Where Industry Leaders Meet to Shape the Future

Security Leaders Summit - West
Held on Friday, October 28, 2011
The Ritz-Carlton San Francisco
San Francisco, CA
The Security Leaders SummitSM - West 2011 was held Friday, October 28, 2011 at the Ritz-Carlton San Francisco. Attendees represented the west region from organizations including Axciom Corporation, Applied Materials, Ariba, BlackRock, Blue Shield of California, East West Bank, eBay, Hyatt Hotels, Intermountain Healthcare, Jamba Juice, Lawrence Livermore Labs, McKesson, Pacific Gas & Electric, Restoration Hardware, Robert Half International, Safeway, St. Luke's Health System, Sutter Health, The Clorox Co., Twitter, University of California at Berkeley, and Well Fargo & Co. to name a few.
The Summit offered an extraordinary opportunity to spend time with some of the most successful leaders in the industry. Focusing on key issues and opportunities for success on topics such as mobility, cloud, governance, and big data, the one-day Summit provided attendees the opportunity to collaborate, share best practices, and challenge their thinking. Be sure to visit the photo gallery.
Richard Warner, Summit Emcee and CEO, What'sUp Interactive, kicked off the morning session with opening comments that included a brief overview of some of the latest impacts to the security industry that have made recent news.
Neil Jones with IBM, Platinum sponsor of the Summit, shared at little bit of insight on the recent news of their new CEO, Ginni Rometty, who will take office in January.
Mike Wilson, Vice President and Chief Information Security Officer, McKesson Corporation was the morning Keynote Speaker. Mike leads the security and IT risk management functions for the Corporation and is focused on maturing risk management and security functions to provide more value to their sponsoring organizations. Mike shared his insights into the "digitalization of healthcare" and the unique security challenges this industry faces.
In the session, "Insights and Dialogue", emcee Richard Warner posed questions to the the guests about Gartner's recent projected top 10 strategic technology trends for 2012 and their possible impact to security organizations.
Guests enjoyed networking during the morning break in the Sponsor Pavilion.
Rated as one of the top sessions by Summit attendees, Mike Montecillo, Senior Threat and Intelligence Researcher with IBM Corporation, Platinum Sponsor, covered highlights from the recently published IBM X-Force 2011 Trend and Risk Report which paints a picture of state of internet security threats.
With the Summit hosts leading nine different roundtable topics in the afternoon Executive Roundtable sessions, it was standing room only for some of the tables, especially where mobility topics were discussed.
Chris King, Director of Product Marketing at Palo Alto Networks, Gold sponsor, explored the strengths, weaknesses, opportunities, and threats associated with social networks and provided recommendations on how enterprises might safely enable these applications.
The afternoon sessions wrapped up with Ariel Silverstone sharing his insights into the "mobile tsunami" and the perfect storm that he sees on the horizon as organizations try to prepare themselves for a complete paradigm shift in how mobile devices will be viewed in the future.
Discussions and great networking continued as guests enjoyed the evening reception.
IBM presented their latest findings from their soon to be released "Emerging Attacker Trends" created by their Managed Security Services Intelligence Center. To receive a copy of the report, visit http://www-03.ibm.com/security/landscape.html. For additional information, please contact Neil Jones, nkjones@us.ibm.com.
Founded by security visionary, Nir Zuk, Palo Alto Networks, offers real innovation in the firewall, enabling unprecedented visibility and control of all applications and content—by user, not just IP address—at up to 20Gbps with no performance degradation.
The Definitive Firewall Buyers Guide The firewall has been a mainstay of network security, but the needs of organizations are changing rapidly. How is the firewall evolving to meet the challenges of today's dynamic environments? Cut through the noise and hype, check out the buyers’ guide from Palo Alto Networks with a forward from IANS – It is the definitive resource guide that talks about the key requirements, generating an RFP and performing formalized testing.
BusinessWeek: Building a Firewall for the Facebook Generation Palo Alto Networks is updating the corporate firewall to handle modern Web services like social networks, Skype, and Google Docs. Read this BusinessWeek article to find out how.
For more information contact Zhanna Tam at 408-718-5611 or at ztam@paloaltonetworks.com.
Blue Coat Systems is a leading provider of Web security and WAN optimization solutions. Blue Coat offers solutions that provide the visibility, acceleration and security required to optimize and secure the flow of information to any user, on any network, anywhere. This application intelligence enables enterprises to tightly align network investments with business requirements, speed decision making and secure business applications for long-term competitive advantage. To learn more about Blue Coat, please visit http://www.bluecoat.com or download information: Download the latest research and reports (Zip 1.7MB)
Lumension Security, Inc., a global leader in endpoint management and security, develops, integrates and markets security software solutions that help businesses protect their vital information and manage critical risk across network and endpoint assets. Lumension enables more than 5,100 customers worldwide to achieve optimal security and IT success by delivering a proven and award-winning solution portfolio that includes vulnerability management, endpoint protection, data protection, antivirus and reporting and compliance offerings. Lumension is known for providing world-class customer support and services 24x7, 365 days a year. More information can be found at www.lumension.com

Privacy Policy | Security Policy | Purchase Policy
© 2010-2012 Executive Alliance, Inc. All rights reserved.
We have created this privacy policy to demonstrate our commitment to protecting information you submit. This privacy policy only applies to transactions made, and data gathered, on this web site and does not apply to any other transactions, information, web site or Internet, telephone or offline point of contact. Please review this privacy policy periodically as we may update it from time to time. This privacy policy was last revised April 22, 2010. Each time you visit our website or provide us with information, by doing so you are accepting the practices described in this privacy policy at that time. You agree that by using the site you are consenting to our use and disclosure of the information that you provide, and consenting to receive emails, as described below in this privacy policy. Executive Alliance's privacy policy is subject to change per the posting of updated information on this website.
In order to operate our site and provide you with information on products and services that may be of interest to you, we may collect contact information (i.e., information that could be used to contact you such as full name, postal address, phone number and email address).
Executive Alliance collects information to process registration and tickets for events and programs. No information is shared outside the company, other than to a few select sponsors of our events. Internally in our company, your information is only used in accordance with providing services to you for the events you attend (i.e., nametags) or with information on products and services that may be of interest to you.
The site has security measures in place to protect against the loss, misuse and alteration of the information under our control. We use secure socket layer (SSL) technology to protect the security of commerce transactions. We encrypt your contact information and financial information as it travels over the Internet and we store your financial information on our servers in encrypted form.
Your information may be transferred to and maintained in whole or in part on computer networks which may be located outside of the state, province, country or other governmental jurisdiction in which you reside, and the country or jurisdiction in which these computer networks are located may not have privacy laws as protective as the laws in your country or jurisdiction. Some of the facilities and equipment used to store your information may be owned, controlled or operated by third parties.
Policies set forth by many companies that we partner with such as venues and other event locations, prohibit refunds after a purchase has been made or for lost, stolen, damaged or destroyed tickets. When you receive your confirmation, please keep it in a safe place.
In the rare event that a program is cancelled or postponed by, please contact us for more information on receiving a refund. If the event is moved or rescheduled, we have the right to set refund limitations.
CEO, Executive Alliance
As CEO of Executive Alliance, Mary Lou Heastings has responsibility for guiding the continued expansion of the company's portfolio of technology related executive summits, awards, roundtables, and custom programs across the country. With significant experience in management, information technology, finance and operations, Ms. Heastings recently launched the publishing arm of Executive Alliance to promote the successes of executives across different industries.
Previous to Executive Alliance, Ms. Heastings had over 20 years of software experience in e-business and global reservations systems for the travel industry with responsibility for developing strategies and deploying enabling technologies in the business information environment. She directed a staff of 150+ technical professionals at Worldspan with responsibilities for implementing corporate business applications in the United States and 28 countries around the globe. In addition, Ms. Heastings has previous experience in strategic planning, business development, and software development with companies such as Delta Air Lines and Holiday Inn.
Ms. Heastings was co-recipient of the ATHENA Award for women business leaders having an impact on the workplace. She was recognized in "Who's Who in Technology" in the Atlanta Business Chronicle, on the cover of Georgia Trend Magazine as an executive leading change, and featured in the Atlanta Journal and Constitution for her leadership role in developing e-business strategies. An avid boater, Ms. Heastings earned her Captain's license in 2004.
Host and Announcer of Formula 1 Racing, The Speed Channel

Bob Varsha is one of the more prominent on-air personalities for SPEED Channel. He is the host of the network's live Formula 1 coverage along with David Hobbs and Steve Matchett. Bob began his television career covering sports for TBS in 1980, moved to ESPN in 1986, and moved to Speedvision in 1999, where he hosted Speedvision New,s Raceweek, and Speedvision coverage of Formula One, the 24 Hours of Le Mans and the 12 Hours of Sebring. Varsha also commentates on the Barrett-Jackson auction on Speed in Scottsdale and Palm Beach annually.
Bob Varsha attended Dartmouth College graduating with a bachelor of arts degree in foreign language in 1973. While attending Emory University Law School he competed as a two-time Olympic Trials marathon finalist. As a practicing attorney in Atlanta, Varsha accepted an invitation from Turner Broadcasting to cover a popular footrace in his home town in 1980, a performance that led to an offer of a part-time job from TBS and a new career.
Senior Vice President and Chief Security Officer, AT&T Services, Inc
Dr. Edward G. Amoroso serves as Senior Vice President and Chief Security Officer for AT&T Services, Inc. His responsibilities include real-time security protection of AT&T's network and computing infrastructure – including mobility services; security policy, planning, and architecture for AT&T's enterprise; security support for AT&T's IPTV and entertainment initiatives; and lead design, development, and operations support for AT&T's managed and network-based security services.
Ed's twenty four-year career at AT&T began at Bell Laboratories, where he worked on securing the Unix operating system, as well as numerous federal government security initiatives. More recently, he has championed AT&T's network-based security strategy, centered around emerging in-the-cloud protection services such as Network-Based Firewall and DDoS Defense. Ed has authored numerous research papers, articles, and four books on information security, and is at work on a new book entitled "e;Protecting National Infrastructure from Cyber Attack," which should be available soon. He is the 1999 winner of the AT&T Labs Technology Medal for his contributions to large-scale intrusion detection.
Ed holds M.S. and Ph.D. degrees in computer science from the Stevens Institute of Technology and is a graduate of the Senior Executive Program at the Columbia Business School. He has served as an Adjunct Professor in the Computer Science Department at Stevens for the past twenty years, and his work has been featured by the Wall Street Journal, CNBC, Network World and the New York Times.
Senior Vice President, PGi
As an innovator and progressive Security Specialist, Jeffrey continues to be at the forefront of creating and implementing new solutions and techniques to organize and protect data. Over his career, Jeffrey has delicately balanced the need for securing access to data, against usability, and the wide-scale adoption of entitlement and data loss protection solutions. Recently, Mr. DiMuro filed a patent for a newly developed e-Delivery solution which he coined S.T.E.P. - Secure Transfer Electronic Present. This bi-directional Secure Email solution creates an end-to-end encrypted pathway to transmit sensitive.
Jeffrey holds a BS in Finance from the College of NJ, and a JD/MBA from Widener University School of Law.
Chief Information Security Officer, DuPont
Larry Brock has been working for DuPont for 32 years in Information Technology, Research & Development, and Marketing. He has worked in several functional groups and businesses across DuPont; including the Corporate IT group, Imaging, Fibers, and Nylon. He served as an Information Security Officer within the U.S. Air Force and assigned to the National Security Agency (NSA). He served on active duty at the NSA for 4 years and then in a reserve capacity for 26 years. Mr. Brock has BS and MS degrees in Electrical Engineering and is a certified information security manager, CISM.
President and CEO, Freud America, Inc.
