Event
The conversations at Vanguard Security & Compliance Conference 2026 made one thing clear: the mainframe security conversation is evolving beyond protection alone. As organizations accelerate modernization initiatives, adopt AI-enabled technologies, and prepare for emerging quantum risks, security and risk leaders are being challenged to demonstrate not only that controls exist, but that those controls are continuously operating as intended.
Rocket Software was proud to join senior cybersecurity, risk, and compliance leaders from across the industry to discuss the future of enterprise resilience and mainframe security.
A highlight of the event was Tim Hill's keynote, "Navigating Quantum and AI Risks in Mainframe Modernization.” The session explored how organizations can prepare for a future in which AI-driven threats, quantum advancements, regulatory expectations, and modernization efforts converge. The key takeaway: security strategies must evolve from point-in-time assessments to continuous validation and assurance.
Throughout these discussions, a common theme emerged. The industry is moving beyond traditional notions of mainframe protection toward a more comprehensive approach to risk management. New sources of threat intelligence, including tools such as Mythos, are driving important conversations about visibility, vulnerability management, and evolving security risks. But security leaders remain accountable for a broader challenge: proving that critical controls are functioning as expected and demonstrating that evidence to auditors, regulators, executives, and boards.
This is where continuous assurance becomes essential.
Rocket's message at Vanguard centered on the principle behind Rocket z/Assurance: helping organizations continuously validate security controls, identify exposure before it becomes risk, and provide audit-ready evidence that safeguards are operating effectively. As organizations modernize critical systems, embrace AI, and prepare for a quantum future, confidence comes not from assuming controls are working, but from being able to prove it.
The future of mainframe security will be defined by organizations that can combine threat awareness, continuous validation, and demonstrable compliance into a unified risk management strategy. The conversations at Vanguard reinforced that security leaders are no longer being asked simply whether they have controls in place. Increasingly, they are being asked to prove those controls are working.
| Session Title | Date | Time | Speaker(s) |
Keynote: Securing the Future: Navigating Quantum and AI Risks in Mainframe Modernization | Monday, September 14 | 1:15pm - 2:00pm | Tim Hill |
| Mainframe Penetration Testing 101: A critical layer in vulnerability management | Tuesday, September 15 | 8:00am - 9:00am | Ray Overby |
| Securing Access in the Age of AI Adversaries | Tuesday, September 15 | 9:15am - 10:15am | Barbara Ballard |
| How Security Aligns / Doesn't Align with Enterprise Risk Management Strategies | Tuesday, September 15 | 2:15pm - 3:15pm | Cynthia Overby |
| Unpacking the Mythos Phenomenon and Its Impact on Mainframe Vulnerability Strategies | Tuesday, September 15 | 3:30pm - 4:30pm | Ray Overby |
| RACF "Gotchas": Common security pitfalls in the mainframe environment | Wednesday, September 16 | 8:00am - 9:00am | Ray Overby & Milt Rosberg |
| Advancing Proactive IT Operations with Agentic AI | Wednesday, September 16 | 3:30pm - 4:30pm | Tim Hill & Ray Overby |
| z/Assure | Thursday, September 17 | 9:45am - 10:45am | Ray Overby & Michael Lazeroff |
Security Confidence Isn’t Security Readiness:
What security leaders must do after AI reveals hidden risk in the mainframe
Rocket® z/Assurance™ for Mainframe Security
Continuous assurance that your IBM Z® mainframe security is proven, compliant, and modernization-ready.