Capitol Campus — Room A (2416)
← Back to Block 15 Program

Cyber: Governance of the Security Supply Chain

October 15, 2026
15:40 - 17:10
Capitol Campus — Room A (2416)
CS

Session Overview

Cybersecurity risks in crypto-asset services increasingly arise not only from vulnerabilities in blockchain protocols or the compromise of signing keys, but also from dependencies across the broader operational and technology supply chain. Recent incidents have highlighted risks involving external service providers, cloud and CI/CD environments, transaction-generation processes, administrative privileges, smart contracts, oracles, bridges, and other external components.

This session will use the June 2026 research paper Cybersecurity Issues and Countermeasures in Crypto-Asset-Related Businesses as a starting point for discussion. The paper maps the structure and dependencies of the crypto-asset ecosystem, examines recent cybersecurity incidents, and identifies priority areas including third-party risk management, protection against code and transaction tampering, controls over smart contracts and DeFi operations, and the effective use of third-party assessments.

Building on these findings, participants will discuss how security-supply-chain risks should be governed in practice: how critical dependencies should be identified, what operators should verify themselves rather than delegate to vendors or auditors, how responsibilities should be allocated across service providers and subcontractors, and what contractual, technical, monitoring, and assurance mechanisms are appropriate.

The discussion will provide input to BGIN’s ongoing Governance of the Security Supply Chain project, with the aim of developing practical principles and vendor-guideline considerations for crypto and blockchain systems.

Agenda

  • Key findings from the June 2026 research paper, including recent incidents, ecosystem dependencies, and priority areas for cybersecurity risk management.
  • Discussion on how operators should identify and manage risks arising from vendors, subcontractors, software components, cloud services, smart contracts, oracles, bridges, and other external dependencies.
  • Discussion on what operators should verify themselves, what may be delegated to third parties, and how audits, monitoring, contractual controls, and technical safeguards should be combined.
  • Identify common principles and practical considerations that could inform BGIN’s work on security supply-chain governance and vendor guidelines.

Session Chair & Speakers

Session Chair

Julien Bringer (Chair, Cyber Security)

Venue

Location: Capitol Campus — Room A (2416)

Address: 111 Massachusetts Avenue NW, Washington, DC 20001, United States

Georgetown University Capitol Campus · Washington, D.C.

Access & venue details →

Working Group

CS

Cybersecurity Working Group

Addresses security frameworks, threat intelligence, and cybersecurity standards for blockchain systems

Chairs:
  • Tomofumi Okubo
  • Takaya Sugino

Register

Contributors who submit written work and present may qualify for a registration fee waiver.

Contribution process →
Contact Info
bgin_admin@bg2x.org
© Copyright 2023 by BGIN