Skip to main content

60mins Day 3 – GISEC 2026

Page 1

GISEC 60MINS 2026 PARTNERS

Show dates: 16–18 September 2026 Dubai Exhibition Centre (DEC), Expo City, Dubai

Securing new era of AI identities

Bulwark charts cybersecurity priorities for AI era Jose Menacherry, Managing Director, Bulwark Technologies, discusses responsible AI adoption, evolving enterprise security requirements, and the growing urgency around post-quantum readiness. Rapid AI adoption and emerging risks such as post-quantum threats are adding new layers of complexity to the cybersecurity landscape, placing greater pressure on enterprises to balance innovation with security, governance and measurable business outcomes. Bulwark Technologies has spent 27 years building its cybersecurity presence across the region, while adapting its portfolio and partner ecosystem to address evolving enterprise requirements. Jose Menacherry, Managing Director, Bulwark Technologies, discussed with Sandhya D’Mello, Technology Editor, CPI Media Group, at GISEC Global 2026, the company’s growth journey; the changing cybersecurity landscape;

CONTINUED ON PAGE 3

OPSWAT shifts critical infrastructure security towards prevention

Kamel Heus, Vice President of Sales-MEA, Saviynt, discusses how identity security, AI governance, and real-time access controls are helping enterprises securely manage AI agents and non-human identities.

AI adoption is accelerating across the Middle East, bringing a new generation of identities into enterprise environments as AI agents and other nonhuman identities gain greater autonomy. This shift is placing identity security, governance and real-time access control at the centre of enterprise cybersecurity strategies. In an interview with

TahawulTech.com at GISEC Global 2026, Kamel Heus, Vice President of Sales-MEA, Saviynt, discusses the company’s Zuma AI Identity Security platform, the growing role of identity as a control plane for AI, the convergence of identity governance and privileged access, and Saviynt’s expanding presence across the

Middle East. What will Saviynt showcase at GISEC Global 2026, and how do these capabilities address the Middle East’s identity security priorities? We are showcasing two key solutions: Zuma, our AI Identity Security

CONTINUED ON PAGE 4

Strengthening cyber resilience in an AI-driven world Mo Mobasseri, CEO of QBS Software META & Eurasia, discusses

Rami Hazime, Regional Sales Director for Gulf and Levant at evolving cyber threats, AI security and QBS Software’s strategy OPSWAT, explains why IT-OT convergence, expanding attack for strengthening cyber resilience across regional enterprises. vectors and AI-driven threats require UAE organisations to prioritise prevention over detection and response.

The UAE’s rapid adoption of AI, automation and connected infrastructure is expanding the cyberattack surface across critical sectors. Growing convergence between IT and operational technology (OT) is also challenging traditional perimeter-based security www.tahawultech.com

and the long-held assumption that sensitive environments can remain fully isolated. Rami Hazime, Regional Sales Director for Gulf and Levant at OPSWAT, discussed with Tahawultech.com the complexities of protecting connected critical

infrastructure; importance of local cybersecurity expertise; and why organisations must shift from detecting threats to preventing malicious files and data from entering trusted environments.

CONTINUED ON PAGE 3

AI is rapidly reshaping both cyber threats and defence strategies; enterprises are under growing pressure to secure data, identities and emerging AI environments. QBS Software is highlighting technologies

designed to address evolving cybersecurity requirements while strengthening its vendor and partner ecosystem across META and Eurasia at GISEC Global 2026. In an interview with Tahawultech.com, Mo Mobasseri, CEO of

QBS Software META & Eurasia, discusses QBS Software’s cybersecurity strategy, emerging AI-related risks, its expanding technology portfolio, and the CONTINUED ON PAGE 5

@tahawultech


CONTINUED FROM PAGE 1

Bulwark.... responsible AI adoption; the importance of human oversight; and why organisations need to begin preparing for the transition to postquantum cryptography. Bulwark’s journey spans almost three decades, beginning in 1999. Having witnessed the region’s digital transformation, how does it feel to see Bulwark’s presence and growth at GISEC Global 2026? We had a very humble beginning in 1999, starting as a two-person company. It has now been 27 years, and we have grown gradually by adding new technologies, vendors, partners, and, of course, customers. Our growth has always been stage-by-stage rather than sudden. Today, we have offices across the region, including Saudi Arabia, as well as operations in India. We continue to explore opportunities to expand further. Over the years, we have built strong relationships with our channel partners and developed a portfolio of

CONTINUED FROM PAGE 1

OPSWAT.... What distinguishes the UAE’s cybersecurity landscape, and where do the greatest challenges remain? The UAE’s defining characteristic is its pace of development. Over recent years, the country has invested heavily in AI, automation and connected infrastructure while building one of the region’s largest concentrations of critical infrastructure. Rapid digitalisation is also expanding the attack surface. More data and files are moving between interconnected systems, creating additional threat vectors as the digital economy grows. A major challenge is ensuring that data, files and connected systems can move securely between information technology

more than 30 vendors covering different areas of cybersecurity. Alongside technologies, we also provide services and solutions that enable our partners to address customers’ evolving requirements. The role of distributors and resellers has changed significantly. How are enterprises balancing the AI hype with existing technology investments and the need to deliver measurable business outcomes? Cybersecurity is constantly evolving. When we started, cybersecurity itself was a relatively niche area, but the landscape has changed significantly over the years. New threats continue to emerge, and organisations need to adapt accordingly. There is no single cybersecurity solution that can address every requirement. Organisations may need multiple technologies that integrate with their existing infrastructure and security systems. Cybersecurity is a continuous process rather than a onetime investment. Requirements also differ from one organisation to another. Businesses

(IT) and operational technology (OT) environments without introducing threats into critical infrastructure. OPSWAT has operated in the UAE for more than a decade and has witnessed the country’s significant investment in cybersecurity. The issue is not a lack of investment, but the growing complexity of securing increasingly connected environments. Critical infrastructure is no longer isolated, making perimeter-based protection insufficient. Organisations must examine how data and files enter their environments and prevent threats from passing through those channels. Why is a strong local presence important for cybersecurity vendors operating in the UAE? Our experience has shown that strong

need to understand what they are protecting, the risks they face, and the outcomes they expect. As a distribution company, our role is to work closely with partners and enterprises to understand those requirements. Based on that understanding, we can bring together multiple technologies and solutions to address specific business and security needs. With no one-size-fitsall approach, what advice would you give enterprises navigating AI, cybersecurity disruption and growing pressure to demonstrate ROI? AI has become one of the biggest technology developments of the past three or four years. Many companies are introducing AI-based products and tools, while organisations may already have AI applications operating within their environments.

