
Boston CISO Executive Summit
November 20, 2019 | Westin Copley Place, Boston
November 20, 2019
Westin Copley Place, Boston
Collaborate with your peers
Get together with your peers to tackle top business challenges through peer-driven content and discussions at the Boston CISO Executive Summit.
Join your peers to discuss the most critical issues impacting CISOs today:
Strategies for a risk-aligned, resilient organization
Developing and investing in the security workforce of tomorrow
Creating business value and supporting agile business operations
Boston CISO Governing Body
The Governing Body Co-Chairs shape the summit agenda, ensuring that all content is driven by CISOs, for CISOs.
Governing Body Co-Chairs

Kevin Brown
Boston Scientific
CISO

Larry Jarvis
Iron Mountain
CISO
Taylor Lehmann
athenahealth
CISO
Holly Ridgeway
Citizens Bank
Chief Security Officer
Agenda
November 20, 2019
7:00am - 7:45am Registration & Breakfast
7:45am - 8:00am Opening Comments
Opening Comments
Opening Comments
8:00am - 8:30am Keynote
Leadership Lessons From a Sled Dog Team
Hosted by Lighthouse Computer Services, a Converge company
Blair Braverman
Leadership Speaker
Author & Thought Leader
A long-distance dogsledder is wholly responsible for her dog team's morale, attitude, and motivation in high-pressure situations. Learn how a musher earns and keeps the trust of her dog team — and how those leadership lessons can be just as effective for a human team.
Join this session to learn:
- How a musher leads her team from behind
- How to work through communication barriers
- Go-to steps for solving problems and tackling challenges along the way
8:30am - 9:00am Networking Break
9:00am - 9:50am Breakout Session
The CFO — CISO Partnership
Hosted by Cybereason

Jay Carter
Dir., Information Security
MEMIC
Dan McGarvey
SVP & CFO
MEMIC
Building strong relationships is an integral part of being an effective leader, so how can CFOs and CISOs embrace their unique partnership? Finance and security leaders face challenges that put them in a position to collaborate and magnify their impact.
This session will answer the community’s questions and give you the chance to discuss:
- How CFOs prioritize cybersecurity investments
- What a CISO can do to better communicate with the CFO
- CFO board communication best practices applicable to CISOs
9:00am - 9:50am Breakout Session
Doing Everything Right and Still Getting Hacked
Hosted by Fortinet, Inc.

Aamir Lakhani
Global Security Strategist
Fortinet
Why do organizations still get breached when they are performing pen tests, auditing networks, following compliance, and implementing the latest security technologies that take advantage of anomalous behavior models, artificial intelligence, and machine learning?
This talk will examine:
- Real-world breach examples
- How cybersecurity failed to keep attackers away
- What could have been done to keep attackers out
9:00am - 9:50am Executive Boardroom
Protecting Your VIPs, and Your VAPs (Very Attacked People) Too
Hosted by Proofpoint

David Escalante
Dir., Computer Policy & Sec.
Boston College
Daniel Gortze
Director of IT Security & Infrastructure
Cumberland Farms

