Don’t miss out

CIOXGermany

21 Apr 2026

Sofitel Munich Bayerpost, Germany

Welcome to CIOXGermany, the premier event exclusively designed for accomplished CIOs across Germany. Step into the forefront of strategic technology leadership as we navigate the evolving post-pandemic landscape and unlock unparalleled opportunities for enterprise success. Join us at CIOXGermany, where visionary CIOs converge to engage in transformative discussions, gain strategic insights, and address the pressing challenges shaping the world of enterprise technology.

intro

Speakers

Accelerate your network growth

Secure up to twelve exclusive meetings with relevant leads at CIOXDallas maximising your opportunity to forge valuable connections and drive business growth.

Become a sponsor

Learn from industry titans

Immerse yourself in thought-provoking discussions, as top leaders share their expertise and provide you with invaluable insights to propel your strategic initiatives forward.

Forge meaningful Connections

Engage with industry peers, thought-leaders, and solution providers to foster meaningful connections and explore collaborative opportunities that drive innovation and growth.

Agenda

Discover what awaits you at CIOXGermany.

Registration & Networking Breakfast

Welcome & Opening Remarks From EDS

OPENING PANEL: Germany Under Digital Attack: CIO & CISO Strategic Action in 2026

  • Dr. Paul Voigt
    Attorney at Law and Specialist Solicitor for Information Technology Taylor Wessing
  • Lucian Manolache
    SVP - CIO Group Digitalization & IT Grammer AG
  • Naveen Ullikashi
    CISO Allianz Direct
  • Ahmed Magdy
    Senior Information Security Officer PAYBACK

Germany now ranks 4th among the world’s most targeted nations for cyberattacks, with vulnerability discovery and active exploitation increasing at an unprecedented pace. For CIOs and CISOs, cyber risk is no longer an episodic challenge, it is a constant operational reality that shapes IT strategy, architecture, and investment decisions. This opening panel will examine the evolving threat landscape from a technology leadership perspective, moving beyond awareness and compliance to focus on how CIOs and CISOs can design resilient systems, drive proactive response, and ensure business continuity when breaches are inevitable. Panelists will share insights on operational accountability, decision-making under pressure, and aligning security, IT, and business to strengthen the organization’s ability to withstand cyber incidents

Key Takeaways:
• Understand what Germany’s attack statistics mean for business continuity, economic stability
• Explore how leaders can strengthen the relationship between business, IT and security.
• Insights into actionable strategies to minimize disruption and maintain innovation during inevitable attacks.
• Gain practical approaches to executive accountability, decision-making, and board-level engagement.

In the Cyber Trenches: War Stories from 200,000 Pentests

  • Jens Egger
    Senior Solutions Engineer, DACH Horizon3 ai

SPOTLIGHT FORUM: Leadership & Resilience - Securing Germany’s High-Tech Future

  • Farell Folly
    Head of OT Cybersecurity Services TÜV SÜD
  • Ali Baccouche
    Regional Information Security & Data Privacy Officer, EMEA Texas Instruments
  • Khurram Lodi
    Director - IT Governance, Risk & Compliance (GRC) Amer Sports
  • Nawid Sayed
    CISO Payback

As Germany accelerates investment in advanced technologies, leadership resilience has become a strategic imperative. This panel will explore how organisations can safeguard critical technology investments while maintaining digital sovereignty in an increasingly complex geopolitical and regulatory landscape. Bringing together senior leaders, the discussion will examine how culture, skills, and leadership behaviours directly influence risk posture, innovation outcomes, and long-term competitiveness. The session will also unpack what “secure-by-design” truly means at scale, embedding security across technology architecture, operational processes, and workforce capability to protect Germany’s high-tech future without slowing progress.

Key Takeaways:
• Understand the role of safeguarding strategic technology investments while maintaining digital sovereignty.
• Explore how people, culture, skills, and leadership influence risk, and innovation outcomes.
• Identify what “secure-by-design” means at scale, across technology, processes, and people.

The Future-Ready Cloud: Mastering the Next Evolution of Hybrid & Multi-Cloud Architectures

As cloud environments mature, organisations are moving beyond simple migration strategies into true hybrid and multi-cloud architectures that offer agility, resilience, and cost optimisation. This session explores how CIOs can architect an adaptive cloud strategy that integrates AI-driven automation, workload portability, and cloud sovereignty.

Key Takeaways:

Balancing performance, security, and compliance across multi-cloud environments.
Strategies to optimise cloud spend while scaling applications dynamically.
Real-world case studies on hybrid cloud innovations and workload placement.

