Boston CISO Executive Summit
May 10, 2022 | The Westin Copley Place
May 10, 2022
The Westin Copley Place
Collaborate with your peers
Get together with Boston's top CISOs to tackle shared business challenges and critical priorities facing your role today. Participate in this one-day, local program with peer-driven topics and interactive discussions with your true C-level peers.
Join your peers to discuss the most critical issues impacting CISOs today:
Supporting business agility with risk-based programs
Evaluating, communicating and responding to evolving threats
Combating stress and burnout among CISOs and the security teams they lead
Boston CISO Governing Body
The Governing Body Co-Chairs shape the summit agenda, ensuring that all content is driven by CISOs, for CISOs.
Governing Body Co-Chairs
Kevin Brown
SAIC
SVP, CISO
Javed Ikbal
Bright Horizons
VP/CISO
Larry Jarvis
Iron Mountain Inc
SVP, Chief Information Security Officer
Holly Ridgeway
Citizens Financial Group
Chief Security Officer
Ravi Thatavarthy
Rite Aid
Vice President & Chief Information Security Officer
What to Expect
Agenda
May 9, 2022
May 10, 2022
7:30am - 8:15am Registration & Breakfast
8:15am - 9:00am Keynote
Strengths 2.0 — Applying Design Thinking to Your Strengths and Weaknesses
Hosted by CyberArk
John K. Coyle
CEO and Founder of "Speaking Design Thinking"
John K. Coyle is the founder and CEO of "Art of Really Living" and one of the world's leading experts in innovation and design thinking. Through the metaphor of sport, learn how individuals and teams can use innovation approaches to identify and leverage their unique strengths (and design around weaknesses). Become empowered to solve old problems in new ways and achieve breakthrough results. Understand how to apply the “Design Thinking” process to business and personal challenges.
This will empower you to:
- Achieve breakthrough performance by focusing on what you do best
- Decide what to delegate, quit or outsource, and plan to maximize team resources
- Create higher engagement and more effective collaboration with customers and colleagues
9:00am - 9:30am Networking Break
9:30am - 10:15am Breakout Session
Combating Stress and Burnout Starts with You
Hosted by Skybox Security
Ravi Thatavarthy
Vice President & Chief Information Security Officer
Rite Aid
A CISO’s world is complex, challenging and at times exhausting. Between managing vulnerabilities, implementing new solutions, and navigating governance and company-wide risk assessments, it’s no wonder CISOs see the highest numbers of stress and burnout across the C-Suite. Taking care of yourself and modelling healthy behavior to your staff is key in supporting your team, retaining great talent, and building a more resilient organization.
Join this session to discuss:
- How to model the work/life balance you want to see on your team
- Ways to build your employee wellbeing strategy
- Why trust and openness with your team is key to their mental health
9:30am - 10:15am Breakout Session
Disrupting the Lateral Movement Equation
Hosted by Silverfort
Jonathan Nativ
Director of Strategic Alliances
Silverfort
Evan Anderson
Director, Offensive Security
Guest Speaker
Traditional authentication methods are considered broken and despite investments, the exploitation of credentials and basic MFA implementations remain a blind spot for today’s security stacks. It is no longer a case of if an identity-based attack will hit your company, but when.
Join this interactive session to:
- Get a live view into both the attacker and the defender perspective of identity threats
- Understand how organizations are leveraging tools to identify blind spots in their security landscape
- Understand how enforcing MFA on all access interfaces increases efforts of skilled attackers
9:30am - 10:15am Executive Boardroom
Preparing for the Next Attack
Hosted by Cloudflare
Stephen Stierer
Director of Solutions Engineering
Cloudflare
Kevin Burns
CISO
Draper
Eric Jacobsen
Executive Director of Information Security
Boston University
As API traffic surges, third-party networks rapidly expand, and the digital business accelerates, the threat of suffering a breach or disruption looms large on the horizon. CISOs managing an ever-expanding attack surface must fortify the foundations of their infrastructure, applications, and teams so that when the next big vulnerability is uncovered…you’re ready to respond.
Join this peer conversation to discuss:
- Replacing static access controls and legacy security perimeters that delay incident response
- Identifying and mitigating the risks of third-party networks and software supply chains
- Trends in data privacy regulations and data protection measures
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs).
To reserve your seat, please contact Spencer Bisgaard at spencer.bisgaard@evanta.com
9:30am - 10:15am Executive Boardroom
The Art of Communicating Risk to the Business
Hosted by ReliaQuest
Jeff Music
Vice President, CISO, Office of the CISO
ReliaQuest
Bobbi Bookstaver
Director of Information Security
Shawmut Design and Construction
Richard Walzer
Chief Information Security Officer
Clean Harbors
To quantify how they are reducing risk for the business and where to strategically invest, security leaders need effective, actionable metrics. These measures are essential to communicating effectively with the Board and other executive stakeholders.
Join this roundtable discussion to gain insight into how your peers are:
- Making informed investment decisions
- Communicating risk to the business at large
- Using data to tell a story to non-technical audiences
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs).
