Day 1: Tuesday, June 10, 2025
Registration & Networking
(Palace Suite Lobby)
Track 1 (York Suite)
Track 2 (Lancaster Suite)
Track 1 (York Suite)
Workshop
Risk and Resilience by Design: Building the Future-Proof Enterprise
In today’s dynamic business environment, where disruptions are becoming more frequent and unpredictable, risk and resilience must be built by design, not by reaction. Organizations that embed resilience into their core business strategy—rather than treating it as a reactive, compliance-driven exercise—are better equipped to navigate operational, cyber, and supply chain risks. This requires a shift from traditional risk management approaches to proactive, integrated frameworks that align risk, resilience, and performance objectives. By leveraging AI, automation, and real-time data analytics, businesses can anticipate threats, monitor risks dynamically, and continuously strengthen their resilience posture. The key to future-proofing operations lies in creating a resilience roadmap that not only mitigates risks but enables businesses to thrive in the face of uncertainty.

Michael Rasmussen
Analyst & Pundit, GRC 20/20 Research & GRC Report
Track 2 (Lancaster Suite)
Workshop
The Current State and The Future of Operational Risk Management
Join us for an interactive workshop that delves into the current and future landscape of Operational Risk management. Drawing from Elena Pykhova’s best-selling book, the session will address key challenges faced by professionals and provide strategies for ongoing success. Topics include revitalizing risk implementations, mastering interconnected risk management, enhancing foresight, fostering strong risk cultures, and tackling emerging threats like third-party risks, cybersecurity, and resilience. Gain valuable insights on benchmarking, measuring maturity, and developing a future-focused roadmap for success.

Elena Pykhova
Director and Founder, The Op Risk Company LtdBreak
(Palace Suite Lobby)
Track 1 (York Suite)
Workshop (continued)
Risk and Resilience by Design: Building the Future-Proof Enterprise
In today’s dynamic business environment, where disruptions are becoming more frequent and unpredictable, risk and resilience must be built by design, not by reaction. Organizations that embed resilience into their core business strategy—rather than treating it as a reactive, compliance-driven exercise—are better equipped to navigate operational, cyber, and supply chain risks. This requires a shift from traditional risk management approaches to proactive, integrated frameworks that align risk, resilience, and performance objectives. By leveraging AI, automation, and real-time data analytics, businesses can anticipate threats, monitor risks dynamically, and continuously strengthen their resilience posture. The key to future-proofing operations lies in creating a resilience roadmap that not only mitigates risks but enables businesses to thrive in the face of uncertainty.

Michael Rasmussen
Analyst & Pundit, GRC 20/20 Research & GRC Report
Track 2 (Lancaster Suite)
Workshop
Optimize your GRC Framework with AI. What's New and What’s Next?
Optimize your GRC Framework with AI – What’s New and What’s Next? explores the latest enhancements to the AI platform, designed to elevate your GRC capabilities. This session will showcase new features and innovations that empower organizations to streamline risk management, improve compliance, and enhance decision-making. Attendees will discover how AI-driven tools are transforming GRC processes, and gain insights into future developments that will keep your organization ahead in an ever-evolving risk landscape

Sunay Zelawat
Associate Director, Product Management, MetricStreamTrack 1 (York Suite)
Workshop (continued)
Risk and Resilience by Design: Building the Future-Proof Enterprise
In today’s dynamic business environment, where disruptions are becoming more frequent and unpredictable, risk and resilience must be built by design, not by reaction. Organizations that embed resilience into their core business strategy—rather than treating it as a reactive, compliance-driven exercise—are better equipped to navigate operational, cyber, and supply chain risks. This requires a shift from traditional risk management approaches to proactive, integrated frameworks that align risk, resilience, and performance objectives. By leveraging AI, automation, and real-time data analytics, businesses can anticipate threats, monitor risks dynamically, and continuously strengthen their resilience posture. The key to future-proofing operations lies in creating a resilience roadmap that not only mitigates risks but enables businesses to thrive in the face of uncertainty.

