Future of IT & Cybersecurity

National CIO & CISO Summit

November 7, 2024 - New York, NY

Visionaries

Sameer P (Filler) Forbes
Sameer Patwardhan

SVP IT

Forbes

Summit Speaker

Sameer is the SVP , Technology at Forbes Media LLC and leads their DevOps, Security , Corp IT , Engineering and QA . He has extensive experience in all facets of IT right from starting out as a C++, Java developer to DevOps , Security and Cloud infrastructure. Sameer is also a member of ISC2 and has CISSP and CCSP certifications. He loves to work out , to go on long walks , a Linux hobbyist and avid gardener

Anthony Gonzalez
Anthony Gonzalez

Principal, Strategic Advisor

Innervision Services LLC

Summit Speaker

Visionary, results and solutions-driven professional with 20+ years of experience in progressively responsible Cyber Security and IT leadership roles in the financial services, insurance, pharmaceutical, biotechnology, consumer goods,and chemical manufacturing industries. Adept in building and leading global Cyber Security, IT technical and support functions. Creative, resourceful problem solver with a track record of success in delivering cost-effective and value-added services to his customers. Additional experience in industrial engineering and process improvement. Specialties: Areas of expertise include: Cyber Security, Network Security,Application Security, Infrastructure Management and Security Incident Management, Disaster Recovery, Forensic Investigations, Operations Management, Financial Management, Project/Portfolio Management, Policy/Procedure Development, Budget Preparation, Strategic Planning, Process Design/Implementation, Risk Mitigation, Enterprise Architecture, IT Governance, Manufacturing/Laboratory Automation, Organizational Design, Vendor Audits, System, Start-Up Operations, Sarbanes-Oxley (SOX), Talent Development/Mentoring, International Team Management, and Regulatory Compliance

Scot Miller Mr. Cooper
Scot Miller

SVP & CISO

Mr. Cooper

Summit Speaker

Scot Miller, CISSP, CISM, is the Senior Vice President and Chief Information Security Officer for Mr. Cooper Group. He serves on the Dallas CISO Board, has presented on advances in Information Security and Technology Governance at consortiums in Florida, Texas, New York, Arizona, and Connecticut, and has been quoted in national magazines and other industry symposiums. Scot built high performing Security and Operations teams from the ground up, and over the past few years, brought Mr. Cooper’s Identity Governance and Compliance teams to a new level. The supporting projects won the 2021 Cybersecurity Team of the Year and CSO50 Award from a pool of national and international candidates for innovation, agility, and meaningful impact on a business. Scot’s team is responsible for identifying, analyzing, and reducing risk for all Mr. Cooper’s Group business entities. Previous to his duty at the Mortgage Servicing institution, he was CISO for HMS (a Texas based Healthcare Information Services organization), Head of Global IT Security for Alcon Laboratories, and Chief Security Architect at MassMutual Financial Group. Scot was also the VP and CTO for the CT chapter of ISSA.

John T (Filler) Health Care Service Corporation
John Tryon

Deputy CISO

Health Care Service Corporation

Summit Speaker

Joined Health Care Service Corporation, the nation’s largest customer owned health insurer offering Blue Cross Blue Shield plans in Illinois, Montana, Oklahoma, New Mexico and Texas, in September of 2017 as DVP Information Security Architecture and Design. In this role, John was responsible for driving the future state Cyber Security Architecture with a focus on securely enabling HCSC’s use of the public cloud for sensitive workloads, overall modernization of HCSC’s Member facing and Enterprise Identity & Access Management products and enhancements to Cyber Defense capabilities. Promoted to Deputy CISO / Head of Information Security for Health Care Service Corporation (HCSC) in Fall of 2021. John is responsible for delivering a fiscally responsible and pragmatic Information Security program that securely enables the HCSC enterprise, systems development entities, and strategic initiatives. He is an Information Services Security thought leader with over twenty-five years combined experience with Fortune 500 firms in life sciences, healthcare and consumer products industries. Actively participates on Executive Customer Advisory Boards and Healthcare Industry Executive Leadership forums. John has a bachelor’s degree in computer science from Temple University and holds CISSP certification.

