Loading…
Type: Track 3 clear filter
arrow_back View All Dates
Friday, April 11
 

9:15am ADT

Reframing Cyber Defence: Are We Seeing the Full Picture?
Friday April 11, 2025 9:15am - 10:00am ADT
As cyber threats evolve and regulatory landscapes tighten (GDPR, NIS2, DORA, CMMC, CPCSC, and more), organizations are challenged to move beyond traditional security perimeters. While the industry has mastered visibility into infrastructure, applications, and even OT environments, have we truly unlocked the full potential of cyber defence? More specifically, how can we align security strategies with business processes, data flows, and evolving operational resilience requirements?

This session explores the art of the possible in cyber defence—rethinking our approach to visibility, control, and governance in the context of digital transformation. Can we move beyond system, network, and application logs to gain deeper insights into how data is classified, accessed, and protected across an enterprise? How do we operationalize consent management, data governance, and security controls in a way that enhances—not hinders—business agility?

Key Takeaways:
  • Reframing cyber defence to address regulatory, privacy, and operational resilience challenges
  • The role of data classification, consent management, and governance in a modern security strategy
  • How to move from reactive security controls to proactive, enterprise-wide security integration
  • Practical considerations for embedding security into digital transformation efforts
Speakers
JP

Jarett Parent

CEO and National Practice Lead, Canada, C3SA Cyber Security Audit
Jarett is CEO and Lead of C3SA Cyber Security Audit Corp. as well as Board Chair and Lead of Security BSides Ottawa – Canada's largest grassroots cybersecurity unconference. He brings more than 20 years of experience leading teams that deliver data privacy, cyber security, and resilience... Read More →
Friday April 11, 2025 9:15am - 10:00am ADT
Argyle Suite 2

11:00am ADT

From Bed Bugs to Bad Actors: Planning for Compromise
Friday April 11, 2025 11:00am - 11:45am ADT
What do bedbugs and ransomware attacks have in common? Two things: they both sneak their way in, and they both need to be dealt with in a thought-out and methodical manner.

Fortunately, proper planning and remaining calm can go a long way to a successful recovery. In this session, we will draw parallels while covering the initial identification of the problem, the steps taken to quarantine and mitigate the spread, and the eventual remediation and recovery process.

By drawing similarities between data resiliency and a real-world bed bug infestation, we aim to provide a unique perspective on the importance of preparedness, quick response, and thorough recovery in both physical and digital environments. Attendees will gain insights into practical strategies for managing unexpected threats and ensuring resilience in the face of adversity.
Speakers
avatar for Alex Crandall

Alex Crandall

Systems Engineer, Veeam
Alex Crandall is a Systems Engineer based out of Atlantic Canada and is in his fourth year with Veeam. Prior to joining the Canadian SE team, he worked in professional services (Softchoice) with a focus on Microsoft technologies, at a local MSP supporting day to day client operations... Read More →
avatar for Matt Crape

Matt Crape

Senior Technical Product Marketer, Veeam Software
Matt Crape is a seasoned professional with over 20 years of experience in the tech industry, currently serving as a Senior Technical Product Marketer at Veeam. Before Veeam, his journey included time in frontline roles in tech support, system administration, and IT management. He... Read More →
Friday April 11, 2025 11:00am - 11:45am ADT
Argyle Suite 2

1:00pm ADT

Redefining Success in Employee Awareness Training: Understanding & Enhancing the Employee Journey
Friday April 11, 2025 1:00pm - 1:45pm ADT
In the process of an employee awareness training campaign, employees undergo various stages, marking their journey from initial awareness to completion. Recognizing employee journey stages is pivotal in cultivating a security-first culture that acknowledges human behaviour. Each stage represents a step in the employee's progression, starting with becoming aware of the training, deciding to participate, and finally completing the program.

However, a gap exists in evaluating the success of such awareness training campaigns. Traditional metrics like completion rates tend to focus on the final stages, overlooking earlier stages that are crucial in understanding and enhancing user engagement to sign up for training willingly, and not by force!

To bridge this gap, there’s a need for redefining success criteria for awareness campaigns. A comprehensive evaluation should consider each employee's decision-making journey stages and employ diverse metrics tailored to assess the success of each stage. 

In this presentation learn about different stages of the employee journey stages, engagement strategies & diverse metrics to assess the success of the training campaign. 

By embracing this refined assessment methodology, organizations can delve deeper into employees' learning journeys. This approach aids in accurately evaluating the success of awareness training campaigns by identifying the stages at which employees disengage. Consequently, this allows planners to pinpoint gaps, plan effectively, and make informed decisions to enhance training campaigns. Ultimately, this ensures that employee awareness training campaigns engage employees collaboratively around their needs.



Speakers
avatar for Khatija Qureshi

Khatija Qureshi

Cybersecurity Awareness Specialist, Undisclosed in Insurance Industry
Khatija Qureshi is a cybersecurity professional, trained by SANS and holding three GIAC certifications, along with a Certified Incident Handler credential. With over a decade of experience in marketing, brand building, and communication, she is dedicated to humanizing the field of... Read More →
Friday April 11, 2025 1:00pm - 1:45pm ADT
Argyle Suite 2

2:00pm ADT

Reality Check from the C-Suite: Why Technical Skills Aren’t Enough to Land the CISO Role
Friday April 11, 2025 2:00pm - 2:45pm ADT
This session explores why many cybersecurity professionals are often overlooked for the Chief Information Security Officer (CISO) role despite their technical expertise and certifications. Drawing on C-Suite and board-level insights, this presentation highlights the essential executive soft skills, business acumen, and strategic vision needed to transition from technical expert to organizational leader. Attendees will better understand what executive leaders seek in their next security executive, equipping them with the insights to make this critical career leap.
Speakers
avatar for Darren Gallop

Darren Gallop

CEO, Carbide Secure
Darren Gallop is an accomplished CEO, board director, and cybersecurity leader with over two decades of leadership experience in technical environments. As the founding CEO of Marcato, Darren led the development of integrated technology solutions for some of the world’s largest... Read More →
Friday April 11, 2025 2:00pm - 2:45pm ADT
Argyle Suite 2
 
Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.
Filtered by Date -