23 February 2027 | Session One: Cyber Resilience for Scotland’s Public Sector: Strategy, Threat and Response
8:30 AM – 9:10 AM
Registration, Networking & Exhibition
9:10 AM – 9:20 AM
Chair’s Welcome & Introduction
Alison McLaughlin (Chair), Digital Transformation Strategist
Alison is a recognised Digital leader in Scotland with a wealth of experience of many ground-breaking digital programmes across the public sector. She has worked with many organisations across the Justice sector including Disclosure Scotland, Scottish Prison Service, Scottish Courts and Crown Office. Her experience also includes a 2.5 year secondment as Head of the Digital Transformation Division of the SG Digital Directorate, during which she was involved in the Digital Justice DESC programme.
Alison is a former Chair of ScotlandIS and now works as a digital transformation strategist working with public and private sector to drive digitally enabled change.
9:20 AM – 9:30 AM
Government Keynote: Securing Scotland’s Digital Public Services
The Scottish Government sets out its national cyber resilience strategy, the obligations placed on public sector bodies, and its ambitions for a secure, digitally-enabled public sector that citizens can trust.
Alan Gray, Head of National Cyber Security and Resilience,
Scottish Government
Alan Gray is the Head of National Cyber Security and Resilience for The Scottish Government. A Security leader with over 15 years of experience within government, professional and public sector organisations, Alan has managed a wide range of security activities from strategic capability development to operational response. Previously as Chief Information Security Officer for the Foreign, Commonwealth and Development Office, with responsibility for the cyber security of all core technologies and services both at home and across posts and embassies worldwide, he was also a member of the Government Security Board as representative for the CISO community across government. Drawing on past experience in National Security, academia, central government and the private sector, Alan has joined the Scottish Government to drive the consolidation and expansion of Scotland’s cyber security and cyber resilience activities, and to lead the Scottish Cyber Coordination Centre (SC3).
9:30 AM – 9:55 AM
International Keynote: Advancing to new frontiers
The risks and opportunities of AI to global cybersecurity networks
Admiral (Ret’d) Michael S. Rogers, former Director, NSA, and Commander, US Cyber Command
US Cyber Command
Mike Rogers retired from the U.S. Navy in 2018 after nearly 37 years of naval service rising to the rank of four-star admiral.
He culminated his career with a four plus year tour as Commander, U.S. Cyber Command and Director, National Security Agency – creating the Department of Defense’s (DoD) then newest large war-fighting organization and leading the U.S. government’s largest intelligence organization. In those roles, he worked with the leadership of the U.S. government, the DoD, and the U.S. Intelligence community, as well as their international counterparts in the conduct of cyber and intelligence activities across the globe with a particular emphasis on cyber security. He also assisted in the development of national and international policy with respect to cyber security, intelligence, data, privacy and technology – including extensive work with corporate leadership in the Finance, IT, Telecommunications and Technology sectors.
Admiral Rogers is currently supporting companies in the private sector, serving as a member of various Boards of Directors or Advisory Boards or acting as a Senior Advisor – primarily in the areas of cyber security, geopolitics, quantum technology, robotics, space, and advanced technologies. He also speaks globally to various business and academic groups and is working internationally in the cyber security, technology and national security arenas.
He is a Senior Fellow and Adjunct Professor with Northwestern University’s Kellogg Executive Leadership Institute and a member of the advisory boards of the Australian American Leadership Dialogue, Auburn University’s McCrary Institute for Cyber and Critical Infrastructure Security, and Sandia National Laboratory’s National Security Programs Division. He is also a member of the United States Naval Institute Board of Directors and works with the Joint Staff and National Defense University in the mentoring and professional development of DoD Flag and General officers.
9:55 AM – 10:10 AM
10:10 AM – 10:20 AM
10:20 AM – 11:00 AM
Expert Panel: Building a Cyber-Resilient Scotland
A cross-sector panel of senior leaders examines how industry and government are exploring shared approaches to threat intelligence, incident response, supply chain security and protecting critical national infrastructure
Jessica Amery, Global Head of Security Operations,
Weir Group
Zibby Kwecka, Chief Information Security Officer,
Arnold Clark
Dr Zibby Kwecka, FCIIS, is the Chief Information Security Officer at Arnold Clark, one of Europe’s largest independently owned automotive retailers, where he leads enterprise scale security across a fast-moving digital landscape.
Previously Head of Information Security at Heineken UK and a vCISO to major brands, Zibby brings a rare blend of hands-on technical experience, deep expertise in cryptography and privacy, and executive leadership.
