Solutions Engineer,
Avanan
Upcoming Summits
For Executives in the Greater New York City Area
Wednesday,
October 20, 2021
8:00AM - 7:00PM EDT
Contact Samantha@CyberSummitUSA.com
or call 212.655.4505 ext. 247
If you run into any issues registering, please try using a different browser.
View all summit video presentations & panel discussions now by registering or signing into the Engagez platform!
Watch Now »The Ninth Annual New York Cyber Security Summit goes virtual as it connects C-Suite & Senior Executives responsible for protecting their companies’ critical infrastructures with innovative solution providers and renowned information security experts. Admission is just $95 giving you access to all Keynote Discussions, Interactive Panels and Product Demonstrations.
With full day attendance, you will earn 8 CPE/CEU Credits!
Insider Threats
Identifying & avoiding breaches and how remote work has impacted Insider Threats in today’s remote workforce age
The Future of Cloud Security
Best practices to mitigate cloud security threats and ways to minimize common misconfiguration errors
Ransomware on the Rise
Utilizing zero trust to avoid becoming a hostage to cyber criminals and what to do if you fall victim to an attack
Learn
Our conferences have been rated as one of The Top 50 Must Attend Conferences for the last 3 years. Learn from renowned experts from around the globe on how to protect & defend your business from cyber attacks during interactive Panels & Fast Track Discussions.
2Evaluate Demonstrations
Evaluate & See demonstrations from dozens of cutting-edge solution providers that can best protect your enterprise from the latest threats.
3Comfort & Safety
Many senior executives simply don’t have the time to travel for up to a week to the large cyber trade shows. Our mission is to bring the Cyber Summit experience to the executives from the comfort and safety of your own home. Our events are always for just one day only.
4Engage, Network, Socialize & Share
Engage, Network, Socialize & Share with hundreds of fellow Powerful Business Leaders, C-Suite Executives & Entrepreneurs.
CEUs / CPE Credits
By attending a full day at the Cyber Security Summit, you will receive a certificate granting you 8 Continuing Education Units or Continuing Professional Education Credits. To earn these credits you must participate for the entire summit & confirm your attendance at the end of the day.
6Investment
By investing one day at the summit, you may save your company millions of dollars, avoid stock devaluation and potential litigation.
7Atmosphere
Each Cyber Security Summit is “By Invitation Only” and all attendees are pre-screened & approved in advance. Attendance is limited to approx. 300 Sr. Level Executives to maintain an intimate, non-trade show like environment.
8Reality Check
Did Under Armour, Facebook, Equifax, Yahoo, Blue Cross / Blue Shield, Sony, Target and thousands of other businesses that were hacked do everything within their power to avoid being victimized? Is your company next? Learn the latest defensive measures at the Cyber Security Summit from your peers and from thought leaders in the industry.
QUESTIONS
For any questions, please contact Samantha@CyberSummitUSA.com or call 212.655.4505 ext. 225
SPONSOR
To sponsor, speak or exhibit at an upcoming summit, contact BRand@CyberSecuritySummit.com or call 212.655.4505 ext. 223
This educational and informational forum will focus on educating attendees on how to best protect highly vulnerable business applications and critical infrastructure. Attendees will have the opportunity to meet the nation’s leading solution providers and discover the latest products and services for enterprise cyber defense.
8:00-8:30
Alethea Duhon
Associate Director for Analysis National Risk Management Center
CISA, U.S. Department of Homeland Security
8:30-9:15
Marcus Fowler
Director of Strategic Threat
Darktrace
Among rapidly evolving technological advancements, the emergence of AI-enhanced malware is making cyber-attacks exponentially more dangerous, and harder to identify. As AI-driven attacks evolve, they will be almost indistinguishable from genuine activity, and conducted at an unprecedented speed and scale. In the face of offensive AI, only defensive AI can fight back, detecting even the most subtle indicators of attack in real time, and respond with surgical actions to neutralize threats – wherever they strike.
