Laws, Shared Threats, and Cyber Regulation Without Borders: What the UK’s Cyber Security and Resilience Bill Means in a Connected World

Date
2026-03-24
Location
San Francisco, CA, USA
Host
UK House @ RSAC
Register

About this event

Cyber regulation no longer stops at national borders, and neither do the risks it is trying to address. This in-person San Francisco gathering will look at what the UK’s Cyber Security and Resilience Bill signals for organizations, practitioners, and communities operating in a deeply connected digital environment where policy shifts in one country can influence expectations far beyond it. If you care about how law, security, and global interdependence are colliding, this event is built to help you make sense of it. Expect a grounded conversation about what this bill may mean in practice, why people outside the UK should still pay attention, and how shared threats are reshaping the way governments and organizations think about resilience. About the Event This event is a focused, in-person discussion centered on a timely question: what does the UK’s Cyber Security and Resilience Bill mean in a world where infrastructure, vendors, platforms, and threat actors all operate across borders? Rather than treating cyber regulation as a narrow legal topic, the conversation opens it up as a practical issue for anyone working in security, policy, technology, governance, or cross-border operations. At its core, this is a meetup for people who want to think clearly about the intersection of law and cyber risk. The title points to a broader theme that matters well beyond the UK: when governments respond to shared threats, new rules often influence international standards, business decisions, vendor obligations, and resilience planning in other jurisdictions. The format is designed to support both learning and exchange. You can expect a community-oriented environment where the subject matter is serious, but the tone is accessible, useful, and discussion-friendly. Because this is an in-person event, there is also real value in being able to compare perspectives with others navigating similar questions from different roles. What to Expect The conversation will likely begin by framing the bill itself within a wider cyber landscape: growing systemic risk, pressure on critical services, and the challenge of regulating resilience in interconnected systems. From there, the discussion can move into what makes this legislation notable and why people outside the UK should care. You should expect attention to questions such as: How cyber regulation is becoming more interconnected across countries What resilience obligations may signal for organizations and supply chains Why shared threats are pushing lawmakers toward broader oversight How security, compliance, and operational realities can come into tension What cross-border companies and practitioners should be watching next Because this is tagged as a community and networking meetup, the event is not just about absorbing information. It is also a space to hear how others interpret the implications of regulation, compare assumptions, and pressure-test your own thinking with people who may come from legal, technical, policy, or operational backgrounds. Expect a mix of structured discussion and informal connection. Whether you are arriving with deep subject-matter expertise or a practical need to understand the direction of travel, the format should give you room to engage at the level that makes sense for you. Why Attend The value of this event is not just understanding one bill in one country. It is gaining a sharper view of how cyber rules emerge, why they spread, and how they can affect decision-making far beyond the jurisdiction where they originate. For many attendees, the most useful outcome will be context. Headlines about cyber legislation often sound abstract until you connect them to procurement, reporting obligations, resilience planning, board expectations, vendor management, or public-private coordination. This event helps bridge that gap by focusing on implications rather than just terminology. You should leave with: A clearer understanding of why the UK’s approach matters internationally Better language for discussing cyber regulation with colleagues or stakeholders Insight into how legal and security concerns are increasingly linked A stronger sense of the practical questions organizations may need to prepare for New connections with people thinking seriously about cyber resilience and governance This is also a strong event for anyone who wants to stay ahead of where the conversation is going. Even if your role is not directly tied to UK regulation, the broader themes, resilience, accountability, cross-border impact, and shared threat response, are highly relevant across the security ecosystem. Practical Details This event takes place in person in San Francisco, USA on Tuesday, March 24 at 11:30 AM PDT. The in-person format makes it especially useful for attendees who want more than a one-way briefing and value the chance to continue the conversation face-to-face. Because the topic sits at the intersection of policy, technology, and operational risk, you do not need to fit a single professional profile to get something meaningful from the session. What matters most is that you are curious about how cyber regulation is evolving and willing to engage with the implications in a connected world. A midday start makes this a practical opportunity to step into an informed discussion without committing to a full-day conference. If you are based in the Bay Area or will be in San Francisco, it is a timely chance to be in the room with others who are paying close attention to how cyber law and resilience expectations are developing. If this topic touches your work, your organization, or simply the questions you think the field should be asking next, this event offers a smart place to engage with it directly.

Who should attend

This is for you if you want a sharper, more practical read on how cyber regulation in one country can shape expectations across many others. - **You work in cybersecurity or resilience** and want to understand how emerging legislation may influence operational priorities, oversight, or preparedness beyond purely technical controls. - **You are in legal, compliance, policy, or governance roles** and need to track how cyber obligations are evolving in ways that affect cross-border organizations, risk posture, and accountability. - **You support critical services, digital infrastructure, or complex supply chains** and are thinking about how resilience expectations may extend across partners, vendors, and jurisdictions. - **You lead strategy, risk, or public affairs work** and want better context for explaining why the UK’s Cyber Security and Resilience Bill matters outside the UK. - **You are a founder, operator, or advisor in tech** and need to stay ahead of the regulatory direction that could shape product, security, or market decisions. - **You value thoughtful in-person conversation** with people from different disciplines and want to compare perspectives, ask questions, and build relevant connections around a fast-moving issue.

Speakers

Topics