Over the years he has helped organisations in banking, manufacturing, retail, and the public sector strengthen their security postures, simplify complex environments, and embed resilience into day-to-day operations. Known for driving clear, outcome focused security conversations at all levels of the organisation, Zibby also works closely with industry and academia to advance cyber, privacy, and digital business resilience.
Senior Representative, National Cyber Security Centre
11:00 AM – 11:25 AM
Networking & Refreshments
23 February 2027 | Session Two: Industry Masterclasses
11:25 AM – 11:55 AM
Securing the NHS: Resilience at Scale
Protecting patient data, clinical systems and medical devices across health and social care
11:25 AM – 11:55 AM
Next-Generation SOC
How AI and automation are transforming security operations centre capabilities in the public sector
11:25 AM – 11:55 AM
Ransomware Preparedness & Recovery
Practical playbooks for detection, response and restoring public services after an attack
11:55 AM – 12:05 PM
23 February 2027 | Session Three: Industry Masterclasses
12:05 PM – 12:35 PM
Zero Trust in Practice
Implementing zero trust architectures in complex, legacy-heavy public sector environments
12:05 PM – 12:35 PM
Cyber Governance & Compliance
Navigating DSPT, CAF, NIS2 and Scottish Government security standards
12:05 PM – 12:35 PM
Supply Chain & Third-Party Risk
Extending cyber assurance beyond the organisation to suppliers, partners and shared services
12:35 PM – 1:30 PM
23 February 2027 | Session Four: Leadership Streams
1:30 PM – 2:50 PM
Security Operations, Threat Intelligence & Incident Response
Building detection, response and recovery capabilities fit for the public sector
Maggie Titmuss MBE, (Chair),
National Cyber Resilience Advisory Board
Maggie is an extremely experienced and respected Leader, Board Chair and Advisor. She worked within national law enforcement for over 30 years and then a further 5 years in the Finance sector. Her last position was Director Intelligence and Incident Response at Lloyds Banking Group. She combines that unique blend of a senior private sector career with the highest level of international law enforcement management.
Within her current portfolio she chairs the Scottish Government’s National Cyber Resilience Advisory Board and, in 2025, was appointed as the Board Chair at Cyacomb, an Edinburgh based digital forensics company. Cyacomb’s technology quickly and thoroughly scans digital devices for known harmful content and enables law enforcement agencies worldwide to detect evidence of child sexual abuse.
Maggie is also a strong advocate for new and emerging sectors and skills. She is a mentor and advocate for promoting diversity in cyber skills.
Declan Doyle, Incident Management Lead,
Scottish Cyber Coordination Centre (SC3)
Declan Doyle is the Incident Management Lead at the Scottish Cyber Coordination Centre (SC3), where he helps strengthen cyber resilience across Scotland’s Public Sector by leading and coordinating responses to cyber incidents and supporting effective recovery.
He was previously a Senior Information and Cyber Security Officer at Social Security Scotland, responsible for ensuring that the products, services, and solutions used to facilitate and deliver benefits to the people of Scotland were secure and resilient to cyber attacks. Before this, Declan was Head of Ethical Hacking & Professional Services at the Cyber and Fraud Centre – Scotland, where he delivered a wide range of cyber services and support, managed a cohort of ethical hackers, and focused on embedding robust cyber security measures and a positive security culture across organisations.
Alongside his role, Declan’s commitment to the future of the field is demonstrated by his active mentoring of Scotland’s emerging cyber security professionals, underscoring his passion for fostering STEM skills and bolstering national digital resilience.
DI Derek Laird, Cybercrime Investigations Unit,
Police Scotland
Derek has almost 20 years of police service working in a variety of roles from frontline policing in the East-End of Glasgow through to Specialist National Departments. Having a significant amount of service in national intelligence and investigatory roles including online child protection investigations.
Derek currently leads three cybercrime departments including Cyber Investigations for the West of Scotland. With a passion for training, Derek has supported the Scottish Police College to develop better training for police to get the best outcomes for victims of cyber enable and dependant crimes.
1:30 PM – 2:50 PM
Secure by Design
Practical journeys to building trusted digital services in government, health and local authority environments
Keith McDevitt, Cyber Exercising Lead,
Scottish Government
Following a 32 year career in policing which included leading cyber investigations in 2013 Keith joined the Scottish Government to support the development of cyber policy and strategy. In November 2015 the Scottish Government launched Safe, Secure, Prosperous a Cyber Strategy for Scotland which was followed in 2021 by The Strategic Framework for a Cyber Resilient Scotland.
