2026 will be a reality check for companies.
NIS2 and the Cyber Resilience Act will be put into practice, and new European regulations will reshape responsibilities and investment decisions. At the same time, AI, geopolitical dependencies, and attacks on critical digital infrastructure will exacerbate the security situation.
At the Internet Security Days @ it-sa 2026, we will therefore bring together those who shape, implement, and are responsible for these changes:
- Decision-makers from companies,
- Leading cybersecurity experts, and
- High-ranking representatives from politics and EU institutions.
For the first time, the eco Association’s established cybersecurity conference will take place right in the heart of it-sa, Europe’s leading trade fair for IT security.
In doing so, we’re bringing together two worlds in a single day: the breadth and dynamism of the trade show with the depth of a curated executive conference.
What do new regulations mean specifically for your organization?Where do you need to invest now?
Which technologies and architectures will be crucial for resilience?And what really works in practice?
Six thematically interconnected sessions will address precisely these questions – ranging from regulation, liability, and market access to resilient networks, the cloud, and data centers, all the way to secure AI, email security, and defending against DNS abuse.
No endless debates about principles – just concrete experiences, real-world incident cases, and insights from people who are responsible for cybersecurity on a daily basis. So that at the end of the day, you’re not only better informed but also better equipped to make clear decisions.
For strategy. For investments. For governance. And for when the worst happens.