Enterprises therefore need to establish a proper balance between what they expect from AI and what AI should be permitted to do. Organisations should define clear boundaries and policies governing how AI technologies are deployed and used. Human involvement also remains important, particularly when AI is involved in critical decisions. Organisations need to determine where automation is appropriate and where human intervention and oversight are necessary. Before deploying AI, businesses should understand what they are getting into, what they want to achieve, and how far they are prepared to allow AI systems to operate autonomously. What will be Bulwark’s key areas of focus in 2027? AI will be one of our core focus areas, particularly AI security, security for

Businesses need to assess where cryptography is being used, determine which systems may be vulnerable, and establish priorities for remediation”.

technology alone is not enough. Some companies enter the market with effective solutions but lack local technical expertise, customer support and an established presence. Such companies may achieve early success but often struggle to sustain it over the long term. The UAE is more than a sales market for OPSWAT. It is a country where innovation is taking place at significant scale, particularly across critical infrastructure. We are therefore investing in local technical capabilities and expertise to remain close to our customers. Our ambition is not simply to operate as a technology vendor. We want to serve as a long-term cybersecurity partner to government entities and organisations responsible for protecting the critical infrastructure on which the country depends.

Why is the traditional air-gap approach no longer sufficient for protecting critical infrastructure? The convergence of IT and OT, combined with increasingly digital supply chains, has challenged the assumption that critical infrastructure can remain fully isolated. A decade ago, many organisations viewed isolation as the primary means of protection, with no data entering or leaving sensitive environments. Modern operations

We are therefore investing in local technical capabilities and expertise to remain close to our customers”.

AI, and the secure use of AI technologies. Another major area is postquantum cryptography. This is becoming increasingly important because of the potential future impact of quantum computing on existing encryption technologies. Organisations also need to consider the “harvest now, decrypt later” threat. Information stolen today may remain valuable for many years. Even if attackers cannot decrypt that information now, future quantum capabilities could potentially allow them to access it. Companies therefore need to begin preparing for postquantum cryptography now. Migration cannot be treated as a onetime project; it is a process involving multiple stages. The first step is understanding the organisation’s existing cryptographic environment and identifying potential exposure. Businesses need to assess where cryptography is being used, determine which systems may be vulnerable, and establish priorities for remediation. From there, organisations can begin moving towards post-quantumready environments. We are working with

multiple vendors and technologies that support cryptographic discovery, assessment, PKI, certificates, data protection and other elements required for this transition.

make complete isolation impractical. Oil and gas facilities require information to move between IT and OT systems, while firmware updates and security patches must reach operational environments. Defence and intelligence organisations may also need to transfer information, including satellite imagery, from less sensitive networks into highly restricted systems. Cybersecurity must therefore evolve beyond detecting and responding to threats. Organisations need preventive controls at every ingress point where data and files enter critical environments. Files should be inspected, audited and sanitised before being allowed into protected systems.

IT and OT convergence will continue, alongside greater connectivity between trusted and untrusted networks. Organisations that lead in the coming years will design their security architectures around this reality from the outset. Threats are becoming more sophisticated and difficult to identify, with AI contributing to their speed and complexity. Traditional security models focused primarily on protecting activity within the network will become increasingly inadequate. Future-ready organisations must operate on the assumption that malicious files or threats will attempt to enter their environments. Prevention will therefore become more important than relying solely on detection and response after a compromise has occurred.

How will critical infrastructure cybersecurity evolve over the next three to five years?

What is your message to the cybersecurity community at GISEC Global 2026? AI is clearly one of the biggest themes at GISEC Global 2026. Organisations need AI because of the speed at which businesses and cyber threats are evolving. Companies need to act faster, process more information and make decisions more efficiently, and AI can play an important role in enabling that. At the same time, organisations need to be careful about how AI is implemented. Governance, security and appropriate human oversight remain essential. AI is becoming increasingly important for organisations that want to remain competitive, but adoption must be balanced with a clear understanding of the associated risks. Businesses need to embrace AI while ensuring that the right controls, policies and security measures are in place.

GovTech Founder, CPIMEDIA GROUP Dominic De Sousa (1959-2015), Group Publishing Director Kausar Syed, Sales Director Sabita Miranda, Editors Sandhya D’Mello, Daniel Shepherd, Designer Prajith Payyapilly, Web Developer Adarsh Snehajan


