CS4CA: Cyber Security Summit APAC (8th Annual) & APAC Cyber Summit (3rd Edition)
The CS4CA: Cyber Security Summit APAC, now in its eighth year, and the APAC Cyber Summit, holding its third edition, convene in SGP. This joint event serves as a critical platform for senior IT and OT security leaders to engage in discussions centered on cyber-resilience and the fortification of industrial systems across the broader Asia-Pacific region. The gathering aims to foster collaboration and knowledge exchange among key stakeholders in the cybersecurity domain.
Committees & topics
Topics
Achieving Harmony: Developing Short- and Long-Term OT Strategies Β· Securing Success: Making OT Security a Strategic Business Priority Β· Lasting Legacies: Managing Unique Weak Points and Legacy Systems Β· Protecting the Gateway: Mastering Third-Party Access in OT Security Β· Building on the Foundations: Navigating Digital Transformation with a Focus on OT Risks Β· Fortifying the Future: Enhancing Cyber Security Regulation for Greater Resilience Β· Securing Success: Making IT Security a Strategic Business Priority Β· Quantifying Security: Measuring, Communicating and Tackling Risk
Why it matters
The convergence of these two significant cybersecurity events underscores the escalating importance of robust cyber defenses in the Asia-Pacific region. As digital transformation accelerates, so too do the sophistication and frequency of cyber threats targeting both information technology (IT) and operational technology (OT) infrastructures. The discussions at this summit are vital for shaping regional cybersecurity strategies and ensuring the continuity of critical services and industries.
Cyber-resilience, a core theme of the event, is not merely about preventing attacks but also about an organization's ability to recover and adapt swiftly in the face of successful breaches. For nations like JPN, AUS, KOR, IND, and CHN, which are deeply integrated into the global digital economy, maintaining high levels of cyber-resilience is paramount to national security and economic stability. The insights shared and networks formed at this event contribute directly to strengthening these capabilities across the region.
Furthermore, the focus on industrial fortification highlights the unique vulnerabilities of critical infrastructure sectors to cyberattacks. These sectors, ranging from energy and manufacturing to transportation, are increasingly reliant on interconnected digital systems. Protecting these systems from disruption is a complex challenge that requires a multi-faceted approach, involving advanced technologies, skilled personnel, and international cooperation. The summit provides a forum for leaders to address these specific challenges and develop actionable solutions.
How to prepare
Delegates preparing for this event should focus on understanding the current threat landscape specific to the Asia-Pacific region, particularly concerning IT and OT environments. Familiarity with recent high-profile cyber incidents and their implications for various sectors will be beneficial. Reviewing concepts related to adaptive cyber defense and cyber confidence-building measures will provide a strong foundation for engaging in discussions.
Effective participation will also require an understanding of stakeholder dynamics in cybersecurity. Consider applying lessons from topics such as "what is stakeholder mapping?" and "stakeholder workshop" to identify key players and their interests within the regional cybersecurity ecosystem. This will enable more targeted and impactful contributions to discussions on collaborative defense strategies and policy development. Additionally, exploring "engagement strategies" can help in maximizing networking opportunities and fostering meaningful connections with other senior leaders.
Given the international nature of the attendees, an appreciation for diverse national approaches to cybersecurity governance and regulation will be advantageous. While the event is held in SGP, perspectives from countries like USA, DEU, and GBR, which often lead in cybersecurity innovation and policy, may also be relevant for comparative analysis. Understanding these varied viewpoints can enrich discussions on best practices and potential regional standards.
Country perspectives
Where the most-relevant 6 countries stand on the core issues in play. Click through for the full country profile.
Topics & background
The background behind each topic and the actors that shape it.
Achieving Harmony: Developing Short- and Long-Term OT Strategies
Key players
SingaporeRegional benchmark setter through CSA and the Cybersecurity Code of Practice for CII.
JapanMajor industrial economy advancing METI-led OT security guidance for manufacturing and energy.
AustraliaOperator of the SOCI Act regime mandating risk management programs for critical infrastructure.
South KoreaHeavy industry and semiconductor hub driving K-ICS and KISA OT security standards.
United StatesSource of widely adopted frameworks (NIST 800-82, CISA ICS advisories) influencing APAC practice.
Securing Success: Making OT Security a Strategic Business Priority
Key players
AustraliaPioneer of director-level accountability for critical infrastructure cyber risk under SOCI.
SingaporeDriver of sectoral CII governance through CSA and the Cyber Security Agency.