Demond Waters
Demond Waters

CISO

NYC Department of Education

Summit Speaker

Demond Waters is a highly accomplished and visionary leader serving as the Chief Information Security Officer (CISO) for the New York City Public Schools, the largest school district in the United States. With a career marked by a deep commitment to safeguarding sensitive information, securing critical systems, and dedication to building the next generation of cybersecurity professionals. His extensive experience spans over 15 years in the field of information security. As the CISO of NYC Public Schools, Demond has established himself as a forward-thinking leader who embraces innovation while preserving a strong commitment to the safety of students, staff, and sensitive data. He has played a pivotal role in designing and implementing a comprehensive cybersecurity framework tailored to the unique requirements of the school district, prioritizing both proactive threat mitigation and responsive incident management. With Demond Waters at the helm as CISO, the New York City Public Schools are setting the benchmark for cybersecurity in the educational sector. His dedication to creating a safe and secure environment for students to learn and thrive ensures the continued success of the largest school district in the United States.

Eric Green (1) TikTok
Eric Green

Head of Unified Endpoint Management

TikTok

Summit Speaker

Eric has been in the cybersecurity industry for over 20 years and is currently part of the GSO Security Operations team at TikTok . Prior to TikTok, Eric was the Global Head of Mobile and Mac Security for HSBC. Previously Eric served as Security Strategist for CyberAdapt after its acquisition of the startup Mobile Active Defense he helped co-found. He also simultaneously was the program director for SC Magazine, the industry’s leading cybersecurity magazine from 2009 -2019. Eric had the privilege of being an SME for the NSA’s National Information Assurance Partnership in developing the requirements for the mobile device management protection profile used to create a Common Criteria for mobile device management. He was also part of the team tasked with the creation of a mobile security management certification for CompTIA. Past experience includes running a technology book division publishing 12 books with a wide variety of industry luminaries, primarily in security.

Or Eshed LayerX Security
Or Eshed

CEO and Co-Founder

LayerX Security

Summit Speaker

Or Eshed is the CEO and Co-Founder of LayerX Security. Or is a cybersecurity expert with 15 years of unique network security experience. Or is a former chief operational security officer of the IDF information warfare unit. He has filled various intelligence and research roles for cybersecurity vendors and global enterprises, was involved in arrests of hackers and threat operations takedown, and has led the takedown of the largest browser hijacker campaign in history.

Tony Parrillo Schneider Electric
Tony Parrillo

VP, Enterprise IT Global Head of Security

Schneider Electric

Summit Speaker

Experienced and passionate cybersecurity leader. Responsible for all facets of cyber security to Schneider Electric's enterprise IT, encompassing approximately 140,000 employees in 100 countries, including 220 factories, 35 distribution centers, and 1,200 sites

Thomas Rizzo Lazard
Thomas Rizzo

Chief Architect

Lazard

Summit Speaker

Thomas Rizzo is a seasoned IT professional with over 20 years of experience across various sectors and is currently serving as the Chief Architect at Lazard. His diverse background spans finance technology, digital services, utilities, social media, legal, and education sectors. Prior to joining Lazard, Thomas made significant contributions to companies like Zebra, where he helped shape their digital services and SaaS offerings, and Con Edison, where he drove technological advancements in the utilities sector. In his current role at Lazard, Thomas leads the design and architecture of technology solutions that drive the company's digital transformation journey. His strategic vision and ability to foster an engaging work environment have earned him the reputation of an 'IT Rock Star'. He is committed to driving business growth through digital transformation, and he does so by fostering a creative and enjoyable workplace atmosphere as part of his leadership approach.

Oren Wortman Sygnia LTD
Oren Wortman

VP Client Leadership, NA

Sygnia LTD

Summit Speaker

Oren serves as the North America Vice President of Cyber Security Services for Sygnia, the foremost global cyber readiness and response team, applying creative approaches and battle-tested solutions to help organizations beat attackers and stay secure. In this role, he brings over 25 years of technology and security consulting and leadership experience serving as a trusted advisor to clients across many industry verticals. Most recently, Oren led a cyber advisory practice at one of the leading cyber insurance brokerages. He has also held leadership and consulting positions at KPMG, Grant Thornton, RSA Security, ran his own consulting business in the healthcare technology space, and served as a CTO for a New York based publishing company. As a subject matter expert, Oren is frequently called upon by journalists and leading industry events to share his insights. Oren holds a bachelors degree in Computer Science and Corporate Communications from the City University of New York.

