3rd Annual Conference to Address Cyber Risk Measurement and Action in the Financial Sector (CRFS)

2025-10-04 - 3 minutes read

The Board of Governors of the Federal Reserve System, the Federal Reserve Bank of Richmond, and the Internet Policy Research Initiative at the Massachusetts Institute of Technology will convene their third conference on the measurement and tracking of cyber risk within the financial system. The event is organized to bring together experts from industry, government, and academia.

The theme of this year’s conference is the implementation of cyber risk metrics. The proceedings are structured over two days, with the first day addressing the financial sector as a whole and the second day focusing on individual financial institutions.


Scheduled Program Highlights

Day 1: Sector-Level Application of Cyber Metrics

The initial day’s agenda will commence with a discussion featuring Andy Ozment, Chief Technology Risk Officer at Capital One. Subsequent panel discussions are scheduled to examine a range of topics, including:

  • The use of cyber threat metrics to improve security and resilience, with panelists from the Federal Reserve System, Bank of America, and Recorded Future.
  • New developments in cyber risk measurement, referencing standards such as NIST’s CSF 2.0 and the EU’s DORA framework. Participants include representatives from Goldman Sachs, the FAIR Institute, and Capital One.
  • Management of cyber risk changes resulting from emerging technologies like artificial intelligence and quantum computing, with speakers from JP Morgan Chase & Co and Andesite AI.

The day will conclude with a keynote address by Shafi Goldwasser, Director of the Simons Institute for the Theory of Computing at the University of California, Berkeley.

Day 2: Institution-Level Application of Cyber Metrics

The second day will concentrate on the application of metrics within financial institutions. The agenda includes:

  • A panel on global cyber policy trends, with participation from the World Bank and the International Monetary Fund, which will explore the harmonization of jurisdictional requirements.
  • A discussion on the relationship between cyber risk and financial stability from a global central bank perspective. This session will feature senior leaders from the Federal Reserve, the European Central Bank, and the Bank of England.

The stated objective of the conference is to foster dialogue among sectors to develop actionable strategies for enhancing the resilience of the global financial system.

For more information: https://internetpolicy.mit.edu/crfs2025/
To register for the webcast: https://web.cvent.com/event/b7deae6e-6013-4846-9f73-bf4bdbfb95b9/