In this session, discover:
· How cyber-criminals are leveraging AI tools to create sophisticated cyber weapons
· What an AI-powered spoofing threat may look like, and why humans will not be able to spot them
· Why defensive AI technologies are uniquely positioned to fight back
9:15-9:50
As each organization implements a layered security program, across a distributed infrastructure and shared responsibility with their service providers, how can they gain visibility into malicious activity and orchestrate effective, business-wide responses to attacks?
Implementing great tools for IAM, PAM, Network, Data and Application security address many of the layers of controls required. Deploying solutions such as SIEM, SOAR, EDR, NDR, MDR and XDR provide varying levels of visibility and detection and response, however these silos need to be far better connected for maximum effectiveness and return on your investment.
Join IBM Security to hear how we see this all coming together while keeping the solutions that are already working well for you.
9:50-10:15
Dave Grady
Chief Security Evangelist
Verizon
Philippe Langlois
Data Breach Investigations Report (DBIR) Co-Author
Verizon
Join Verizon’s Chief Security Evangelist, Dave Grady and Philippe Langlois, a co-author of Verizon’s legendary annual Data Breach Investigations Report (DBIR), for a look at the recent painstaking mapping of these two leading security frameworks. Langlois will explain how this effort can help security professionals improve how they communicate about cybersecurity incidents with technical and executive stakeholders alike
10:15-10:40
Jeff Costlow
CISO
ExtraHop
The SolarWinds SUNBURST attack was a rude awakening for many security teams, and it won’t be the last time Security leaders face tough questions about how an adversary evaded defenses and stayed hidden. With threats persisting inside the network for months, security teams need a new plan. In this session, CISO Jeff Costlow discusses strategies, including revising existing mental models and incident response processes, to build resilience in the fight against advanced threats.
10:40-11:25
Dr. Christine Izuakor
Founder and CEO
Cyber Pop-up
MODERATOR
Baseer Balazadeh
Sr. Technical Marketing Engineer
Gigamon
Julie Adrounie
Solutions Engineer
Avanan
Dave Lewis
Advisory CISO, Global
Duo Security, now part of Cisco
Kamil Imtiaz
Sr Product Marketing Manager
Zscaler
Peter Blanks
Chief Product Officer
Synack
George Tang
Principal Security Architect
JupiterOne
Milan Patel
Global Head of Managed Security
BlueVoyant
Over the past few years, the number of organizations that have adopted cloud-based systems has grown exponentially, largely due to the COVID-19 pandemic. In turn, cloud security has become a critical issue for IT security executives and their teams. McAffee reported an increase of 630% in attacks by external actors targeting cloud services between January and April of 2020. This uptick in cloud security breaches is projected to persist even after the pandemic as many companies continue to utilize the cloud and leverage its benefits.
While migrating to the cloud offers numerous advantages, it also poses certain threats and challenges. In a recent report by Oracle & KPMG, over 90% of IT Professionals felt their organization had a cloud security readiness gap. A significant concern for many who are adapting to a cloud-based workforce is misconfigurations and gaps in cloud security programs. Additionally, cloud-based infrastructure requires adopting new security policies and processes. Many companies believe their existing security teams lack the necessary skillsets and knowledge that the cloud environment requires, especially as organizations turn to multi-cloud, hybrid cloud, and distributed cloud models.
This panel will highlight the areas where cloud systems can leave enterprises vulnerable, ways to minimize common misconfiguration errors, and other best practices to mitigate threats when migrating to the cloud. Our lineup of Industry Experts will provide their expertise on developing a robust cloud security strategy that addresses these issues and insight on how to stay secure in the future of cloud security.
11:25-11:50
Today’s adversaries are more motivated and capable than ever to find ways to exploit our systems and data. Unfortunately, no industry is immune—including our critical infrastructure. As we have seen with recent attacks, adversaries and cyber criminals will stop at nothing when it comes to financial gain and causing disruption. This includes financial services who remain under constant attack and need to stay one-step ahead. This session will focus on the who, what, and how organizations can protect their systems and data while ensuring their operations, brand, and revenue remain intact.
