Day 1: Tuesday, June 10, 2025

12:00 PM - 1:00 PM

Registration & Networking

(Palace Suite Lobby)

 

Track 1

(York Suite)

Track 2

(Lancaster Suite)

 
1:00 PM - 3:00 PM
 

Track 1 (York Suite)

Workshop

Risk and Resilience by Design: Building the Future-Proof Enterprise

In today’s dynamic business environment, where disruptions are becoming more frequent and unpredictable, risk and resilience must be built by design, not by reaction. Organizations that embed resilience into their core business strategy—rather than treating it as a reactive, compliance-driven exercise—are better equipped to navigate operational, cyber, and supply chain risks. This requires a shift from traditional risk management approaches to proactive, integrated frameworks that align risk, resilience, and performance objectives. By leveraging AI, automation, and real-time data analytics, businesses can anticipate threats, monitor risks dynamically, and continuously strengthen their resilience posture. The key to future-proofing operations lies in creating a resilience roadmap that not only mitigates risks but enables businesses to thrive in the face of uncertainty.

Michael Rasmussen

Analyst & Pundit, GRC 20/20 Research & GRC Report

Track 2 (Lancaster Suite)

Workshop

The Current State and The Future of Operational Risk Management

Join us for an interactive workshop that delves into the current and future landscape of Operational Risk management. Drawing from Elena Pykhova’s best-selling book, the session will address key challenges faced by professionals and provide strategies for ongoing success. Topics include revitalizing risk implementations, mastering interconnected risk management, enhancing foresight, fostering strong risk cultures, and tackling emerging threats like third-party risks, cybersecurity, and resilience. Gain valuable insights on benchmarking, measuring maturity, and developing a future-focused roadmap for success.

Elena Pykhova

Director and Founder, The Op Risk Company Ltd
 
3:00 PM - 3:30 PM

Break

(Palace Suite Lobby)

 
3:30 PM - 4:30 PM
 

Track 1 (York Suite)

Workshop (continued)

Risk and Resilience by Design: Building the Future-Proof Enterprise

In today’s dynamic business environment, where disruptions are becoming more frequent and unpredictable, risk and resilience must be built by design, not by reaction. Organizations that embed resilience into their core business strategy—rather than treating it as a reactive, compliance-driven exercise—are better equipped to navigate operational, cyber, and supply chain risks. This requires a shift from traditional risk management approaches to proactive, integrated frameworks that align risk, resilience, and performance objectives. By leveraging AI, automation, and real-time data analytics, businesses can anticipate threats, monitor risks dynamically, and continuously strengthen their resilience posture. The key to future-proofing operations lies in creating a resilience roadmap that not only mitigates risks but enables businesses to thrive in the face of uncertainty.

Michael Rasmussen

Analyst & Pundit, GRC 20/20 Research & GRC Report

Track 2 (Lancaster Suite)

Workshop

Optimize your GRC Framework with AI. What's New and What’s Next?

Optimize your GRC Framework with AI – What’s New and What’s Next? explores the latest enhancements to the AI platform, designed to elevate your GRC capabilities. This session will showcase new features and innovations that empower organizations to streamline risk management, improve compliance, and enhance decision-making. Attendees will discover how AI-driven tools are transforming GRC processes, and gain insights into future developments that will keep your organization ahead in an ever-evolving risk landscape

Sunay Zelawat

Associate Director, Product Management, MetricStream
 
4:30 PM - 5:30 PM
 

Track 1 (York Suite)

Workshop (continued)

Risk and Resilience by Design: Building the Future-Proof Enterprise

In today’s dynamic business environment, where disruptions are becoming more frequent and unpredictable, risk and resilience must be built by design, not by reaction. Organizations that embed resilience into their core business strategy—rather than treating it as a reactive, compliance-driven exercise—are better equipped to navigate operational, cyber, and supply chain risks. This requires a shift from traditional risk management approaches to proactive, integrated frameworks that align risk, resilience, and performance objectives. By leveraging AI, automation, and real-time data analytics, businesses can anticipate threats, monitor risks dynamically, and continuously strengthen their resilience posture. The key to future-proofing operations lies in creating a resilience roadmap that not only mitigates risks but enables businesses to thrive in the face of uncertainty.

