San Francisco CISO Executive Summit
December 9, 2019 | Hilton San Francisco Union Square
December 9, 2019
Hilton San Francisco Union Square
Collaborate with your peers
Get together with your peers to tackle top business challenges through peer-driven content and discussions at the San Francisco CISO Executive Summit.
Join your peers to discuss the most critical issues impacting CISOs today:
Strategies for a risk-aligned, resilient organization
Developing and investing in the security workforce of tomorrow
Creating business value and supporting agile business operations
San Francisco CISO Governing Body
The Governing Body Co-Chairs shape the summit agenda, ensuring that all content is driven by CISOs, for CISOs.
Governing Body Co-Chairs
Yassir Abousselham
Okta, Inc.
SVP, Chief Security Officer
Krishnan Chellakarai
Gilead Sciences
CISO
Joel Fulton
Splunk
CISO
Al Ghous
ServiceMax
CSO and Head of Security
Steve Martino
Cisco Systems, Inc.
SVP, CISO
Jeff Trudeau
Credit Karma
CSO
Agenda
December 9, 2019
7:30am - 8:15am Registration & Breakfast
8:15am - 8:30am Opening Comments
8:30am - 9:00am Keynote
A True Partner to the Business
Hosted by ServiceNow
Christine Vanderpool
Vice President & Chief Information Security Officer
Florida Crystals
To maximize their influence and impact on business objectives, CISOs must sharpen their leadership and communication skills, particularly when it comes to addressing needs and expectations at the highest levels of the organization. Now more than ever, CISOs can produce tangible value for their organizations – how should information security professionals best communicate risks to the executive team and board of directors in a manner that is understandable and actionable?
In this session, learn to:
- Form and sustain boardroom relationships
- Prepare a strategic conversation with the board and speak their language
- Position security as an enabler of the business
9:00am - 9:20am Networking Break
9:20am - 10:10am Breakout Session
Ensuring Security in Supply Chain and Vendor Relationships
Hosted by Snyk
Mark Weatherford
Global Information Security Strategist
Booking Holdings
Simply identifying your supply chain is one problem; employing adequate security programs throughout the supply chain is a level of risk that most companies haven’t fully embraced. Mark Weatherford, Global Information Security Strategist, shares his methodology in ensuring that security is embedded in third party relationship management.
Join this session to learn:
- Best practices for managing third-party partners
- How to assess security maturity for supply chains
- Insights on changing vendor partnerships for a more secure organization
9:20am - 10:10am Breakout Session
Having Organizational and Financial Support and Still Getting Hacked
Hosted by Fortinet, Inc.
Jonathan Nguyen-Duy
Vice Pesident, Global Field CISO Team
Fortinet, Inc.
Why do organizations still get breached when they are performing pen tests, auditing networks, following compliance, and implementing the latest security technologies that take advantage of anomalous behavior models, artificial intelligence, and machine learning?
This talk will examine:
- Insights on breach prevention and mitigation
- How cybersecurity failed to keep attackers away
- Continuous Adaptive Risk and Trust Assessment
9:20am - 10:10am Executive Boardroom
Next-Generation Cloud Security
Hosted by IBM
Tom August
CISO
John Muir Health
Gene Chen
CISO
Synaptics
Andrew Lemke
Cyber Resilience Executive Advisor
IBM
As organizations increasingly turn to cloud-based services, security leaders face the immense challenge of ensuring the enterprise’s data remains secure. Join this session to learn the emerging best practices your peers employ to secure the cloud.
In this boardroom we’ll discuss:
- Automation, orchestration, AI and machine learning strategies
- Nuances for hybrid on- and off-premise systems
- Ways to incorporate security into your cloud strategy
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs). To reserve your seat, please contact your event Program Manager, Greg Winterrowd at +1-971-717-6628 or Greg.Winterrowd@evanta.com.
