Nation-state intrusions are reshaping the threat landscape, targeting critical infrastructure, supply chains, and trusted technology pathways with speed, scale, and precision. Adversaries increasingly exploit identity, cloud services, edge devices, and third-party relationships to gain access, persist, and move laterally while blending into normal operations.
This panel brings together a seasoned Mandiant incident responder, a deputy CISO from a major critical infrastructure organization, and an FBI veteran with deep experience investigating national security cyber matters, moderated by outside counsel specializing in cybersecurity. The discussion focuses on frontline lessons from complex intrusions, including attacker TTPs, identity and cloud evasion, rapid exploitation of vulnerabilities, and cross-domain movement across enterprise environments.
Panelists will translate these insights into actionable strategies, including how to shift from reactive defense to rapid containment, how to operationalize resilience through testing and preparedness, and how to align incident response with governance, legal obligations, and board-level decision-making. The session will also address crisis lifecycle management, coordination with government and law enforcement, and the steps organizations can take to sustain operations and recover quickly. Attendees will leave with practical approaches to strengthen intelligence-led defense, resilience, and cyber governance.