Michael Rasmussen

Analyst & Pundit, GRC 20/20 Research & GRC Report

Track 2 (Lancaster Suite)

Product Session

What's New in MetricStream's Operational Risk and Enterprise Risk Management

Discover the latest innovations in MetricStream’s Operational Risk and Enterprise Risk Management solutions. This session will spotlight new features that enhance risk visibility, streamline risk assessments, and elevate control testing efficiency. Learn how AI-driven insights, integrated issue management, and intuitive dashboards empower risk teams to act faster and smarter. Whether you're modernizing risk frameworks or strengthening resilience, explore how MetricStream is driving the next generation of risk management excellence across the enterprise.

Shreyank S. Kamat

Senior Director, Product Management, MetricStream
 
5:30 PM - 7:00 PM

Drinks & Reception

(Piano Bar)

 
 

Day 2: Wednesday, June 11, 2025

8:00 AM - 8:45 AM

Registration & Networking Breakfast

(Palace Suite Lobby)

 
8:45 AM - 8:50 AM

Welcome Note

Introduction and Welcome

(Palace Suite)

 
8:50 AM - 9:25 AM

Opening Keynote

Reimagining GRC with AI-First Strategy

(Palace Suite)

In today's rapidly evolving risk landscape—driven by cyber threats, regulatory changes, and operational complexity—organizations are looking for a simpler, smarter and faster way to manage GRC.This keynote explores the future of GRC with an AI-first strategy. Explore how generative and agentic AI streamline assessments, automate evidence collection, and deliver real-time insights—driving agility, accountability, and strategic impact. Join us to see how AI-first Connected GRC simplifies governance and amplifies outcomes across the enterprise.

Gaurav Kapoor

Co-founder & Vice Chairman, MetricStream
 
9:25 AM - 9:50 AM

Keynote

Building the Future of GRC, Today

(Palace Suite)

Join Marc Levine, CEO of MetricStream, as he shares his visionary perspective on the future of MetricStream. In this keynote, Marc will showcase how MetricStream is reimagining GRC with AI.

Marc Levine

Chief Executive Officer, MetricStream
 
9:50 AM - 10:35 AM

CXO panel

The Evolving Role of a Chief Risk & Compliance Officer

(Palace Suite)

As regulatory landscapes shift and businesses embrace digital transformation, the role of Chief Risk & Compliance Officers is rapidly evolving. Beyond traditional oversight, they now play a strategic role in embedding resilience, managing emerging risks, and leveraging technology for proactive compliance. This session explores how risk and compliance professionals can adapt to rising expectations, leverage AI and automation, and foster accountability to keep organizations agile.

Rajeev Bhatnagar

Chief Risk and Compliance Officer, International and Treasury Services, BNY

Victoria Stubbs

Managing Director, Compliance, Barclays UK

Dr. Adriane Winter

Chief Compliance Officer / Co-Head of Global Legal, Compliance, Risk and ICS, BSH Home Appliances Group

Robert Taylor

Head of Enterprise and Non-Financial Risk, London Stock Exchange Group
 
10:35 AM - 10:55 AM

Break

(Palace Suite Lobby)

 
10:55 AM - 11:40 AM

Case Study

Nordea's GRC Journey with MetricStream

(Palace Suite)

Nordea started the GRC journey iwith the ambition to create one integrated program across the enterprise. With the point of departure to implement an enterprise wide GRC solution that would establish common risk processes across all lines of defence, Nordea have now created the foundation to embark on the next step of our GRC MetricStream journey. A journey that take outset in the existing GRC set up, but with the ambition to enable the business usage even more with the support from AI. With the establishment of one data model they can now utilise data from several risk processes which open the door for even better business usage of the risk management tool.

Jacob Holmehave

Head of Group Risk Office, Nordea

Brian F. Sørensen

Chief Project Manager - Group Risk Change Management, Nordea
 
11:40 AM - 12:20 PM

Product Keynote

AI-First Connected GRC: The Next Frontier in Risk and Resilience

(Palace Suite)

As GRC continues to evolve in an increasingly complex risk environment, the next frontier is being shaped by the transformative power of artificial intelligence. AI is the catalyst accelerating every element of Connected GRC. From predictive analytics to intelligent automation and real-time decision support, learn how MetricStream AI-first Connected GRC is redefining how organizations anticipate risk, ensure compliance, and drive strategic agility. Whether you're a risk, audit or compliance executive this session will equip you with actionable strategies to future-proof your GRC programs and unlock measurable value—at scale.