CONTINUED FROM PAGE 1

Securing.... platform, and Saviynt Enterprise Identity Cloud. Zuma provides visibility into AI agents, manages their lifecycle and controls what agents are authorised to do at runtime. Enterprise Identity Cloud brings together identity governance, privileged access management, application access governance, identity security and posture management on a unified platform. With AI adoption accelerating across the Middle East, organisations need a different approach to securing AI agents. Unlike human identities, agents

are non-deterministic and can take different routes to achieve an objective. Runtime security helps ensure their actions remain aligned with their intended purpose. Why is identity becoming the control plane for secure enterprise AI adoption? Identity is the foundation of modern cybersecurity because it underpins every access decision and digital interaction. Assigning unique identities to AI agents and linking them to accountable human owners enables organisations to understand who or what is taking an action, enforce appropriate guardrails and manage agents throughout

their lifecycle. This makes identity a critical control plane for secure enterprise AI adoption. How does Zuma support the shift towards AI identity security and real-time authorisation for AI agents and non-human identities? Zuma addresses three critical areas: visibility, governance and access control. Visibility enables organisations to discover AI agents across their environments, while governance ensures agents are linked to accountable human owners and managed throughout their lifecycle. Runtime access control is particularly important because AI agents are non-deterministic and

can take unexpected routes to achieve an objective. For example, an agent without calendar access could retrieve meeting information through another agent with access to emails. Zuma evaluates such actions at runtime to determine whether they align with the agent’s intended purpose, an approach Saviynt calls Intent-Aware Runtime Authorisation (IARA). How is the convergence of identity governance, privileged access and AI governance changing enterprise security strategies? Traditionally, organisations used separate solutions for identity governance and privileged access

management. Our unified platform brings together IGA, privileged access management and application access governance, providing granular visibility across applications, including platforms such as SAP. This convergence strengthens visibility, governance and accountability across the identity landscape. How are regulatory requirements, data residency expectations and Saviynt’s regional expansion shaping its Middle East growth roadmap? The Middle East is one of the more advanced regions in cybersecurity regulation, with identity and access management central to

UAE Cyber Security Council and Fortinet advance National Cybersecurity Talent Development The program, launched under the Cyberani initiative, will support the development of homegrown cybersecurity talent and build momentum toward the planned UAE Cyber Center of Excellence. The UAE Cyber Security Council (CSC) and Fortinet, the global cybersecurity leader driving the convergence of networking and security, have announced the launch of a new cybersecurity internship program designed to help develop the next generation of Emirati cybersecurity professionals. The program combines structured cybersecurity training with hands-on experience, mentorship, and exposure to real-world security environments. The initiative marks a significant milestone in the ongoing collaboration between the UAE Cyber Security Council and Fortinet following the signing of a Memorandum of Understanding (MoU) earlier this year. The MoU outlined plans to collaborate on advancing national cybersecurity capabilities, supporting cybersecurity skills development, and exploring the establishment of a Center of Excellence in the UAE focused on threat intelligence, talent development, startup enablement, and policy collaboration. The internship program represents an important step toward developing

the talent pipeline that can support the UAE’s future cybersecurity ecosystem and the planned Center of Excellence. The first phase of the program will be delivered in partnership with a UAEbased university, providing selected students with opportunities to gain

We are helping build a pipeline of skilled local talent that can contribute to the UAE’s cybersecurity ecosystem today and support the planned Center of Excellence”. 4

@tahawultech

practical cybersecurity experience through structured learning, handson labs, technical training, and mentorship from Fortinet experts. Through the Fortinet Training Institute, participants will have the opportunity to earn the Fortinet NSE 4 FortiOS certification, which is often sought by employers looking for cybersecurity and network security professionals. The certification focuses on practical skills, including firewall policies, VPNs, authentication, routing, security profiles, and threat protection, alongside hands-on expertise with Fortinet

technologies. The program is expected to serve as a model for future collaborations with additional universities and educational institutions across the country. The program will be delivered as the first project of its kind under the UAE Cyber Security Council’s Cyberani Practical Training Initiative, of which Fortinet is a Technology and Cloud Computing Partner. Launched in collaboration with the UAE Ministry of Higher Education and Scientific Research, Cyberani aims to prepare and professionally equip university students for careers in cybersecurity

through practical training opportunities across government and industry, while aligning academic learning with the evolving needs of the cybersecurity sector. The announcement reflects the shared commitment of the UAE Cyber Security Council and Fortinet to advancing cybersecurity education, workforce development, and innovation across the UAE. By combining government leadership, academic excellence, and industry expertise, the initiative will help to develop a sustainable pipeline of cybersecurity professionals equipped

many requirements in markets such as Saudi Arabia and the UAE. Regulatory frameworks are strengthening cybersecurity decisionmaking and increasing awareness of identity security, while the market is also shifting beyond compliance towards business enablement. Saviynt has offices in Dubai and Riyadh and operates as a channel-first company, working closely with global and local system integrators, partners and distributors. Our focus is on raising awareness around identity security, bridging skills gaps and helping organisations pursue digital initiatives with confidence that identities and data remain protected.

to meet the UAE’s future cybersecurity needs. His Excellency Dr. Mohamed Hamad Al Kuwaiti, Head of Cyber Security for the UAE Government, said: “Developing a strong and sustainable national cybersecurity ecosystem starts with investing in the people who will shape and protect our digital future. Through initiatives such as Cyberani and our collaboration with Fortinet, we are creating practical pathways for Emirati university students to gain the knowledge, skills and real-world experience needed to build successful careers in cybersecurity. This partnership reflects the importance of bringing together government, industry and academia to develop national capabilities, foster innovation and ensure that our cybersecurity workforce is equipped to support the UAE’s ambitions for a secure and resilient digital future”. Alain Penel, Regional Vice President, Middle East, Türkiye and CIS at Fortinet said: “When we signed our memorandum of understanding with the UAE Cyber Security Council, we shared a vision of strengthening national cyber resilience not only through technology, but through people. This training program demonstrates that commitment in action. Participants will receive mentorship from cybersecurity professionals, develop practical skills aligned with industry needs, and build the career readiness needed to take their next steps in the cybersecurity field. We are helping build a pipeline of skilled local talent that can contribute to the UAE’s cybersecurity ecosystem today and support the planned Center of Excellence”. www.tahawultech.com


