London, U.K., September 24, 2026
London, U.K., September 24, 2026
It’s not too late to join the conference
Overview
We are bringing you news and highlights from the Gartner Security & Risk Management Summit, taking place this week in London. Below is a collection of key announcements and insights coming out of the conference. You can read the highlights from Day 1 and Day 2 here.
On Day 3 of the conference, we are highlighting the top cybersecurity predictions for 2027 and beyond, explaining how to fight AI disinformation, and sharing ways CISOs can optimize their organization’s infrastructure security. Be sure to check this page throughout the day for updates.
Key Announcements
Presented by Charlie Winckless, VP Analyst, Gartner
The cybersecurity landscape is undergoing rapid transformation, challenging security leaders to balance evolving threats, regulatory demands, and business risk. In this session, Charlie Winckless, VP Analyst at Gartner, explored Gartner’s top cybersecurity predictions for 2026 and beyond, helping leaders build a resilient security posture for long-term success.
Gartner’s top cybersecurity predictions for 2026 fall into three core themes: Generative AI, Tool Optimization, and Leadership Evolution.
By 2028, 50% of all enterprise cybersecurity incident response efforts will focus on incidents involving custom-built AI-driven applications. “Implement a comprehensive inventory of all AI-enabled applications in use to ensure visibility and accountability.”
Through 2030, one-third of the work in IT will be spent remediating AI data debt to secure AI. “Initiate a collaborative data management program and prioritize remediation efforts to address the most pressing vulnerabilities.”
By 2027, 30% of organizations will require comprehensive sovereignty of their cloud security controls to address continued geopolitical turmoil. “Actively monitor and partner with legal counsel to assess the changing regulatory environment.”
By 2028, 70% of CISOs will utilize identity visibility and intelligence capabilities to shrink the IAM attack surface, reducing the risk of credential compromise. “Use AI techniques and tools for identity anomaly identification.”
Journalists can receive additional information and/or request an interview with Charlie Winckless by contacting Laurence Goasduff at laurence.goasduff@gartner.com.
Presented by Akif Khan, VP Analyst, Gartner
Attackers use disinformation through malicious online narratives against organizations, combining deepfakes with social engineering to target employees. In this session, Akif Khan, VP Analyst at Gartner, explored how chief information security officers (CISOs) must collaborate with their marketing and IT leaders to defend against such attacks.
“Trust in digital content is so important that, in 2030, enterprises will spend more than $25 billion authenticating it.”
“CISOs should partner with CIOs to secure internal attack surfaces from deepfake and social engineering threats by strengthening authentication, enhancing detection capabilities, and delivering targeted security awareness training for employees.”
“Narrative-driven attacks on social media can create security, reputational, financial, and executive-protection risks that require collaboration between security, communications, and marketing leaders.”
“Disinformation is a cybersecurity concern, but not solely a cybersecurity responsibility. Organizations must establish a cross-functional trust council to coordinate governance, define ownership, and strengthen resilience against disinformation threats.”
Journalists can receive additional information and/or request an interview with Akif Khan by contacting Laurence Goasduff at laurence.goasduff@gartner.com.
It’s not too late to join the conference
Gartner (NYSE: IT) delivers actionable, objective business and technology insights that drive smarter decisions and stronger performance on an organization’s mission-critical priorities. To learn more, visit gartner.com.