Raghuram Srinivas

Head of Product, MetricStream
 
12:20 PM - 1:05 PM

Expert Talk 

Beyond ROI: Unlocking the True Value of GRC

(Palace Suite)

In today’s complex business landscape, GRC must evolve beyond a compliance checkbox into a strategic enabler of performance. This keynote explores how objective-centric, business-integrated GRC can align risk and compliance with organizational goals, enhance decision-making, and build resilience and agility. Attendees will learn how to shift GRC from cost-focused to value-driven—delivering insights, managing disruptions proactively, and adapting quickly to change—ultimately transforming GRC into a driver of sustainable business success.

Michael Rasmussen

Analyst & Pundit, GRC 20/20 Research & GRC Report
 
1:05 PM - 2:05 PM

Networking Lunch

(Palace Suite Lobby)

 

Track 1

(Palace Suite)

Track 2

(Kensington Suite)

 
2:05 PM - 2:45 PM
 

Track 1 (Palace Suite)

Panel

The Future of Compliance is Automation

Join this session to explore how automation is revolutionizing the compliance landscape. This session will focus on the role of advanced technologies like AI and machine learning in streamlining compliance processes, reducing manual efforts, and minimizing errors. Attendees will gain insights into how automated solutions are improving efficiency, ensuring continuous monitoring, and helping organizations stay ahead of regulatory changes. Discover the future of compliance and how to implement automation to drive a smarter, more agile approach.

Elena Garcia Aguado

Head of Compliance, RWE Renewables

Gabor Molnar

Compliance Officer, Knorr-Bremse

Raghu Muniyappa

GRC Practice Manager, Vivid Edge

Track 2 (Kensington Suite)

Product Session

Level Up Your Compliance Posture with MetricStream’s All-New Compliance Management

Level Up with MetricStream’s All-New Compliance Management showcases the latest features designed to enhance compliance processes and drive greater efficiency. This session will explore how MetricStream’s advanced solutions streamline compliance tracking, automate workflows, and provide real-time visibility into regulatory requirements. Attendees will learn how to leverage these new capabilities to improve accuracy, reduce manual effort, and ensure proactive compliance. Discover how MetricStream’s innovative tools help organizations stay ahead of evolving regulations while mitigating compliance risks.

Shreyank S. Kamat

Senior Director, Product Management, MetricStream
 
2:45 PM - 3:25 PM
 

Track 1 (Palace Suite)

Panel

What’s Next for Operational Risk Management?

As the risk landscape evolves, operational risk management must adapt to new challenges, including emerging technologies, regulatory pressures, and dynamic market conditions. In this session, the panelists will explore what are the key changes expected in operational risk management, how to make operational risk more strategic and how to drive actional insights through emerging technologies like AI, automation and quantification. Join us to understand the practical strategies to elevate your ORM programs and build resilience while maintaining a competitive edge in a dynamic risk environment.

Armel Massimina

Operational Risk Lead, National Bank of Kuwait (International)

Ben Rowsell

Head of Enterprise and Operational Risk, Nationwide Building Society

Ben Jeary

Head of Operational Risk, Santander

Track 2 (Kensington Suite)

Expert Talk

The Future of GRC is Multilingual: AI agents for translation now live in Metricstream

In today’s global marketplace, managing risk and ensuring compliance must span diverse regions, markets, and languages. Relying solely on English-based assets and systems is no longer sufficient. To fully support non-English-speaking stakeholders, we must embrace translation and AI. Now, through a new integration with Intento, AI-powered translation agents are live in MetricStream—enabling real-time access to the entire MetricStream ecosystem and all content, in up to 650 languages.

Grigory Sapunov

CTO & Co-Founder, Intento
 
3:25 PM - 3:45 PM

Break

(Palace Suite Lobby)

 
3:45 PM - 4:25 PM
 

Track 1 (Palace Suite)

Panel

Establishing a Strong Compliance Culture: Beyond the Corporate Compliance Code

A strong compliance culture goes beyond a mere tick in the box or having a written compliance code—it requires embedding ethical practices, accountability, and proactive risk management into an organization’s DNA. This session explores strategies to foster an environment where compliance is integral to decision-making, driven by leadership and embraced across all levels. Discover how to align organizational values with daily operations, leverage training and technology, and measure the impact of a truly effective compliance culture.