Russell Kohl has been at the helm of the organization as President/CEO since 2002. Before assuming the head leadership role, he was VP of Sales and Marketing for two years at Freud. Prior to Freud, Russell held a variety of marketing and sales roles at Black & Decker/DeWALT, in addition to his experience as VP of Sales, Marketing, and Engineering with Peachtree Doors and Windows..
Chief Information Security Officer, GE Capital - Commercial Finance
14 Years with General Electric - started as a Technical Services Manager in GE Capital, Vendor Financial Services, moved into Information Security in 2000 with responsibility for Mid-Market Finance, and is now responsible for Information Security and Data Protection globally at GE Capital (Commercial Lending and Leasing, Real Estate Financing, Energy Financial Services, and Capital Aviation Services), a group of businesses that generates more than $31 Billion per year in Revenue, providing over $2.5 Billion per year in Net Income and managing over $360 Billion in assets.
Prior to that, James worked at Trinity Industries, Inc (a Fortune 500 Dallas based manufacturing company) for 8 years in a variety of IT leadership positions.
James is actively involved in the (ISSA) Information Systems Security Association and (ISACA) Information Systems Audit and Control Association, which work to drive standards, improvements, and networking in security and risk management globally. He also participates in Infragard to improve communications between the public and private sectors related to protecting our critical infrastructure.
He was Co-Chair of the CISO Executive Summit in Dallas in 2010, participates as Keynote Speaker at several SecureWorld events across the country, as well as other conferences, and is frequently a guest speaker for radio and video broadcasts.
James also works closely with the SINET (Security Innovation Network) to promote public and private sector collaboration and increase the awareness of innovative emerging companies.
He has an MBA from Southern Methodist University with a Finance emphasis and a BBA with a major in Management and Leadership. He is Certified in Risk and Information Systems Control (CRISC), and also Six Sigma Quality certified.
James is based out of McKinney, Texas.
Vice President, Chief Information Security Officer, Blue Cross Blue Shield of Illinois, Inc.
Raymond Biondo has been CISO of Health Care Service Corporation (HCSC) since 2006. Mr. Biondo's responsibilities include information security for the HCSC enterprise and information access regulatory compliance. He is also responsible for overseeing access control, IT Risk Management, Internal Controls Governance, and regulatory compliance.
He has quickly accelerated the progress of a very large enterprise disaster recovery program as well as developed a complete enterprise business continuity program. He has established a distributed professional disaster recovery function, created dynamic enterprise weekly reporting suite for senior officers and base lined measurable risk.
He has established an innovative organization design, which incorporates the non-technology internal business partners in the IS decision and development cycle.
Mr. Biondo has developed the Information Security services within HCSC to become recognized as one of the best protection services in healthcare. Prior to joining HCSC, Mr. Biondo served as a senior vice president at Aon Corporation.
Vice President, Information Technology, AmerisourceBergen Specialty Group
Richard Burk has over thirty years in the IT Industry with 20 of those years in IT Management and 10 years in Information Security. For the last nine years, he has managed the IT Infrastructure & Operations of AmerisourceBergen Specialty Group. Richard was responsible for the design of the new Datacenter in Frisco Texas and the Disaster Recovery Center in Dallas and now runs the day to day operations of a $16 Billion division of a Fortune 26 company.
Richard started off as a night operator and then a programmer and quickly developed a strong background in networks. For 14 years, he fostered a deep operational experience with Texas Instruments. Other IT stints for Richard has included Telxon Corporation, where he was the Southwest Region's Director of Technical Services and, just prior to his current job, he served as first Director of Professional Services for Check Point Software Technologies.
Richard graduated from the University of Oklahoma in 1978 where he achieved a B.A. in Economics and the equivalent to a minor in Math. Richard's organization received the “2008 Nemertes Research Pilot House Award for Virtualization Integration”, and won lthe “2009 Executive Alliance Central Region ISE Security Project of the Year”. In March of 2010 Richard was named to the ComputerWorld Top 100 IT Leaders for the class of 2010.
Director, Head of Information Security, Stinson Morrison Hecker LLP
Mr. Davidson currently serves as the Director of Information Security at Stinson Morrison Hecker LLP, a national law firm with offices in nine locations across the country. He is responsible for managing Information Security and Business Continuity for the firm. Prior to Stinson, he was a Network Manager for the City of Lees Summit and has been in the industry for over twenty years. Past honors include holding the title of President of Kansas City VMUG. He is active in ILTA and has been a featured speaker.
Chief Information Security Officer, Textron Information Services, Textron, Inc.
As Chief Information Security Officer, Richard is responsible for developing, maintaining and assuring continuous improvement of Textron's Information Technology Security programs, policies and processes. This includes leadership of the Information Technology Risk Management (ITRM) Council which is a team of Security leaders from across Textron's Business Units and COEs. Richard is also responsible for IT Privacy governance and leads the IT portion of the electronic discovery (eDiscovery) program for Textron.
Richard was the Sr. Manager of IT Audit for Textron Audit Services prior to becoming CISO in 2007. In this role, Richard led site visits and assessments of all Textron's business unit IT functions and leadership and development of a staff of multi-national auditors in the US and Europe.
Prior to joining Textron in 2004, Richard worked at PricewaterhouseCoopers. He held various positions which performed eDiscovery Data collections, electronic Forensic investigations, IT Security Consulting and reviews.
Richard has a Bachelor of Science in Computer Science from the University of Texas at Tyler. He is a certified DFSS Green Belt and has additional certifications in IT, IT Forensics, IT Data Privacy, eDiscovery, IT Audit, and IT Security. He is recognized as an industry SME in the area of eDiscovery and Forensics and frequently speaks at security related events, functions and conferences.
Richard resides in Fort Worth Texas. He and his wife D'Anne are very active in their church and enjoy spending time with their daughter Lauren.
Vice President of Information Security, Edelman
John Iatonna is Vice President of Security at Edelman, Inc. With over 10 years of experience in IT, John joined Edelman in 2010 to lead their global information security practice. Prior to joining Edelman, John managed network security for Brunswick Corporation where he was responsible for the security elements of a 150-site global network.
He is an accredited information security professional (CISSP), a certified project manager (PMP) and an active member of ISSA - Chicago chapter. John holds a bachelor's degree in Business Administration from DePaul University.
Vice President, Chief Privacy Officer, Chief Information Security Officer, USAA
Jack is Vice President, Chief Information Security Officer and USAA's Chief Privacy Officer. Jack is responsible for ensuring the integrity, privacy and confidentiality of USAA's electronic information assets, including the planning, design, and development of information security strategies for USAA and the appropriate sharing of USAA corporate and member data.
Jack began his career with USAA in 1982. In the past 28 years, Jack's area of responsibility has included both technical and management roles, with the last 18 years in roles related to Information and Systems Security.
Jack has a BBA in Accounting and Business Management from UTSA, and an MBA in Business Management from Incarnate Word University.
Chief Information Security Officer, Blue Cross Blue Shield Minnesota
Caleb Merriman joined Blue Cross and Blue Shield of Minnesota as chief information security officer (CISO) and senior director information services (ISS) on March 10, 2010. He is responsible for the company's overall information security program including security infrastructure design and architecture, information risk management, identity and access control, program governance, business continuity planning and information systems disaster recovery. Merriman has more than 25 years of experience building and leading high-performing technology infrastructure,application development, compliance, and security organizations. Prior to joining Blue Cross, he served as Chief Information Security Officer for Guidant Corporation and Director of Information Security for Target Corporation. Merriman is also a Lieutenant Colonel and C-130 pilot in the United States Air Force Reserve. Prior to his civilian career he served on active duty for 9 years and continues to serve as a reservist with the 934th Airlift Wing in Minneapolis. During his military career he has deployed to the middle-east 7 times and has been decorated for combat operations Desert Shield, Enduring Freedom, and Iraqi Freedom. Merriman has a Bachelor of Science in Engineering from the University of Florida; a Masters of Science in Computer Information Systems from the University of Phoenix; and has a CISSP certification.
Senior Research Analyst, Nemertes Research
Notice: Undefined variable: TedLitterBio in /home/securityleaders/www/itsecurityleaders.com/v3/includes/inc_footer.php on line 109
Chief Content Officer and Host/Managing Editor, Splash Media
Whether it's journalism or marketing, it all involves storytelling. That was San Miguel's job for 30 years as a reporter and anchor for local and national broadcast outlets, and it's still what he does for a living as Splash Media's chief content officer and host/managing editor for Splash's spark360 news-style profiles of small/medium-sized businesses.
San Miguel began his career at his hometown newspaper before making the switch to broadcast news. He has worked as an anchor/reporter in San Angelo, Austin, San Francisco, Dallas and Seattle. His work at WFAA-TV in Dallas resulted in Emmy and Casey Awards for projects on welfare reform and media violence. He then moved on to CNBC as a technology reporter during the dot-com boom, and briefly worked for CBS Marketwatch, where he also contributed tech stories for "The Early Show" and web-only interviews for Marketwatch.com.
From 2001-2007. San Miguel was an anchor/reporter for CNN/CNN Headline News in Atlanta. He staffed the military desk during the invasions of Afghanistan and Iraq, reported on technology and anchored newscasts. He also hosted "The Digital Life" podcasts for CNN.com and won a Cybersecurity Journalism Award from Carnegie Mellon University for tech columns on the Headline News website. San Miguel has also reported on social media and Web 2.0 technologies for TechNewsWorld, the E-Commerce Times and MacNewsWorld.
Chief Information Security Officer, Sabre Holdings
Gene Scriven is an Information Protection veteran with more than 30 years of Information Security experience across a wide spectrum of industries. He has provided security solutions to Fortune 500 firms as a specialized security consultant, addressed the stringent security requirements of the US Government and various intelligence agencies as a military officer and government contractor, and has "owned the problem" as a leader of commercial organizations. His background includes directing the development of intrusion detection and network monitoring systems, federal computer crime investigations, electronic and physical security red-team evaluations, risk management and mitigation, and security management and compliance.
Gene joined Sabre Holdings in late 2009 as the Chief Information Security Officer, responsible for corporate and customer data protection, IT risk management, governance, and compliance. Sabre Holdings supports travelers, travel agents, corporations, and travel suppliers around the world by providing distribution and technology solutions for the travel industry through its three companies. Prior to Sabre Holdings, Gene was the Director of Information Risk Management and Compliance, then the Chief Information Security Officer for The Home Depot, headquartered in Atlanta, Georgia.
Gene is a Certified Information Systems Security Professional. He holds a Masters of Science Degree from Troy State University in Montgomery and a Bachelors of Science from Hawaii Pacific University. Gene lives with his wife and two daughters in the Dallas/Fort Worth metro area.
Vice President and Chief Information Security Officer, Alliance Data
David Stanowick is presently the VP and Chief Information Security Officer for Alliance Data where he has responsibility for the Information Security, and Governance over the outsourced IT functions. Previously David managed Information Security and Business Continuity functions at Florida Power & Light and KeyCorp National Bank.
David has over 25 years experience with technology risk management, and is well connected with peers in other industries. David is a Certified Information Systems Security Professional (CISSP) and holds a Bachelor's degree from Baldwin Wallace College in Berea, Ohio. David works primarily at the corporate headquarters in Plano, Texas.
Director of Information Services and Information Security Officer, Henry Ford Health System, West Bloomfield Hospital
Amy Wang, Director of Information Services and Information Security Officer for Henry Ford West Bloomfield Hospital, has 15 years of experience in information technology.
She joined the Henry Ford West Bloomfield Hospital in March of 2008, to lead a matrixed and direct team responsible for telecommunications and information security as well as information technology (IT) strategy, operations and project management of the hospital.
Amy led the implementation of all technology for the opening of Henry Ford West Bloomfield Hospital in March of 2009. She oversaw the managing of resources for the implementation of hundreds of applications, thousands of devices and developed all IT policies and processes for the new facility.