Tony Gonzalez
Tony Gonzalez

Principal, Advisor

Innervision Services LLC

Summit Speaker

Visionary, results and solutions-driven professional with 20+ years of experience in progressively responsible Cyber Security and IT leadership roles in the financial services, insurance, pharmaceutical, biotechnology, consumer goods,and chemical manufacturing industries. Adept in building and leading global Cyber Security, IT technical and support functions. Creative, resourceful problem solver with a track record of success in delivering cost-effective and value-added services to his customers. Additional experience in industrial engineering and process improvement. Specialties: Areas of expertise include: Cyber Security, Network Security,Application Security, Infrastructure Management and Security Incident Management, Disaster Recovery, Forensic Investigations, Operations Management, Financial Management, Project/Portfolio Management, Policy/Procedure Development, Budget Preparation, Strategic Planning, Process Design/Implementation, Risk Mitigation, Enterprise Architecture, IT Governance, Manufacturing/Laboratory Automation, Organizational Design, Vendor Audits, System, Start-Up Operations, Sarbanes-Oxley (SOX), Talent Development/Mentoring, International Team Management, and Regulatory Compliance

Karl Mattson Endor Labs
Karl Mattson

CISO

Endor Labs

Summit Speaker

Karl is known globally as a cybersecurity innovator with over 25 years of diverse experiences as an enterprise CISO, technology strategist, and startup advisor across technology, retail and financial industry verticals. He serves today as the CISO for Endor Labs, a startup focused on software supply chain security. Prior to joining Endor Labs, Karl served as the CISO for Noname Security, specializing in API and Application Security. Previously, Karl held several leadership positions in the Financial Service community, including CISO for City National Bank, and later PennyMac Financial Services. Additionally, he was an active member of the FS-ISAC Mortgage Risk Council, President of the LA Cyber Lab, Financial Services Sector Chief for InfraGard, graduate of the FBI CISO Academy, and Adjunct Faculty at the University of Minnesota for over 10 years.

Rogier Fischer Hadrian Security
Rogier Fischer

Co-Founder & CEO

Hadrian Security

Summit Speaker

Rogier is a serial entrepreneur and digital security enthusiast, currently Co-Founder and CEO of Hadrian Security. Hadrian is modernizing offensive security practices with automation, making security teams faster and more scalable. As a teenager he was acknowledged by large companies like Google, PayPal, Microsoft and Yahoo for ethically breaching their systems. In 2013, at only 17 years old, he was one of the first innovators in the cryptocurrency industry by founding LiteBit, a custody and brokerage platform with over a million traders. Driven by a passion for company building and startups, Fischer has started angel investing and advising other startups. He founded an angel syndicate and has been investing in healthcare, security, gaming, and deep tech startups.

Shannon Rowbury US Olympics
Shannon Rowbury

US Olympian & WSG

US Olympics

Summit Speaker

For 15 years, I found myself defined by my accomplishments on the track. I’m proud of these achievements -- three-time Olympian, World Champion, World Record Holder, and 2-time World Bronze medalist -- but they do not fully define me. I have also excelled academically, graduating Magna Cum Laude from Duke before going on to earn my Master’s degree. A lifelong advocate in women’s sports, I was selected by the US Department of State to serve as a Sport's Envoy to Morocco. I have also worked with Nike and USATF to update maternity policies to make Track & Field more equitable. My long career in professional sports, including becoming a mother in 2018 and navigating a return to top form, offers a unique perspective into the full range of the athlete experience. As I move on from competition, my mission now is to find ways to share that insight with other dreamers and high achievers.