CONTINUED FROM PAGE 1

QBS’s.... importance of education, simulation, and partnerled implementation in building long-term cyber resilience. How would you describe the sentiment on the first day of GISEC Global 2026, and what is QBS showcasing at the event? The new venue has been a positive experience. We have great memories of Dubai World Trade Centre and will certainly miss it, but the new venue brings several advantages. One of the things I particularly like is that the major industry players are gathered together, while the event itself remains highly focused on cybersecurity. This gives us access to a broader and more relevant visitor base. QBS works with a large portfolio of technology publishers and vendors across EMEA, with some

relationships extending globally. At GISEC Global, we are showcasing solutions from several of our key technology vendors, including Exor Lab, Portnox, Vanta, and Fortra, among others. Our objective is to address the 18 CIS Controls through a comprehensive portfolio of technologies, helping customers strengthen their cybersecurity posture across multiple areas. How does QBS’s presence at GISEC Global align with its broader cybersecurity strategy for the region? QBS has two major areas of focus. One is our software delivery platform, which is a unique part of our business and has been developed over many years. Today, we have almost 12,000 publishers on the platform. Cybersecurity is also one of the strongest areas within the wider group. Globally, we participate in major

AI can help organisations improve productivity, performance and security, but people also need to understand how to use it responsibly and securely”.

cybersecurity events, including Infosecurity Europe in London, IT-SA in Germany, GISEC Global in the UAE, and Black Hat in Saudi Arabia. Our strategy is to maintain a strong presence at these industry platforms and represent the technologies within our portfolio. Our role is to ensure that our partners have access to strong technologies while helping our vendors establish the right market presence. What emerging cybersecurity threats or trends do you believe will have the greatest impact on enterprises in the Middle East and beyond? We are seeing two major areas of concern. The first is the traditional challenge of data security. Cybercriminals are becoming increasingly professional and are using more sophisticated technologies. Data security therefore continues to be a major challenge for organisations across the region because data is one of their most valuable assets. The second major area is AI. AI capabilities are becoming stronger every day, creating tremendous opportunities but also introducing new security

challenges. Organisations need greater visibility into how AI is being used, how much they are spending on it, and what security risks may emerge from its adoption. Our approach is to bring these two areas together by helping customers and partners strengthen traditional data security while also addressing the broader security implications associated with AI. What innovative technologies or solutions is QBS showcasing at GISEC Global 2026? We have a global agreement with AWS, which we are preparing to extend into the Middle East as the necessary arrangements are finalised. This is particularly interesting because many of our technology vendors will be available through the AWS platform, making it easier for partners and customers to access and acquire the solutions they require. We are also showcasing several emerging technologies at GISEC Global, including AIbased email security, security awareness through gamification, and advanced security operations technologies. Another important focus is AI security. Organisations

Ansen Technology showcases AI-native cybersecurity at GISEC Ansen Technology develops security solutions designed to protect governments, enterprises, critical infrastructure, and classified entities worldwide

Ansen Technology has participated in GISEC Global, showcasing its latest AI-native cybersecurity technologies and AI security solutions at one of the region’s leading www.tahawultech.com

cybersecurity exhibitions. At the exhibition, Ansen Technology engaged with cybersecurity professionals, industry leaders, government stakeholders, and

technology partners to demonstrate how AIdriven cybersecurity can transform cyber defence by enabling more intelligent threat detection, faster response, greater

security visibility, and stronger protection against increasingly sophisticated and rapidly evolving cyber threats. As organisations accelerate the adoption of artificial intelligence across their operations, AI security and AInative cybersecurity are becoming critical components of digital resilience. Organisations must not only leverage AI to strengthen their cybersecurity capabilities but also secure the AI models, applications, data, infrastructure, and environments that increasingly underpin the digital economy. Zheng Li, Co-founder, Group Vice President and Chief Product Officer (CPO) of Ansen Technology, noted that the evolution of AI is driving a fundamental transformation in cybersecurity, creating a new generation of AInative and AI-driven cyber

increasingly need to understand how to secure AI agents and ensure these systems do not introduce additional risks into their environments. How is QBS collaborating with governments and enterprises to strengthen cyber resilience across key economic sectors? Our approach begins with education. To support government entities and organisations, we first help people understand the cybersecurity challenges they face. For several years, we have run initiatives such as cyber escape rooms, including engagements with the UAE Cyber Security Council and other organisations. The second element involves workshops and practical exercises for people involved in business, technology management and implementation. These simulations help participants understand what can happen during a real-world cyberattack and what the potential consequences may be. The third element is technology. We do not simply provide products. We work to ensure that technologies are properly designed for the customer’s environment, implemented effectively through our partners and

defence capabilities. “By embedding intelligence across security operations, organisations can move beyond conventional approaches toward more adaptive, proactive, and automated protection that can identify and respond to increasingly sophisticated threats in real time,” he said. Zheng Li added: “AInative cybersecurity is not simply about applying AI to existing security tools; it represents a new approach to cyber defence, designed from the ground up to harness AI to strengthen security, resilience, and protection across increasingly complex digital environments”. Founded in response to the rising challenges in cybersecurity, Ansen Technology develops security solutions

supported over the long term. In some cases, resident engineers are also provided through our partners to support customer environments and help organisations maintain stronger cybersecurity capabilities over time. What message would you share with the global information security community about QBS’s vision for cybersecurity in 2026 and beyond? First, I would encourage the global cybersecurity community to experience GISEC Global and the opportunities within this region. It is an exciting market with considerable innovation taking place. AI also requires significantly greater attention. We are already seeing governments, including the United States and other countries, developing legislation and frameworks around AI. AI can help organisations improve productivity, performance and security, but people also need to understand how to use it responsibly and securely. Looking ahead, organisations will need to focus not only on how AI can help them, but also on how they can protect themselves against the new risks associated with AI.

designed to protect governments, enterprises, critical infrastructure, and classified entities worldwide. The company is increasingly focused on AI-driven cybersecurity and AI security, leveraging artificial intelligence to enhance cyber defence while addressing the emerging security risks associated with AI adoption. Ansen Technology’s participation at GISEC underscores its commitment to cybersecurity innovation and to supporting the development of a more intelligent, resilient, and secure digital ecosystem. It also reflects the company’s commitment to contributing to the UAE’s growing AI, cybersecurity, and technology ecosystem.

