Infosecurity Europe 2026: What the London Gathering Means for the Security Calendar
The industry's largest European security conference returns to London on June 2–4, 2026, and the programme signals where enterprise security investment is heading.

Infosecurity Europe 2026 runs June 2 through June 4 in London, marking another year in which the conference serves as the clearest barometer of where European security budgets and research priorities are pointed. No CVE, no CVSS score here — but the event's thematic shape tells its own story.
How the conference maps to the threat landscape
The sessions scheduled around the event's orbit reveal a preoccupation with AI-augmented defence and the economics of security operations. A June 25, 2026 session titled "Build vs. Buy: The Hidden Cost of Building Your Own AI Security Stack" is a direct response to the cost-of-ownership debates that have dominated procurement conversations since large language model tooling entered the SOC. That is not accidental timing.
And the June 16, 2026 session — "Defending in the Shadow Era: When the CVE Feed Goes Dark" — is one worth watching closely. The premise (that defenders cannot rely on timely, complete public disclosure) reflects a genuine operational gap. CVE publication delays have averaged weeks in some cases during 2024 and into 2025, a problem the NVD's own backlog notice made public earlier this year. When the CVE feed slows, threat intel teams are flying partially blind.
Credential security appears on the agenda twice, which tracks with identity being the primary initial-access vector across the ransomware incidents Threat Vectr has covered over the past 18 months. Akira and Black Basta both relied on compromised credential pairs, not zero-days, to establish footholds in the majority of documented intrusions attributed to them.
Black Hat USA, scheduled for Mandalay Bay in Las Vegas, runs on a parallel track to Infosecurity Europe's planning cycle. The two events serve different audiences (Black Hat skews toward offensive research and exploit detail; Infosecurity Europe toward enterprise decision-makers and procurement), but the overlap in topic areas — AI in security, identity assurance, SOC economics — suggests that the research community and the buyer community are, for once, looking at the same problems from different ends.
For practitioners who actually read patch diffs and track CWE classifications, the London conference is less about revelation and more about triangulation: seeing which vendors have productised solutions to bugs you already know about, and which research threads are being picked up by the commercial market. The 2026 programme's emphasis on resource-constrained organisations (a June 18 session speaks directly to that segment) is a recognition that SME security posture remains, bluntly, a systemic risk.
So the calendar is set. Whether the programme delivers on the intelligence front depends on who shows up to the stages, not just who sponsors the floor space.