November 7, 2024

Agenda

All times Eastern Time

8:00 AM-8:30 AM

Welcome & Registration


8:30 AM-9:00 AM

Networking Breakfast


9:00 AM-9:10 AM
Thought Leadership

Opening Remarks (Master of Ceremonies)


9:10 AM-9:35 AM
Keynote

Medalist Mindset

Created by Olympians Shannon Rowbury OLY & Lauren Gibbs OLY, the Medalist Mindset™ philosophy takes sports performance techniques leveraged by Olympians and translates them into the business space to optimize performance.

Participants learn how to adopt a Medalist Mindset™ so that they can reach their full potential at any business or life goal. The groundbreaking workbook illuminates the “5 keys of an Medalist Mindset™” through a combination of firsthand accounts paired with worksheets, each of which helps readers to integrate new learnings into their daily life.


9:40 AM-10:05 AM
Keynote

A Tale of Two Incidents from the Front Lines - the Small Rock that Diverted the Mightiest Flood

In this talk, a Sygnia incident response expert highlights the impactful role of small and simple changes in safeguarding organizations. Through a comparison of two real-life attacks by the same threat actor, witness how seemingly basic and obvious measures like awareness, effective tool usage, and swift response can prevent major disasters. It's a compelling exemple that sometimes, the simplest solutions stand as the strongest defense against cyberattacks.

In partnership with:
Sygnia Consulting LTD

10:10 AM-10:55 AM
Panel

Cyber Arms Race: Fortifying Cyber Readiness Against Ransomware Attacks

Let's dive into the intersection of AI, the cyber arms race, and ransomware resilience. Ransomware attacks continue to escalate, inflicting substantial financial losses, data breaches, and tarnished reputations across sectors. As we navigate through 2024, businesses must comprehend the true implications of these attacks within their operational context. Despite achieving cybersecurity compliance, vulnerabilities persist, necessitating a deeper understanding of ransomware's impact and broader strategies for mitigating overall cyber risk exposure. Advanced AI technologies are shaping both offensive and defensive cyber strategies, offering proactive threat detection, comprehensive risk management frameworks, and insights to fortify cybersecurity posture against ransomware and beyond. Don't miss this opportunity to fortify your defenses and stay ahead in the AI-powered cyber landscape.


10:55 AM-11:15 AM

Networking Break


11:35 AM-11:50 AM
Disruptor

Protecting at the Point of Risk: Why The Best Place to Stop Threats is at the Browser

 Web security traditionally used to be distributed among several different solutions, with browser isolation protecting against malicious payloads, secure web gateways for protecting against risky websites, CASB for managing SaaS access, and more. However, the threat landscape significantly evolved in recent years, and there are many browser-borne threats and risks today, such as zero-hour phishing attacks, GenAI data leakage, shadow SaaS and malicious browser extensions, which aren’t covered by legacy tools. Moreover, the importance of the browser itself has increased dramatically, and in many organizations it has become the primary workspace.

Preventing these risks requires a browser-centric approach that locks down threats without disrupting the user experience. In this talk, we’ll talk about what are the modern risks that target the browser, why traditional tools such as SWG, RBI and CASB are no longer up to the task, and what tools you should be using to address those risks. 
In partnership with:
LayerX Security

11:55 AM-12:30 PM
Fireside Chat

Digital DNA: The Convergence of Data and Identity

 In today's landscape of constant cyber threats and shifting regulations, building digital resilience is essential. Integrating data and identity security plays a key role in this effort. While identity security governs access to data, data security safeguards the information itself. Together, they ensure regulatory compliance, mitigate insider threats, defend against advanced cyberattacks, and enhance incident response. This combined approach improves security efficiency, risk management, and user experience, fostering a more adaptable and resilient framework for today’s digital challenges

In partnership with:
OpenText

12:30 PM-12:45 PM
Disruptor

Securing Data in the Cloud with Automated DSPM

Today’s cloud-first world demands a new approach to security—one that’s focused on data. In this presentation, dive into the evolving data security posture management (DSPM) market. Learn how DSPM can help you find sensitive data across your cloud environment, untangle complex identities and permissions, and detect threats proactively. Explore different approaches and gain an understanding for why automation is essential for effective cloud data security.

