Future of IT & Cybersecurity

National CIO & CISO Summit

November 7, 2024 - New York, NY

Visionaries

Sameer P (Filler) Forbes
Sameer Patwardhan

SVP IT

Forbes

Summit Speaker

Sameer is the SVP , Technology at Forbes Media LLC and leads their DevOps, Security , Corp IT , Engineering and QA . He has extensive experience in all facets of IT right from starting out as a C++, Java developer to DevOps , Security and Cloud infrastructure. Sameer is also a member of ISC2 and has CISSP and CCSP certifications. He loves to work out , to go on long walks , a Linux hobbyist and avid gardener

Shannon Rowbury US Olympics
Shannon Rowbury

Track and Field Olympian

US Olympics

Summit Speaker

For 15 years, I found myself defined by my accomplishments on the track. I’m proud of these achievements -- three-time Olympian, World Champion, World Record Holder, and 2-time World Bronze medalist -- but they do not fully define me. I have also excelled academically, graduating Magna Cum Laude from Duke before going on to earn my Master’s degree. A lifelong advocate in women’s sports, I was selected by the US Department of State to serve as a Sport's Envoy to Morocco. I have also worked with Nike and USATF to update maternity policies to make Track & Field more equitable. My long career in professional sports, including becoming a mother in 2018 and navigating a return to top form, offers a unique perspective into the full range of the athlete experience. As I move on from competition, my mission now is to find ways to share that insight with other dreamers and high achievers.

Anthony Gonzalez
Anthony Gonzalez

Principal, Strategic Advisor

Innervision Services LLC

Summit Speaker

Visionary, results and solutions-driven professional with 20+ years of experience in progressively responsible Cyber Security and IT leadership roles in the financial services, insurance, pharmaceutical, biotechnology, consumer goods,and chemical manufacturing industries. Adept in building and leading global Cyber Security, IT technical and support functions. Creative, resourceful problem solver with a track record of success in delivering cost-effective and value-added services to his customers. Additional experience in industrial engineering and process improvement. Specialties: Areas of expertise include: Cyber Security, Network Security,Application Security, Infrastructure Management and Security Incident Management, Disaster Recovery, Forensic Investigations, Operations Management, Financial Management, Project/Portfolio Management, Policy/Procedure Development, Budget Preparation, Strategic Planning, Process Design/Implementation, Risk Mitigation, Enterprise Architecture, IT Governance, Manufacturing/Laboratory Automation, Organizational Design, Vendor Audits, System, Start-Up Operations, Sarbanes-Oxley (SOX), Talent Development/Mentoring, International Team Management, and Regulatory Compliance

Jay Mody Chimera Investment
Jay Mody

CISO & Head of IT Infrastructure

Chimera Investment

Summit Speaker

Chimera Investment Corporation is a publicly traded REIT that is primarily engaged in the business of investing directly or indirectly through our subsidiaries, on a leveraged basis, in a diversified portfolio of mortgage assets, including residential mortgage loans, Non-Agency RMBS, Agency CMBS, Agency RMBS, and other real estate related securities.

Todd Gordon Eisner Amper
Todd Gordon

Director of Information Security & Privacy

Eisner Amper

Summit Speaker

EisnerAmper clients are based in the U.S., or comprised of U.S. business interests of foreign entities. To serve domestically-based clients with interests in financial services opportunities overseas, Eisner Amper offers the resources of offices in the UK, Israel, India and  EisnerAmper Global, with offices in the Cayman Islands, Singapore, and Ireland; as well as the services of Allinial Global. Todd, leads the information security team and is an experienced, detail-oriented, and innovative professional with proven performance in information security, enterprise-level systems administration, and project management.