Keith was responsible for establishing the Cyber Scotland Partnership a collaborative leadership approach to focus efforts on improving cyber resilience across Scotland. Keith is the Response Lead within the newly formed Scottish Cyber Co-ordination Centre (SC3), a collaborative function supporting combatting the accelerating threat of cyber attack to Scotland.
1:30 PM – 2:50 PM
AI & Cyber Security
Harnessing AI to strengthen defences while managing the risks AI-powered attacks introduce
Scott Barnett, Chief Information & Security Officer,
Public Services Delivery Scotland
From the public to the private sectors and back again, Scott has worked in information and cyber security for over 20 years. Having held CISO positions in the private sector, he joined NHS NSS in 2020 and leads the mission to deliver a world class cyber security operations capability for Scotland's Health Sector. He is excited by the opportunities that new technologies and ways of working bring to society and an advocate of cohesive security strategies to exploit these opportunities safely.
2:50 PM – 3:10 PM
Networking & Refreshments
23 February 2027 | Session Five: Leadership Streams
3:10 PM – 4:30 PM
Cyber Workforce, Culture & Wellbeing
building security culture and retaining cyber talent in the public sector
Scott Hunter, Education Officer,
Education Scotland
Scott Hunter Education Officer with responsibility for Cyber Resilience and Internet Safety at Education Scotland. Scott is multi awarding winning teacher who has over 20 years' experience of working and supporting the growth of cyber security education in the Scottish education eco system. Scott has been involved in the development of the Cyber Resilience and Internet Safety curriculum and resources. These resources can be found on the digilearnscot website and for the past three years he has been leading the National Cyber Security Centre NCSC CyberFirst programme in Scotland. This work has enabled us to establish a link between the setting up of devices and accounts to reducing the harms young people face while using social media. As part of this work Education Scotland commissioned a literature review from Glasgow University to establish most effective way to teach young people about risk.
3:10 PM – 4:30 PM
Cyber Governance, Risk & Supply Chain Assurance
Board-level accountability, risk frameworks, audit readiness and supply chain assurance for public sector leaders
David Ritchie, Chief Information Security Officer,
Digital Office for Scottish Local Government
David is the CISO for the Digital Office for Scottish Local Government. The Digital Office provides digital transformation services to all Scottish Local Authorities including advice and support for cyber security.
David has a 27-year career in IT and has worked in the public sector for 18 years. He has worked in a variety of roles in including programmer, support engineer, administrator, and digital transformation as well as cyber security.
His goal is to support Local Government and the public sector in general to transform into secure digital organisations fit for the future that can provide the vital services that Scottish communities rely on from their local councils.
3:10 PM – 4:30 PM
Innovation & Emerging Technology
Quantum-safe cryptography, digital identity, secure-by-design and the next generation of public sector cyber innovation
Professor Bill Buchanan OBE, Professor of Applied Cryptography,
Edinburgh Napier University
William (Bill) J Buchanan OBE FRSE is a Professor of Applied Cryptography in the School of Computing, Edinburgh and the Built Environment at Edinburgh Napier University. He is a Fellow of the BCS and a Principal Fellow of the HEA. Bill was appointed an Officer of the Order of the British Empire (OBE) in the 2017 Birthday Honours for services to cybersecurity, and, in 2024, he was appointed as a Fellow of the Royal Society of Edinburgh (FRSE). His social media tagline reflects his strong belief in changing the world for the better: "A Serial Innovator. An Old World Breaker. A New World Creator." Bill also has a strong belief in the power of education and in supporting innovation from every angle and currently leads the Blockpass ID Lab and the Centre for Cybersecurity, IoT and Cyberphysical. Bill works in the areas of cryptography, blockchain, trust and digital identity. He has one of the most extensive cryptography sites in the World (asecuritysite.com), and is involved in many areas of novel research and teaching. He has published over 30 academic books and over 450 academic research papers. Along with this, Bill’s work has led to many areas of impact, including a number of highly successful spin-out companies (including Zonefox, Symphonic Software and Cyan Forensics), along with awards for excellence in knowledge transfer and for teaching. He recently received an ”Outstanding Contribution to Knowledge Exchange” award and was included in the FutureScot "50 Scottish Tech People Who Are Changing The World”, along with being a regular keynote speaker at a range of conferences. Bill’s true academic passion is building, analysing and breaking cryptographic methods.
4:30 PM