Michael Rasmussen
Analyst & Pundit, GRC 20/20 Research & GRC Report
Track 2 (Lancaster Suite)
Product Session
What's New in MetricStream's Operational Risk and Enterprise Risk Management
Discover the latest innovations in MetricStream’s Operational Risk and Enterprise Risk Management solutions. This session will spotlight new features that enhance risk visibility, streamline risk assessments, and elevate control testing efficiency. Learn how AI-driven insights, integrated issue management, and intuitive dashboards empower risk teams to act faster and smarter. Whether you're modernizing risk frameworks or strengthening resilience, explore how MetricStream is driving the next generation of risk management excellence across the enterprise.

Shreyank S. Kamat
Senior Director, Product Management, MetricStreamDrinks & Reception
(Piano Bar)
Day 2: Wednesday, June 11, 2025
Registration & Networking Breakfast
(Palace Suite Lobby)
Welcome Note
Introduction and Welcome
(Palace Suite)
Opening Keynote
Reimagining GRC with AI-First Strategy
(Palace Suite)
In today's rapidly evolving risk landscape—driven by cyber threats, regulatory changes, and operational complexity—organizations are looking for a simpler, smarter and faster way to manage GRC.This keynote explores the future of GRC with an AI-first strategy. Explore how generative and agentic AI streamline assessments, automate evidence collection, and deliver real-time insights—driving agility, accountability, and strategic impact. Join us to see how AI-first Connected GRC simplifies governance and amplifies outcomes across the enterprise.

Gaurav Kapoor
Co-founder & Vice Chairman, MetricStreamKeynote
Building the Future of GRC, Today
(Palace Suite)
Join Marc Levine, CEO of MetricStream, as he shares his visionary perspective on the future of MetricStream. In this keynote, Marc will showcase how MetricStream is reimagining GRC with AI.

Marc Levine
Chief Executive Officer, MetricStreamCXO panel
The Evolving Role of a Chief Risk & Compliance Officer
(Palace Suite)
As regulatory landscapes shift and businesses embrace digital transformation, the role of Chief Risk & Compliance Officers is rapidly evolving. Beyond traditional oversight, they now play a strategic role in embedding resilience, managing emerging risks, and leveraging technology for proactive compliance. This session explores how risk and compliance professionals can adapt to rising expectations, leverage AI and automation, and foster accountability to keep organizations agile.

Rajeev Bhatnagar
Chief Risk and Compliance Officer, International and Treasury Services, BNY
Victoria Stubbs
Managing Director, Compliance, Barclays UK
Dr. Adriane Winter
Chief Compliance Officer / Co-Head of Global Legal, Compliance, Risk and ICS, BSH Home Appliances Group
Robert Taylor
Head of Enterprise and Non-Financial Risk, London Stock Exchange GroupBreak
(Palace Suite Lobby)
Case Study
Nordea's GRC Journey with MetricStream
(Palace Suite)
Nordea started the GRC journey iwith the ambition to create one integrated program across the enterprise. With the point of departure to implement an enterprise wide GRC solution that would establish common risk processes across all lines of defence, Nordea have now created the foundation to embark on the next step of our GRC MetricStream journey. A journey that take outset in the existing GRC set up, but with the ambition to enable the business usage even more with the support from AI. With the establishment of one data model they can now utilise data from several risk processes which open the door for even better business usage of the risk management tool.

Jacob Holmehave
Head of Group Risk Office, Nordea
Brian F. Sørensen
Chief Project Manager - Group Risk Change Management, NordeaProduct Keynote
AI-First Connected GRC: The Next Frontier in Risk and Resilience
(Palace Suite)
As GRC continues to evolve in an increasingly complex risk environment, the next frontier is being shaped by the transformative power of artificial intelligence. AI is the catalyst accelerating every element of Connected GRC. From predictive analytics to intelligent automation and real-time decision support, learn how MetricStream AI-first Connected GRC is redefining how organizations anticipate risk, ensure compliance, and drive strategic agility. Whether you're a risk, audit or compliance executive this session will equip you with actionable strategies to future-proof your GRC programs and unlock measurable value—at scale.

