Loading…
Venue: Argyle Suite 3 clear filter
Thursday, April 10
 

11:00am ADT

Your Incident Response Kung Fu Is Old... and Now It Must Die!
Thursday April 10, 2025 11:00am - 11:45am ADT
The two most important parts of incident response are having a documented plan and a skilled and trained team.  But the next two important things are often overlooked: speed and organization.

As incident commander, would you like to get away from status reports all days and spend your time leading the response instead?
Would you like to spend your tropical vacation uninterrupted by needing to lead incident response?
Would you like improve your team's efficiency and not have every investigator chasing the same shiny thing?

There is a way, and it's easier than ISO or NIST. Come and hear about a better world, where we learn efficiency from firefighters.
Speakers
avatar for Chris Lincoln

Chris Lincoln

CISO, NB Power
I'm an opinionated CISO in critical infrastructure who works hard to ensure his priorities are correct because failure means people die. When asked what keeps me up at night, I answer "Nothing" because I'm so tired from fighting the good fight every day. (Thank you, Triumph.)
Thursday April 10, 2025 11:00am - 11:45am ADT
Argyle Suite 3

1:00pm ADT

Security vs Compliance - 10 Steps to Implement ISO27001 Effectively and Maximize the Benefits
Thursday April 10, 2025 1:00pm - 1:45pm ADT
Implementing ISO/IEC 27001 effectively can be a transformative step for organizations aiming to enhance their information security posture, or it can become a checkbox exercise with minimal benefit. This session will provide actionable insights into overcoming common challenges in ISO 27001 implementation, including risk assessment, stakeholder buy-in, and leveraging technology. Attendees will learn practical lessons to implement ISO27001 effectively and have a real impact on improving their organization's security. 

Paul will leverage his experience of working with a wide range of organizations globally to provide practical examples of some of the common pitfalls and challenges for people and organizations working towards and maintaining an ISO27001 certification.
Speakers
avatar for Paul Sammut

Paul Sammut

Senior Director, Cybershell
Accomplished Cyber Security leader and consultant with extensive experience in security and technology, specializing in Security Governance, Risk Management, AI Governance, Cloud Security, and Business Continuity. Paul has advised, assessed and certified some of the world's biggest... Read More →
Thursday April 10, 2025 1:00pm - 1:45pm ADT
Argyle Suite 3

2:00pm ADT

Getting and staying compliant - with any security regulation or framework
Thursday April 10, 2025 2:00pm - 2:45pm ADT
The session will cover and give examples of how to complete these required steps:
  1. Framework selection
  2. Compliance and environment scope
  3. Gap assessment
  4. Determining objectives
  5. Methodology identification
  6. Resource requirements
  7. 3 P’s development – policy, process, and procedures
  8. 3 P’s implementation
  9. Monitoring and assessment
Speakers
avatar for Linda Mitton

Linda Mitton

GRC Practice Lead, Parabellyx Cybersecurity
Linda Mitton brings over 30 years of experience in the Information Security industry with over 20 years in Security Compliance and Governance.Linda worked at three KPMG offices (Toronto, Ottawa, and Bermuda) and acted as the privacy officer for the Bermuda office. While working with... Read More →
Thursday April 10, 2025 2:00pm - 2:45pm ADT
Argyle Suite 3

3:00pm ADT

The Critical Nexus of Risk Management in Cybersecurity: A Gap in Professional Training
Thursday April 10, 2025 3:00pm - 3:45pm ADT
Cybersecurity education often neglects the critical role of risk management despite its fundamental importance in protecting data and systems. This presentation argues that cybersecurity professionals need a robust understanding of risk assessment, mitigation, and management.

We will demonstrate a significant deficiency in risk management instruction by analyzing current cybersecurity education frameworks and widely used definitions of cybersecurity. We will discuss the implications of this gap, highlighting how it impacts the security posture of organizations and the professional development of cybersecurity practitioners.

This presentation aims to raise awareness of this critical issue and provide actionable recommendations for educators, institutions, and professionals to integrate comprehensive risk management training into cybersecurity curricula. By bridging this gap, we can cultivate a more proactive and resilient cybersecurity workforce capable of effectively addressing the evolving threats of the digital world.
Speakers
avatar for Jeff Gardiner, MBA, CD, BSc, BA

Jeff Gardiner, MBA, CD, BSc, BA

Senior Cybersecurity Consultant, virtual Chief Information Security Officer, GlassHouse Systems
Jeff is a distinguished executive renowned for his strategic leadership and technical expertise in cybersecurity. With a career spanning over two decades, Jeff has left an indelible mark on the cybersecurity landscape, notably as a double-tenured Chief Information Security Officer... Read More →
Thursday April 10, 2025 3:00pm - 3:45pm ADT
Argyle Suite 3