JapanIndustrial powerhouse linking economic security policy to OT investment imperatives.
United StatesSets global tone via SEC disclosure rules, CISA guidance and TSA pipeline directives.
South KoreaConcentration of chaebol-led manufacturing where board-level OT risk governance is maturing.
Lasting Legacies: Managing Unique Weak Points and Legacy Systems
Key players
JapanOperator of extensive legacy manufacturing and utility infrastructure facing modernisation pressure.
GermanyHome of major OT OEMs (Siemens) whose lifecycle decisions shape APAC operator risk.
United StatesOrigin of dominant control system vendors (Rockwell, Honeywell) and CISA legacy advisories.
IndiaRapidly expanding power and water sectors balancing legacy assets with digital rollout.
ChinaMajor OT equipment manufacturer and operator of extensive industrial legacy estates.
Protecting the Gateway: Mastering Third-Party Access in OT Security
Key players
United StatesSets supply chain norms through EO 14028, SBOM mandates and CISA secure-by-design guidance.
SingaporeEmbeds third-party risk obligations into CII operator requirements via CCoP 2.0.
JapanScreens foreign vendor access under the Economic Security Promotion Act.
AustraliaMandates supply chain hazard management under SOCI critical infrastructure rules.
GermanyMajor OT vendor jurisdiction shaping global remote-support and SBOM practices.
Building on the Foundations: Navigating Digital Transformation with a Focus on OT Risks
Key players
ChinaLargest industrial digitisation programme through Made in China 2025 and smart manufacturing initiatives.
JapanSociety 5.0 vision tightly couples OT, IoT and AI across critical sectors.
South KoreaDigital New Deal and smart factory rollouts in semiconductor and automotive industries.
SingaporeSmart Nation model integrating IoT and OT across utilities, ports and urban systems.
AustraliaModern Manufacturing Strategy linking industrial transformation to SOCI security obligations.
Fortifying the Future: Enhancing Cyber Security Regulation for Greater Resilience
Key players
SingaporeRegional regulatory leader through the Cybersecurity Act and CSA sectoral oversight.
AustraliaOperates one of APAC's most comprehensive critical infrastructure regimes via SOCI and the 2024 Cyber Security Act.
JapanAdvancing economic security and active cyber defence legislation.
ChinaArchitect of an extensive cyber, data and personal information regulatory stack with extraterritorial reach.
IndiaImposes rapid incident reporting via CERT-In and is operationalising the DPDP Act.
United StatesShapes global baselines through CIRCIA, SEC disclosure and TSA OT directives.
Securing Success: Making IT Security a Strategic Business Priority
Key players
SingaporeSets financial sector benchmarks through MAS TRM guidelines and CSA national strategy.
AustraliaDrives board accountability via APRA prudential standards and the 2023β2030 Cyber Security Strategy.
JapanAdvancing FSA and METI guidance linking cyber to corporate governance and economic security.
United StatesInfluences global practice through SEC disclosure rules and NIST frameworks.
South KoreaStrengthens corporate cyber obligations under the PIPA regime and KISA oversight.
Quantifying Security: Measuring, Communicating and Tackling Risk
Key players
United StatesAnchors global CRQ practice via NIST, SEC disclosure rules and the FAIR Institute.
AustraliaEmbeds cyber risk quantification into prudential regulation through APRA CPS 230 and CPS 234.
SingaporeMAS-driven scenario stress testing shapes financial sector quantification practice.
United KingdomBank of England and NCSC influence APAC quantification methodologies for systemic cyber risk.
JapanFSA and BOJ advancing cyber stress testing and quantitative resilience assessments.
Resources
News, lessons, and country profiles to prep for CS4CA: Cyber Security Summit APAC (8th Annual) & APAC Cyber Summit (3rd Edition).
Lessons
Bite-sized lessons to build the basics
Courses
Guided courses that go deeper on the topic
The states in play, with the data that shapes their stance
Related conferences
By committee
- Achieving Harmony: Developing Short- and Long-Term OT Strategies
- Securing Success: Making OT Security a Strategic Business Priority
- Lasting Legacies: Managing Unique Weak Points and Legacy Systems
- Protecting the Gateway: Mastering Third-Party Access in OT Security
- Building on the Foundations: Navigating Digital Transformation with a Focus on OT Risks
- Fortifying the Future: Enhancing Cyber Security Regulation for Greater Resilience
- Securing Success: Making IT Security a Strategic Business Priority
- Quantifying Security: Measuring, Communicating and Tackling Risk