She joined Henry Ford West Bloomfield Hospital from Health Alliance Plan (HAP), the Henry Ford Health System owned health insurance company. There she served as an IT project manager for five years. Prior to that, she was in the Detroit market, serving in the information technology service industry for numerous organizations, and for automotive agencies such as General Motors, Oldsmobile and Ford Motor Company.
Amy received her bachelor's degree from Michigan State University and is currently pursuing a Masters of Science from Walsh College in Detroit, Mich.
She has been featured in Stage Seven – Informatics Playbook, "Emerging best practices in site-level IT security: Henry Ford West Bloomfield Hospital."
Amy was named one of IDG's Computerworld 2011 Premier 100 IT Leaders this March for her exceptional technology leadership, innovative ideas to business challenges and effectively managed IT strategies.
Chief Information Security Officer, Centene Corporation
Dustin Wilcox is the Chief Information Security Officer for Centene Corporation, a national leader in the healthcare services field and member of the Fortune 500. He has over 20 years experience in a variety of Information Technology disciplines spanning a diverse array of industries including financial services, defense, energy, and healthcare. Dustin began his career as a network engineer and has held a number of technical and business leadership positions ranging from security consulting to systems integration and enterprise architecture to mergers and acquisitions.
Dustin holds a bachelor's degree in Political Science from the University of Iowa where he also served as Student Body President and Chairman of the Association of Big Ten Students. He holds or has held a number of technical and administrative certifications including CISSP, CSSLP, GSEC, CCNA, and CNE among others.
Dustin is currently on the Information Systems Advisory Board for the University of Missouri, St. Louis. He is a participant in the Center for the Application of Information Technology (CAIT) Information Security Roundtable and an active member in the Metropolitan St. Louis CISO Roundtable.
Dustin, his wife Paula, and their four daughters and reside in O'Fallon, Illinois where they are active in their community and in worthy causes across the St. Louis region.
Chief Information Security Officer, Broadcom Corporation
Mr. Geoff Aranoff serves as Broadcom Corporation's Chief Information Security Officer (CISO). Mr. Aranoff is responsible for Broadcom's enterprise security strategy including monitoring and control systems and risk management for intellectual property (IP) protection. Broadcom has more than 10,000 employees around the world and the number one IP portfolio among fabless semiconductor companies as ranked by IEEE.
Mr. Aranoff leads an organization responsible for adopting and enforcing policies for internal and external risk management, IT security including network, application, endpoint, and storage security, and electronic discovery. Mr. Aranoff is also responsible for forensics for ongoing security investigations. Mr. Aranoff has been Broadcom's CISO for more than six years during which time has also served as Broadcom's Chief Privacy Officer (CPO). In this role he led the organization through a comprehensive Safe Harbor Certification program to ensure adherence to EU privacy directives. Mr. Aranoff joined Broadcom in 1999 from the entertainment industry where he worked for Warner Brothers and Disney in Windows based standards and support.
Mr. Aranoff launched his career after serving for six years in the United States Marine Corp reserve.
Head of Global Security, Twitter
Greg Acton is the head of Global Safety & Security at Twitter, Inc., a social media company that instantly connects us to what's most important. In this role he is responsible for protecting Twitter's people, assets and related information on a worldwide basis.
Greg received his B.S. Degree in Criminal Justice and Business from San Jose University. Wanting to give back to his local community, he joined the Mountain View Police Department and, during a ten-year career, worked in a diverse range of challenging positions, including police detective.
In 1995, Greg decided to take his expertise into the corporate world and joined the security team at Applied Materials. As the Global Investigations Manager, he developed and directed investigative resources for global risk assessments, confidential investigations and intellectual property protection. In 2000, he joined Lam Research Corporation where he managed worldwide security operations, investigations and security systems. In 2005, he joined Palm, Inc. as the Director of Global Safety and Security, he was responsible for protecting Palm's future generation products and related information. In 2010, he entered the bio-pharmaceutical industry as the head of Security for Gilead Sciences, protecting and preventing product counterfeiting and supply chain security. Greg's took up his current role in 2011.
Greg has more than 25 years of experience in a wide variety of industries, manufacturing, consumer electronics, bio-pharmaceutical and now the exciting space of social media. He's built enterprise-wide security strategies focusing on the protection of people, information and physical assets and has developed significant expertise in identifying, classifying and mitigating threats and vulnerabilities. In addition to being Board Certified in Physical Security (CPP), Greg gained the coveted CISSP certification in 2008 and has championed the cause of security convergence.
He is a long standing member of the American Society for Industrial Security (ASIS) as well as a member of the Information Asset Protection (IAP) Council, Information Systems Security Association (ISSA) and the Chief Security Officer (CSO) Roundtable. In addition he is a member of the International Security Management Association (ISMA), the High Tech Crime Investigators Association (HTCIA) and the Association for Threat Assessment Professionals (ATAP).
In his spare time, he coaches youth ice hockey and also plays in adult hockey leagues.
Corporate Security Officer, Blue Cross and Blue Shield of Nebraska
As CSO, Adams is the executive responsible for Blue Cross and Blue Shield of Nebraska's entire security posture, both physical and digital. His responsibilities also include oversight of the company's business continuity planning and records management programs.
Adams is a seasoned information services and security executive with 15+ year's experience in developing, implementing and leading security governance, risk and compliance programs for two large health care organizations. In prior roles, Adams successfully developed and drove the adoption of several large-scale collaborative solutions which eventually formed the business intelligence framework for an innovative service delivery model for medical information providers. He has served on the boards of several professional organizations and co-chaired an ANSI task group that assisted with the development of the national EDI standard for the insurance industry.
Prior to entering the health care field as an information services professional, Adams spent 11 years in academia and earned advanced degrees in education, specializing in curriculum development and implementation of technology-assisted learning methodologies.
He has published 10 articles and papers and has presented to dozens of audiences representing both the public and private sectors on delivering technology-driven business innovation within the richly regulated health care industry.
Chief Information Security Officer, Cox Communications
Phil Agcaoili has been a change agent and transformation leader in the Technology and Information Security industries for over 20 years and is the Chief Information Security Officer at Cox Communications. He co-founded several companies and sold them during the Dot.Com era and is now helping shape the direction of cyber security for US Telecoms through his appointment as the cyber security committee co-chair of the FCC CSRIC and is helping shape the direction of Cloud computing as a founding member of the Cloud Security Alliance and as a co-founder and co-author of the CSA Cloud Controls Matrix (CCM) and GRC Stack. Mr. Agcaoili has led security teams at Cox Communications, Dell, Scientific-Atlanta, and VeriSign and has represented GE, VeriSign, Alcatel, Scientific-Atlanta, Dell, and Cox in their respective Corporate Security, Privacy, Governance, Risk, and Compliance councils and committees. Mr. Agcaoili also won the 2010 Information Security Magazine Security 7 Award in Telecommunications and the 2009 Information Security Executive of the Year Award. He is a co-founder of the Southern CISO Security Council, co-chairs the Evanta CISO Leadership Network, serves on the Advisory Council for the CISO Executive Network, and serves on the boards of several companies. Many of Mr. Agcaoili's proteges are leading other successful global security teams.
SVP – Global Information Assurance Head, Citigroup
Tim Appleby is the Global Information Assurance Head at Citigroup where he manages the corporation's global data protection infrastructure including Anti-malware, Data Leakage Protection, Endpoint Protection and Vulnerability and Threat Management Infrastructure. Prior to joining Citigroup, Tim was the Chief Scientist in the Integrated Security and Systems Solutions Business Unit at Science Applications International Corporation (SAIC) and an Adjunct Professor at The Johns Hopkins University in Baltimore, Maryland. During that time, Mr. Appleby was a Technical Director for Managed Security Services at Global Integrity (an SAIC Company) where he participated in the development, design and technical implementation of the Financial Services Information Sharing and Analysis Center (FS-ISAC) in support of PDD63 during the Clinton Administration, and Directed the Federal Government FED_CIRC Incident Response Center prior to 9/11. Preceeding his work at Global Integrity, Mr. Appleby held numerous Intelligence and Law Enforcement jobs in the US Government. Additionally, he designed, patented, and implemented a global incident response, Intrusion Detection and Tracking System for Motorola's Iridium LLC to support its global operational network and satellites. Tim has worked in the field of information security for 20 years.
Mng. Director/CISO/CPO, Applied Materials, Inc.
First Vice President and Chief Information Security Officer, New York Life Insurance Company
Steve Attias is First Vice President and Chief Information Security Officer in the Corporate Information Department. With over 30 years of experience at New York Life, Mr. Attias is responsible for developing, maintaining and monitoring enterprise-wide information protection programs, policies, standards, and procedures. As CISO, he is also responsible for adequately designing and coordinating security administration procedures that enable access to New York Life information resources in accordance with New York Life Security Policies, Standards and Procedures.
In this position, Mr. Attias has enhanced the Enterprise Security Program to meet the requirements of a new regulatory environment that stresses the importance of maintaining the privacy of customer information. He has also led the effort to enhance New York Life's ability to conduct business safely on the Internet. This includes building a common set of components to be reused by web-based applications. Recent accomplishments include the implementation of an outbound electronic content filtering system.
The Information Security Program at New York Life has been enhanced to include frequent security awareness activities, an application risk assessment built into the software development lifecycle, and continuous testing of the computing infrastructure as part of the vulnerability management process.
Mr. Attias's previous positions at New York Life included increased levels of management responsibility covering Computer Operations, Systems Software, Telecommunications and IT Architecture. His achievements in these areas include:
Mr. Attias earned his BS from the State University of New York at Stony Brook in 1974 and his MS from the Polytechnic Institute of New York in 1980. He is Fellow of the Life Office Management Association and earned his CISSP (Certified Information Systems Security Professional) designation through the International Information Systems Security Certification Consortium (ISC2) in 2001. Mr. Attias was recognized by IDG's Computerworld as one of the "Premier 100" IT Leaders of 2003. In 2004, the Information Systems Audit and Control Association named him a Certified Information Security Manager (CISM).
Vice President of Information Security, RaceTrac Petroleum Inc.
Will Alexander is the VP of IS, Special Projects, and Logistics at RaceTrac Petroleum, Inc. Will joined RaceTrac in 2004. During his tenure at RaceTrac, Will has held various positions within the IS and Special Projects departments. Prior to joining RaceTrac, Will worked for Milliken & Company in production management and process improvement. Will holds a MBA from Georgia State University and a BS in Mechanical Engineering from the Georgia Institute of Technology.
Chief Security Officer, Honeywell
Derek serves as CSO for two of Honeywell's four business divisions: Performance Materials and Transportation Systems (+$10B) overseeing both physical and cyber security functions worldwide. Derek sits on the leadership staff of the business CEOs.
Derek previously served as CISO in the chemicals, transportation and automation industries.
Derek's Grey Griffins fiction series for kids has sold over one million copies.
Education: Executive MBA from Columbia University.
Chief Information Security Officer, The Travelers Companies, Inc.
Managing Director and Chief Information Risk Officer, JPMorgan Chase & Co.,
Anish Bhimani is Managing Director and Chief Information Risk Officer of JP Morgan Chase. In this role, he has global responsibility for ensuring the security, controls and resiliency of the firm's computing environment, and supports the firm's Corporate Risk Management program. He is also a member of the JPMC technology leadership team.Â
He was selected as Information Security Executive of the Year for 2008 by the Executive Alliance, and named to Bank Technology News' "Top 25 Innovators" list for his novel approach to information risk management.
Prior to joining the firm in 2003, Mr. Bhimani served as a senior member of the Enterprise Resilience practice in Booz Allen Hamilton, helping Fortune 100 companies improve the resiliency of their infrastructure. Prior to that, Mr. Bhimani served as Senior Vice President and Chief Technology Officer of Global Integrity Corporation (an SAIC Company) and Predictive Systems. During his tenure at Global Integrity, he also led the team that developed the Financial Services ISAC. Earlier in his career, Mr. Bhimani worked in the Security & Fraud Reduction practice at Bell Communications Research.
