Horizon3.ai

Decoding the ECB’s AI Cyber Mandate for Banks

Turning supervisory concern into a credible cyber action plan


Decoding the ECB’s AI Cyber Mandate for Banks

Thursday, July 30 | 10am BST / 11am CEST

Ignite Growth

Thursday, July 30th

Featured Guest Speaker:

Yves Mersch, Former ECB Executive Board Member

Featured Guest Speaker:

Yves Mersch, Former ECB Executive Board Member

The European Central Bank (ECB) 7 July 2026 warning has turned a growing security concern into a board-level, time-bound issue for banking institutions.


Frontier AI is compressing the gap between vulnerability discovery and exploitation from weeks to hours, and banks must assess their exposure now and submit a concrete action plan to their Joint Supervisory Team by 31 October 2026.


Between the urgency, the vulnerability noise, and the flood of AI claims, many teams are left trying to answer 3 practical questions:


  1. What is the regulator actually worried about?
  2. What should a credible action plan include?
  3. How do you prove your resilience against the AI-enabled attacks?


In this session, Horizon3.ai is joined by Yves Mersch, former Member of the ECB Executive Board and the ECB’s longest-serving Governing Council member. Drawing on his experience in European central banking, financial stability, and supervisory governance, Mersch will put the directive in its broader regulatory and supervisory context.


Together, we will explore how banks may be expected to demonstrate ownership, preparedness, and credible oversight in response to AI-accelerated cyber risk.


You'll learn how to focus on exploitable risk, where active defense and deception fit, and how to generate the evidence that proves your resilience against AI-driven attacks — before the clock runs out on 31 October. 

Key Takeaways:

  • Why the ECB now treats AI‑driven cyber risk as a resilience and governance issue
  • What a credible bank response and action plan must include
  • How to operationalise readiness using validated exposure, control effectiveness, and defensible evidence

Don’t miss out:

The deadline is fixed, and the window to build a defensible, evidence-backed response is narrow.


Register now to hear how regulated institutions can recalibrate their approach to operational risk and move from advisory language to practical action before the 31 October deadline.


***Attend live and receive an attendance certificate to be used towards CPE credits. Can’t join live? Register and we’ll send the recording.***

SPEAKERS

Keynote Speaker Headline

Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat. Duis aute irure dolor in reprehenderit in voluptate.

Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat. Duis aute irure dolor in reprehenderit in voluptate

Agenda

List of Services

Agenda

Join Us for Decoding the ECB’s AI Cyber Mandate for Banks

Horizon3.ai