticipants work on a problem and produce something. The strongest signal of participation architecture.
Evidence basisParticipant work is implied by the formatInferred from format
14:30Agile Assurance: Modernizing IT Product Certification (N22c) Lachlan Turner, Director Consulting, Lightship Security, CanadaPresentationKnowledge transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisNo participant output visible from this rowRead from source, no work signal
15:00Making Evaluation Schemes Scale Up: the Tensegrity of Process and Product (N22d) Tony Boswell, Senior Principal Consultant, DNV GL Technical Assurance Laboratory, United KingdomWorkshopParticipant work+
Format · Participant workWorkshopParticipants work on a problem and produce something. The strongest signal of participation architecture.
Evidence basisParticipant work is implied by the formatInferred from format
15:30-16:00Networking BreakBreakRelationship building+
Format · LogisticsBreakA pacing or recovery block between sessions.
Evidence basisOutcome inferred from formatInferred from format
16:00-17:00Closing Presentation, Summary Panel DiscussionPanelDiscussion+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisNo participant output visible from this rowRead from source, no work signal
17:00Registration renewal discounts apply through 22 September.RegistrationLogistics+
Format · LogisticsRegistrationCheck-in and logistics, not agenda content.
Evidence basisOutcome inferred from formatInferred from format
all event2024 Conference ArchiveUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisLowRead from source
all event2023 Conference ArchiveUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisLowRead from source
all event2022 Conference ArchiveUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisLowRead from source
08:00-09:00 RegistrationRegistrationLogistics+
Format · LogisticsRegistrationCheck-in and logistics, not agenda content.
Evidence basisMediumRead from source
09:00-10:30 Plenary Keynote SessionKeynoteThought Leadership+
Format · BroadcastKeynoteA featured talk from the stage. Builds awareness and energy, produces no participant output on its own.
Evidence basisMediumRead from source
09:00Welcome and Introduction , Jose Ruiz, Program Director, 2019 International Conference on the EU Cybersecurity ActOpening RemarksOrientation+
Format · BroadcastOpening RemarksFraming or welcome from the stage. Orients the room, not participatory.
Evidence basisMediumRead from source
09:10Conference Plenary Keynote Address (P10a) Juhan Lepassaar, Executive Director, European Union Agency for Cybersecurity (ENISA)KeynoteThought Leadership+
Format · BroadcastKeynoteA featured talk from the stage. Builds awareness and energy, produces no participant output on its own.
Evidence basisMediumRead from source
09:50Conference Welcome Presentation: The Cybersecurity Act is Here, But What Does This Mean? (P10b) Sergio Lombán Lage, VP, Digital Trust Services, SGS Group, SpainOpening RemarksOrientation+
Format · BroadcastOpening RemarksFraming or welcome from the stage. Orients the room, not participatory.
Evidence basisMediumRead from source
11:20-12:30 Track SessionsPresentationKnowledge Transfer+
Format · BroadcastPresentationSpeakers present, the audience receives. Awareness only unless paired with practice or follow-up.
Evidence basisMediumRead from source
all eventPanel Discussion (Ballroom 1&2)PanelDeliberation+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisMediumRead from source
all eventPanel Moderator:Jacques Kruse Brandao, Head of Advocacy Digital Trust Services, SGS Group, GermanyPanelDeliberation+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisMediumRead from source
11:20ETSI Security Evaluation Standardization Initiatives (A11a) Sonia Compans, Technical Officer, ETSI, FranceUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
11:55Lessons Learnt in the Commercial Use of Security Certification - From Setting Standards to an Innovator’s Perspective (A11b) Boris Balacheff, HP Fellow & VP, Chief Technologist for Security Research and Innovation, HP Labs Security Lab, FranceUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
13:50Update on ENISA Operations and CSA Implementation (B12a) Slawomir Górniak, Security Tools and Architecture Expert, European Union Agency for Cybersecurity, (ENISA), GreeceUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
14:25European Cybersecurity Certification Framework, State of Play (B12b) Aristotelis Tzafalias, Policy Officer, Cybersecurity and Digital Privacy, European Commission, BelgiumUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
15:00ECSO’s Outlook on the EU Cybersecurity Act (B12c) Roberto Cascella, Senior Policy Manager, ECSO, BelgiumUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
15:30Security Needs to be Consistent - The Role of Process in the Cybersecurity Act (B12d) David Martin, Head of International Assurance, NCSC, United KingdomUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
13:50Vendor Self-Assessment - The Good, The Bad, and the Ugly (A12a) Helmut Kurth, Chief Scientist and Laboratory Director, atsec information security, GermanyUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
14:25ISCI WG (International Smartcard Initiative) Who Are We? What Do We Do? How Do We Do It? And How Do We Contribute to The EU Cyber Act? (A12b) Rachel Menda-Shabat, Director of Security Solution Certification Division, ISCI WG sub-chair, Winbond, IsraelUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
15:00Update on The EU Cybersecurity Act: Is The Feared Balkanization of Common Criteria Being Reversed? (A12c) Martin Chapman, Senior Director, Standards Strategy and Policy EMEA, Oracle, IrelandUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
15:30The Certification Landscape and What Industry Needs (A12d) John Boggie, Director, Head of Cybersecurity Certification NXP Semiconductors UKUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
16:30CEN-CENELEC JTC13 WG3 Security Evaluation Standardization Initiatives (S13a) Miguel Bañon, Global Technology Leader for Cybersecurity, Epoche and Espri (a DEKRA company), SpainUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