In this presentation you will learn:

  • Where DPSM falters
  • Why DSPM must be automated
  • Defining automated DPSM
  • Varonis approach
In partnership with:
Varonis

12:45 PM-1:30 PM

Lunch & Disruptor



1:50 PM-2:30 PM
Panel

CIO and CISO Nexus: The Mastery of Seamless Business-Technology Security Harmony

In 2024 the spotlight is on CISOs and their role in fostering this critical harmony. Emphasizing the need for both discipline and balance, CISOs are called upon to take ownership of challenges, acknowledging that when technology encounters failures, shared responsibility extends beyond individual roles. 

Navigating the evolving landscape between business and technology demands a strategic blend of discipline and equilibrium, particularly as we enter 2024. Recognizing that, for many organizations, technology is the business itself, this session underscores the imperative of understanding technology as a critical enabler across all facets of the organization. From the front lines to the back office, technology serves as a potent tool for creating value by processing data, driving innovation, and challenging traditional business models.


2:35 PM-3:20 PM
Panel

Unlocking the Power of Diversity in Cybersecurity: Strengthening Defenses, Driving Innovation

In today's rapidly evolving cyber threat landscape, diversity is not just a buzzword – it's a strategic imperative. This panel will explore the critical role that diversity plays in enhancing cybersecurity efforts, from bolstering defenses against sophisticated attacks to fostering innovation and resilience within organizations. Our esteemed panelists will share insights, experiences, and best practices for cultivating diverse teams, leveraging varied perspectives, and building inclusive cultures that empower cybersecurity professionals of all backgrounds to thrive. Join us as we delve into the transformative potential of diversity in shaping the future of cybersecurity.

In partnership with:
The Executive Women's Forum

3:25 PM-3:40 PM
Disruptor

The Future of Security Automation

Despite the initial potential of Security, Orchestration, Automation and Response solutions (SOARs), they undelivered on their promise, leading to Gartner recently calling legacy SOARs obsolete. 

In this session Aaron Beveridge, Global Head of Sales Engineering at Bink Ops, will discuss the future of security automation - specifically a new generation of platforms that leverage AI to streamline the creation of automations, reduce manual effort and boost operator productivity by 10X or more.

In partnership with:
Blink Ops

3:45 PM-4:00 PM
Disruptor

The Race Against Threats: Speed & AI in Exploitation

Organizations’ attack surfaces, IT complexity, and reliance on third parties have increased exponentially, making effective security governance and operations a significant challenge.

Meanwhile, the frequency and damage of attacks are increasing, making reactive security strategies are no longer economically viable.

Key points:
  • How AI is accelerating the development of exploits.
  • An analysis of vulnerabilities and exploits that challenge the scale and speed of traditional security operations.
  • Security strategies need to transform and focus on proactive and preemptive measures.
In partnership with:
Hadrian Security

4:00 PM-4:20 PM

Networking Break


4:20 PM-4:55 PM
Panel

Cybersecurity Leadership in the Era of AI and ML: Navigating Innovation and Responsibility

In the dynamic realm of artificial intelligence (AI) and machine learning (ML), CISOs play a pivotal role in leveraging these advancements for enhanced cybersecurity. Strategic integration of AI and ML is essential for bolstering security measures, optimizing decision-making, and driving innovation. CISOs must adopt a comprehensive approach, considering the entire lifecycle of these technologies to ensure both efficiency and ethical use. Establishing robust governance frameworks becomes paramount, addressing biases, ensuring transparency, and minimizing unintended consequences.

Looking ahead, as AI and ML continue to advance, CISOs face evolving challenges and regulatory considerations. Proactive engagement involves staying informed about changing regulations, particularly in areas such as data privacy and ethical AI practices. CISOs should strive for a tech-enabled understanding of AI and ML systems, encompassing deployment, impact, and security measures. This approach positions organizations to navigate the regulatory landscape effectively, ensuring responsible and competitive integration of AI and ML into cybersecurity strategies.


4:55 PM-5:00 PM

Closing Remarks & Raffle Giveaway


5:00 PM-6:00 PM

Cocktail Networking