Matt Goldberg Clear
Matt Goldberg

Chief of Staff (Office of the CISO)

Clear

Summit Speaker

Matt Goldberg is the Chief of Staff to the CISO at CLEAR. He partnered with the CISO to establish CLEAR’s Enterprise Risk program and also owns the board of directors reporting content. Prior to CLEAR, he worked in risk at Bridgewater Associates, where he helped generate client facing insight coverage for COVID-19. He began his career as a cyber threat intelligence analyst at Citigroup, where he assisted in the establishment and operation of the financial sector's first Cyber Security Fusion Center. He holds a Bachelor’s degree in Statistics and Ethics, History & Public Policy from Carnegie Mellon University. Matt lives in New York City with his fiancé and is as excited as anything for his UConn Huskies.

Amit Basu International Seaways
Amit Basu

VP, CIO & CISO

International Seaways

Summit Speaker

Amit Basu is the head of IT and IT Security at International Seaways (INSW). INSW, headquartered in New York City, is one of the largest tanker companies providing energy transportation services worldwide. Amit is a proven IT leader with over 25 years of experience in maritime IT and has pioneered several technology innovations in maritime. Over the last decade, Amit has led a digital transformation in INSW with a Cloud-Only IT strategy and is instrumental in designing a multi-layered cybersecurity framework promoting a cyber resilience culture. Amit holds an MBA as well as a Master of Science degree in Information Management from the Stevens Institute of Technology, New Jersey. He is also a Certified Information Security Manager from ISACA, certified in Cybersecurity Risk Management by HarvardX, Cybersecurity Oversight by Carnegie Mellon University, Maritime Cybersecurity by Lloyds Maritime, and Artificial Intelligence by MIT Sloan School of Management. Amit is an advisory board member for the Cybersecurity program at Pace University and Ithaca College, on the advisory board of Exium, and a member of the Governing Body of New York CIO Executive Summit.

Yabing Wang Justworks
Yabing Wang

CISO

Justworks

Summit Speaker

Yabing Wang is the VP and Chief Information Security Officer at Justworks. She has been in the technology world for 25 years, and has more than 20 years of extensive leadership experience in cybersecurity across different industries. Yabing thrives in transforming security into a business enabler through executive leadership, program delivery, and partnership with all stakeholders. She has built global security practices and strengthened cyber resilience at multiple fortune 100 companies and tech-forward companies.

Rick Patterson Clear
Rick Patterson

EVP CISO

Clear

Summit Speaker

Rick Patterson is the Chief Information Security Officer (CISO) at CLEAR since December 2020. Prior to CLEAR, he held leadership roles at Bridgewater Associates, PetSmart, and Sidley Austin. With a background in the U.S. Secret Service and U.S. Army Criminal Investigative Division, Rick brings extensive expertise in cybersecurity. He holds a Bachelor's degree from California State University, Fullerton, and a Master's degree from DePaul University. Recently, Rick served on the Selection Board for the 2023 CISOs Connect™ Top 100 CISOs (C100) Award.

Scot Miller Mr. Cooper
Scot Miller

SVP & CISO

Mr. Cooper

Summit Speaker

Scot Miller, CISSP, CISM, is the Senior Vice President and Chief Information Security Officer for Mr. Cooper Group. He serves on the Dallas CISO Board, has presented on advances in Information Security and Technology Governance at consortiums in Florida, Texas, New York, Arizona, and Connecticut, and has been quoted in national magazines and other industry symposiums. Scot built high performing Security and Operations teams from the ground up, and over the past few years, brought Mr. Cooper’s Identity Governance and Compliance teams to a new level. The supporting projects won the 2021 Cybersecurity Team of the Year and CSO50 Award from a pool of national and international candidates for innovation, agility, and meaningful impact on a business. Scot’s team is responsible for identifying, analyzing, and reducing risk for all Mr. Cooper’s Group business entities. Previous to his duty at the Mortgage Servicing institution, he was CISO for HMS (a Texas based Healthcare Information Services organization), Head of Global IT Security for Alcon Laboratories, and Chief Security Architect at MassMutual Financial Group. Scot was also the VP and CTO for the CT chapter of ISSA.