Tetiana Isaieva

Head of Compliance, Roche

Dave Pickering

Head of Non-Financial Risk Taskforce, Canada Life UK

Antonios Gkoulousis

Head Of Conduct Risk, Eurobank SA

Chris Knox

Global Director - Financial Services Regulatory Compliance, Microsoft Corporation

Track 2 (Kensington Suite)

Panel

Transforming Your GRC Programs with AI

Transforming Your GRC Programs with AI explores how organizations can revolutionize their governance, risk, and compliance (GRC) programs by incorporating AI-driven solutions. This session will explore how AI can enhance risk assessment, automate compliance processes, and improve decision-making. Attendees will also gain insights on how AI can streamline workflows, improve accuracy, and help organizations stay ahead of regulatory changes.

Thoralf Knuth

Chief Data Protection Officer, Robert Bosch

Dane Pedro

Head of UK Compliance & MLRO, Mollie UK

Libby Denchfield

Chief Platform & Functions Officer, Legal, Risk, Compliance & Corporate Secretariat, Standard Chartered Bank
 
4:25 PM - 5:05 PM
 

Track 1 (Palace Suite)

Panel

The Journey Towards Operational Resilience: Key Priorities for Risk and Resilience Leaders

The Journey Towards Operational Resilience delves into the critical priorities for risk and resilience leaders as they navigate today's dynamic risk landscape. This session will explore strategies to build resilience across people, processes, and technology, ensuring organizations can withstand and recover from disruptions. Attendees will learn key insights on aligning risk management with business continuity, fostering a resilient culture, and adopting innovative approaches to safeguard operations in an increasingly uncertain world.

Sarah Garrington

Head of Resilience, Royal London Group

Tim Armit

Head of Operational Resilience and Business Continuity, QBE

Nick Fuller

Global Head of Resilience Risk Management, BNY

Renisha Rajpaul

Group Executive Head: Business Risk Management, Vodacom

Track 2 (Kensington Suite)

Product Session 

Navigating NIS2 & DORA: How to Mitigate Cyber Risk, Ensure Compliance & Resilience

With NIS2 and DORA reshaping the regulatory landscape, organizations must elevate their cybersecurity, compliance, and operational resilience strategies. This session explores how to navigate these evolving mandates, mitigate cyber risks proactively, and embed resilience into your risk management framework. Learn practical approaches to aligning with NIS2 and DORA requirements, leveraging technology to streamline compliance, and fostering a culture of continuous preparedness. Stay ahead of threats and turn regulatory pressure into a competitive advantage.

Sunay Zelawat

Associate Director, Product Management, MetricStream
 
5:05 PM - 5:45 PM

GRC Journey Awards

(Palace Suite)

The GRC Journey Awards honor outstanding MetricStream customers and partners who are shaping the future of governance, risk, and compliance. These awards recognize organizations and individuals who demonstrate exceptional vision, execution, and impact in advancing risk-aware cultures, driving operational resilience, and delivering business value through innovative GRC strategies and solutions.

 
5:45 PM - 7:05 PM

Drinks & Reception

(Palace Suite Lobby)

 
 

Day 3: Thursday, June 12, 2025

8:00 AM - 8:45 AM

Registration & Networking Breakfast

(Palace Suite Lobby)

 
8:45 AM - 8:50 AM

Welcome Note

Introduction and Welcome

(Palace Suite)

 
8:50 AM - 9:35 AM

Keynote & Fireside Chat

(Palace Suite)

Tim Harford OBE

Award-Winning Financial Times Columnist, Economist and BBC Broadcaster

Gunjan Sinha

Executive Chairman, MetricStream
 
9:35 AM - 10:20 AM

Customer Stories

The Cost of Doing Nothing: The Business Case for Automating Your GRC Program

(Palace Suite)

Discover how automating GRC processes can eliminate inefficiencies, reduce costs, and strengthen risk management. This session explores the hidden pitfalls of manual, siloed systems and offers practical guidance on streamlining GRC through the right mix of technology and talent. Industry experts will share real-world insights, highlight best practices, and walk through how to measure the ROI of GRC automation—helping you move forward confidently on your GRC transformation journey.