Raghuram Srinivas
Head of Product, MetricStreamExpert Talk
Beyond ROI: Unlocking the True Value of GRC
(Palace Suite)
In today’s complex business landscape, GRC must evolve beyond a compliance checkbox into a strategic enabler of performance. This keynote explores how objective-centric, business-integrated GRC can align risk and compliance with organizational goals, enhance decision-making, and build resilience and agility. Attendees will learn how to shift GRC from cost-focused to value-driven—delivering insights, managing disruptions proactively, and adapting quickly to change—ultimately transforming GRC into a driver of sustainable business success.

Michael Rasmussen
Analyst & Pundit, GRC 20/20 Research & GRC ReportNetworking Lunch
(Palace Suite Lobby)
Track 1
(Palace Suite)
Track 2
(Kensington Suite)
Track 1 (Palace Suite)
Panel
The Future of Compliance is Automation
Join this session to explore how automation is revolutionizing the compliance landscape. This session will focus on the role of advanced technologies like AI and machine learning in streamlining compliance processes, reducing manual efforts, and minimizing errors. Attendees will gain insights into how automated solutions are improving efficiency, ensuring continuous monitoring, and helping organizations stay ahead of regulatory changes. Discover the future of compliance and how to implement automation to drive a smarter, more agile approach.

Elena Garcia Aguado
Head of Compliance, RWE Renewables
Gabor Molnar
Compliance Officer, Knorr-Bremse
Raghu Muniyappa
GRC Practice Manager, Vivid Edge
Track 2 (Kensington Suite)
Product Session
Level Up Your Compliance Posture with MetricStream’s All-New Compliance Management
Level Up with MetricStream’s All-New Compliance Management showcases the latest features designed to enhance compliance processes and drive greater efficiency. This session will explore how MetricStream’s advanced solutions streamline compliance tracking, automate workflows, and provide real-time visibility into regulatory requirements. Attendees will learn how to leverage these new capabilities to improve accuracy, reduce manual effort, and ensure proactive compliance. Discover how MetricStream’s innovative tools help organizations stay ahead of evolving regulations while mitigating compliance risks.

Shreyank S. Kamat
Senior Director, Product Management, MetricStreamTrack 1 (Palace Suite)
Panel
What’s Next for Operational Risk Management?
As the risk landscape evolves, operational risk management must adapt to new challenges, including emerging technologies, regulatory pressures, and dynamic market conditions. In this session, the panelists will explore what are the key changes expected in operational risk management, how to make operational risk more strategic and how to drive actional insights through emerging technologies like AI, automation and quantification. Join us to understand the practical strategies to elevate your ORM programs and build resilience while maintaining a competitive edge in a dynamic risk environment.

Armel Massimina
Operational Risk Lead, National Bank of Kuwait (International)
Ben Rowsell
Head of Enterprise and Operational Risk, Nationwide Building Society
Ben Jeary
Head of Operational Risk, Santander
Track 2 (Kensington Suite)
Expert Talk
The Future of GRC is Multilingual: AI agents for translation now live in Metricstream
In today’s global marketplace, managing risk and ensuring compliance must span diverse regions, markets, and languages. Relying solely on English-based assets and systems is no longer sufficient. To fully support non-English-speaking stakeholders, we must embrace translation and AI. Now, through a new integration with Intento, AI-powered translation agents are live in MetricStream—enabling real-time access to the entire MetricStream ecosystem and all content, in up to 650 languages.

Grigory Sapunov
CTO & Co-Founder, IntentoBreak
(Palace Suite Lobby)
Track 1 (Palace Suite)
Panel
Establishing a Strong Compliance Culture: Beyond the Corporate Compliance Code
A strong compliance culture goes beyond a mere tick in the box or having a written compliance code—it requires embedding ethical practices, accountability, and proactive risk management into an organization’s DNA. This session explores strategies to foster an environment where compliance is integral to decision-making, driven by leadership and embraced across all levels. Discover how to align organizational values with daily operations, leverage training and technology, and measure the impact of a truly effective compliance culture.