11:50-12:05
Neal McCarthy
Senior IR Consultant
Secureworks
12:05-12:30
It is important to recognize that, overall, the industry has an effectiveness problem. The escalation in threat activity and the talents shortage in the industry has created a situation where, despite lots of products and cybersecurity spend, we aren’t getting better protection. To put a finer point on it, there are over 3,000 vendors selling products in the industry. The total spend last year was $120B+ and even with all of that there we almost 4,000 breaches — a 96% increase over the previous year. The key takeaway from these breaches is that they are NOT product failures. They are operational failures. To prevent these kinds of breaches from happening again in the future, we believe, the industry needs to adopt a new approach – an operational approach – to cybersecurity.
12:30-12:55
Track AErich Kron
Security Awareness Advocate
KnowBe4
Ransomware attacks are on the rise and are estimated to cost global organizations $20 billion. As ransomware attacks become more targeted and more damaging, your organization faces increased risk that can leave your networks down for days or even weeks. So, how can your organization avoid getting held hostage?
Join Erich Kron CISSP, Security Awareness Advocate at KnowBe4, as he looks at concerning features of new ransomware strains, provides actionable info that you need to prevent infections, and gives you tips on what to do when you are hit with ransomware.
In this webcast we will cover:
· What new scary ransomware strains are in the wild
· Am I infected?
· I’m infected, now what?
· Proven methods of protecting your organization
· How to create your human firewall
Don’t get held hostage and become a statistic!
12:30-12:55
Track B12:55-1:20
Track AWith a ransomware attack happening every 11 seconds and more companies making the news every day, it’s imperative to use a comprehensive strategy for handling and mitigating ransomware. In this session, Expedient’s AJ Kuftic will discuss how to best Protect, Detect and Recover from ransomware and the tooling and strategy you need to consider to ensure your organization stays in operation and out of the headlines.
12:55-1:20
Track BVendor risk assessments are essential to truly understand the security, privacy, and compliance programs of the third parties you work with. As a result, nearly every organization endures an endless back-and-forth with third parties. Lengthy questionnaires, broken processes, time-consuming reviews; these challenges are common, and as such, there are concrete steps your organization can take to save time and reduce assessment-related headaches.
In this webinar, we’ll outline the ultimate checklist for better vendor risk assessments, including:
– Actionable takeaways to quickly improve your assessment operations
– Long-term changes you can make to set yourself up for success
– Real advice and lessons learned from leading assessment experts
1:20-2:05
Sean Atkinson
Chief Information Security Officer
Center for Internet Security
MODERATOR
Ryan Kalember
EVP, Cybersecurity Strategy
Proofpoint Inc.
Tommy Todd
Vice President of Security
Code42
Scott Giordano
V.P., Data Protection
Spirion
Daniel Mathews
Director, Worldwide Sales Engineering
Constella Intelligence
Frédéric Rivain
Chief Technology Officer
Dashlane
Joseph Carson
Chief Security Scientist & Advisory CISO
ThycoticCentrify
Ryan Sherstobitoff
VP, Threat Intelligence
SecurityScorecard
Insider Threat has become increasingly problematic to businesses as the frequency and cost of these threats have risen over the last several years. In a global study conducted by Ponemon Institute in September of 2019, there was a 31% increase in overall cost of Insider Threat and a 47% increase in the total number of Insider Incidents from 2018.
Today, Insider Threat poses an even greater risk to businesses in the wake of the COVID-19 pandemic. Forrester Research, Inc. reported that in 2020, a quarter of all security breaches were caused by an insider and estimates that in 2021, Insider Threats will account for 33% of security breaches.
This panel will discuss the various factors that contribute to this increase in Insider breaches, how remote work has impacted the malicious & non-malicious Insider Threats facing businesses, and the implications this has on enterprises today. Our lineup of Industry Experts will offer their insight & provide best-practices on how businesses and their IT Security Teams should address these risks and adapt in order to defend against Insider Threats.
2:05-2:30
Kevin Sheu
Senior VP of Marketing
Bitglass
Secure access service edge has quickly emerged as a hot topic in cybersecurity, but what exactly does it mean and why should organizations care? As cloud migration, BYOD adoption, and remote work have skyrocketed in prevalence, it has become increasingly apparent that organizations need to think differently about security. While legacy tools like firewalls are no longer equipped to handle the modern IT ecosystem, SASE platforms like Bitglass are built for this exact moment. In this presentation, you will learn:
2:30-2:55
George Avetisov
CEO & Cofounder
HYPR
With the Passwordless Decade well underway, more and more organizations are asking the question: Why is now the right time to move beyond passwords?