Mr. Bhimani has written numerous articles, and has lectured around the world on topics related to information security. He is the co-author of Internet Security for Business (Wiley & Sons, 1996), and a U.S. patent holder.
Mr. Bhimani received a Sc.B. in Engineering from Brown University and an M.S. in Information Networking from Carnegie-Mellon University.
Chief Information Officer, Research in Motion
Robin Bienfait is the CIO of Research In Motion. Robin oversees BlackBerry Operations and Corporate IT.
Prior to joining RIM, Robin held senior leadership positions within AT&T Labs and Global Network Services.
A graduate of the Georgia Institute of Technology with a master's degree in Management of Technology, Robin also holds a bachelor's degree in engineering from Central Missouri State University and an associate in business degree from Maryland University - European Division.
Chief Marketing Officer, Palo Alto Networks
Chief Technology Officer, Office of Personnel Management
David M. Bowen is the Chief Technology Officer (CTO) at the Office of Personnel Management (OPM). In this position, Mr. Bowen is responsible for introducing new information technology to the Agency and using advanced technologies to help reduce the Agency's retirement application backlog.
Before joining OPM in November, 2011, Mr. Bowen served as Assistant Administrator for Information Services and Chief Information Officer (CIO) for the Federal Aviation Administration (FAA). In that role, Mr. Bowen was the principal advisor to the FAA Administrator on the agency's information technology and directed strategic planning for information technology across the agency. He also oversaw the implementation of the FAA's Information Systems Security, E-Government, Shared Services, and Process Improvement Programs, and was named by Information Week as one of the country's top 50 public sector CIOs for 2010 and 2011.
Mr. Bowen has over 25 years of experience in healthcare information technology management in the provider, payer, consultant and vendor areas, and has served as CIO for healthcare delivery systems as large as 46 hospitals. Before joining the FAA, he was the Senior Vice President for Information Technology and CIO at Blue Shield of California, a $6.2 Billion health plan with over 2.5 million members and the 2nd largest not-for-profit healthcare organization in California.
Mr. Bowen has an undergraduate degree in Economics from Ursinus College, Collegeville, Pennsylvania and a Masters Degree in Business with Distinction from the Johnson Graduate School of Business, Cornell University, Ithaca, New York. He is also a Certified Public Accountant, holds an FAA Commercial Pilot certificate, and has over 30 years of flying experience.
Director, IT Security & Compliance, Cost Plus, Inc.
Tom has 30+ years of physical, material, personnel and information security experience including U.S Military, Property and Casualty Insurance and Retail environments. Tom graduated from Dominican University of California with a Masters in Business Administration, emphasis on Strategic Leadership and holds the following professional certifications: CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), CISSP (Certified Information Systems Security Professional) and CRISC (Certified in Risk and Information Systems Control).
Tom currently serves as Director, IT Security and Compliance for Cost Plus World Market (Cost Plus, Inc.), a $1 billion dollar retail chain headquartered in Oakland, CA and operating in 34 states. He is responsible for the overall information security, regulatory compliance, business continuity, IT disaster recovery, and privacy strategy for this mid-size retail chain.
Prior to Cost Plus, Tom held the position of Sr. Director for Information Security at Fireman's Fund Insurance Company, a unit of the international holding company, Allianz AG, based in Munich, Germany. His responsibilities included: developing information security strategy, policies, security administration and disaster recovery for fireman's fund and serving as Regional Information Security Officer for Canada, the United States and Mexico.
Tom served on active duty in the U.S. Coast Guard and retired with the rank of Chief Warrant Officer, Grade 3 (CWO3), Telecommunications. During his career, Tom managed U.S. Federal information security compliance and disaster recovery planning for U.S. Coast Guard units throughout the Western, Gulf and Southeastern United States.
Tom is active as a volunteer in professional organizations including ISACA (Information Systems Audit and Control Association) and IANS (Institute for Applied Network Security). He has served on conference committees as a planner as well as a speaker and is currently the Co-Chair for ISACA's Fall 2012 North American Information system Resources Management and Governance and Risk Control conference. Tom also serves on a ISACA committee focused on professional knowledge and channels of learning.
Chief Risk Officer, Office of the Director of National Intelligence
Mr. Roger L. Caslow has been working with the Intelligence Community (IC) and the Department of Defense (DOD) for approximately 15 years, serving as an intelligence officer, program manager, strategic planner, and security professional for the Defense Intelligence Agency, National Geospatial-Intelligence Agency, and the Office of the Director of National Intelligence. His areas of expertise include Security (Physical and Cyber), Policy Analysis/Formulation, Risk Management, Program Evaluation/Management, Organizational Performance Management, Team Facilitation, Customer Relationship Management, and Operations Support/Management.
Mr. Caslow holds Bachelor of Arts degrees in Political Science and Economics along with a Masters Degree in Applied Economics from the University of Central Florida. His postgraduate education includes attendance at the Defense Acquisition University and National Intelligence College - Post Graduate Intelligence Program, where he studied Information Operations and Intelligence Policy. He is a recipient of the Joint Civilian Service Commendation Award, Civilian Combat Support Medal, and Civilian Expeditionary Medal.
Managing Director and Chief Information Security Officer, Depository Trust & Clearing Corporation (DTCC)
Mark Clancy is managing director of Technology Risk Management at The Depository Trust & Clearing Corporation (DTCC), a position established in January 2012. The department comprises Information Security, Business Continuity and Information Technology (IT) Risk Management.
Clancy joined DTCC in 2009 as Corporate Information Security Officer. In his broadened position, he has enterprise-wide responsibility for developing and implementing global security and business continuity policies, standards, guidelines, procedures and threat assessments pertaining to DTCC. He also chairs the DTCC Security Steering Committee, which is composed of senior IT management as well as business-line and other corporate managers.
Active in the financial services and critical infrastructure communities, Clancy participates in the Financial Services Information and Analysis Center (FS-ISAC) and Financial Services Sector Coordinating Council (FSSCC). He is a frequent speaker at FS-ISAC conferences and an active member of FS-ISAC's Threat Intelligence Committee. In addition, he serves in a leadership capacity as a member of FS-ISAC's board of directors; as a member of FSSCC's executive committee; and as FSSCC's private-sector lead for financial sector-wide cyber security exercises to help improve its resiliency against cyber attacks.
Clancy has spoken on cyber security to attendees at the Air War College National Security Forum, as well as at events sponsored by U.S. Government agencies, such as the Committee on National Security Systems and the US Army Enterprise Solutions Competency Center.
Before joining DTCC, Clancy was executive vice president of Information Technology Risk at Citigroup. His responsibilities included developing IT Risk strategy and managing the company's information security polices and standards. He also directed company-wide efforts around third-party access, data protection, infrastructure protection, and vulnerability and threat assessment. He was with Citigroup from 2000 until 2009.
Earlier in his career, Clancy consulted for several Fortune 500 companies on information systems and information security projects spanning the banking, insurance, pharmaceutical and manufacturing industry sectors.
He has a B.S. degree in Electrical Engineering from Drexel University and is a member of the Institute of Electrical and Electronics Engineers.
Chief Information Security Officer, First American
Bernie Cowens is Corporate VP and Chief Information Security Officer for First American, where he oversees all aspects of information security for the company and its global business units. Prior to joining First American, Bernie held senior security executive positions at AAA, Experian, and PricewaterhouseCoopers. Bernie is an advisor to several early stage and start up security technology companies. He has over 20 years of security and technology leadership experience and he holds the CISSP and CISA designations. A former military officer and Special Agent, Bernie has extensive international counterintelligence and counterterrorism experience. Bernie attended the University of Maryland and earned a Master's Degree in Management Information Systems.
Technical Director, Raytheon Company
Michael Daly is the Technical Director of Information Security Solutions for Raytheon Intelligence & Information Systems. He was appointed to this position in 2011. Raytheon Company (NYSE: RTN), with 2010 sales of $25 billion, is a technology and innovation leader specializing in defense, homeland security and other government markets throughout the world. With a history of innovation spanning 89 years, Raytheon provides stateof- the-art electronics, mission systems integration and other capabilities in the areas of sensing; effects; and command, control, communications and intelligence systems, as well as a broad range of mission support services. With headquarters in Waltham, Mass., Raytheon employs 72,000 people worldwide.
As the Technical Director, Michael provides leadership in Raytheon's cyber technologies, managing Research & Development investments and operating an array of Cyber Technology Innovation Centers across Raytheon. For the thirteen years prior to this, Michael served as the Corporate Director of Information Technology Enterprise Security Services. With more than twenty-four years in security and information systems, Michael has worked with both the private sector and the federal government with responsibilities including software engineering for law enforcement, university teacher of database management, and manager of enterprise applications and distributed computing.
Michael has also served as Vice President of Advanced Networking for a consulting company and launched a notfor- profit organization that was commended by the Massachusetts House of Representatives.
Michael is on the Governance Board of the Transglobal Secure Collaboration Program, and the Board of Advisors for Exostar. He was the 2006 recipient of the People's Choice Award for the ISE New England Information Security Executive of the Year and the 2007 recipient of the Security 7 Award for the Manufacturing sector. Michael holds a World Record for Highest Altitude Luge and is credited with a first ascent of a mountain in the Wrangell-St. Elias Range.
He earned his bachelor's degree in Mechanical Engineering from Boston University, is a Certified Information Systems Security Professional and a Qualified Raytheon Six Sigma Specialist.
Chief Information Officer and Chief Financial Officer, Volunteers of America Chesapeake
Founded in 1896, Volunteers of America is one of the top 10 non profits in the U.S. when measuring size and budget. As a $1.3 billion organization working in 46 states and serving some 2 million people in 400 communities, the challenge of managing, analyzing and acting upon intelligence gleaned from these programs called for some IT innovations, including building a cloud-based knowledge management system. An MBA with thirteen years of Finance, IT and project management experience, Shyam Desigan has focused on enabling healthcare providers and non-profits use outcomes-based benchmarking to build a sustainable competitive advantage. Shyam joined Volunteers of America in February 2009 to manage corporate and project finance & IT operations for the non-profit's 26 human service programs throughout the Mid-Atlantic. Since joining the Volunteers of America Chesapeake executive team, he had been recognized locally and nationally for the dramatic strides he has made for the non-profit including executing a turnaround leveraging Analytics and technology. As the next step he is focused on pushing BI to end point devices leveraging mobility in a secure environment that would allow Case workers to leverage data for decision making. He has received an MBA in Finance from Kelley School of Business, Indiana University and a BS in Electronics Engineering.
Chief Information Security Officer, UBS Financial Services
Dennis Dickstein is Chief Privacy and Information Security Officer for UBS Wealth Management Americas, developing and leading data security, records management and identity theft protection programs. In prior years, he headed operational risk and installed control frameworks to comply with Sarbanes Oxley for the same firm. Previous to that, Dennis held various operating and risk management positions in other UBS areas and in other financial services firms.
Mr. Dickstein has presented at conferences and business schools, speaking about operational risk, aligning risk management with business objectives, privacy and information security. He is co-author of the book "No Excuses: A Business Process Approach to Managing Operational Risk", published January 2009 by John Wiley & Sons. He holds a Masters degree from Harvard University and a Bachelor of Science degree from MIT.
Executive Director, JPMorgan Chase & Co.
Information Security Officer, Texas Capital Bank
Eric Fisch joined Texas Capital Bank in 2006 as the Information Security Officer. He started with responsible for the information security, IT Risk, and IT audit compliance programs, and has since taken ownership of the Bank's GLBa compliance and privacy programs. In his capacity as ISO, he has redefined the Bank's security program to better support the business objectives and implemented programs and
controls to better protect the Bank's customers from fraud.