17:00Comparing National Lightweight Methodologies around Europe (S13b) Javier Tallon, CoFounder and COO, jtsec Beyond IT Security SL, SpainUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
17:30Implementing and Maintaining a Cybersecurity Program - The Role of Standards (S13c) Raymond Romero, Deputy Director, Board of Governors of the Federal Reserve Systems, United StatesUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
16:30Toward the European Cloud Security Certification Scheme: The CSPCERT Final Public-Private Recommendation (C13a) The European Cloud Service Provider Certification Working Group, Saurabh Ghelani, EMEA Strategic Trust Leader, Google Cloud, et al.UnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
17:00The EU-SEC Framework (C13b) Lefteris Skoutaris, Research Analyst, Cloud Security Alliance, GreeceUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
17:30Addressing GDPR Requirements Using the ISO/IEC 27701 Standard. Is the CSA Looking At It? (C13c) Willy Fabritius, Global Portfolio Champion for Information Resiliency, BSI Group, United StatesUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
18:00 Tuesday 19 NovemberUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
08:00-09:00 Grand Ballroom FoyerUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
9:00Embedded Systems for IoT Products: What is the Current Certification Offer? (I20a) Dr. Claire Loiseaux, CEO, Internet of Trust, France; Alexander Schasse, IT Security Consultant bei TÜV Informationstechnik GmbH - TÜViT, GermanyUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
09:30SESIP: A Practical, Operational, Lightweight CC Methodology (I20b) Wouter Slegers, CEO, TrustCB, NetherlandsUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
10:00EUROSMART IoT Security Certification Scheme (eIoT SCS) (I20c) Roland Atoui, Managing Director, Red Alert Labs/EUROSMART, France; and Ayman Khalil COO & Managing Partner Red Alert LabsUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
10:30X-Gateway as a Modular Part of IoT (I20d) Markus Bartsch, Business Development, TUViT, GermanyUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
09:00Foundations and Perspectives of the EU’s 2019 Cybersecurity Act Certification Legislation for the Industrial Automation and Control Systems (T20a) Paul Theron, Advisor & Cyb’Air Research Chair, Thales, FranceUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
09:30Beyond the Theory of the Cybersecurity Act (T20b) Stefano Bracco, Knowledge Manager, European Union Agency for the Cooperation of Energy Regulators, ItalyUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
10:00IEC 62443: From Industry Recognized Standard to Base for Security Certification (T20c) Razvan Venter, Group Lead Product Certification, Secura BVUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
10:30Building Trust and Hope in 5G Instead of Selling Fear (T20d) Mika Lauhde, Global Vice-President, Cybersecurity & Privacy, Global Public Affairs, Huawei, ChinaUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
11:30Common Criteria as Backbone of IoT Security Certification (I21a) Thomas Billeau, Head of Certification, NXP, GermanyUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
12:00OWASP IoT Project: A Great Ally for the IoT Candidate Schemes (I21b) Jose Alejandro Rivas Vidal, Security Lab Manager, Applus+ Laboratories, SpainUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
all eventPanel Discussion (Ballroom 3)PanelDeliberation+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisMediumRead from source
all eventPanel Moderator:Miguel Banon, Global Technology Leader for Cybersecurity, Dekra, SpainPanelDeliberation+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisMediumRead from source
11:30Standardization and the EU CSA (P21a) Discussion on standardization efforts under various national frameworks. Panelists:Sonia Compans, Technical Officer, ETSI, France; Helge Kreutzmann, Standardisation Expert, BSI; Philippe Magnabosco, Standardisation Expert, ANSSI, France; David Martin, Head of International Assurance, NCSC, United Kingdom [60 Minutes]PanelDeliberation+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisMediumRead from source
13:30SOGIS View on the Cybersecurity Act (L22a) Bernd Kowalski, Chairman, SOG-IS, GermanyUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
14:00Overview of Current and Future NIAP and US Government Certification Initiatives (L22b) Mary Baish, Director, NIAP, United StatesUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
14:30BSI View on the EU Cybersecurity Act (L22c) Matthias Intemann, Head of Section, BSI - Federal Office for Information Security, GermanyUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
15:00The ROI of Security Evaluations (L22d) Dirk-Jan Out, CEO, BrightsightUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
13:30Addressing the Continuity of Software Security for Embedded Devices (N22a) Jasmina Omic, Product Manager Services, Riscure, NetherlandsUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
14:00Updating Certified Products (N22b) Gabor Hornyak, CTO, CCLab, HungaryUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
14:30Agile Assurance: Modernizing IT Product Certification (N22c) Lachlan Turner, Director Consulting, Lightship Security, CanadaUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
15:00Making Evaluation Schemes Scale Up: the Tensegrity of Process and Product (N22d) Tony Boswell, Senior Principal Consultant, DNV GL Technical Assurance Laboratory, United KingdomUnknownUnknown+
Format · BroadcastUnknownFormat not classified from the source; treated as a broadcast block by default.
Evidence basisMediumRead from source
15:30-16:00 Networking BreakNetworkingRelationship Building+
Format · LogisticsNetworkingUnstructured mixing. Can carry incidental connection, but is not scored as designed network work.
Evidence basisMediumRead from source
16:00-17:00 Closing Presentation, Summary Panel DiscussionPanelDeliberation+
Format · BroadcastPanelExperts discuss while the audience watches. Surfaces perspective but rarely creates participant work.
Evidence basisMediumRead from source
17:00 Registration renewal discounts apply through 22 September.RegistrationLogistics+
Format · LogisticsRegistrationCheck-in and logistics, not agenda content.
Evidence basisMediumRead from source