By embedding intelligence across security operations, organisations can move beyond conventional approaches toward more adaptive, proactive, and automated protection”.. @tahawultech

5


MaaS Security Whitepaper Launched by Huawei Cloud at GISEC 2026 Released at GISEC Global 2026 in Dubai, the whitepaper highlights a shared-responsibility model for driving end-to-end security as regional governments and enterprises fast-track AI adoption. Huawei recently launched its HUAWEI CLOUD MaaS Security White Paper at GISEC GLOBAL 2026, offering enterprises practical guidance on securing Model-as-aService (MaaS) platforms as AI adoption moves from pilot projects into core business operations. As governments and enterprises across the region accelerate AI adoption, organisations need to balance innovation

This whitepaper sets out Huawei Cloud’s approach to securing MaaS service”.

with data protection, accountability, and effective oversight. The whitepaper addresses these priorities through a shared responsibility model and security measures spanning the MaaS service lifecycle. Security, stability, and quality are Huawei Cloud’s top priorities. The whitepaper emphasizes that security must now cover the entire service chain, from computing infrastructure to Agent applications. Central to this framework is a sharedresponsibility model where Huawei Cloud secures the cloud and managed MaaS services, while clients take responsibility for the security of content they configure, upload, develop and consume on the MaaS platform. Built on this foundation,

the whitepaper sets out five areas of protection: data, model, content, application and operations security, and describes how Huawei embeds these into a DevSecOps pipeline that shifts security controls early into model and application development. This approach provides practical guidance for practitioners and regulators

on data protection and lifecycle management, robust access control for multi-tenant environments, and specialized security for models and Agents to defend against AI-specific risks. It further outlines a systematic regime for continuous monitoring and incident response, ensuring that AI governance remains proactive and traceable

throughout its operational life. Alan Qi, President of Huawei Cloud Middle East & Central Asia, commented: “The new digital order is changing the conventional norms of cybersecurity. As AI becomes embedded in critical operations across the region’s banks, government services and

Appknox powers mobile security for AI-first world Harshit Agarwal, Co-founder and CEO of Appknox, discusses AI-driven development, evolving mobile threats and why dedicated application security is becoming critical for digital-first enterprises. AI is accelerating application development, but the same technologies driving innovation are also giving attackers new ways to identify vulnerabilities and scale threats. For enterprises and governments across the Middle East, where mobile-first services are becoming central to digital transformation, securing applications throughout the development lifecycle is increasingly critical. At GISEC Global 2026, Harshit Agarwal, Cofounder and CEO of Appknox, discussed with Tahawul.com the changing mobile security landscape, the need to embed security into AI-driven development, Appknox’s regional partnership with Bulwark Technologies and the mobile application security priorities enterprises should consider as they prepare for 2027. How do you find GISEC Global 2026 compare to previous editions? We have been participating in GISEC since 2019 and it was one of our first major events in the region which gave us the opportunity to initiate conversations and

build relationships with partners. Over the years, those engagements have grown, making the event an important platform for us in the region. The energy is similar to what we have experienced at previous editions. GISEC has consistently been a strong platform for conversations with customers and partners. Our initial participation helped us establish relationships in the region, and those engagements have continued to develop over the years. What is Appknox showcasing at GISEC Global 2026? Appknox is an AI-native mobile application security platform that helps enterprises secure their mobile applications. We have been operating in the specialised domain of mobile security for several years. This year, we are specifically showcasing AI-driven capabilities that help companies secure applications within an AIled development process. The way applications are being built has changed significantly over the past year. Development cycles that previously took two

Security cannot be treated as an afterthought when applications are being built and released at this pace”. www.tahawultech.com

and organisations delivering digital services across sectors such as healthcare. What is Appknox’s relationship with Bulwark Technologies? Bulwark Technologies is our distributor in the region. We work with Bulwark and its partner ecosystem to reach customers and expand our presence across the market. We have been working with Bulwark for approximately three to four years, and this is our third GISEC together.

or three weeks can now be reduced to hours with the use of AI. Security assessments therefore also need to accelerate and become embedded within the development process. Security cannot sit outside the development lifecycle or be treated as an afterthought when applications are being built and released at this pace. The UAE and Saudi Arabia have become increasingly mobileand digital-first. Is mobile security keeping pace with this transformation? Over the past three to four years, we have seen a significant shift across countries such as the UAE and Saudi Arabia. Organisations now

have a much stronger understanding of mobile application security and recognise that this is an area that has not always been adequately covered by broader application security platforms. Mobile security remains a specialised domain, and that has opened significant opportunities for us to engage and work with organisations across the region. Governments are also pushing digital transformation aggressively, with mobile applications at the forefront of many services. Security around those applications therefore becomes extremely important. This has enabled us to work with government agencies, ministries

What are your top three recommendations for enterprises looking to strengthen mobile application security as AI accelerates both attack and defence? The first priority is to embed security into the development process. Development is becoming increasingly AI-driven, and the speed at which applications can now be built and released has increased dramatically. Security therefore has to become part of the development lifecycle rather than sitting outside it or being treated as an afterthought. Second, enterprises need to recognise that traditional full-stack application security platforms can have gaps when it comes to mobile security. Mobile application security has historically not received

enterprises, security must evolve beyond protecting infrastructure to governing the models and Agents built on top of it. This whitepaper sets out Huawei Cloud’s approach to securing MaaS services and the measures customers can take to protect their applications throughout the lifecycle”. The whitepaper also features a real-world case study on a financial institution that successfully implemented a multi-layer protection framework to secure intelligent claim settlement and internal workflows. As a Lead Strategic Partner at GISEC GLOBAL 2026, Huawei is showcasing this end-toend security architecture across cloud, network, and data. The full HUAWEI CLOUD MaaS Security White Paper is available for download at this link.