Fisch was formerly with KPMG's Information Risk Management team. In his eight years with KPMG, he primarily supported clients in the retail and financial services industries; providing security and compliance consulting along with the occasional audit work. He was also an integral part of KPMG's information security methodology development team, defining the policies and procedures that KPMG consultants world-wide would use to support their clients.
Mr. Fisch currently maintains his CISSP, CISM, and CIPP certifications, and he received his PhD in computer science from Texas A&M University.
Senior Vice President and Global Information Security Officer, AIG
Paul de Graaff is the Global Information Security Officer and Senior Vice President for Global Operations and Systems at AIG. In this role, he has the corporate responsibly for the execution of AIG's Information Security Program across all AIG's business lines, as well as for strengthening AIG's Information Security posture on a continual basis.
Mr. de Graaff joined AIG in March of 2007 as the Chief Security Officer with AIG Operations & Systems.
Prior to joining AIG, Mr. de Graaff held the Corporate Information Security Officer at Depository Trust & Clearing Corporation. Mr. de Graaff held Information Security consulting and management positions at ING, ABN/AMRO, IBM and UNISYS.
Mr. de Graaff was awarded the Top 100 IT Leadership Award in 2006 by Computerworld Magazine.
Mr. de Graaff holds a Bachelor's Degree in Applied Mathematics from the Open University of The Hague, The Netherlands.
Executive Director, JPMorgan Chase & CO.
Jeffrey DiMuro is an Executive Director and the Global Security Architect Lead at JPMorgan Chase & Co. Since joining JPMC in 2010, Mr. DiMuro has focused on security solution architecture in the areas of secure email, data loss protection, perimeter security, mobile and cloud security. Jeff's other main focus is to ensure the global adoption and integration of the security solutions by the various business lines throughout JPMC.
Jeff is also a member of JPMC's Intellectual Property and Patent team which serves to promote and protect innovative products and services developed across the Bank.
Prior to joining JPMC, Mr. DiMuro served as an SVP at Citigroup where he lead the Data Protection Engineering team. Jeff has also held senior leadership positions at ABN Amro Bank, Nortel Networks, and PGI. Mr. DiMuro has presented at various security conferences on ways and methods to protect intellectual property across the Enterprise and recently published a chapter on Data Loss Protection Techniques and Digital Rights Management in the book entitled, There's a New Sheriff on Town.
Jeff's passion for IT security has led to the filing of four patents in the areas of Identity Management (iBind), Secure Email (Secure Transfer Electronic Presentment), Encryption, and the scoring and digital profiling of packets (Packet Profiling).
Mr. DiMuro earned his Juris Doctor from the Widener University School of Law and holds an undergraduate degree in Finance from the College of New Jersey.
Chief Scientist, Center for Cyber Security Innovation, Lockheed Martin
Rick Doten spent the last 10 years managing penetration testing, forensics, incident response, and risk assessment teams for commercial and government customers. Today, Rick is Chief Scientist for Lockheed Martin's Center for Cyber Security Innovation where he works with Lockheed business units to provide guidance to build and maintain trusted systems for our customers. Current trends Rick spends a lot of time working on are Advanced Persistent Threat (APT) defense, Smart Grid Security, Application Security, and Insider Threat. Rick also conducts many external and internal security presentations and media interviews on those topics.
Chief Privacy and Security Officer, University of California, Berkeley
Ann Geyer is the Chief Privacy and Security Officer at UC Berkeley responsible for information policy and practices affecting over 100,000 students, faculty, and staff. She serves on the University of California committee charged with developing a standard framework for privacy and security administration. She is also the campus privacy officer for HIPAA and FERPA compliance, and serves as advisor to the campus committee for the protection of human subjects. Ann plays a pivotal role promoting privacy by design concepts and integrating security management into IT operations. She is a practicing attorney with professional certifications in privacy, security, and risk management. She has written extensively on the topics of identity and access management, electronic signatures, policy driven data protections, and IT governance. She is an instructor for ISACA governance and risk management certification and is a frequent speaker at local and national conferences.
Chief Security Officer, The New York Times Company
Mike Higgins is a veteran security executive with more than 20 years of experience working in the Government and in private industry. As the founder of the DOD Computer Emergency Response Team (DOD-CERT), Mike was one of the earliest advocates in the leadership role of the Federal Government through the identification of the five critical infrastructures.
Today Mike serves as the Chief Security Officer (CSO) for The New York Times Company leading the company's risk and security programs. Previously Mike held the CSO position at LexisNexis following their highly visible public breach in 2005. For more than a decade Mike was an executive security consultant to Fortune 500 companies including Time Warner, Citigroup, Sun Microsystems, Merrill Lynch, JPMorganChase, and British Petroleum.
Mike holds dual certifications as a Certified Information Security Manager (CISM) and a Certified Protection Professional (CPP) and is the recipient of the Defense Intelligence Agency's Director's Medal and Federal Computer Week's Federal 100 Award. Mike is a visiting professor at the Northeastern University where he teaches the Capstone Course for their Master of Science in Information Assurance, an NSA/DHS Designated Center of Academic Excellence in Information Assurance Education; a visiting lecturer for over 10 years at the McIntire School of Commerce at the University of Virginia and a former adjunct professor in the Information Assurance Program at The George Washington University.
Mike received his Bachelor's degree from Northeastern University and his Masters' from the Viterbi School of Engineering at the University of Southern California.
Corporate Security Officer, Fidessa Corporation
Howard is currently the Corporate Security Officer of Fidessa corp. He has been in the IT Security field since 1982 having worked at the US DoD National Security Agency, AT&T Bell Labs, AT&T UNIX System Labs (USL), AT&T Taiwan, AT&T WorldNet, Lucent, Avaya and as an independent contractor to Johnson & Johnson. He has published various technical papers and several government reports and standards on security. His current responsibilities include IT Security, Physical Security, and Business Continuity Planning for Fidessa Corporation
Vice President of Technology, Epsilon
Mr. Johnson has more than 20 years in the technology industry, with over 10 years in senior management roles, draws on a wide range of industry knowledge, and demonstrates a passion for innovation in the field. He has created and designed highly profitable and secure solutions for high-volume e-commerce websites, kiosks, mobility, and retail clients, including a patent-pending mobile security solution.
Mr. Johnson joined Epsilon in the fall of 2010 and is responsible for multiple development teams leading application development enhancements and technical architecture. Mr. Johnson joined Epsilon from Rapp Collins where he oversaw the creation and launch of a global marketing platform. Prior to Rapp Collins, he worked as a Director of Product Development & Technology at Study Island, an online education company. Mr. Johnson also held senior technical positions at Verizon Business/Totality where he worked on projects with major brands including American Airlines, Virgin Atlantic, Best Buy, The Sharper Image, Stanford Medical Hospital, Sony Music, and FedEx
Director of Product Marketing, Palo Alto Networks
Chris King is director of product marketing for Palo Alto Networks. Previously, Mr. King held strategic and product marketing roles at Blue Coat Systems, including responsibility for marketing and strategy for MACH5, Blue Coat's application acceleration solution - which he launched and helped grow to a $160 million/year business. Prior to joining Blue Coat in June of 2004, Mr. King spent over 8 years as an information technology analyst for META Group. An internationally recognized expert on information security, Mr. King has consulted with hundreds of large IT organizations, spoken before a variety of audiences, and is often quoted in trade and business press. Before META Group, Mr. King managed an international network for Securities Registration Depository, and was employed by Ernst & Young. Mr. King holds a B.A. from George Mason University.
Chief Information Security Officer, Johns Hopkins University
Darren Lacey has been serving as Chief Information Security Officer and Director of IT Compliance for Johns Hopkins University and Johns Hopkins Medicine for the past eight years. He has been working in the technology sector, as a developer, attorney, consultant and executive for twenty years. He serves on several committees related to homeland security, privacy and cyber-security. He was the first Executive Director of the Johns Hopkins University Information Security Institute, a National Security Agency Center of Academic Excellence in Information Assurance.
Director and Audit Committee Chair, Document Capture Technologies, Inc
Chief Technology Officer, RedSeal Networks
Dr. Mike Lloyd has more than 25 years of experience in the modeling and simulation of dynamic systems. Before joining RedSeal Networks, Dr. Lloyd was Chief Technology Officer for RouteScience Technologies, acquired by Avaya, where he pioneered self-optimizing networks and was granted 17 patents on dynamic network control and security. Dr. Lloyd was previously principal architect for MPLS VPN provisioning at Cisco, and senior network modeling engineer for Netsys Technologies. Mike holds a degree in mathematics from Trinity College, Dublin, Ireland, and a PhD in epidemic modeling from Heriot-Watt University, Edinburgh, Scotland.
Chief Security Officer, ITWorks Operations, A Business Unit of Cerner Corporation
Gary Long, Chief Security Officer, Cerner ITWorks Operations, oversees information security, risk assessment, compliance, policy, reporting and auditing for managed information technology offerings (ITWorks) at Cerner.
Mr. Long joined Cerner in February 2006. His prior roles include technology architect and practice manager.
He designed and implemented a security framework within the Cerner managed data centers; assembled an operational security team; and created a comprehensive information security program for CernerWorks℠.
He currently assists clients with managing risks, ensuring best practice security infrastructures, and maintaining HIPAA and PCI compliance in a fast-moving and ever-changing environment.
Mr. Long has more than 15 years of experience in the information security field. He has deep knowledge and understanding of network security, compliance, vulnerability management, risk management and auditing.
Prior to joining Cerner, Long was a strategic sales consultant with both Cisco Systems and Check Point Software Technologies. He also owned and operated a security consulting and reselling practice for eight years in the Kansas City area.
Mr. Long held engineering roles with the Federal Aviation Administration, Martin Marietta Aerospace and General Dynamics, where he designed software for navigational systems; designed, prototyped and deployed an automated weather observatory system interface; developed software simulation modeling programs; authored a compiler for spacecraft ground testing; and assisted with ground testing of the Manned Maneuvering Unit.
Mr. Long is a member of the Information Systems Security Association and the Information Systems Audit and Control Association.
He serves on several customer advisory boards for major information security solution vendors across the nation, and speaks frequently at information security conferences.
Mr. Long received a bachelor's degree in electrical engineering from the University of Oklahoma. He is a Certified Information Systems Security Professional and Certified Information Systems Auditor.
Chief Information Security Officer, Consolidated Graphics, Inc.
As the Chief Information Security Officer of Consolidated Graphics, Tom has more than 18 years of experience in information technology. An (ISC)2 Certified Information Systems Security (CISSP), Certified Information System Auditor (CISA) and Certified Information Security Manager (CISM) Professional, Tom's expertise includes all aspects of research, design, implementation and operational support for enterprise services.
Tom's job duties include overseeing Consolidated Graphics' information security, privacy, compliance and eDiscovery responsibilities. With more than seventy companies under CGX ownership, Tom actively consults with executive and local management on that same range of issues.
Prior to joining Consolidated Graphics, Tom was Chief Information Security Officer for the University of Texas Health Science Center at Houston (UTHealth - Houston) based at the Texas Medical Center in Houston, Texas. As the UT Health's CISO, Tom was responsible for guiding the development of information security strategy and implementation for an organization consisting of six healthcare related schools with more than ten-thousand faculty, staff, students and residents.
In addition to re-constructing UTHealth's information risk and security policy foundations, Tom spearheaded the revamping of critical security infrastructure, including campus-wide data identity and access management system. Tom oversaw UTHealth's HIPAA compliance and a three year Payment Card Industry (PCI) compliance project. Earlier information technology positions that Tom has held include senior system analyst for IBM Global Services, as well as for several divisions of the A.P. Moller group including Maersk Inc. and Maersk Data USA. His work with world-class, industry-leading organizations ranges from governance, risk and compliance (GRC) to network and server infrastructure design and support.