John T (Filler) Health Care Service Corporation
John Tryon

Deputy CISO

Health Care Service Corporation

Summit Speaker

Joined Health Care Service Corporation, the nation’s largest customer owned health insurer offering Blue Cross Blue Shield plans in Illinois, Montana, Oklahoma, New Mexico and Texas, in September of 2017 as DVP Information Security Architecture and Design. In this role, John was responsible for driving the future state Cyber Security Architecture with a focus on securely enabling HCSC’s use of the public cloud for sensitive workloads, overall modernization of HCSC’s Member facing and Enterprise Identity & Access Management products and enhancements to Cyber Defense capabilities. Promoted to Deputy CISO / Head of Information Security for Health Care Service Corporation (HCSC) in Fall of 2021. John is responsible for delivering a fiscally responsible and pragmatic Information Security program that securely enables the HCSC enterprise, systems development entities, and strategic initiatives. He is an Information Services Security thought leader with over twenty-five years combined experience with Fortune 500 firms in life sciences, healthcare and consumer products industries. Actively participates on Executive Customer Advisory Boards and Healthcare Industry Executive Leadership forums. John has a bachelor’s degree in computer science from Temple University and holds CISSP certification.

Jairo Orea Royal Caribbean Group
Jairo Orea

Global CISO

Royal Caribbean Group

Summit Speaker

Jairo Orea is currently the Chief Information Security Officer at Royal Caribbean Group, previously he held roles as Global CISO at Kimberly-Clark, VP of Security Consulting at UnitedHealth Group, Chief Data Officer and CISO at ING Insurance. Jairo holds master degrees in Information Technology and Business Administration (ITAM) and Networking and Information Systems for Business (ENST France). Also has a Bachelor's Degree is in Robotics and Information Technology Management from the University of Atemajac Valley. Recognized IT leader, author, and board member across multiple industries. Jairo also serves as Research Fellow at the Cloud Security Alliance, board member at the University of Dallas audit committee, and advisory board member at Blumberg Capital.

Demond Waters
Demond Waters

CISO

NYC Public Schools

Summit Speaker

Demond Waters is a highly accomplished and visionary leader serving as the Chief Information Security Officer (CISO) for the New York City Public Schools, the largest school district in the United States. With a career marked by a deep commitment to safeguarding sensitive information, securing critical systems, and dedication to building the next generation of cybersecurity professionals. His extensive experience spans over 15 years in the field of information security. As the CISO of NYC Public Schools, Demond has established himself as a forward-thinking leader who embraces innovation while preserving a strong commitment to the safety of students, staff, and sensitive data. He has played a pivotal role in designing and implementing a comprehensive cybersecurity framework tailored to the unique requirements of the school district, prioritizing both proactive threat mitigation and responsive incident management. With Demond Waters at the helm as CISO, the New York City Public Schools are setting the benchmark for cybersecurity in the educational sector. His dedication to creating a safe and secure environment for students to learn and thrive ensures the continued success of the largest school district in the United States.

Eric Green (1) TikTok
Eric Green

Head of Unified Endpoint Management

TikTok

Summit Speaker

Eric has been in the cybersecurity industry for over 20 years and is currently part of the GSO Security Operations team at TikTok . Prior to TikTok, Eric was the Global Head of Mobile and Mac Security for HSBC. Previously Eric served as Security Strategist for CyberAdapt after its acquisition of the startup Mobile Active Defense he helped co-found. He also simultaneously was the program director for SC Magazine, the industry’s leading cybersecurity magazine from 2009 -2019. Eric had the privilege of being an SME for the NSA’s National Information Assurance Partnership in developing the requirements for the mobile device management protection profile used to create a Common Criteria for mobile device management. He was also part of the team tasked with the creation of a mobile security management certification for CompTIA. Past experience includes running a technology book division publishing 12 books with a wide variety of industry luminaries, primarily in security.

Or Eshed LayerX Security
Or Eshed

CEO and Co-Founder

LayerX Security

Summit Speaker

Or Eshed is the CEO and Co-Founder of LayerX Security. Or is a cybersecurity expert with 15 years of unique network security experience. Or is a former chief operational security officer of the IDF information warfare unit. He has filled various intelligence and research roles for cybersecurity vendors and global enterprises, was involved in arrests of hackers and threat operations takedown, and has led the takedown of the largest browser hijacker campaign in history.