To reserve your seat, please contact: Spencer.Bisgaard@evanta.com
10:15am - 10:45am Networking Break
10:20am - 10:45am Peer-to-Peer Meetings
Peer-to-Peer Meetings
Connect with like-minded peers in a one-on-one setting through Evanta’s Peer-to-Peer Meetings. You will be matched with peers in your community based on your shared interests and priorities.
10:45am - 11:30am Breakout Session
Developing a Relationship with your Board
Hosted by Abnormal Security
Robert Sullivan
CISO, VP Technology Shared Services
Agero
Bernie Gracy
Chief Digital Officer
Agero
Blending the science of technology with the art of leadership is a challenge facing many CISO’s today. Security leaders have an important job of managing cyber risk in an organization — but educating the board can be challenging. Boards are faced with many challenges, including economy, supply chain, and geo-political conflicts. Putting cyber risk into context is critical as the volume of threats to organizations are rising. For a CISO to thrive, a good relationship with your board is imperative so that you can describe and manage risk as an organization.
Join this session to learn:
- How to keep the Boards attention by speaking their language and understanding their concerns
- How to cast your net to get vital information from the board
- The Do's and Don’ts- what can elevate board relations or erode them
10:45am - 11:30am Breakout Session
Third-Party Cyber Risk — Zero-Day Findings and Mitigation
Hosted by BlueVoyant
Mark Risoldi
VP Strategic Development
BlueVoyant
Esmond Kane
CISO
Steward Health Care System
Managing distributed risk is today’s defining cybersecurity challenge. Mitigation of zero-day vulnerabilities is critical as adversaries exploit supply chain entities. This session explores how to identify all third parties impacted by zero-day vulnerabilities and guide their mitigation efforts. Your vendor, supplier, and partner ecosystem is now your enterprise attack surface. Hear directly from the CISO of Steward Healthcare, Esmond Kane, on how they have addressed this problem.
Join this fireside chat to learn:
- How to manage distributed risk associated with hundreds and even thousands of vendors, suppliers, and partners
- Approaches to identify, prioritize, and mitigate active threats and critical/zero-day vulnerabilities
- Strategies to reduce supply chain/external ecosystem risk associated with zero-day
10:45am - 11:30am Executive Boardroom
Zero Trust – Hype or Hope?
Hosted by IBM
Mike Spisak
Distinguished Engineer, Master Inventor, Zero Trust Technology Leader
IBM
Mark Malley
IT Security Officer
Boehringer Ingelheim
Raj Sharma
Vice President- Head of Information Security
Northern Bank
An organization's ability to achieve successful digital transformation is in large part enabled by the security team. Distributed, loosely connected infrastructure and tools, coupled with the demand for almost any-to-any connectivity, complicates the mission. Regularly defined as being delivered by a single "silver bullet" point solution, the term zero trust is now often held in poor regard. It is however, a highly effective conceptual framework, and perhaps even a cultural shift, that many organizations have been working with for several years.
Join this interactive boardroom to discuss:
- The broader definition of what a zero trust framework is
- The foundational control required to build a zero trust program
- Strategies for improving the user experience and proving value to get organization-wide acceptance
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs).
To reserve your seat, please contact: Spencer.Bisgaard@evanta.com
10:45am - 11:30am Executive Boardroom
Future Challenges: Security, Transformation, Hybrid and More
Hosted by Appgate
Jason Garbis
Chief Product Officer
Appgate
Lorna Koppel
Director of Information Security/CISO
Tufts University
Enterprises are forced to adopt wildly different workforce logistical solutions while providing protection against ever-emerging threats. With greater reliance on the Cloud in 2022 and beyond, it’s time to improve efficiencies while still mitigating risks and protect ALL environments. Not just cloud transformation, but hybrid, multi-cloud, and on-prem.
Join this roundtable discussion to learn about:
- Improving processes and efficiencies
- Extending protections to all workloads
- Analyzing tools, strategies, and technologies available
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs).
To reserve your seat, please contact: Spencer.Bisgaard@evanta.com
11:30am - 11:40am Break
May 9, 2022
May 10, 2022
Location
Venue & Accommodation
The Westin Copley PlaceMore Information
Parking
Information regarding parking here.
Health & Safety Guidelines
To ensure the well-being of participants, partners, and associates, we will continue to monitor and adhere to government, venue, and health agency guidelines.
As a part of our commitment to create the safest possible environment, we are requiring all participants, partners, and associates to be fully vaccinated to participate in in-person programs, in addition to confirming adherence to our program attendance requirements before their arrival. Please refer to our COVID-19 Health and Safety Policy for up-to-date local guidelines.
A block of rooms has been reserved at the The Westin Copley Place at a reduced conference rate. Reservations should be made online or by calling 617-262-9600.
Deadline to book using the discounted room rate of $299 USD (plus tax) is April 18, 2022.
Community Program Manager
For inquiries related to this community, please reach out to your dedicated contact.