IAPP Privacy. Security. Risk. + AI Governance Global 2026
Seattle
6-9 October
Conference
8-9 Oct.
Training
6-7 Oct.
Workshops
7 Oct.
Cybersecurity Law in the Age of AI – Full Day Workshop
Wednesday, 7 Oct.
09:00 - 17:00 PDT
Intermediate level
Sophisticated adversaries. National security imperatives layered on top of data protection responsibilities. Overlapping incident disclosure requirements. Active enforcement by states. And now, a Brussels effect. Cybersecurity law is evolving at a remarkable pace. Increasingly complex legal obligations and ever-growing expectations for compliance and governance demand the attention not just of lawyers but also of professionals in more and more functions within an ever-widening range of institutions. The rapid adoption of artificial intelligence compounds the challenge. This day-long workshop will draw on the pragmatic insights of leading practitioners to outline approaches to these and other cybersecurity law challenges in the AI era. Topics will include AI and cybersecurity, focused on supply chain risk management and the contract negotiations around security that occur between developers and adopters. Speakers will address compliance with the daunting array of EU laws, in light of emerging guidance; compliance with the Department of Justice Data Security program, limiting trans-border flows of U.S. person data; the mechanics of incident response, and the likelihood of new incident reporting requirements under CIRCIA.
What you will learn:
- How to assemble and prepare a cross-disciplinary team ready to respond to the crisis of a ransomware attack or other incident.
- How to comply with overlapping data breach notice and incident reporting requirements.
- What steps you should take to reassess trans-border employment and vendor relationships to comply with the DOJ Data Security Program.
- How to probe the security practices of AI developers and what to expect in service agreement negotiations.
- How to navigate the complex and detailed requirements of EU cybersecurity law.
Additional registration fee required.
Featured in this session

Megan Brown
Co-Chair, Privacy, Cyber and Data Governance
Wiley Rein

John Carlin
Partner and Practice Chair
Paul Weiss

James Dempsey
Lecturer, UC Berkeley Law; Managing Director, Cybersecurity Law Center
IAPP

Natallia Karniyevich
Partner, Cybersecurity
McDermott Will & Schulte

Alexandra Laks
AIGP, CIPP/US
Director, Data and Privacy
Airwallex

Audrey Paquet
Counsel
Paul Weiss