Tetiana Isaieva
Head of Compliance, Roche
Dave Pickering
Head of Non-Financial Risk Taskforce, Canada Life UK
Antonios Gkoulousis
Head Of Conduct Risk, Eurobank SA
Chris Knox
Global Director - Financial Services Regulatory Compliance, Microsoft Corporation
Track 2 (Kensington Suite)
Panel
Transforming Your GRC Programs with AI
Transforming Your GRC Programs with AI explores how organizations can revolutionize their governance, risk, and compliance (GRC) programs by incorporating AI-driven solutions. This session will explore how AI can enhance risk assessment, automate compliance processes, and improve decision-making. Attendees will also gain insights on how AI can streamline workflows, improve accuracy, and help organizations stay ahead of regulatory changes.

Thoralf Knuth
Chief Data Protection Officer, Robert Bosch
Dane Pedro
Head of UK Compliance & MLRO, Mollie UK
Libby Denchfield
Chief Platform & Functions Officer, Legal, Risk, Compliance & Corporate Secretariat, Standard Chartered BankTrack 1 (Palace Suite)
Panel
The Journey Towards Operational Resilience: Key Priorities for Risk and Resilience Leaders
The Journey Towards Operational Resilience delves into the critical priorities for risk and resilience leaders as they navigate today's dynamic risk landscape. This session will explore strategies to build resilience across people, processes, and technology, ensuring organizations can withstand and recover from disruptions. Attendees will learn key insights on aligning risk management with business continuity, fostering a resilient culture, and adopting innovative approaches to safeguard operations in an increasingly uncertain world.

Sarah Garrington
Head of Resilience, Royal London Group
Tim Armit
Head of Operational Resilience and Business Continuity, QBE
Nick Fuller
Global Head of Resilience Risk Management, BNY
Renisha Rajpaul
Group Executive Head: Business Risk Management, Vodacom
Track 2 (Kensington Suite)
Product Session
Navigating NIS2 & DORA: How to Mitigate Cyber Risk, Ensure Compliance & Resilience
With NIS2 and DORA reshaping the regulatory landscape, organizations must elevate their cybersecurity, compliance, and operational resilience strategies. This session explores how to navigate these evolving mandates, mitigate cyber risks proactively, and embed resilience into your risk management framework. Learn practical approaches to aligning with NIS2 and DORA requirements, leveraging technology to streamline compliance, and fostering a culture of continuous preparedness. Stay ahead of threats and turn regulatory pressure into a competitive advantage.

Sunay Zelawat
Associate Director, Product Management, MetricStreamGRC Journey Awards
(Palace Suite)
The GRC Journey Awards honor outstanding MetricStream customers and partners who are shaping the future of governance, risk, and compliance. These awards recognize organizations and individuals who demonstrate exceptional vision, execution, and impact in advancing risk-aware cultures, driving operational resilience, and delivering business value through innovative GRC strategies and solutions.
Drinks & Reception
(Palace Suite Lobby)
Day 3: Thursday, June 12, 2025
Registration & Networking Breakfast
(Palace Suite Lobby)
Welcome Note
Introduction and Welcome
(Palace Suite)
Keynote & Fireside Chat
(Palace Suite)

Tim Harford OBE
Award-Winning Financial Times Columnist, Economist and BBC Broadcaster
Gunjan Sinha
Executive Chairman, MetricStreamCustomer Stories
The Cost of Doing Nothing: The Business Case for Automating Your GRC Program
(Palace Suite)
Discover how automating GRC processes can eliminate inefficiencies, reduce costs, and strengthen risk management. This session explores the hidden pitfalls of manual, siloed systems and offers practical guidance on streamlining GRC through the right mix of technology and talent. Industry experts will share real-world insights, highlight best practices, and walk through how to measure the ROI of GRC automation—helping you move forward confidently on your GRC transformation journey.