Tony Parrillo Schneider Electric
Tony Parrillo

VP, Enterprise IT Global Head of Security

Schneider Electric

Summit Speaker

Experienced and passionate cybersecurity leader. Responsible for all facets of cyber security to Schneider Electric's enterprise IT, encompassing approximately 140,000 employees in 100 countries, including 220 factories, 35 distribution centers, and 1,200 sites

Oren Wortman Sygnia Consulting LTD
Oren Wortman

VP Client Leadership, NA

Sygnia Consulting LTD

Summit Speaker

Oren serves as the North America Vice President of Cyber Security Services for Sygnia, the foremost global cyber readiness and response team, applying creative approaches and battle-tested solutions to help organizations beat attackers and stay secure. In this role, he brings over 25 years of technology and security consulting and leadership experience serving as a trusted advisor to clients across many industry verticals. Most recently, Oren led a cyber advisory practice at one of the leading cyber insurance brokerages. He has also held leadership and consulting positions at KPMG, Grant Thornton, RSA Security, ran his own consulting business in the healthcare technology space, and served as a CTO for a New York based publishing company. As a subject matter expert, Oren is frequently called upon by journalists and leading industry events to share his insights. Oren holds a bachelors degree in Computer Science and Corporate Communications from the City University of New York.

Karl Mattson Endor Labs
Karl Mattson

CISO

Endor Labs

Summit Speaker

Karl is known globally as a cybersecurity innovator with over 25 years of diverse experiences as an enterprise CISO, technology strategist, and startup advisor across technology, retail and financial industry verticals. He serves today as the CISO for Endor Labs, a startup focused on software supply chain security. Prior to joining Endor Labs, Karl served as the CISO for Noname Security, specializing in API and Application Security. Previously, Karl held several leadership positions in the Financial Service community, including CISO for City National Bank, and later PennyMac Financial Services. Additionally, he was an active member of the FS-ISAC Mortgage Risk Council, President of the LA Cyber Lab, Financial Services Sector Chief for InfraGard, graduate of the FBI CISO Academy, and Adjunct Faculty at the University of Minnesota for over 10 years.

November 7, 2024

Agenda

All times Eastern Time

8:00 AM-8:30 AM

Welcome & Registration


8:30 AM-9:00 AM

Networking Breakfast


9:00 AM-9:10 AM

Opening Remarks


9:10 AM-9:35 AM
Keynote

Medalist Mindset

Created by Olympians Shannon Rowbury OLY & Lauren Gibbs OLY, the Medalist Mindset™ philosophy takes sports performance techniques leveraged by Olympians and translates them into the business space to optimize performance.

Participants learn how to adopt a Medalist Mindset™ so that they can reach their full potential at any business or life goal. The groundbreaking workbook illuminates the “5 keys of an Medalist Mindset™” through a combination of firsthand accounts paired with worksheets, each of which helps readers to integrate new learnings into their daily life.


9:40 AM-10:05 AM
Keynote

A Tale of Two Incidents from the Front Lines - the Small Rock that Diverted the Mightiest Flood

In this talk, a Sygnia incident response expert highlights the impactful role of small and simple changes in safeguarding organizations. Through a comparison of two real-life attacks by the same threat actor, witness how seemingly basic and obvious measures like awareness, effective tool usage, and swift response can prevent major disasters. It's a compelling exemple that sometimes, the simplest solutions stand as the strongest defense against cyberattacks.

In partnership with:
Sygnia Consulting LTD

10:10 AM-10:55 AM
Panel

Cyber Arms Race: Fortifying Cyber Readiness Against Ransomware Attacks

Let's dive into the intersection of AI, the cyber arms race, and ransomware resilience. Ransomware attacks continue to escalate, inflicting substantial financial losses, data breaches, and tarnished reputations across sectors. As we navigate through 2024, businesses must comprehend the true implications of these attacks within their operational context. Despite achieving cybersecurity compliance, vulnerabilities persist, necessitating a deeper understanding of ransomware's impact and broader strategies for mitigating overall cyber risk exposure. Advanced AI technologies are shaping both offensive and defensive cyber strategies, offering proactive threat detection, comprehensive risk management frameworks, and insights to fortify cybersecurity posture against ransomware and beyond. Don't miss this opportunity to fortify your defenses and stay ahead in the AI-powered cyber landscape.


