Control Tower Series

What Your Board Can't See.

AI, identity, and assets: closing the governance gap before a regulator does.

A closed-door circuit for CISOs and senior security and risk leaders across Australia and New Zealand, built around the same conversation ServiceNow has already piloted with senior security leaders.

10–15
senior security and risk leaders per room
6
cities across ANZ
100%
closed door, by invitation

Where board confidence and operational reality no longer match.

Regulators have drawn a clear line. Cyber resilience and AI risk governance are now board-level obligations, with accountability flowing from the boardroom down. ASIC's govern-protect-detect-respond framework sets out what good looks like. APRA's supervisory review found governance arrangements across regulated industries haven't kept pace with how operationally embedded AI has become. Boards are being held to account, and so are the CISOs advising them.

The operational challenge is harder than the regulatory one. AI is running across enterprise environments in ways traditional governance frameworks were never designed to track: embedded in SaaS applications, operating as autonomous agents whose access rights accumulate faster than access reviews can run, moving across OT and IoT environments conventional security tools routinely miss. The result is a widening gap between what an organisation is actually running, what the board believes it knows, and what a regulator would find if they looked closely.

Control Tower Series is hosted by ServiceNow alongside Innovatus Media, built from a session already piloted with senior security leaders. Each session runs as a facilitated peer roundtable, split across small tables working through the same four themes before reporting back in plenary. Armis, Veza and Control Tower come up as the architecture behind the conversation, not as a sales pitch.

The same four themes at every table, in the same order.

01

The regulatory gap

Where board oversight already falls short of what ASIC and APRA now require.

02

Asset and identity blind spots

Governing non-human and AI agent identities most tools still can't see.

03

Centralised AI oversight

Concentration risk, and what auditable board evidence looks like versus a narrative summary.

04

Building a defensible response

What genuinely better looks like in 12 months, and the structural change that gets you there.

Six rooms across ANZ. Same conversation, closed door, every time.

Sydney
VenueICC Sydney, 14 Darling Dr, Sydney NSW 2000 (ServiceNow World Forum Sydney)
Date30 July 2026
Time2:00pm to 3:30pm
Melbourne
VenueTo be confirmed
DateTo be confirmed
TimeTo be confirmed
Brisbane
VenueTo be confirmed
DateTo be confirmed
TimeTo be confirmed
Perth
VenueTo be confirmed
DateTo be confirmed
TimeTo be confirmed
Canberra
VenueTo be confirmed
DateTo be confirmed
TimeTo be confirmed
Auckland
VenueTo be confirmed
DateTo be confirmed
TimeTo be confirmed
The gap between what your board believes about AI risk and what's actually running is where the next regulatory finding comes from.

Control Tower Series · ServiceNow & Innovatus Media

ServiceNow

ServiceNow brings Armis, Veza and its own Control Tower together into a single governance architecture: continuous asset intelligence across IT, OT and IoT, identity and access mapped across every human, machine and AI agent, and centralised oversight built for board-level, regulator-ready evidence.

In partnership with
Innovatus Media

Innovatus Media partners with global technology companies to connect C-Suite leaders around the world with new ideas, ways of working, and technologies. Built on peer-to-peer collaboration, and delivered with humility and informal energy.

Reserve your place.

Places are limited to 10–15 senior security and risk leaders per city. We'll confirm your preferred city once the room is set.