Mark Avery Chiang
Deputy CRO, Hargreaves Lansdown
Wilna Meiring
Managing Executive: Corporate Risk and Security , Vodacom Group
Ben Rowsell
Head of Enterprise and Operational Risk, Nationwide Building SocietyBreak
(Palace Suite Lobby)
CXO Panel
Managing Interconnected Risks: Why It Should Be a Boardroom Priority
(Palace Suite)
In today’s complex business landscape, risks are no longer isolated—they are deeply interconnected, spanning cybersecurity, supply chains, regulations, and reputation. Boards must recognize that a siloed approach to risk management is no longer sufficient. This session explores why leaders must adopt a holistic risk strategy, enhance cross-functional collaboration, and leverage data-driven insights to anticipate and mitigate cascading threats, ensuring long-term resilience and sustainable business growth.

Sowmya Murthy
Chief Risk Officer, Allianz Technology
Antonios Gkoulousis
Head Of Conduct Risk, Eurobank SA
Michael Rasmussen
Analyst & Pundit, GRC 20/20 Research & GRC ReportCase Study
Zurich Insurance's GRC Journey with MetricStream
(Palace Suite)
Implementing a GRC solution isn't just about tech—it's about strategy, trust, and transformation. This session explores the best practices for shifting from manual processes to cutting-edge GRC tools and keep moving up on the maturity curve. Learn how to align IT, the business, and your GRC vendor in a trusted triangle of collaboration. Whether you're starting out or scaling up, this session delivers practical insights to power your GRC success.

Fabien Robichon
Head of Compliance Analytics and Innovation, Zurich Insurance Group
Dino Placido Bivona
IT Business Partner - GRC Corporate Functions, Zurich Insurance GroupExpert Talk
Reimagining Quantification for Managing Interconnected Risks
(Palace Suite)
In today’s volatile and hyper-connected environment, risks rarely exist in silos. They cascade across business units, digital infrastructures, and third-party ecosystems—amplifying impact and blurring boundaries. Traditional risk quantification methods, often rigid and siloed, struggle to capture this complexity. This session reimagines risk quantification through a modern, interconnected lens—exploring how Enterprise, Operational, Cyber, and Third-Party Risks each require distinct quantification approaches, yet must be integrated into a unified risk intelligence framework. Attendees will gain insights into evolving methodologies, emerging technologies, and practical models for quantifying risk in a way that drives better decision-making and resilience across the enterprise.

Sidhartha Dash
Chief Researcher, Chartis ResearchNetworking Lunch
(Palace Suite Lobby)
Case Study
IQ-EQ's Operational Risk Journey
(Palace Suite)
A walkthrough of the IQ-EQ MetricStream implementation journey including lessons learned and the continued embedding of MetricStream across the Group.

Simon Wallis
Global Head of Risk & Assurance, IQ-EQExpert Talk
Integrating Value into GRC – A Fresh Perspective
(Palace Suite)
In today’s rapidly evolving business landscape, Governance, Risk Management, and Compliance (GRC) systems are often perceived as cumbersome, abstract, and disconnected from the core purpose of creating and preserving value. This session will challenge conventional approaches to GRC and present innovative, thought-provoking ideas to transform these systems into dynamic, value-driven frameworks that resonate with organizations and their people. Join this session to explore how we can make GRC exciting, impactful, and integral to the future of risk management.

Nam Phong Ho
Founder, Board Member and Strategic Advisor, Alpha Flow ZenithBreak
(Palace Suite Lobby)
Panel
Driving Operational Efficiency and Business Growth through Collaborative Internal Audits
(Palace Suite)
In today’s dynamic business landscape, internal audits are no longer just a compliance exercise—they are a strategic tool for driving operational efficiency and growth. This session explores how organizations can foster collaboration between audit, risk, and business teams to enhance transparency, identify opportunities, and streamline processes. Learn best practices for leveraging technology, data insights, and cross-functional partnerships to transform audits into a value-driven function that strengthens resilience and accelerates business success.

Nick Woods
Chief Auditor - Risk, Credit, Financial Crime, NatWest Group
Claudia Iacobucci
Head of Assurance, Risk and Internal Controls, ABB
Kishor Mistry
EHS Audit and Risk Director, HaleonClosing Keynote
(Palace Suite)