Mark Avery Chiang

Deputy CRO, Hargreaves Lansdown

Wilna Meiring

Managing Executive: Corporate Risk and Security , Vodacom Group

Ben Rowsell

Head of Enterprise and Operational Risk, Nationwide Building Society
 
10:20 AM - 10:40 AM

Break

(Palace Suite Lobby)

 
10:40 AM - 11:20 AM

CXO Panel

Managing Interconnected Risks: Why It Should Be a Boardroom Priority

(Palace Suite)

In today’s complex business landscape, risks are no longer isolated—they are deeply interconnected, spanning cybersecurity, supply chains, regulations, and reputation. Boards must recognize that a siloed approach to risk management is no longer sufficient. This session explores why leaders must adopt a holistic risk strategy, enhance cross-functional collaboration, and leverage data-driven insights to anticipate and mitigate cascading threats, ensuring long-term resilience and sustainable business growth.

Sowmya Murthy

Chief Risk Officer, Allianz Technology

Antonios Gkoulousis

Head Of Conduct Risk, Eurobank SA

Michael Rasmussen

Analyst & Pundit, GRC 20/20 Research & GRC Report
 
11:20 AM - 12:00 PM

Case Study 

Zurich Insurance's GRC Journey with MetricStream

(Palace Suite)

Implementing a GRC solution isn't just about tech—it's about strategy, trust, and transformation. This session explores the best practices for shifting from manual processes to cutting-edge GRC tools and keep moving up on the maturity curve. Learn how to align IT, the business, and your GRC vendor in a trusted triangle of collaboration. Whether you're starting out or scaling up, this session delivers practical insights to power your GRC success.

Fabien Robichon

Head of Compliance Analytics and Innovation, Zurich Insurance Group

Dino Placido Bivona

IT Business Partner - GRC Corporate Functions, Zurich Insurance Group
 
12:00 PM - 12:45 PM

Expert Talk 

Reimagining Quantification for Managing Interconnected Risks

(Palace Suite)

In today’s volatile and hyper-connected environment, risks rarely exist in silos. They cascade across business units, digital infrastructures, and third-party ecosystems—amplifying impact and blurring boundaries. Traditional risk quantification methods, often rigid and siloed, struggle to capture this complexity. This session reimagines risk quantification through a modern, interconnected lens—exploring how Enterprise, Operational, Cyber, and Third-Party Risks each require distinct quantification approaches, yet must be integrated into a unified risk intelligence framework. Attendees will gain insights into evolving methodologies, emerging technologies, and practical models for quantifying risk in a way that drives better decision-making and resilience across the enterprise.

Sidhartha Dash

Chief Researcher, Chartis Research
 
12:45 PM - 1:30 PM

Networking Lunch

(Palace Suite Lobby)

 
1:30 PM - 2:00 PM

Case Study

IQ-EQ's Operational Risk Journey

(Palace Suite)

A walkthrough of the IQ-EQ MetricStream implementation journey including lessons learned and the continued embedding of MetricStream across the Group.

Simon Wallis

Global Head of Risk & Assurance, IQ-EQ
 
2:00 PM - 2:40 PM

Expert Talk

Integrating Value into GRC – A Fresh Perspective

(Palace Suite)

In today’s rapidly evolving business landscape, Governance, Risk Management, and Compliance (GRC) systems are often perceived as cumbersome, abstract, and disconnected from the core purpose of creating and preserving value. This session will challenge conventional approaches to GRC and present innovative, thought-provoking ideas to transform these systems into dynamic, value-driven frameworks that resonate with organizations and their people. Join this session to explore how we can make GRC exciting, impactful, and integral to the future of risk management.

Nam Phong Ho

Founder, Board Member and Strategic Advisor, Alpha Flow Zenith
 
2:40 PM - 3:00 PM

Break

(Palace Suite Lobby)

 
3:00 PM - 3:40 PM

Panel

Driving Operational Efficiency and Business Growth through Collaborative Internal Audits

(Palace Suite)

In today’s dynamic business landscape, internal audits are no longer just a compliance exercise—they are a strategic tool for driving operational efficiency and growth. This session explores how organizations can foster collaboration between audit, risk, and business teams to enhance transparency, identify opportunities, and streamline processes. Learn best practices for leveraging technology, data insights, and cross-functional partnerships to transform audits into a value-driven function that strengthens resilience and accelerates business success.

Nick Woods

Chief Auditor - Risk, Credit, Financial Crime, NatWest Group

Claudia Iacobucci

Head of Assurance, Risk and Internal Controls, ABB

Kishor Mistry

EHS Audit and Risk Director, Haleon
 
3:40 PM - 3:50 PM

Closing Keynote

(Palace Suite)