Tom is a member of the Greater Houston-area Information Systems Security Association (ISSA), National Information Security Group (NAISG), and Information Systems Audit and Control Association security groups (ISACA), ISACA CISM Test Enhancement Subcommittee (TES), and governing body for SecureWorld Houston. Tom has a B.S. in Management Information Systems from Barry University.
Chief Information Officer, Americare Services, Inc.
Chief Information Security Officer, Treasury and Global Operations, The World Bank
As the CISO for the World Bank Treasury, Jim is responsible for the information security and risk management infrastructure for the Treasury as well as all related financial services worldwide, including all systems and networks, business systems, Web technologies, e-Commerce and banking, financial and trading systems. Jim manages a team of information security specialists that provide information security services and enterprise risk specialists that provide information security services such as Identity and Access Management, data assurance and accreditation, enterprise security management and event detection and response. Jim's twenty-five years of expertise comes from his consulting experience to over 250 companies, conducting over 500 classes/seminars, and publishing over 150 technical journals on areas of information systems and security.
Vice President and Chief Information Officer, IT Services Division, NCR Corporation
Bill VanCuren is vice president and CIO for NCR Corporation. Bill is a leadership team member of NCR's Industry Solutions Group and Chief Financial Office organizations, and sits on both the Leadership Council and Leadership Team of the corporation.
His current assignment as the CIO has oversight over the full application realization process, portfolio management, global networks and processing services for both internal and external customer services, security and compliancy, and all workgroup computing. Bill has 27 years of experience in the information technology (IT) field and has held progressively responsible positions in systems realization and IT general management.
Bill established the first NCR captive IT development center in India, championed the engineering processes to achieve the Capability Maturity Model (CMM) Level 3, and has driven world-class levels of both efficiency and improved effectiveness via a combined IT and business governance. As a result of implementing self-service strategies, his organization was named to the Information Week500.
He earned his Bachelor of Science degree, Cum Laude, from The Ohio State University and his Master of Business Administration degree from the University of Dayton. He has also received executive training at Stanford University in Palo Alto, California, along with a variety of extended leadership training from NCR University.
Bill is an active speaker on IT governance topics, and was a featured speaker at the Hackett Best Practices Conference in 2010, the USA India Business Summit (UIBS) and the CIO Value Forum. He is a board member of the Technology Association of Georgia (TAG) and a member of HCL's Customer Advisory Council and Oracle's Leadership Council.
Bill lives in Cumming, Georgia with his wife, Jeannie, and his sons, Brian, Brad and Justin. His hobbies include skiing and landscaping. Bill is a member of both The Ohio State University Buckeye Club and the President's Club.
Chief Information Security Officer, Memorial Sloan-Kettering Cancer Center
Richard Jankowski is the CISO at Memorial Sloan-Kettering Cancer Center in New York City, where he has worked for the last nine years. Prior to Sloan-Kettering, Richard was an engineer at Lucent Technologies. Richard served in the U.S. Marine Corps. as an infantry rifleman with responsibilities as a scout and rescue swimmer and has served in combat during Operation Restore Hope in Somalia. He holds a Master of Science in Computer Science from the Stevens Institute of Technology in Hoboken, NJ.
CIO and Senior Vice President, Univita Health, Inc.
Paul Kay is the Chief Information Officer for Univita Health. Univita Health provides home-based care management programs that are fundamentally changing the way care is delivered in the home. Univita Health's comprehensive approach to delivering, integrating and managing home care services supports the entire care continuum. Through specialized support for people with complex needs, Univita promotes patient independence, improves accountability and lowers health care costs
Paul brings over 25 years of information systems and operations management experience. Paul has served in senior IT management positions at several companies including, International Harvester, General Mills, CVN Companies, Carlson Travel Group, Med Power, and MoneyGram.
Prior to joining Univita Health, Paul ran an international consulting practice which provided IT and professional services globally to the entertainment, distribution, and financial services industries. Paul has extensive international business experience in Asia, Europe, North America, Oceania, and the Middle East.
He earned a BA in mathematics from Lawrence University and a MS in computer science from Northern Illinois University.
Vice President and International Security Officer, Equifax, Inc
Jay Leek, CISM, CISA, CISSP is the VP & International Security Officer at Equifax. In this role, Jay is responsible for ensuring security and fraud programs, risks affecting business interests and regulatory and compliance matters are managed internationally. Over the past 15 years, Jay has managed global security teams, worked as a product manager and consulted with telecommunications companies, government agencies and financial institutions assisting them with business development, strategic planning and architectural design required to meet their security objectives. Jay acts as an industry advisor for information security organizations and government agencies and is a frequent speaker at domestic and international InfoSec conferences.
Vice President, Risk Management, Univita Health, Inc.
Mr. McGuire currently serves at the VP, Risk Management for Univita Health where he is responsible for the Information Security, Risk Management, and Internal Audit functions. Mr. McGuire brings more than 25 years of experience within IT and Corporate Security within numerous industries, and served as the Information Security Officer from 2002 – 2007 for TSYS iSolutions, a commercial credit card financial services firm, prior to joining Univita. In addition to a degree in Computer Information Systems, Mr. McGuire holds the Certified Information Systems Security Professional (CISSP) designation with the Information Systems Security Management Professional (ISSMP) concentration issued by ISC2, the Certified Information Security Manager (CISM) and Certified in Risk and Information Systems Control (CRISC) designations issued by ISACA, and the GIAC Certified Incident Handler (GCIH) certification from the Global Information Assurance Certification program. Mr. McGuire was a contributing author to the SANS Incident Response Step-by-Step guide in 2001, participated as a conference speaker at the BIAS conference in Milan Italy in 2004 and at the IT Security World conference in San Francisco in 2005, and is a past President (2009/10) of the Denver chapter of InfraGard where he served on the Board of Directors for five years. Mr. McGuire currently sits on the Board of Directors of Ensuren Corporation, and on the Advisory Board of GuideStar Technologies.
Chief Information Officer, McKesson Provider Technologies
Lisa McVey is chief information officer for McKesson Provider Technologies, Resource Management Solutions, and Physician Practice Solutions. She has overall responsibility for information technology leadership for MPT, the largest division of McKesson Technology Solutions (MTS), and the Ambulatory Businesses. McVey directs and manages computing and information technology strategic plans, policies, programs and schedules for business and finance data processing, computer services, network communications, and management information services in partnership with the business to accomplish corporate goals and objectives. She serves as the MTS-IT liaison for with McKesson Corporate IT and McKesson Business Technology Solutions (BTS).
McVey joined McKesson in 1994, and has served in a number of succeeding leadership roles in Research and Development, Services, Sales, Process Office and IT. She has led the operational development of a single, SFA-driven sales process that integrated 22 sales leaders and 15 diverse processes; streamlined sales and service operations by initiating the sales services center facilitator role tasked with supporting and coordinating all quoting and contracting activities; improved business processes by developing IT governance and funnel management methodologies; introduced a service product philosophy, implementation strategies, and a client education approach still in use by the company today. Within one of the MPT business units, McVey aligned products with sales objectives, resulting in $18.6 million in new revenue generated. She also serves on the IT Buyers Council, which comprises McKesson technology, financial and operational leaders who prioritize IT investments based on business needs.
Improving the customer experience, directing core and strategic business initiatives, implementing business process changes, establishing collaborative alliances and developing high-performing customer focused teams in order to implement infrastructure and applications to support the business in achieving its growth and revenue goals are among her core strengths.
McVey is the recent recipient of the Association of Telecom Professionals' 2010 Enterprise Leadership Award and was recognized by Women in Technology (WIT) 2010 Women of the Year in Technology. The latter award recognizes female technology executives for accomplishments as leaders in business, visionaries in technology and women who have positively impacted Georgia's technology community.
Committed to investing in the local community, promoting better health and assisting in the advancement of women in technology; she is one of the champions for McKesson's community efforts, the Georgia chapter of Women in Technology (WIT), and is active in Technology Association of Georgia, Women in Technology (WIT), CIO Executive Council sponsored by CIO Magazine, among others.
McKesson Corporation, currently ranked 14th on the FORTUNE 500, is a healthcare services and information technology company dedicated to helping its customers deliver high-quality healthcare by reducing costs, streamlining processes, and improving the quality and safety of patient care. McKesson has been in continuous operation for more than 175 years, making it the longest-operating company in healthcare today. Over the course of its history, McKesson has grown by providing pharmaceutical and medical-surgical supply management across the spectrum of care; healthcare information technology for hospitals, physicians, homecare and payors; hospital and retail pharmacy automation; and services for manufacturers and payors designed to improve outcomes for patients. For more information, visit http://www.mckesson.com.
Vice President, Security, ITRSM Security & Vulnerability Management Operations, JPMorgan Chase & Co.
Victoria Meyer manages Security & Vulnerability Management Operations for JPMorgan Chase. She has worked in several areas of information security for the firm; including security product management, information risk management and infrastructure security. She maintains the CISA and CISSP professional certifications, and is a graduate of Steven Institute of Technology and New York University.
Head of Information Security, AGL Resources
Rob Mims is the head of information security for AGL Resources, a fortune 500 natural gas services company, where he is responsible for global security policy, processes, risk mitigation and compliance and has implemented large scale changes in technology and processes to mitigate information security risks, including data leakage prevention, hard drive encryption, database encryption, email archive, e-discovery and incident response. Rob is currently developing security and compliance programs for critical infrastructure/key resource regulations in control system environments.
Rob is an active contributor to DHS efforts to define and implement cybersecurity guidelines and regulations in the natural gas energy sector. He is active with the American Gas Association's security committee where he serves as chair of the cybersecurity task force. He is also a member of the transportation systems sector cyber working group as well as the oil and natural gas sector coordinating council.
Rob has over 11 years of experience in information security. He holds a bachelor's degree in Electrical Engineering from the Georgia Institute of Technology. He is a certified information systems security professional (CISSP), a certified information privacy professional (CIPP), and holds many technical certifications.
Senior Threat and Intelligence Researcher, Managed Security Services Intelligence Center, IBM Corporation
Michael Montecillo is the Threat Research and Intelligence Principal within the IBM Managed Security Services. He has more than eight years of experience in information security, during which he has served as an X-Force Threat Researcher, an Information Security Officer dedicated to a state police organization, as the Vulnerability Management Coordinator for the State of Michigan, and as an industry analyst at EMA. Michael has functioned as a speaker at industry events including the Department of Homeland Security Government Forum for Incident Response and Security Teams, IBM Innovate, and VA Scan. As the Threat Research and Intelligence Principal within IBM Security Services he conducts research on emerging threat trends and works to secure clients against those threats.
Regional Information Security Officer, Sutter Health - East Bay Region
Earl is an accomplished Information Technology, Audit and Security leader with 23+ years experience in industry and government. Earl has an extensive background in large scale project management, "IT Operations, IT Audit and Security/Compliance" Program Implementation, LAN/WAN Configuration and Enterprise Administration complemented by extensive experience in supervising and directing geographically dispersed international programs. In addition to his security background Earl has a broad background in IT risk management, controls and SOX regulatory compliance. His multi-lingual skills have earned him a place as a member of the International Quality Assurance Review team for the Institute of Internal Audit in Latin America. Earl holds Master's Degree in Media & Technology from Boston University with additional post graduate level course work in Business Administration.
Head of Global Information Security, Williamson-Dickie Manufacturing
Robert began working for the Williamson-Dickie Mfg. Co., in 2010. He is responsible for the IT Security & Support Services for Wiliamson-Dickie's IT Global Operations. Responsibilities include design and implementation of IT security & IT risk management strategies, addressing control issues for the manufacturing and retail consumer operations, developing user access & identity management strategies, developing scalable solutions to address PCI compliance, designing secure architectures, business continuity planning, delivering tier 1 and tier 2 IT support for all network users and the development of policies and procedures. Execution requires leading/working with cross-functional teams consisting representatives from Legal, Marketing, Compliance, HR, Finance and others as required.