10:55 AM-11:15 AM

Networking Break


11:15 AM-11:30 AM
Disruptor

Protecting at the Point of Risk: Why The Best Place to Stop threats is at the Browser

 Web security traditionally used to be distributed among several different solutions, with browser isolation protecting against malicious payloads, secure web gateways for protecting against risky websites, CASB for managing SaaS access, and more. However, the threat landscape significantly evolved in recent years, and there are many browser-borne threats and risks today, such as zero-hour phishing attacks, GenAI data leakage, shadow SaaS and malicious browser extensions, which aren’t covered by legacy tools. Moreover, the importance of the browser itself has increased dramatically, and in many organizations it has become the primary workspace.

Preventing these risks requires a browser-centric approach that locks down threats without disrupting the user experience. In this talk, we’ll talk about what are the modern risks that target the browser, why traditional tools such as SWG, RBI and CASB are no longer up to the task, and what tools you should be using to address those risks. 
In partnership with:
LayerX Security

11:35 AM-12:10 PM
Fireside Chat

Digital DNA: The Convergence of Data and Identity

 In today's landscape of constant cyber threats and shifting regulations, building digital resilience is essential. Integrating data and identity security plays a key role in this effort. While identity security governs access to data, data security safeguards the information itself. Together, they ensure regulatory compliance, mitigate insider threats, defend against advanced cyberattacks, and enhance incident response. This combined approach improves security efficiency, risk management, and user experience, fostering a more adaptable and resilient framework for today’s digital challenges

In partnership with:
OpenText

12:15 PM-12:30 PM
Disruptor

Managing Cyber Risk in a Constantly Evolving World

The challenges enterprises face continue to evolve.  In addition to nation states, organized crime and ransomware gangs, AI deception is becoming a mainstream issue.  Leadership teams and boards of directors need to understand all of these issues so proper guidance and decisions can be made.  This presentation will cover the issues enterprises face and suggest a systemic approach to minimizing cyber risks.

In partnership with:
Blink Ops

12:30 PM-1:30 PM

Lunch & Disruptor


1:10 PM-1:25 PM
Disruptor

Cyber Readiness in 2024 and Beyond

Let's dive into the intersection of AI, the cyber arms race, and ransomware resilience. Ransomware attacks continue to escalate, inflicting substantial financial losses, data breaches, and tarnished reputations across sectors. As we navigate through 2024, businesses must comprehend the true implications of these attacks within their operational context. Despite achieving cybersecurity compliance, vulnerabilities persist, necessitating a deeper understanding of ransomware's impact and broader strategies for mitigating overall cyber risk exposure. Advanced AI technologies are shaping both offensive and defensive cyber strategies, offering proactive threat detection, comprehensive risk management frameworks, and insights to fortify cybersecurity posture against ransomware and beyond. Don't miss this opportunity to fortify your defenses and stay ahead in the AI-powered cyber landscape.


1:30 PM-1:45 PM
Vision Voices

CISO Evolution: Adopting a Risk Mindset


In today's complicated cyber environment, the significance of a risk-centric approach is paramount. Explore the importance of adopting a risk mindset as a core in building your security strategy and ensuring buy-in from senior leaders. In this talk, I will discuss my journey over the last 30 years, lessons learned, and mistakes made. As well as the urgency to get this right in light of the evolving cybersecurity landscape and heightened CISO liability.


1:50 PM-2:30 PM
Panel

CISO Nexus: The Mastery of Seamless Business-Technology Security Harmony

In 2024 the spotlight is on CISOs and their role in fostering this critical harmony. Emphasizing the need for both discipline and balance, CISOs are called upon to take ownership of challenges, acknowledging that when technology encounters failures, shared responsibility extends beyond individual roles. 