9:20am - 10:10am Executive Boardroom
Innovation Offense — Uniting DevSecOps
Hosted by Sonatype
Sujeet Bambawale
CISO
7-Eleven
Michael Wilson
SVP & CSO
Molina Healthcare
Michelle Dufty
VP, Product
Sonatype
This is NOT your typical security conversation. We won’t be talking about how to play better "perimeter defense" at the end of your digital supply chain. Instead, we will be talking about how to play better “innovation offense” at the beginning of your digital supply chain.
Join us to discuss:
- How to continuously identify and remediate open source risk, without slowing down innovation
- Ways to integrate security guardrails directly within your DevOps pipeline
- The importance of uniting developers, security, and operations on the same team
10:10am - 10:30am Networking Break
10:30am - 11:20am Breakout Session
Improving Influence and Longevity in Security
Hosted by Palo Alto Networks
Daniel Chiang
VP of Security
Stitch Fix
Lorna Koppel
Director of Information Security/CISO
Tufts University
Jeff Trudeau
CSO
Credit Karma
Dr. Christian Dameff
MD
UC San Diego
The statistics are alarming about those who work in security - high rates of substance abuse, short tenure at jobs, and unhealthy levels of stress. How can CISOs make their careers sustainable and maintain a sense of well-being? Dr. Christian Dameff, a hacker and emergency medicine physician, helps lead this panel of CISOs to discuss ways to cope and thrive.
In this session, learn:
- How to assess your mental health
- Methods to reduce stress in careers
- How other security leaders deal with burnout
10:30am - 11:20am Breakout Session
From Zero Trust to Zero Touch with Intelligent Security
Hosted by BlackBerry
Bob Scuderi
Head of Solutions Engineering NALA
BlackBerry
Organizations are challenged to strike a balance between security teams who want a Zero Trust approach and employees who desire seamless Zero Touch access. Bridging that gap is Artificial Intelligence and a Zero Trust Architecture.
This session dives into:
- Why the view of endpoints impacts how they’re secured and managed
- How adaptive security and artificial intelligence can protect all endpoints
- The ultimate goal of increasing security while acknowledging other factors
10:30am - 11:20am Executive Boardroom
Secure the Core — Protect the Applications that Run Your Business
Hosted by Onapsis, Inc.
Colin Anderson
Global CISO
Levi Strauss & Co.
Leda Muller
CISO/Assistant Director of Support Services
Stanford University
Andreas Gloege
VP, North America Sales Engineering
Onapsis
In May 2019, the Department of Homeland Security issued an alert citing "New Exploits for Unsecure SAP Systems" after new exploits, termed "10KBLAZE" were publicly released. While protecting endpoint access, phishing, and network monitoring is important, nothing else matters if your core business applications are not a primary strategic component.
In this session, we will explore:
- Why and how ERP applications are actively under attack
- How cloud, mobile and digital transformations are expanding the attack surface
- Steps you can take to ensure cyber resiliency and mitigate risk
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs). To reserve your seat, please contact your event Program Manager, Greg Winterrowd at +1-971-717-6628 or Greg.Winterrowd@evanta.com.
10:30am - 11:20am Executive Boardroom
Digital Risk Explosion — Managing Risk in a Hyper-Outsourcing World
Hosted by RiskRecon
Krishnan Chellakarai
CISO
Gilead Sciences
Mark Van Divner
CISO
First Republic
Kelly White
CEO
RiskRecon
Digital transformation has dramatically transformed the enterprise risk surface, automating a vast array of processes while outsourcing a vast array of systems and services. Through this frenetic reshaping, few organizations truly understand the nature of their new risk reality and how to successfully manage it.
In this interactive discussion we will:
- Explore the true nature of the enterprise cyber risk surface
- Discuss threats and regulations driving organizations to better manage their extended enterprise
- Share insights on how to better manage third-party risk (hint: good data!)
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs). To reserve your seat, please contact your event Program Manager, Greg Winterrord at +1-971-717-6628 or Greg.Winterrowd@evanta.com.
December 9, 2019
Community Program Manager
For inquiries related to this community, please reach out to your dedicated contact.