Prior to joining Williamson-Dickie, Robert worked for 6 years for Textron in their corporate offices and at their Bell Helicopter business unit, leading the information risk management operations. Global responsibilities included strategic direction in access & identity Management, network architecture design enhancements, development of policies/standards and overall IT compliance.
Additionally, Robert spent 8 years at PricewaterhouseCoopers, Chicago, IL, in their Global Risk Management Solutions practice, focusing on information security and privacy. As a Senior Manager, responsibilities centered upon consulting for Fortune 500 clients in various industries, which included international travel. Led large and diverse teams in providing client executive management with key strategies to address information security issues in their respective industries. Robert's career also includes 10 years at Ameritech (now SBC), during which he held various management positions and led large teams in network administration/provisioning, network operations and information security.
Robert has a Bachelors of Science Degree in Engineering from Michigan State University and a Master of Science Degree in Management from Walsh College of Business and Accountancy. Robert has completed the Executive Leadership Program at Thunderbird - Gavin School of International Management. He is a Certified Information Systems Security Professional (CISSP), a Certified Information Security Manager (CISM), and a Certified Six-Sigma Green Belt.
Vice President & Chief Security Officer, Parsons Corporation
Lee Parrish is the Vice President & Chief Security Officer for Parsons Corporation, responsible for cyber security, physical security, and business continuity for the corporation across 25 countries. Prior to Parsons, Mr. Parrish effectively led large information security organizations for an Aerospace & Defense corporation as well as a data management firm. Lee is certified in information security and currently holds the CISSP, CISM, GISP and ITIL certifications. He has published multiple articles in international cyber security journals and is a frequent speaker at numerous industry events across the globe.
Mr. Parrish's academic credentials include a Master's of Business Administration from the University of Arkansas, as well as a Master's of Science in Information Assurance from Norwich University. In his spare time, he has served as an Adjunct Professor in Computer Science for two large universities. Lee is a combat Marine veteran and resides in Dallas, TX.
Chief Information Security Officer, Harvard Pilgrim Health Care
Ken joined Harvard Pilgrim Health Care in June 2000 as their Information Security Officer. He has 40 years of Information Technology experience in the areas of information security, internal audit, contingency planning, and data center management. Previous work experience includes two years with KPMG LLP as Manager, Information Risk Management, and twenty-six years at Digital Equipment Corporation. Ken is a Certified Information Systems Security Professional, a member of the Information Systems Security Association, the Boston chapter of InfraGard, and volunteers his information technology services to the Hudson Area Arts Alliance, a charitable nonprofit organization.
Vice President and General Counsel, Beneficial Financial Group
Chief Security Officer, Department of Technology, City and County of San Francisco
Jeana Pieralde, CISSP, CRISC is the Chief Security Officer (CSO) for the City and County of San Francisco's Central IT organization, the Department of Technology. Jeana is a proud San Francisco native with 15+ years of IT Experience focusing on the Government Sector. Prior to moving into IT Security, Jeana, worked as a network and systems engineer.
In her CSO role Jeana has been working with the City's Committee on Information Technology and the Chief Information Officer since 2008 to formulate and move IT Security Policy and initiatives forward in the City of San Francisco. In establishing a modern Information Security Program in San Francisco Jeana and her team have focused on raising awareness around IT Security issues such as Data Security, Business Continuity, Incident Response, and Security Governance in San Francisco's City Government. She is a proponent of Security as a business enabler, consultant, and educator at all organizational levels.
Jeana and the San Francisco Security team also work closely with law enforcement including the San Francisco Police, San Francisco Sheriff's Department and federal agencies to monitor and manage cyber threats against San Francisco's critical IT assets. Jeana holds the ISC2's CISSP Certification and ISACA's CRISC Certification, and is certified by the Superior Court of the State of California as an expert witness in Network Security.
Chief Information Security Officer, AXA Financial
Chief Information Security Officer, PETCO Animal Supplies, Inc.
Kevin Rigney is the Chief Information Security Officer for Petco Animal Supplies, Inc. headquartered in San Diego, CA. His Information Security role involves the development, implementation and monitoring of the Information Security Program. The goal of the program is to protect customer information, employee information and company proprietary information. Additionally, he is responsible for overall IT Security & Compliance for the business.
Kevin is a Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM) and a Certified Information Systems Auditor (CISA). He also serves as the Naval Reserves Commander Third Fleet Executive Officer, Joint Forces Maritime Component Command, supporting the Active Component of the Pacific Fleet. He resides in Encinitas, CA.
Chief Security Officer and Senior Vice President, Enterprise Risk & Resilience, Fiserv
Edward Sarama is the Chief Security Officer and Senior Vice President of Enterprise Risk & Resilience at Fiserv, the leading provider of financial electronic commerce services and products for U.S. banks, credit unions and thrifts.
In this role, Sarama is responsible for developing, implementing and maintaining Fiserv's information security, risk and compliance programs. This includes regulatory compliance, business and product risk assessments, security architecture planning and assurance, as well as strategy of the information security, risk and compliance of the largest banks, merchants and financial institutions in the United States.
Sarama has more than 34 years of experience in information technology since joining CheckFree in 1998, with 18 years in information security, and risk management.
Sarama has an associate's degree in Architecture from Mercer County College, a bachelor's degree in Information Systems from the University of North Florida, and has completed the Executive Management Program at the College of Business at Florida State University.
Senior Vice President, Comerica Bank
Kenneth P. Schaeffler is the Director of the Corporate Information Security Services Department of Comerica Incorporated, one of the 30 largest banking companies in the United States. As the director of Information Security for the Dallas-based bank, his information security responsibilities include:
Schaeffler joined Comerica in 1971. His information technology experience spans forty years and multiple information technology disciplines including systems engineering, systems management/technical support, data center operations, application software development, performance management/capacity planning, and corporate business continuity and disaster recovery.
His prior experience includes systems programming, planning multiple data center consolidations, performance modeling of data networks and large computer systems, transitioning legacy technology infrastructures to be eBusiness capable, and enabling the secured delivery of Comerica's business products and services.
Schaeffler is actively involved in several financial services, security and privacy organizations and related information security initiatives.
Chief Security Officer, University of Indiana School of Medicine
Eric is currently the Chief Security Officer for the Indiana University School of Medicine on the Indiana University campus in Indianapolis, Indiana. Additionally, he is the interim HIPAA security officer for the university. His responsibilities include leading various information security initiatives within the School of Medicine and IU Health Sciences to ensure the school remains is in compliance with University and affiliated entity security policies and procedures, as well as state and federal regulations regarding the security of electronic information. Prior to coming to the IU School of Medicine, Eric was a senior manager with Ernst & Young LLP assigned to their Security & Technology Solutions practice. Eric is also a retired United States Air Force field-grade officer serving for 21 years. At his retirement from active duty he was serving as the Director of Computer Crime Investigations and Operations within the Air Force Office of Special Investigations. In that capacity he provided operational oversight and leadership for all high technology criminal and counterintelligence investigations and operations for the Air Force.
Eric is currently a Certified Information Systems Security Professional with the Information Systems Security Association and a Certified Information Security Manager with the Information Systems Audit and Control Association. He is also a past President of the Central Indiana chapter of the Information Systems Security Association.
Chief Security Officer, Silicon Valley Bank, SVB Financial Group
Nick Shevelyov is the Chief Security Officer for Silicon Valley Bank, a member of SVB Financial Group. SVB Financial Group (SVBFG) provides diversified financial services to emerging, growth and established technology companies and the life science, venture capital/private equity and premium wine markets. Nick joined SVBFG in 2007 and is responsible for Information Security Governance, Cyber Security, Data Privacy, Computer Security Incident Response, Business Continuity and Physical Security programs and strategy.
Previously, Nick managed security, data privacy and strategy projects for Deloitte's Enterprise Risk Management group providing consulting services to a variety of Fortune 500 organizations. Before joining Deloitte, Nick managed security consulting teams and information technology departments.
Prior to his management roles, Nick served in various systems administration, network engineering and program management roles. He has worked across multiple functional groups aligning technological solutions with business drivers.
Nick earned a bachelor's degree in Economics from the San Francisco State University and an MBA from the University of San Francisco Graduate School of Business.
He has been a speaker/panelist at various events and venues including ISACA, SANS LMP, Berkeley Haas School of Business and various other security and privacy events.
Vice President, Information Security, Lowe's Companies
Mr. Schroeder Joined Lowe's in 2008, a Fortune 42 company with worldwide revenues nearing $50 billion and 240,000 employees. Chris brings over 17 years of IT experience to this role, and is responsible for all facets of information security including governance, auditing, compliance, vulnerability management and security awareness. During his tenure with Lowe's, Chris developed an enterprise-wide security strategy, established security governance and compliance monitoring processes and investigates security incidents, consulting with legal, human resources and law enforcement, as necessary. Chris has built a team of security professionals responsible for a wide array of services such as, intrusion detection, authentication and authorization, encryption key management, penetration testing, risk assessments and vendor risk assessments.
Vice President of Technology Infrastructure and Broadcast Transmissions, Turner Broadcasting System, Inc
James Robertson is Vice President of Technology Infrastructure and Broadcast Transmissions for Turner Broadcasting System, Inc. In this capacity, Robertson leads the team responsible for providing agile technology solutions for the company across both back office operations and broadcast arenas.
Named to this position in 2003, Robertson holds global responsibility for data networks and voice systems, IT security posturing and enforcement, as well as technology and content risk and compliance services. He also oversees project management and broadcast transmissions which include all satellite and fiber-based video services used by Turner Broadcasting's entertainment and CNN news properties.
Robertson serves as chair of the Time Warner Security Committee, chartered with setting and enforcing the security stance across Time Warner's family of companies that includes HBO, Warner Brothers, Time Inc. and Time Warner corporate along with Turner Broadcasting. He also chairs the Network Architecture Committee across Time Warner, which provides network design validation and architecture planning for the company at large. In addition, Robertson sits on a number of industry advisory boards and has spoken and keynoted at numerous technology and media industry events including the 2010 Network World conference and 2010 Computer World conference.
Robertson joined Turner Broadcasting in 1998 to form the first IT security team and was promoted to Manager of Network and Security Groups in 1999. In 2001, he was named Director of Technology Operations. Prior to joining Turner Broadcasting, Robertson was Vice President of Technology and Chief Information Officer for Georgia Military College.
Robertson holds a bachelors degree with honors in Computer Science from DeMontfort University and a masters degree in Computer Science from American Institute for Computer Sciences.
Senior Product Marketing Manager, Palo Alto Networks
Brian Tokuyoshi is a Senior Product Marketing Manager for Palo Alto Networks, where he is responsible for working with customers on distributed enterprise network security solutions. Brian has a 17 year background in computer security, with domain expertise in issues around data protection, identity, and authentication. Previously, Brian worked for PGP Corporation, ActivIdentity and Sun Microsystems, and served as senior market analyst for identity & cryptography at The Radicati Group.
Vice President, Technology Risk Management & Chief Security Architect, Blackrock, Inc.
Chief Information Security Officer, Blue Shield of California
Blue Shield of California's Chief Information Security Officer (CISO), Sherry Ryan, is responsible for proactively overseeing all ongoing activities related to the confidentiality, integrity and availability of sensitive BSC electronic data; as well as compliance with federal, state and local laws and BSC's electronic security policies regarding the handling of legal, financial, personal, health and other sensitive information in compliance with federal and state laws and BSC's electronic security practices.
Previously, Sherry was Hewlett-Packard's CISO and held similar positions at Safeway and Levi Strauss where she established and led their information security programs. She served as a member of former Vice President Gore's National Performance Review Small Business Advisor Task Force. Sherry holds the Certified Information Security Manager (CISM) certification from ISACA and the Certified Information Systems Security Professional (CISSP) certification from ISC2. She is a member of the High Tech Crime Investigation Association (HTCIA) and the Information Systems Security Association (ISSA).