Lucia Milica
Resident CISO
Proofpoint
For years, we’ve seen attackers target organizations via their people. Now with fewer reliable exploits and more cloud adoption, we’re also seeing a shift toward attacks that exploit people, with threat actors tricking their targets into running their malware for them, handing over their credentials, or simply sending data or money to an impostor. Ryan Kalember of Proofpoint will outline strategies for gaining visibility and mitigating risk in a people-centric threat landscape.
Join to learn:
- Why nearly all threat actors have shifted away from technical exploits to compromise their targets
- How organizations can leverage threat data to understand which people and departments are highly targeted
- How to design effective protection for highly attacked, highly vulnerable, and highly privileged users
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs). To reserve your seat, please contact your event Program Manager, Rebecca Buchanan at +1-971-717-6645 or rebecca.buchanan@evanta.com.
9:00am - 9:50am Executive Boardroom
Next-Generation Cloud Security
Hosted by IBM
Rajesh Goyal
VP, Digital Security
Fidelity
Parag Pathak
Team Lead, Product Marketing
IBM
As organizations increasingly turn to cloud-based services, security leaders face the immense challenge of ensuring the enterprise’s data remains secure. Join this session to learn the emerging best practices your peers employ to secure the cloud.
In this boardroom we’ll discuss:
- Nuances for hybrid on- and off-premise systems
- Ways to incorporate security into your cloud strategy
- Automation, orchestration, and next-generation cloud security
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs). To reserve your seat, please contact your event Program Manager, Rebecca Buchanan at +1-971-717-6645 or rebecca.buchanan@evanta.com.
9:50am - 10:20am Networking Break
10:20am - 11:10am Breakout Session
A Problems and Solutions Workshop
Hosted by Snyk
Holly Ridgeway
Chief Security Officer
Citizens Bank
Got a problem you need solved? Got a solution you can provide? This session encourages interaction between attendees to share problems and solutions to pressing needs – from small to big. Leave this session knowing you received or offered a viable solution or resource.
10:20am - 11:10am Breakout Session
Leading Your Board to the Next Frontier — Organizational Analytics
Hosted by SecurityScorecard
Mike Maziarz
Chief Marketing Officer
SecurityScorecard
Mark Teehan
Chief Information Security Officer
Harvard Pilgrim Health Care
Today, boards have a fiduciary duty to know about the cybersecurity risks of their organizations. We’ve all seen how a cybersecurity breach can have harsh consequences not just for the company, but for the CISO. In this session, learn how to take charge of your organization’s cybersecurity health and shine as a CISO with leading-edge analytics.
In this session, you’ll explore how to:
- Create a trusted dialogue with your board by providing transparency into cybersecurity posture of your entire risk ecosystem
- Educate, influence, and get buy-in for cybersecurity investments with predictive insights
- Use organizational analytics to develop crystal-clear reporting to enable the board to make informed decisions about budget, people, and tools
- Turn your organization’s cybersecurity posture into a differentiator
10:20am - 11:10am Executive Boardroom
Modern Approaches to Protecting Your Third-Party Ecosystem
Hosted by CyberGRX
Brian Palazini
Chief Information Security Officer
Analog Devices

Scott Schneider
Chief Revenue Officer
CyberGRX
It's no secret that hackers are opportunistic. They are constantly looking for the weakest link and are quick to capitalize on one as soon as it's spotted.
This boardroom will discuss:
- Third-party cyber risk best practices
- New strategies for third-party cyber risk management (TPCRM) and how they work
- How to scale your third-party cyber risk management (TPCRM) program to evolve with your ecosystem
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs). To reserve your seat, please contact your event Program Manager, Rebecca Buchanan at +1-971-717-6645 or rebecca.buchanan@evanta.com.
10:20am - 11:10am Executive Boardroom
Maximizing the Rewards of Information Governance
Hosted by Tevora
Joe Burgoyne
Sr. Director, Cyber Security
GE Healthcare
Tim Jacobs
Director, Information Security Governance and Emerging Technologies
Blue Cross Blue Shield of Massachusetts

Jeremiah Sahlberg
Director of Information Security
Tevora
A growing concern for privacy protection and the proliferation of both internal and external risks has led CISOs to a critical information governance crossroads. An effective information governance strategy can stop-up potential access points and shield the company from legal and compliance risks but can also be perceived as a barrier to maximizing the value of a company’s data.
Join this boardroom session to discuss:
- A proactive approach to the policies, methodologies and controls
- How to find a balance between business and security
- Identifying an appropriate governance direction
Executive boardrooms are intimate and interactive sessions designed to foster dynamic dialogue around a specific, strategic topic. These private, closed-door discussions encourage attendee participation and are limited to 15 attendees (seating priority is given to CISOs). To reserve your seat, please contact your event Program Manager, Rebecca Buchanan at +1-971-717-6645 or rebecca.buchanan@evanta.com.
11:10am - 11:40am Networking Break
November 20, 2019
Community Program Manager
For inquiries related to this community, please reach out to your dedicated contact.