George Avetisov, CEO of HYPR, will discuss the rise of organizations moving to the cloud, how the perimeter fades and the attack surface gets larger. Modern tools such as SNIPR and Modlishka make it easier for hackers to launch large-scale automated attacks, bringing credential re-use and two-factor-authentication attacks to record highs.
How did we get here, and will mainstream adoption of passwordless security have an impact? We will explore how the rise of virtual desktop infrastructure and a remote workforce has affected workstation login and review how the evolution of authentication has impacted organizations’ identity and access management systems.
In this session, you’ll learn:
2:55-3:20
Mark Guntrip
Sr. Director, Cybersecurity Strategy
Menlo Security
If you’re a growing modern business, you likely have an appetite for the secure access service edge (SASE). We hate to break it to you, but there’s no “secret sauce” when it comes to successfully implementing the SASE framework. Every organization is different, with variying priorities for protecting their employees, customers, data, devices, and applications. It’s best to look at SASE as a themed menu of converged technologies that allows you to choose ones that will deliver the maximum business impact. During this discussion featuring Menlo Security’s Senior Director of Cybersecurity Strategy, Mark Guntrip, he invites you to take a seat at the SASE table to learn about the deployment menu you can build for your organization. Attendees can expect to learn:
• Why Zero Trust and SASE are the perfect pairings
• How SASE enables organizations to taste productivity gains
• How organizations can create a mix of satisfying integrated controls
3:20-3:45
Dr. Mike Lloyd
CTO
RedSeal
3:45-4:10
Micki Boland
Cybersecurity Evangelist
Check Point Software Technologies Office of the CTO
Nation States, Non-Nation State Actors, Hacktivists, enterprise cyber criminals, shadow government agencies, terrorist organizations, loosely affiliated groups are using this next level $#@! as we speak to conduct cyber warfare: irregular warfare and proxy attacks, disinformation and disruption campaigns, “truth decay” (RAND Corp); to manipulate and influence public opinion, foment criminal violence; infiltrate organizations to conduct fraud, scam, and harass; highjack legitimate real human accounts for impersonation; and to distribute malware. These are very interesting times we are living in and this is the new cyber battleground.
4:10-5:00
Lynn Dohm
Executive Director
WiCyS
MODERATOR
Sig Murphy
Senior Director, Professional Services
BlackBerry
Andy Stone
CTO - Americas
Pure Storage
Maggie MacAlpine
Security Strategist
Cybereason
Alex Kirk
Global Principal Engineer - Suricata
Corelight
Thom Bailey
Senior Product Marketing Director
Mimecast
Husnain Bajwa
Sr. Manager of Global Sales Engineering
Beyond Identity
Tim Keeler
Founder and CEO
Remediant, Inc.
In 2020, there was an unprecedented growth in ransomware attacks and this trend shows no signs of slowing down. Rather, these attacks are evolving and becoming more harmful as cyber criminals become more organized and effective. It is predicted that in 2021, businesses will fall victim to a ransomware attack every 11 seconds with an estimated cost of over $20 billion – 57 times more than in 2015, making ransomware the fastest growing type of cybercrime.
As a result, companies are transitioning from the traditional “trust but verify” method and implementing a Zero Trust model, requiring all users to be authenticated and continually authorized in order to be granted access and maintain access to company data and applications. By leveraging various technologies & techniques such as multifactor authentication, IAM, least privilege access, and microsegmentation, the Zero Trust model reduces the risk of a ransomware attack and minimizes the potential damage from a breach.
This panel will highlight where enterprises are most vulnerable to becoming a victim of ransomware and how utilizing a Zero Trust model minimizes this risk. Industry experts will discuss best practices to avoid a ransomware attack including adapting the Zero Trust model, what to do if your company is being held for ransom, ways to mitigate the damage caused by an attack, and how to recover afterwards.
5:00-5:25
Michael Greer
Senior Sales Engineer
Malwarebytes
Over the past year, the tools and tactics of cybercrime and cybersecurity adapted against a backdrop of enormous changes to our lives and businesses.