the same level of attention, despite the growing importance of mobile applications and the risks associated with them. Third, organisations should be willing to consider specialised technologies where necessary. Enterprises naturally want to reduce the complexity associated with managing multiple vendors, but mobile security is a specialised domain. Organisations need to evaluate whether their existing security technologies provide sufficient protection for mobile applications rather than assuming broader application security tools cover every requirement. What mobile application security trends should enterprises watch in 2027? Attackers now have access to the same AI capabilities as defenders, allowing threats to scale faster and become more sophisticated. Enterprises need to respond by embedding mobile security into their broader security strategy and equipping teams to operate at the same speed. Technologies such as RASP add an important layer of protection, but no single solution is sufficient. Mobile applications have distinct security requirements and often handle highly sensitive customer data. Relying solely on traditional web application security tools can leave critical gaps. Dedicated mobile application security is therefore becoming a strategic imperative as organisations accelerate digital and mobile-first initiatives.

@tahawultech

7


SAVIYNT

HALL 5 - P22 - P25

Maintaining business continuity with Commvault Yahya Kassab, Senior Director and GM: KSA & Gulf Commvault outlines cybersecurity best practices and the technology solutions on display at GISEC 2026 in this exclusive interview. What is Commvault showcasing at GISEC Global 2026? At GISEC Global 2026, we’re focused on how organisations can move beyond cyber protection towards true cyber resilience. We’ll showcase our integrated resilience, AI capabilities and ResOps approach, with a strong emphasis on recovery readiness, and highlight the regional initiatives that further strengthen preparedness and recovery. As the threat landscape grows more complex, recovery speed, AI-driven resilience and operational readiness are becoming increasingly critical to maintaining business continuity. With cyberattack volumes continuing to rise across the UAE, what are the most significant changes you are seeing in the ecosystem, scale and sophistication of threats targeting organisations today? The UAE’s pace of digital transformation makes it an increasingly attractive target for cyberattacks, with threats www.tahawultech.com

building a clear strategy for recovery when disruption occurs.

growing in both volume and sophistication. At Commvault, we work with organisations across government, financial services and the private sector to strengthen cyber resilience alongside compliance. Security remains essential, but no defence is infallible. That is why organisations must look beyond prevention and prioritise recovery, ensuring they can restore

trusted data quickly and maintain critical operations when an attack gets through. We hear a lot about AI as an opportunity. What is the flip side, and are UAE businesses prepared for it? AI is now fundamental to digital transformation, but the same capabilities that make businesses more efficient are also lowering

the barrier for attackers and enabling threats to scale faster. At the same time, AI is generating significantly more data across increasingly complex environments. With Dubai expecting half of its operations to run on agentic AI within two years, organisations must focus not only on protecting data, but also governing access, understanding where it resides and

What best practices should organisations adopt when implementing AI-related cybersecurity solutions? Organisations should start with data. They need to understand what they hold, classify it and govern who or what can access it before it reaches an AI model or agent. Identity is equally critical, particularly as autonomous agents introduce more nonhuman identities into the environment. Nine in ten attacks target Active Directory, and every AI agent adds a new, nonhuman identity to protect. Finally, organisations should assume breaches will happen and continuously test recovery.

ResOps allows organisations to restore critical operations in the right order and at speed”.

At Commvault, we bring these elements together through Resilience Operations, or ResOps, aligning data security, identity, recovery, people and processes around sustained operational resilience. Looking ahead to 2027, how should UAE organisations rethink their approach to cyber resilience to stay operational through increasingly complex disruptions? A future-ready strategy is less about predicting every attack and more about recovering cleanly and quickly from the unexpected. That means making isolated recovery and air gapping standard practice, maintaining immutable copies of critical data, treating identity as a Tier 0 system, defining the minimum viable business, and continuously testing recovery in cleanroom environments. Resilience Operations, or ResOps, brings these capabilities together so organisations can restore critical operations in the right order and at speed.

@tahawultech

9


Anomali to address the next phase of AI-led cyber defence at GISEC 2026 Anomali will demonstrate how AI can support analysts in multiple ways like surfacing higher-value insights, reducing manual effort, and enabling quicker, informed responses. Anomali, the leading global Managed Intelligence and Agentic SOC platform, announced its participation at GISEC Global 2026, taking place through 16-18 September at Dubai Exhibition Centre (DEC), Expo City. The company’s discussions at GISEC will center on Autonomous SOC with Governed AI, Agentic AI, Actionable Threat Intelligence and Unified Security Data Lake capabilities that are changing the manner in which security teams investigate threats, manage workflows and make decisions. Samer Jadallah, Vice President, Middle East & Africa at Anomali, will represent the company at GISEC and will focus on the growing impact of AI on both attackers and defenders, emerging shifts in the threat

landscape, including the need to counter CEO impersonation attacks as well as key challenges facing modern security teams. He will also highlight AI’s role

is helping organisations respond more effectively to evolving threats, Anomali’s commitment to the region and ongoing product innovation and plans to expand adoption

of the Anomali platform across global enterprises and government organisations. A key focus at this year’s event will be the changing nature of

cyberattacks. As threat actors promptly adopt AI to scale campaigns and further accelerate attacks, security operations centres (SOC) are under growing