AM BREAK & 1:1 Xchange

ROUNDTABLE Xchange: Discussions on Shared Challenges

  • Stephan Wanke
    Managing Director Germany and Regional Sales Director Enterprise Central & East Europe Colt Technology Services
  • Oskar Fösker
    CEO and Co-Founder Xensam
  • Alexander Goller
    Principal Solutions Architect Illumio
  • Compliance as an Innovation Driver: How EU Regulations Are Forcing Smarter IT Architectures

     

    For CIOs, EU regulations such as the Digital Operational Resilience Act (DORA), NIS2, and the Cyber Resilience Act (CRA) are no longer just compliance requirements, they are reshaping how modern IT architectures are designed and operated. This roundtable focuses on how regulatory pressure is accelerating architectural decisions around resilience, cloud connectivity, network segmentation, and operational visibility. We will discuss how CIOs can use compliance as a forcing function to modernize infrastructure, reduce operational complexity, and enable faster, more resilient digital transformation.

     

    Key Takeaways

    • Why compliance is becoming an architectural design constraint, by default
      Learn how DORA, NIS2, and CRA are embedding resilience, redundancy, and observability directly into IT architecture decisions, especially across networks, cloud, and hybrid environments.

     

    • How CIOs can simplify IT while meeting stricter regulatory demands
      Explore how standardized connectivity, managed services, and unified network visibility reduce fragmentation, lower operational risk, and make compliance achievable at scale.

     

    • How to align compliance, resilience, and business agility
      Understand how CIOs can leverage compliance-driven architecture to shorten recovery times, enable faster audits, and support business growth without increasing operational overhead.
  • Who Really Controls Your Enterprise Data? AI, Sovereignty, and Executive Accountability

    As AI and SaaS adoption accelerate, executive leaders face a growing tension between innovation, financial transparency, and jurisdictional control. In cross-border cloud environments, data sovereignty, regulatory exposure, and vendor dependency are no longer technical questions, they are board-level concerns. This roundtable invites CIOs and CISOs to explore how executive oversight must evolve to maintain strategic control in an increasingly complex technology landscape.

    Key Takeaways

    • Why AI and SaaS growth are shifting accountability from operational teams to executive leadership
    • How jurisdiction and sovereignty are becoming strategic, not just compliance, considerations
    • Executive approaches to maintaining control without slowing enterprise innovation
  • Using Zero Trust to Improve Cyber-resilience in the age of AI

     

    The cybersecurity landscape has fundamentally shifted from a prevention-focused mindset to one of cyber resilience and breach containment.

     

    In this session you will hear:

    • How accepting breach inevitability changes your security architecture
    • Building containment strategies that limit lateral movement from day one
    • Managing executive expectations during Zero Trust transformation
    • Quantifying the business impact of breach containment
    • How AI is becoming central to Zero Trust architectures, enabling more nuanced risk assessments and dynamic policy enforcement

In this interactive session, our event partners will take the lead in initiating and facilitating conversations centered on challenges and solutions within the industry. Attendees can expect dynamic discussions where diverse perspectives are shared, fostering collaborative problem-solving and the exploration of innovative solutions to common industry hurdles.

Learning Faster Than We Fail: Leadership Behaviors That Enable Psychological Safety

  • Gernot Moeller
    Vice President Information Technology DRAEXLMAIER Group

In an environment shaped by complex data strategies, rapid AI adoption, and large scale legacy modernization, speed has become a competitive necessity. Under these conditions, avoiding mistakes is unrealistic, and trying to do so often slows organizations down even further. The real challenge is not failure itself, but how leaders and teams respond when it occurs.

Guided by the leadership principle “Think big, start small, learn fast,” this session explores how we deliberately re framed mistakes as a source of learning rather than blame. Drawing on research by Amy Edmondson, Google’s Project Aristotle, and recent McKinsey and EY studies, the session outlines practical strategies and explicit leadership behaviors – such as role modeling openness, reframing errors, and enabling structured reflection – that enable teams to speak up early and learn fast. As a result, we observed that teams began escalating risks earlier, reflecting more openly on setbacks, and experimenting more confidently in complex transformation initiatives. This shift strengthened decision quality, reduced repeated errors, and increased organizational resilience in high uncertainty environments. The session highlights the decisive role of leadership teams in shaping failure culture, and demonstrates how treating mistakes as learning signals can accelerate innovation rather than hinder it.

Digital Forensics & Incident Response in the AI Era

With cybercriminals using AI to evade detection, digital forensics and incident response (DFIR) teams must adapt. This session explores AI-assisted forensic investigation and automated response techniques.