Navigating the evolving landscape between business and technology demands a strategic blend of discipline and equilibrium, particularly as we enter 2024. Recognizing that, for many organizations, technology is the business itself, this session underscores the imperative of understanding technology as a critical enabler across all facets of the organization. From the front lines to the back office, technology serves as a potent tool for creating value by processing data, driving innovation, and challenging traditional business models.


2:35 PM-3:10 PM
Panel

Cybersecurity Leadership in the Era of AI and ML: Navigating Innovation and Responsibility

In the dynamic realm of artificial intelligence (AI) and machine learning (ML), CISOs play a pivotal role in leveraging these advancements for enhanced cybersecurity. Strategic integration of AI and ML is essential for bolstering security measures, optimizing decision-making, and driving innovation. CISOs must adopt a comprehensive approach, considering the entire lifecycle of these technologies to ensure both efficiency and ethical use. Establishing robust governance frameworks becomes paramount, addressing biases, ensuring transparency, and minimizing unintended consequences.

Looking ahead, as AI and ML continue to advance, CISOs face evolving challenges and regulatory considerations. Proactive engagement involves staying informed about changing regulations, particularly in areas such as data privacy and ethical AI practices. CISOs should strive for a tech-enabled understanding of AI and ML systems, encompassing deployment, impact, and security measures. This approach positions organizations to navigate the regulatory landscape effectively, ensuring responsible and competitive integration of AI and ML into cybersecurity strategies.


3:15 PM-3:30 PM
Disruptor

Quantum Preparedness Session

In this interactive session we will share our quantum preparedness journey insights: whether we are in the early days or in the full swing of crypto agility readiness, we will discuss the strides made to date and what obstacles hold us back from accelerating on the journey to prepare for quantum secure times. As we delve into our insights, we will share the assumptions and misconceptions we need to address, the requirements for the sustainable success and expected outcomes. We will look at this journey holistically, from in house developed applications to third party solutions. We will also look at ways to address shadow cryptography in our cyber and IT technology stacks. There will be plenty of actionable take aways and meaningful tips for us to leverage in our cyber daily lives that will equip us to develop our quantum preparedness strategy more comprehensively, effectively and timely. 
In partnership with:
Endor Labs

3:30 PM-3:45 PM

Networking Break


3:45 PM-4:00 PM
Disruptor

Data Empowerment: A CISO's Guide to Unlocking Strategic Value Safely

CISOs are challenged to redefine their role not only as guardians of security but also as enablers of responsible and innovative data utilization. This directive emphasizes the importance of striking a balance between data protection and leveraging the full potential of organizational data assets. CISOs must collaborate with stakeholders to establish robust data governance frameworks, ensuring compliance with privacy regulations while facilitating the ethical and strategic use of data. By unlocking the value of data, CISOs contribute to the organization's competitiveness, innovation, and overall digital transformation. This session explores strategies for CISOs to harness the power of data responsibly, thereby positioning cybersecurity as an integral driver of business success in the data-driven era.
In partnership with:
Hadrian Security

4:00 PM-4:45 PM
Panel

Unlocking the Power of Diversity in Cybersecurity: Strengthening Defenses, Driving Innovation

In today's rapidly evolving cyber threat landscape, diversity is not just a buzzword – it's a strategic imperative. This panel will explore the critical role that diversity plays in enhancing cybersecurity efforts, from bolstering defenses against sophisticated attacks to fostering innovation and resilience within organizations. Our esteemed panelists will share insights, experiences, and best practices for cultivating diverse teams, leveraging varied perspectives, and building inclusive cultures that empower cybersecurity professionals of all backgrounds to thrive. Join us as we delve into the transformative potential of diversity in shaping the future of cybersecurity.

In partnership with:
The Executive Women's Forum

4:45 PM-4:50 PM

Closing Remarks & Raffle Giveaway


4:50 PM-6:00 PM

Cocktail Networking