Security operations centres (SOC) are under growing pressure to process rising volumes of alerts with limited resources”. pressure to process rising volumes of alerts with limited resources. To help with this, Anomali will demonstrate how AI can support analysts in multiple ways like surfacing higher-value insights, reducing manual effort, and enabling quicker, informed responses. Visitors can find Anomali at Booth E156 and Booth A80. Event: GISEC Global 2026 Booths: E156 and A80 Location: Dubai Exhibition Centre (DEC), Expo City Dates: 16th to 18th September 2026 Time: 9:00 am to 5:00 pm GST

Huawei brings embedded intelligence and built-in resilience to GISEC GLOBAL 2026 Huawei showcases trusted digital infrastructure designed to help organisations navigate evolving cyber threats and accelerate secure digital transformation. With GISEC GLOBAL 2026 held under the theme “Cyber First: The New Digital Order,” Huawei is presenting its vision for the next phase of cybersecurity as the event’s Lead Strategic Partner. The Gulf Information Security Expo and Conference (GISEC) GLOBAL 2026 is underway from 16–18 September at the Dubai Exhibition Centre (DEC), Expo City. Huawei executives and experts are contributing to keynote and panel discussions on sovereign AI, cybersecurity talent and security operations, cyber resilience, and proactive defence as the region accelerates AI adoption and digital transformation amid an evolving threat landscape. Corey Deng, Chief Cybersecurity and Privacy Officer,

10

Huawei Middle East & Central Asia, presents “Enhancing Cyber Resilience in the AI Era” on the Main Stage, exploring how AI and quantum computing are changing the cybersecurity landscape and why resilience needs to be built in. Thomas Black, Chief Security Officer, Huawei Cloud Europe, presents “Sovereign AI: Control You Can Trust” on the Critical Infrastructure Stage, examining how meaningful control of data, infrastructure, models, operations and governance can support trusted AI for essential services. Huawei will also host the Cyber Resilience Workshop, themed “Securing the Digital Future: AI, Cloud and Cyber Resilience”, bringing together senior cybersecurity leaders,

@tahawultech

regulators and customers from across the Middle East and Central Asia. The workshop will explore emerging cyber risks, sovereign cloud strategies, AI-driven security threats, and the priorities shaping the next phase of digital resilience. Integrated security across cloud, network, data and computing At GISEC GLOBAL 2026, Huawei is demonstrating how security can be embedded across cloud, computing, networks, and data to support secure AI adoption and digital transformation. Huawei Cloud combines AI capabilities with multi-layered security safeguards, while Huawei Confidential Computing solutions protect sensitive data at the hardware level, including in multi-tenant cloud environments. Xinghe AI Unified

SASE brings intelligent, all-scenario network protection, while HiSec NG-SIEM enables alldomain security visibility, attack-chain correlation, alert noise reduction and automated response. Huawei’s data protection solutions further strengthen data resilience and service continuity. The company also showcases how cybersecurity can be embedded into industry digitalisation across critical sectors such as carrier networks, government, healthcare, and oil and gas, enabling organisations to innovate while maintaining security and operational resilience. Huawei highlights its continued investment in cybersecurity, governance framework and trusted practices

across its products, solutions and operations. Corey Deng, Chief Cybersecurity and Privacy Officer, Huawei Middle East & Central Asia, said: “AI is transforming the way organisations are operating and how cyber threats are evolving and traditional protection alone is no longer sufficient. We believe intelligence needs to be embedded, and resilience needs to be built in from the ground up. This is the vision we bring to GISEC GLOBAL 2026, and we

look forward to working with governments, regulators, customers and partners across the region to build a more secure and resilient digital future together”. Huawei welcomes customers, partners and industry leaders to visit its booth at A135, Hall 7, and explore its latest cybersecurity capabilities and exchange perspectives on how organisations can strengthen security, resilience and trust in intelligent, interconnected digital environments.

We believe intelligence needs to be embedded, and resilience needs to be built in from the ground up”. www.tahawultech.com


Help AG launches Quantum 360 at GISEC 2026 to advance post-quantum readiness in UAE New end-to-end services take organisations from cryptographic discovery and risk assessment to migration planning and quantum-safe implementation. Help AG, the cybersecurity arm of e&, recently announced the launch of Quantum 360, a new portfolio of postquantum cybersecurity services designed to help government entities, critical infrastructure and enterprises understand their cryptographic exposure and build a structured path towards quantum-safe security. Help AG marked the debut of Quantum 360, launched in collaboration with e&, with an official ceremony at the company’s booth on Day 2 of GISEC Global, attended by senior leadership including Abdulla Ebrahim Al Ahmed, Chief Government & VVIP Relations Officer, e& UAE, and Dr Aleksandar Valjarevic, recently appointed CEO of Help AG, along with selected members of the media. The launch comes as post-quantum readiness moves higher on the national cybersecurity agenda. The UAE’s National Encryption Policy calls on government entities to establish clear and approved transition plans from traditional encryption methods to post-quantum cryptography. Issued by the UAE Cybersecurity Council, the policy establishes national requirements for this transition. Dubai Electronic Security Center (DESC) has also introduced its Post-Quantum