Key Takeaways:

How AI is impacting cyber forensics.
The role of automation in incident response.
Practical tools for modern DFIR teams

LUNCH & 1:1 Xchange

QUICK TECH TALE: Navigating the EU Cyber Resilience Landscape

  • Ofelia Szebin
    BISO Jabil

An overview of the EU’s rapidly expanding regulatory landscape—including NIS2, the Cyber Resilience Act, and DORA, which introduces stricter cybersecurity, resilience, and product security obligations across sectors. It highlights the increasing demands placed on organizations, such as tighter incident reporting requirements, secure by design expectations, and growing pressure to harmonize compliance across jurisdictions and complex supply chains.

• How the EU’s new cyber regulations (NIS2, CRA, DORA) reshape security, resilience, and product security expectations across all sectors;
• What tighter incident reporting rules and secure by design obligations mean for your security, engineering, and compliance teams;
• How organizations can harmonize compliance across jurisdictions and manage supply chain pressures in a rapidly evolving regulatory landscape.

AI Maturity - The Four Phases of Enterprise Transformation

  • Michael Kohlert
    Vice President IT Litens Automotive Group

Enterprise AI evolves through four distinct stages: Reactive Intelligence, Recommendation Executive, Agentic Execution, and Autonomous Execution. As organizations move from systems that react and recommend to systems that act and execute, execution shifts from human led operations to digital observability with human governance. Decision latency is reduced, operational consistency improves, and accountability moves from individual judgment to clearly defined AI enabled control models.

Just as industrial automation moved humans from operating machines to supervising and optimizing processes, AI is now shifting enterprises from manual monitoring to continuous, system level governance. In practice, this transition has enabled measurable improvements such as faster cycle times, reduced operational friction, clearer ownership across IT and business functions, and more predictable execution at scale. Drawing on real enterprise transformation experience, this session connects AI maturity to tangible business outcomes, showing how CIOs can move beyond pilots and experimentation to operational impact. This session explains what that evolution means for European CIOs: how operating models, leadership roles, and accountability frameworks must change as AI becomes an executive actor in the enterprise, and how to link AI maturity directly to business value, not just technology advancement.

Enhancing Cybersecurity Defences For Today's Complex Threats

Delve into strategies for bolstering cybersecurity defences amidst the ever-evolving landscape of complex cyber threats. Through an exploration of advanced technologies and proactive methodologies, attendees will gain insights into fortifying their systems against emerging cyber risks.

QUICK TECH TALE: From Policy to Production - Why GRC Programs Break at National Borders and How to Make Them Work

  • Rene Knebel
    Chief Business Information Security Officer, Capital Marktes, DORA SME DZ Bank AG

Over the past decade, GRC has moved from written policies into the daily reality of technology operations and resilience testing. As threat landscapes evolved, expectations around security, availability, and recovery changed. The EU, the UK, Switzerland, and the United States have developed different regulatory approaches shaped by culture, legal systems, and economic priorities. This presentation examines how similar control objectives can lead to different outcomes in operational reality. It explores the intersection between the three lines of defense (3. LoD), regulatory authorities, and what global ICT service providers can deliver in practice, often driven by distinct expectations and intentions. Examples from automotive audits in Germany and cross-border ICT risk implementations in the financial services industry are used to illustrate differences in practice rather than being described abstractly. It also shows how organizations can move beyond a compliance mindset by separating real risks from control gaps and fostering resilience that works beyond slide decks.

PM BREAK & 1:1 Xchange + Community Conversations

Community Conversations

  • Torsten Eymann
    CIO University of Bayreuth
  • Alejandro Martin Soto
    Head of Digital Security Architecture - Infrastructure & Systems Airbus Defence and Space
  • Alexander Zhitenev
    Head of Information Security IFCO
  • Diagnosing AI Failure! Why Projects Fail and How to Turn Them Around

    This table explores why many AI initiatives driven by the business fall short of expectations, despite strong investment and ambition. Attendees will discuss common causes of failure and learn how organisations can realign strategy, data, and execution to recover stalled projects and deliver real business value.

  • From Legacy IT to Cloud-First: Securing Large-Scale Transformation

    Large-scale cloud transformation is no longer just a technology shift, it’s a fundamental change to how organisations operate, manage risk, and deliver value. This roundtable will explore how leaders can move from legacy IT to cloud-first architectures while maintaining security, resilience, and business continuity. Participants will discuss practical challenges, lessons learned, and leadership decisions required to secure complex transformations at scale without slowing innovation.