Sherry holds a bachelor's degree in Business Administration from the University of Redlands, and earned her MBA from the College of Notre Dame. She is based in San Francisco, California.
Information Security Officer for Lucile Packard Children's Hospital, Stanford Medical Center
Connie Sadler is the Information Security Officer for Lucile Packard Children's Hospital at the Stanford Medical Center, where she plays a significant role in policy development, compliance, user awareness and training, and the overall protection of sensitive and confidential information. Connie also does a seminar on Identity Theft, and is active in Information Security Professional Organizations working to develop standards and best practices. Connie has extensive experience with security architecture and infrastructure. She has been in the Information Security community for over 20 years, and has experience in higher education, academic medical centers, research institutions, nuclear facilities, government, health care, and global aerospace and defense. She believes that education of users of technology at all levels is the single most effective work of a security professional.
Connie is a Certified Information Systems Security Professional (CISSP), a Certified Information Security Manager (CISM), is Certified in the Governance of Enterprise IT (CGEIT), and a Graduate of the SANS Security Leadership Certification Program. She also serves as an advisor to several security organizations and has spoken and provided training at various security-related seminars and conferences.
Information Security Officer , Protective Life Corporation
Tim Searcy joined Protective Life Corporation in 2002 as its first Information Security Officer with the challenge to create a formal security program from the ground up. Today, the mature program is charged with overall corporate responsibility for IT risk management and includes defense systems management and strategy, policy development, security architecture, identity and access management, incident management and investigations, security awareness, regulatory compliance, and disaster recovery. Tim is responsible for providing leadership, strategy and direction for all information security and risk initiatives for the company.
Tim has over 20 years of experience in the information technology and financial services arena with 18 years dedicated to information security and auditing. Prior to joining Protective, he served as a senior security architect and senior audit officer in the banking community. He also served as a senior technical manager for an Internet startup company where he created their formal software quality assurance and technical support division.
Tim is a native of Birmingham, AL and holds an MBA degree from the University of Alabama at Birmingham and a BS degree in Mathematics from Birmingham-Southern College. He also holds the CISSP and CISM designations. He has been a frequent guest lecturer in the MIS program at UAB and an invited guest speaker at conferences on information security, software engineering and Sarbanes-Oxley compliance.
Vice President IT Risk Management & Compliance, McKesson Corporation
Maria Shaw, Vice President, IT Risk Management & Compliance – Maria has worked for McKesson for the last six years – initially building out the company's SOX program, and over the last 3 years working for the CISO building out the IT Risk Management function which is tasked with embedding security and IT risk management across the organization. Prior to McKesson, she worked for many years for Deloitte & Touche both in the US and the UK in both auditing IT and business/financial processes and providing consulting services in these areas. Maria holds a Masters Degree, Computer Science, from Cambridge, UK.
Regional Information Security Officer, Sutter Health, Central Valley Region
Chief Information Security Officer,
Ariel Silverstone is addressing business information security and risk challenges for over 20 years. Designing information security processes and policies to address the most demanding challenges in the field, he is a thought pioneer in information security strategy and engineering, business risk, and management solutions. His specialties include mobility, information risk, user authentication, PCI compliance and cloud computing security.
Professionally, he has led efforts for such companies as Expedia, Travelport, Symantec, and others companies. A frequent speaker at industry events on the topics of security management, business risk and compliance issues, Silverstone also writes a regular column for CIO Magazine, and has been quoted in The Wall Street Journal, BusinessWeek, CSO Magazine, ComputerWorld and other leading publications. He consults and trains security professionals, and has authored and contributed to more than 20 books, dozens of magazines, electronic publications, and high-profile research papers, which have been published around the world. He is a frequent contributor to standards bodies and co-authored the National Institute of Standards and Technology (NIST) guide to security for the Smart Grid.
Group Information Security Officer, Willis
Drew Simonis has been in the information security field for over a decade with a background as an analyst, engineer and consultant. Drew has worked extensively in the ISP space, both for IBM Global Services and AT&T and spent several years working on one of the largest DoD networks. At Willis, Drew is focused on transforming the information security program to support a data-centric model focused on business enablement through informed risk decisions. Just prior to joining Willis, Drew was an Information Security Manager with Symantec, the world's largest security software company. Drew is an industry expert, having spoken at several conferences, including the industry's largest, RSA. He has also co-authored several books, including "Building Enterprise DMZ's" and "Check Point Next Generation Security Administration" and is the President of the Nashville CISO Roundtable. Drew has his Masters of Science in Computer Science, focusing in Information Security, from James Madison University in Virginia.
Chief Information Security Officer, InterMountain Healthcare
Chief Information Security Officer, Sumitomo Mitsui Banking Corporation
Kylie Watson is Sumitomo Mitsui Banking Corporation's Chief Information Security Officer for the Americas, EMEA and Capital Markets globally. Ms. Watson is charged with establishing security strategy and direction and is the corporate advocate for information security best practices. She is responsible for outlining the company's security vision in support of the business including technological planning, strategic initiatives, development and future growth, and promoting a culture of security across the enterprise. Ms. Watson's role also includes System Risk Management and Security Operations across the enterprise.
Ms. Watson has more than 20 years of experience in Information Technology in roles as diverse as Global Crisis Management, Program Management, Application Development, Corporate User Liaison and as a Systems Engineer. Prior to joining SMBC, Ms. Watson worked for IBM in Australia and as a teacher in Japan. She is a Certified Information Systems Security Professional (CISSP), a Certified Information Security Manager (CISM) and is Certified in Risk & Information Systems Control (CRISC).
Senior Security Analyst, Palo Alto Networks
Wade has extensive industry experience in intrusion prevention, secure mobility, and both wired and wireless networking. Prior to joining Palo Alto Networks, he led the product management team at AirMagnet, Inc., including the company's flagship wireless IPS solution. He has been a steady and active researcher of new threats and techniques used to compromise enterprise networks and mobile end-users. He also brings well-rounded experience from silicon-vally visionaries Netscape and Sun Microsystems. As an expert in the field he leads Palo Alto Networks' Threat Review Series, which provides analysis and best-practices in response to the latest industry threats. Additionally, he has been an ongoing contributor to Security Week covering the topic of modern malware.
Vice President and Chief Information Security Officer, McKesson Corporation
Mike Wilson, Vice President, CISO – Michael has worked for McKesson for the last three years where he leads the security and IT risk management functions for the Corporation. Michael has worked predominantly in IT and risk management fields across several geographies and industries including financial services, healthcare and consumer products & distribution. These roles have been focused on maturing risk management and security functions to provide more value to their sponsoring organizations. Prior to McKesson, he worked for many years for a global professional services organization and has held various IT positions in the AsiaPac region working in the Financial Services industry for a bank and insurance organizations'.
Michael continues to support several industry organizations; this includes, as an executive advisory board member for the Health Information Trust Alliance (HITRUST), provides support for the Health Security Alliance, Cloud Security Alliance and is an active member of the CSO Bay Area Council. Michael speaks regularly on various panels and conferences, notably as a governing body co-chair of the CISO Executive Summit (San Francisco). Michael holds a Bachelors Degree, Business Administration and Commerce, from Victoria University, New Zealand.
Head of Information Security, Director, Texas Instruments
Since 2001, Brian Wrozek has been the IT Security Director for Texas Instruments. He is responsible for all areas of electronic data and system security worldwide. In 2011 he was given the added responsibility of chairing TI's new global Privacy Committee. He continues to facilitate the company's Confidential Information Protection Council and represent IT Services on the corporate Acquisitions and Divestitures Team.
Brian Wrozek earned his BS in Computer Science from Michigan Technological University and his MBA from the University of Dallas. He holds an Information Assurance Certification from the University of Dallas. His is gold certified in Security Essentials from the SANS organization.
He is on the Governance Board of the University of Dallas' Cyber Security Graduate program. He is an active member of the ISSA where he served 4 years as the President of the North Texas Chapter.
He received the 2008 central region Information Security Executive of the Year award from Executive Alliance and the 2010 Information Security Executive of the Year award from the Texas Regional Infrastructure Security Conference group. He is married and has three daughters.
Chief Risk Officer, Strategic Planning Department, Tokio Marine Management, Inc.
Arya Yarpezeshkan is the Chief Risk Officer and Strategic Planning Leader for Tokio Marine Management, the U.S. management company for Tokio Marine and Nichido Fire Insurance.
In this role, Arya is responsible for all enterprise risk management initiatives and strategic planning for the company. This includes assisting the Company Board and senior management with establishing and communicating the organization's enterprise risk management ("ERM") objectives and direction. Arya is also responsible for establishing Tokio Marine's risk appetite and allocating capital accordingly.
In his strategic planning role, Arya leads the process of identifying and evaluating new market opportunities, which includes partnering with the business units and leading the business plan proposal process within the company. Arya also advises Tokio Marine management on supporting initiatives such as financial and economic analysis that may have an impact on the Company's current or future objectives. He ultimately assists with decisions on operational executions of business plans.
Prior to Tokio Marine, Arya worked in the enterprise risk management ("ERM") group at MasterCard as well as in financial roles at Citigroup and The Bank of New York Mortgage Company. Arya has also spent time in strategic planning and operations roles within the manufacturing sector at Astec America and Maxwell Technologies.
He completed his M.S. in Banking at Mercy College, his M.B.A. at San Diego State University and his B.S. at Kansas State University and is certified in Six Sigma, Project Management, Business Process Management and Business Continuity.
Chief Information Officer of the Americas, Transitions Optical
Maria has had an extensive career in IT, Operations and HR spanning over 35 years. As the Director of IT/CIO of the Americas at Transitions Optical, Maria is a part of the organization's Leadership Team which governs both the Operations and the Commercial business functions for North and South America. In her four years at Transitions, Maria has led the efforts to enhance security at Transitions, a company with focus on protecting their data and guarding their intellectual property in support of the company's innovation in photochromics within the optical industry. In addition, the company during Maria's tenure has consolidated data centers, introduced virtualization, cloud computing, VOIP and business intelligence.
Maria's career began at Westinghouse Electric in Pittsburgh, PA as a programmer in mainframe technologies. As her career unfolded, she advanced to Senior Business Analyst for Mellon Bank, Project Manager for the Nuclear Division of Westinghouse, and Senior IT Auditor for Rockwell International. Maria then decided to start her own IT consulting firm which she grew from two to twenty five consultants. The company was absorbed by Dollar Bank in Pittsburgh where Maria took the position of Vice President of Software Development. After 9 years in that role, the Board of Directors asked Maria to start a new division offering IT and start up services to small businesses in the western Pennsylvania area. She was then asked to lead a joint venture with Knight-Ridder to market banking services as part of the first PC to mainframe link paving the way for banking over the Internet. During that time, Maria also provided technical and operational leadership to local organizations and non-profits.
Prior to her current role at Transitions, Maria held the position of Vice President responsible for IT functions for Citibank's Latin America division. During her eight years, Maria made significant contributions to the region's corporate banking business. In the early 2000's, Maria became an interim HR Manager for two years serving a group of over 400 IT professionals which led to her current adjunct role of coaching and mentoring IT leaders on how to build strong IT teams.
Other responsibilities Maria has had include the head of Operations for the MAC ATM switch for the state of PA, two corporate Board of Directors positions, IT advisor for the United Way, member of the Advisory Board of a local school for underprivileged children, and professor at Robert Morris college.
Maria is a graduate of the University of Pittsburgh and has completed the coursework for both an MBA and a Masters in Education from Duquesne University. She is currently a mentor at the University of Tampa for MBA students and is a coach for younger professionals who want to either find a job or further their careers within IT.