The Full Reading

Why It Ranks This Way +

Calibrated from GES design 45/100 and verified 45/100 with no fourth-loop cap.

Reader Takeaway. For a reader, this is a useful but still incomplete public example: it reads as an action-oriented convening, with the strongest visible signal in learning transfer and future-of-work fit and the biggest open question around participation architecture and follow through. The practical test is whether the published agenda connects the room to post-event continuation and evidence.

Strongest signals: Learning Transfer, Future-of-Work Fit, and Evidence Maturity. Weakest signals: Participation Architecture, Follow Through, and Network Design.

How This Agenda Could Improve +
  • Turn passive airtime into participant work: practice, sensemaking, decisions, critique, or artifact creation.
  • Add named owners, dates, implementation checkpoints, and a visible post-event continuation path.
  • Replace generic networking blocks with designed introductions, ask-offer exchanges, peer groups, or bridge-building rituals.

Fastest next move: Add named owners, dated next steps, and a visible continuation path before treating the event as outcome-ready.

Role-Specific Reading +

Event owner lens

Use this record to benchmark whether a comparable event makes the work after the room visible. The score is 44/100, so the next move is to benchmark the weakest pillars before repeating the format.

Sponsor lens

Look beyond exposure. Strong sponsor value would show qualified interaction, problem work, buyer learning, customer evidence, or follow-up. The practical sponsor move is to look for structured introductions, buyer-seller fit, and relationship persistence.

Designer lens

The agenda is useful as a pattern sample from eucyberact.org. Redesign attention should go first to the lowest-scoring pillars; in practice, turn the thinnest agenda blocks into participant work.

Executive lens

Treat the visible agenda as an operating plan. The executive move is to require owners, dates, and evidence before treating the event as strategic. If owners, proof, and follow-through are not visible, the public record does not yet prove strategic movement.

Aggregator lens

Treat the source URL as evidence, not decoration. The data-product move is to label the source boundary clearly before ranking the record before ranking or syndicating the record.

What GES Means Here +

The Gathering Effectiveness Score is a strict 0-100 public-evidence reading of the agenda across eight pillars. It rewards visible participant work, follow-through, transfer, network design, and proof mechanisms more than polish, speaker fame, attendance, or satisfaction.

Visible mechanisms: Participant work, Commitments, Feedback, Network design, Learning transfer.

Evidence boundary: Scores reflect visible agenda/source evidence and should not be read as proof of causal event impact.

Limitations, Score Caps, and Review Flags +

Limitations

  • Passive stage formats dominate the visible agenda.
  • No baseline measurement is visible.

Score caps

  • No fourth-loop score cap applied.

Review flags

  • No tracking, validation, feedback, or impact measurement found in the visible source text.
Is this proof the event worked? +

No. This is a strict public-evidence reading of the agenda. Proof would require baseline, comparison, follow-up, attribution, and impact evidence beyond the listing.

What should a reader inspect first? +

Start with the source URL, then compare the eight pillar scores against the agenda rows. The biggest opportunities usually sit in follow-through, evidence maturity, and participant work.

Why publish weak records? +

Weak records are part of the map. They show where public agendas still describe sessions and speakers more often than outcomes, commitments, transfer, or proof.

How should I use the rows? +

Read the agenda rows as the visible design trace: formats, purposes, and evidence labels show what the public source made inspectable, not everything that happened in the room. This is a source-grounded interpretation of the public agenda record, not a copy of the source, and not an endorsement of the event.

Embed the verified badge +

This record is in the hand-verified gold set. Copy the snippet below to embed the verified badge on your own site.

<a href="https://unitedwetransform.com/events/evt_2027_eucyberact_org_conference_agenda_2027_2019_conference_archive_eucyberact_or"><img src="https://unitedwetransform.com/badge/ges-verified.svg" alt="GES verified by United We Transform" height="40"></a>

Where To Go Next

Compare this agenda against other Technology / AI / Startup events scored on the same eight pillars.