  • Show me the Value: Quantifying Risk and Justifying Tech Investments

    As risk continues to rise, leaders must move beyond qualitative assessments and gut instinct. This roundtable explores practical methods for quantifying technology and cyber risk, linking risk metrics to business outcomes, and using them to drive smarter investment decisions.

Take a break, engage in meetings and join a discussion roundtable! During this PM Power Break, fellow enterprise leaders will guide discussions on their favorite topic, fostering an environment of open exchange, exploration of diverse perspectives and experiences. Attendees can grab a coffee and anticipate engaging conversations through 1-2-1 meetings and roundtables. Conversations will be driven by shared challenges and interests, offering valuable insights and opportunities for collaborative learning and networking.

OT Cybersecurity Today. Current Threat Landscape and Security Controls

  • Jan Hoff
    Digital Forensics & Incident Response Lead Dragos

Industrial networks are more connected, data-driven, and critical than ever but so are the cyber threats targeting them. Ransomware, state sponsored attacks, and opportunistic adversaries are increasingly focused on OT environments, and traditional IT security approaches often fall short.
This session cuts through the noise to provide executives with a clear view of today’s OT threat landscape and, more importantly, practical controls that reduce risk without disrupting operations. Through real-world examples and strategic insights, attendees will leave with actionable guidance to strengthen their industrial defenses and safeguard operational continuity.
Key Takeaways:
1. Understand the evolving OT threat landscape – Understand how attacks on industrial environments are changing.
2. Prioritize security controls that work in practice – Learn which measures actually reduce risk in operations
3. Balancing risk and continuity – Protect systems without disrupting production.


THE CLOSING PANEL: Reskilling, Redeploying, and Reinventing the Enterprise Workforce in the Age of AI

  • Peter Boujev
    CTO - Personal Investors BNP ParibasGroup
  • Claudia Preis
    Technical Director Allianz Commercial
  • Ella Türümina
    AI Readiness Lead Architect, CTO Siemens
  • Victoria Pysarenko
    IT Transformational Strategist BMW Group

As AI rapidly reshapes how work gets done, enterprise leaders are moving beyond experimentation and into execution. This panel will explore how organisations are making concrete workforce decisions today, determining which roles to reskill, which capabilities to redeploy, and where entirely new skills are required. This final discussion will centre on real-world trade-offs, lessons learned, and what has worked at scale.

• Gain insights as to which roles organisations are reskilling, redesigning, or removing, as AI reshapes enterprise work.
• Real-world examples of how organisations are redeploying talent into AI-enabled roles and overcoming internal resistance.
• Clear guidance on building AI capability at speed while maintaining productivity, governance, and employee trust.

Closing Remarks

Drinks Reception

Apply to Attend

Location

Sofitel Munich Bayerpost, Bayerstraße, Munich, Germany

Sofitel Munich Bayerpost, Bayerstraße, Munich, Germany

Past Events

Testimonials

See what attendees, speakers and sponsors say about our events.

FAQs

Who attends?

Attendance is reserved for C-Suite executives and Senior Executives within IT, including Chief Information Officers, Chief Technology Officers, and other senior IT decision-makers from a wide array of industries. Joined by our select sponsor partners, enriching networking opportunities and offering cutting-edge solutions.

What does my delegate pass include?

Thanks to our sponsors, your access is entirely complimentary, providing you with full-day access to all presentations, exclusive networking sessions, personalised one-to-one meetings, delectable catering, and an open bar for added networking.

What are the one-on-one meetings?

These 25-minute meetings provide invaluable opportunities to discover new solutions and expand your network with leading innovative providers that can help solve your current or future complex challenges.

What is the dress code?

Professional business attire is appropriate.

Do I need to prepare anything?

No preparation is needed on your part. We take care of all the final details. Simply arrive at the specified time, date, and location, and we’ll handle the rest to ensure you have a seamless and enjoyable experience.

Why attend?

Our events offer unparalleled experiences where interactive sessions spark innovation, keynotes unveil insights from industry luminaries, and exclusive one-on-one meetings with best-in-breed solution providers unfold in some of the world’s most prestigious venues. This unique format ensures that your challenges are addressed directly, providing invaluable insights, connections, and maximising value for your time. With a compact schedule featuring a variety of presentations, you’ll gain a comprehensive view of the latest innovations and have ample opportunity to network with like-minded peers—all under one roof, and in just one day. This fosters collaboration and forges invaluable connections among executives with a genuine influence, setting the standard for elite gatherings in the industry.

Have any more questions?

Get in touch here

Have any more questions?

Get in touch