Cryptography Guideline to prepare Dubai’s digital infrastructure for emerging quantum threats. Al Ahmed said: “The UAE has consistently demonstrated its ability to anticipate the technologies that will shape the future and establish the frameworks needed to adopt them securely and responsibly. As the quantum era approaches, strengthening cyber resilience and building post-quantum security will be critical to protecting sensitive data, critical infrastructure, and the wider digital economy. The launch of Quantum 360 by Help AG is an important step in helping organisations understand their current exposure and take a structured, proactive approach to becoming quantum-safe.” Dr Valjarevic said: “The quantum conversation is moving from ‘when will it happen?’ to ‘are we ready when it does?’ Organisations need to understand where cryptographic assets exist today, what is most exposed, and what needs to change first. Quantum 360 is designed to turn that complexity into a clear, practical journey towards quantum readiness.” He added: “The UAE is already taking proactive steps towards postquantum readiness. Our role is to help organisations

translate that national direction into practical action, from understanding their cryptographic estate to building the roadmap and implementing the right level of protection for their environment.” What is quantum computing and what cyber risks does it pose? Quantum computing leverages ‘qubits’ to solve complex calculations and could solve certain complex problems far faster than classical computers. However, a sufficiently powerful quantum computer could break some of today’s widely used publickey encryption, exposing long-lived sensitive data – such as medical records, trade secrets, and national security intelligence – to significant cybersecurity risks. Threat actors may

already be carrying out ‘harvest now, decrypt later’ attacks by collecting encrypted data today in the hope of decrypting once sufficiently powerful quantum capabilities become available. Therefore, to protect data that must remain confidential 10-20 years from now, organisations should begin preparing now by identifying vulnerable systems and migrating to post-quantum cryptographic standards. Quantum 360: An end-toend service offering Against this backdrop, Help AG is positioning Quantum 360 as a practical journey from awareness to action. Rather than treating post-quantum security as a single technology deployment, Quantum 360 addresses the broader transformation required

Core42 and Technology Innovation Institute sign collaboration agreement Strategic collaboration to develop and evaluate UAE-built sovereignty and security technologies for Core42’s sovereign-enabled cloud and Compass AI platforms. Core42, a G42 company specialising in AI infrastructure and sovereign-enabled cloud, recently signed a strategic collaboration agreement with the Technology Innovation Institute (TII), the applied research arm of Abu Dhabi’s Advanced Technology Research Council (ATRC), to expand locally developed digital sovereignty and cybersecurity capabilities in the UAE. Signed at GISEC Global 2026, the agreement reflects a shared commitment to developing home-grown security capabilities and contributing to the UAE’s sovereign technology ecosystem. The collaboration brings together Core42’s sovereign-enabled www.tahawultech.com

cloud and AI capabilities with TII’s cybersecurity research and technology development expertise to explore how UAEdeveloped security technologies can strengthen the protection, resilience and compliance of sovereign digital infrastructure and AI environments. As part of the agreement, Core42

and TII will collaborate on the co-development, evaluation, and deployment of securityenhancing technologies across Core42’s sovereign-enabled cloud and Compass, its generative and agentic AI platform. The scope includes hardware security modules, confidential computing, encrypted

AI inferencing, secure key management and distribution, data protection mechanisms, encryption technologies, and trusted computing capabilities. The framework reflects a broader focus on developing critical technology capabilities within the UAE and creating pathways for home-grown innovation to address real-world cloud and AI sovereignty and security requirements. As organisations increasingly deploy sensitive data and AI workloads across cloud environments, protecting data, infrastructure, models and communications using cryptographic solutions is becoming an increasingly important component of sovereign technology

the target architecture and creates a phased migration roadmap aligned with organisational and regulatory requirements. Q-Seal – Implementation Provides quantum-safe implementation capabilities for highly sensitive and critical environments. This includes advanced keydistribution approaches such as QKD where organisations require the highest levels of assurance for critical communications. Together, the three services create a structured journey:

Q-Path – Advisory Takes the output of cryptographic discovery and translates it into actionable business insight. Q-Path assesses quantum exposure and readiness, identifies priorities, defines

Discover  Understand  Prioritise  Transition  Protect. Help AG’s service offering emphasises that there is no single postquantum journey for every organisation. The appropriate transition depends on factors including the sensitivity and lifetime of the data, existing cryptographic estate, business criticality, regulatory obligations, and required level of assurance. For more information on Help AG’s new Quantum 360 offering, please visit the company’s website. Visitors can also drop by the Help AG booth at GISEC from September16-18, 2026 at Dubai Exhibition Centre, Expo City Dubai, Hall 5, Stand C100, to explore Quantum 360 as well as the company’s broader offerings around Agentic AI Security, Cyber Trust, Sovereign Platforms, and Quantum Readiness. In order to book a meeting with Help AG’s experts at GISEC, please submit a request here.

architecture. The initiative also reinforces the UAE's growing role as a center for advanced technology development, and Core42's contribution to an ecosystem where sovereign infrastructure can increasingly be secured through technologies developed within the country. Rajeev Nair, Senior Vice President, Special Projects, Core42, said: “Sovereignty means more than deciding where data and infrastructure reside; it is also about building the technology capabilities required to protect them from all angles. Working with TII gives us an opportunity to evaluate and advance UAEdeveloped sovereignty and cybersecurity technologies against the requirements of sovereign-enabled cloud and AI environments. By connecting local research and technology development with realworld platforms and use cases, we are helping build an ecosystem where the UAE is not simply adopting

advanced technologies but increasingly developing the capabilities that underpin them. This helps strengthen the country’s position as a global hub for trusted technology development”. Dr. Victor Juan Mateu, Chief Researcher, Cryptography Research Center TII, said: “At TII, we are focused on translating advanced research into technologies that strengthen the UAE’s sovereign capabilities and address real-world security challenges. Our collaboration with Core42 creates an important pathway to evaluate and advance locally developed cybersecurity and trusted computing technologies within sovereign cloud and AI environments. By bringing together deep research expertise and real-world platforms, we can accelerate the journey from breakthrough innovation to practical deployment and contribute to a more secure and resilient technology ecosystem in the UAE”.

across cryptographic assets, business risk, architecture, governance and implementation. The portfolio is structured around three services: Q-Lens – Assessment Provides organisations with visibility across their cryptographic estate, discovering certificates, keys, algorithms, libraries and dependencies across on-premises, hybrid and multi-cloud environments and establishing the Cryptographic Bill of Materials (CBOM) required to understand exposure.

@tahawultech

11


Turn static files into dynamic content formats.

Create a flipbook
60mins Day 3 – GISEC 2026 by CPI Media Group - Issuu