Join us to learn how cybercrime evolved in 2020, and identify ways to safeguard your organization against what’s out there.
We’ll explore:
5:25-5:50
Track ACongratulations on your new Identity! Along with your consumer and workforce users, you now have another identity to welcome to the family. I’m sure you have big plans for it…or do you? While you may have thought of your IoT as just a bunch of edge or infrastructure devices, not managing these “things” as full-fledged identities of your organization may mean missed opportunities and lost revenue.
In this session, you’ll learn:
– Why is too much emphasis being placed on securing these devices and not enough on how they can serve the strategic interests of your organization?
– What are the best practices of managing IoT as identities?
– The benefits of tying together relationships between your device and human.
Join ForgeRock’s Jeff Carpenter, CISSP, CCSP, in this informative and somewhat entertaining discussion of all things Internet of Things.
5:25-5:50
Track BDid you know that 80% of CISOs say that software projects have been hindered by concerns over inevitable security issues? Vulnerabilities don’t need to slow you down. Join HackerOne for a discussion on “Why the future of DevOps needs Hackers.”
Key takeaways
1. How organizations collaborate with hackers
2. How bug bounty data insights empower development teams
3. How companies like Spotify are keeping their applications secure
5:50-6:15
Whether a start-up or an enterprise, you are probably working with multiple vendors, using their software and reliant on their systems. Yet while these external vendors provide invaluable services, they also introduce significant risk to your company’s information security.
How do you know if your vendors are meeting required contractual, security and privacy obligations?
If you don’t have processes in place to assess the risks these third parties pose, then your answer is most likely you don’t. And this is critical: You need to know the risks of working with third parties and that you can trust them — because if they go down, your business may, too.
Assessing risk, however, can be incredibly complex. Traditional risk management approaches that rely on manual processes, spreadsheets and even survey methods don’t scale well and are not automated enough. And they certainly can’t support a third-party vendor network once it reaches a certain size: spreadsheets and email folders become overwhelming, ad hoc processes and reporting cycles create confusion, and manual reviews lead to missed issues and trends. In fact, the more successful an organization is – and the more third-party vendors they work with – the more automation and continuous monitoring are required.
At Reciprocity, we work with companies of all sizes to help streamline and improve third-party risk management. Join Reciprocity CISO Scott McCormick and VP Rob Ellis as they walk you through:
6:15-6:40
Stephen Magill
Vice President of Product Innovation
Sonatype
6:40-7:10
Quinn Carman
Chief
The NSA, Red Team
Prior to defending an organization against a determined attacker, their techniques must be understood. This presentation provides an adversarial viewpoint to inform network defense leaders how the attackers see their organizations and are able to be successful with their objectives, even when well defended. The presenter will draw upon over 17 years of personal experience as a Red Team operator and leader to illustrate how your organizations are viewed, through the eyes of an adversary.
Discuss and share the latest in cyber protection with our renowned security experts during interactive Panels & Round Table discussions. View our Security Content Sharing portal for past Cyber Security Summit solutions to protect your business from cyber attacks.
The Cyber Security Summit connects cutting-edge solution providers with Sr. Executives to analyze & diagnose cybersecurity flaws through interactive panels & roundtable discussions. View the latest presentations given at the Cyber Security Summit through our Security Content Sharing portal.
The Cyber Security Summit is proud to be in partnership with some of the industry’s leading organizations in technology, information security, and business leadership.
If your media outlet or association is interested in becoming a strategic industry partner with The Cyber Security Summit, please contact Megan Hutton at MHutton@CyberSecuritySummit.com or call at 212.655.4505 ext 241.
Find out how you can become a sponsor and grow your business by meeting and spending quality time with key decision makers and dramatically shorten your sales cycle. View Prospectus
Cookie | Duration | Description |
---|---|---|
cookielawinfo-checkbox-analytics | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics". |
cookielawinfo-checkbox-functional | 11 months | The cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional". |
cookielawinfo-checkbox-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
cookielawinfo-checkbox-others | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other. |
cookielawinfo-checkbox-performance | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance". |
viewed_cookie_policy | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |