Chicago CISO Community
Executive Summit
December 2, 2026 | Convene at 233 South Wacker Drive (Willis Tower)
December 2, 2026
Convene at 233 South Wacker Drive (Willis Tower)
Collaborate with your peers
Get together with Chicago's top CISOs to tackle shared business challenges and critical priorities facing your role today. Participate in this one-day, local program with peer-driven topics and interactive discussions with your true C-level peers.
Join your peers to discuss the most critical issues impacting CISOs today:
Positioning AI Governance as a Model for Trusted Innovation
Redefining Security Leadership for the Resilience Era
Modernizing Exposure Management for the Autonomous Future
Chicago CISO Governing Body
The Governing Body Co-Chairs shape the summit agenda, ensuring that all content is driven By CISOs, For CISOs®.
Governing Body Co-Chairs

Chris Lugo
Blue Cross Blue Shield Association
VP, CISO

Carl McDonald
Reyes Holdings
CISO

Angela Williams
UL Solutions
SVP, Global CISO
What to Expect
Agenda
Breakout Sessions
The Agentic Reality — Securing AI in Production
The cybersecurity community spent years preparing for AI by creating policies and governance frameworks. Now, AI agents moved from theory to practice, executing workflows and reshaping enterprise security.
Join this session to learn about:
- Exploring dual-track strategies needed to succeed
- Protecting the enterprise from risks of autonomous "Shadow AI"
- Leveraging agentic capabilities to scale InfoSec operations to machine speed
Future Threat, Present Action — CISO Perspectives on Quantum Readiness
Quantum computing may still be a future threat, but the window to prepare is already shrinking. As standards evolve and organizations seek to better understand long-term cryptographic risk, this session explores how security leaders are approaching post-quantum readiness as an enterprise change initiative, not a quantum project.
In this CISO-led session, you'll hear how peers are:
- Building executive urgency by translating post-quantum risk into business impact
- Assessing cryptographic dependencies and organizational readiness for change
- Prioritizing quick wins that deliver value today while supporting long-term resilience
Rethinking Security for the Age of Agents
Agents are becoming the biggest opportunity in the enterprise, and the biggest adversary. They read your data and act under borrowed identities, at a speed no human review process was built to match. The old question in security was how to keep bad actors out. The new one is more complex: how do you create and manage the biggest risk in your own enterprise, the agents you deployed on purpose?
Join this keynote to hear about:
- Establishing a framework where data, identity, and agent security operate as one system
- Shifting from asking whether you can trust your agents to determining what access they can be trusted with
- Balancing innovation and risk by creating visibility needed to understand agent activity
The Outcome-Driven CISO in the Machine-Speed Era
Today’s pace and scale of change exceed what security teams were built to handle. The tools are fragmented, the workflows are manual, and teams have been pushed to their limits. In the machine-speed era, CISOs must modernize security programs with agentic AI to drive meaningful outcomes.
Join this session to explore:
- Using agentic AI to replace manual security workflows that consume teams today
- Scaling autonomous defense operations continuously without added headcount or tools
- Measuring and communicating machine-speed defense outcomes with the board and executive team
Designing an AI Strategy Built to Last
AI capabilities, risks, and regulations are evolving faster than most governance models can keep pace. For CISOs, success isn’t about predicting every new development or having a perfect framework, but about building adaptable decision-making processes, effective controls, and strong feedback loops. Organizations making the most progress view AI security and governance as ongoing organizational skills—key to supporting responsible innovation while maintaining trust and agility.
Join fellow CISOs in a candid, peer-led discussion to explore:
- How AI security and governance assumptions are changing, and knowing when strategies need to evolve
- Which security, governance, and data protection practices remain effective as AI advances
- Building the organizational agility to reassess decisions, respond to new risks, and support changing business priorities
10-Minute Wins
Why learn from one peer when you can learn from two? In this unorthodox—but highly effective—breakout session, you’ll hear from multiple members of your community. Each speaker will take the floor for 10 minutes to share the most valuable lessons they’ve gleaned from their time in leadership.
Executive Boardroom Sessions
Privilege, Integrity, Recovery —The New Rules of Enterprise Data Protection
As AI accelerates the creation and utilization of data, organizations face unprecedented challenges in securing their most valuable asset. Shadow AI, dark data, and the proliferation of distributed applications have rendered traditional data protection methods insufficient. In this evolving threat landscape, security leaders must adopt risk-based, adaptive strategies to safeguard innovation, ensure compliance, and maintain operational resilience.
Join this boardroom session to discuss:
- Unifying data protection and compliance across workloads
- Ensuring regulatory compliance and business continuity through robust, future-ready solutions
- Accelerating cyber recovery with AI-driven tools
Proving ROI — AI Risk Reduction Strategies
CISOs have moved beyond AI experimentation. Now, executives ask: Are 2025’s investments actually reducing risk? The challenge is how to operationalize AI against evolving threats — and prove its value.
Join this session to discuss:
- Strategies for reducing high-risk incidents and fraud
- Embedding AI into core security operations to reduce risk
- Demonstrating risk reduction with actionable metrics
The Outcome-Driven CISO in the Machine-Speed Era
Today’s pace and scale of change exceed what security teams were built to handle. The tools are fragmented, the workflows are manual, and teams have been pushed to their limits. In the machine-speed era, CISOs must modernize security programs with agentic AI to drive meaningful outcomes.
Join this session to explore:
- Using agentic AI to replace manual security workflows that consume teams today
- Scaling autonomous defense operations continuously without added headcount or tools
- Measuring and communicating machine-speed defense outcomes with the board and executive team
Gartner Keynote Session
Breaking the Leadership Patterns That Stall Transformation
Transformations rarely fail because of technology -- they fail when leaders allow competing priorities and dysfunctional behaviors to derail decision-making. If it feels like you've seen this movie before, it's because you have; these are the same patterns that have plagued transformations for decades. But as AI demands deeper collaboration across functions than any previous wave of innovation, unresolved leadership dynamics, organizational politics, and misaligned incentives become harder to ignore. The key to creating lasting change is recognizing and breaking these patterns before they become barriers to progress. That is what transforms a technology leader into an influential business leader.
Join this keynote to explore:
- Building executive influence by creating alignment around outcomes, not activities
- Navigating tradeoffs, competing priorities, and uncertainty with greater credibility and confidence
- Moving beyond functional expertise to become a catalyst for business decisions
Keynote Session
The Chief Context Officer — Resilience Begins with Shared Understanding
Business leaders prioritize growth, innovation and outcomes. Security leaders prioritize risk, resilience and protection. Both perspectives are valid, but what's often missing is shared context.
Jim Petrassi, Chief Technology & Information Security Officer at Health Care Service Corporation, believes shared context is the foundation of resilience. In this fireside chat, he'll discuss how creating a common understanding across technology, security, operations and the business drives stronger alignment, better decision-making and organizational readiness.
This fireside chat explores:
- Effectively translating between business priorities, technology strategy and security risk
- Why shared context is the foundation of resilience
- Breaking down silos to drive alignment and response readiness
Apply to Participate
Each application is carefully vetted to ensure members meet established criteria, preserving the quality of the network and enabling meaningful, peer‑level discussions among leaders from the world’s leading organizations.
Once you submit your application, a Community Program Manager will schedule a conversation to understand your priorities and interests and complete onboarding, including access to year‑round community events.
Location
Venue & Accommodation
Convene at 233 South Wacker Drive (Willis Tower)Community Program Manager
For inquiries related to this community, please reach out to your dedicated contact.
