Startups are building products, collecting data and entering new markets faster than ever. At the same time, European cybersecurity requirements are becoming more demanding, and customers, investors and larger business partners increasingly expect startups to demonstrate that security is taken seriously from the beginning.
The challenge is knowing what actually applies to your startup — and what you should do about it. In this session, we will break down key European cybersecurity regulations and show how standards such as ISO/IEC 27001 can help startups build a structured security foundation without turning compliance into a huge administrative project.
💡 What you will learn
- The difference between regulations, standards and security frameworks
- How NIS2, the Cyber Resilience Act and other EU requirements translate into practical security activities
- How ISO/IEC 27001 can help structure your security work instead of building compliance from scratch
- The core security processes startups should set up early, such as risk management, access control, incident management and supplier security
- What cybersecurity evidence customers and investors often ask for during due diligence
- How to build a security roadmap that fits your startup’s size, resources and growth stage
- Why you shouldn’t wait for a customer or regulator to ask before putting basic controls in place
🧑🏻🏫 Speaker
Azadeh Haratiannezhadi – Professor & Researcher in AI & Cybersecurity
- PhD in Modeling and Cognitive Science; 20+ years bridging information security, AI and management systems
- Certified ISO/IEC 27001 Lead Auditor with 15+ years implementing security and governance frameworks before moving into auditing
- AI developer, designer and consultant for the past five years, focused on responsible AI and cognitive science integration
- ISO/IEC 42001 trainer and auditor for two years, helping organizations build and certify AI Management Systems
- Recognized globally for combining technical depth, research insight and audit expertise across security and AI governance
Cybersecurity compliance does not have to slow down a startup. Done properly, standards and good security practices can help startups win enterprise customers, reduce risk and scale with confidence.
The session focuses on the practical question:
“What should my startup actually do now?”
🎯 Who is this event for
- Founders and co-founders wanting to understand their cybersecurity responsibilities
- CTOs and technical founders building secure products and infrastructure.
- Product leaders whose products may fall under EU cybersecurity requirements
- CISOs and security leads building security processes in growing startups
- Engineering leaders responsible for secure development and product security
- Teams preparing to sell to enterprise customers and facing security questionnaires or due diligence
- Startups preparing for investment, expansion or market entry where cybersecurity becomes a business issue
- AI and tech startups needing to understand cybersecurity, AI governance and EU regulation
We look forward to seeing you, bring your questions and let’s discuss your startup’s specific cybersecurity challenges.