4:00pm ADT

Risk Management for the Trenches
Thursday April 10, 2025 4:00pm - 4:45pm ADT
It is easy to get caught up with the latest flashy tool, but if we are not aligning our activities with risk, then we are not effectively protecting the organization. This presentation talks about the fundamentals of risk, how as IT people we need to keep risk central to our activities, and how everyone on the team has a part to play in managing risk.
Speakers
avatar for Matthew Henshaw

Matthew Henshaw

Coordinator of Information Technology, Annapolis Valley Regional Centre for Education
Matthew Henshaw is the Coordinator of Information Technology for the Annapolis Valley Regional Centre for Education. He has been working in IT roles within public education since the early 2000s. His focus is strengthening the cybersecurity program at the AVRCE while supporting educators... Read More →
Thursday April 10, 2025 4:00pm - 4:45pm ADT
Argyle Suite 3
 
Friday, April 11
 

9:15am ADT

Bringing Agility to Policy Management
Friday April 11, 2025 9:15am - 10:00am ADT
In an era where technology permeates every facet of organizational operations, the development and implementation of comprehensive policy is paramount. However, maintaining these policies becomes problematic when technology (especially Cyber Security) constantly changes, organization’s need a better approach. This session outlines the methodology and strategic approach to creating and implementing the Technology Use Manual (TUM), which encapsulates all policies, practices, and standards required for compliance with the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF).
Speakers
avatar for Kirk MacDonald

Kirk MacDonald

Cyber Security Project Manager, Halifax Water
Kirk MacDonald is a Senior Project Manager with over 20 years of experience in the IT industry.  His career has focused on delivering IT enabled change within organizations, both public and private. He is a strong supporter of the agile project management paradigm and has presented... Read More →
avatar for Stephanie LeBlanc

Stephanie LeBlanc

Sr. Manager Information & Technology Services, Halifax Water
Stephanie LeBlanc is the Senior Manager of Information & Technology Services at Halifax Water. With a robust portfolio, Stephanie oversees strategy and delivery through a project management office for an array of critical domains such as Cybersecurity, Architecture, Infrastructure... Read More →
Friday April 11, 2025 9:15am - 10:00am ADT
Argyle Suite 3

11:00am ADT

Maximizing the Potential of Cyber Risk Transfer
Friday April 11, 2025 11:00am - 11:45am ADT
As cyber threats like ransomware and data breaches continue to rise, understanding the role of cyber insurance is essential for CISOs and infosec specialists. This presentation will explore the critical intersection between cyber insurance and cybersecurity strategies, highlighting its importance in mitigating financial risks and enhancing organizational resilience. Attendees will gain insights into the current cyber threat landscape and learn how to integrate cyber insurance with proactive risk management. Participants will leave with actionable strategies to strengthen their organization’s defenses against evolving cyber threats.

As cyber threats like ransomware and data breaches continue to rise, understanding the role of cyber insurance is essential for CISOs and infosec specialists. This presentation will explore the critical intersection between cyber insurance and cybersecurity strategies, highlighting its importance in mitigating financial risks and enhancing organizational resilience. Attendees will gain insights into the current cyber threat landscape and learn how to integrate cyber insurance with proactive risk management. Participants will leave with actionable strategies to strengthen their organization’s defenses against evolving cyber threats.
Speakers
avatar for George Lambropoulos

George Lambropoulos

Senior Vice President, National Cyber Practice, Marsh Canada Ltd.
George Lambropoulos is a seasoned cybersecurity professional and Senior Vice President within the National Cyber Practice at Marsh. With over five years of experience as a dedicated cyber insurance broker, George specializes in helping organizations across various sectors, including... Read More →
Friday April 11, 2025 11:00am - 11:45am ADT
Argyle Suite 3

1:00pm ADT

Hacking boards and hardening governance: Strengthening Information Security Governance
Friday April 11, 2025 1:00pm - 1:45pm ADT
In today’s ever changing digital landscape, higher education institutions continue to strive to protect their technology assets and data from cyber risks. As stewards of corporate governance - management and the board of trustees partner together to navigate through these enterprise risks and build a sustainable culture of cyber responsibility. 
 
In this informal conversation, Kevin Magee, Board of Trustee at Brock University and former Chief Security Officer for Microsoft Canada and Gemma Ahn, AVP and Head of ITS Brock University share practical insights on how to build a mutual understanding of cyber-related risk, foster accountability and ensure strategic alignment.
Speakers
avatar for Gemma Ahn

Gemma Ahn

Associate Vice-President & Head, Information Technology Services, Brock University
Gemma Ahn is a purpose driven, collaborative leader in technology enablement and business transformation. With a career rooted in both information technology and business strategy, she has led teams to deliver significant, large-scale initiatives, setting new standards for delivery... Read More →
avatar for Kevin Magee

Kevin Magee

Board Member, Brock University
As the Global Director of Cybersecurity Startups at Microsoft, Kevin leads the worldwide cybersecurity strategy, programs, and portfolio for Microsoft for Startups. Formerly the Chief Security Officer at Microsoft Canada, he is a recognized authority on emerging trends in cybersecurity... Read More →
Friday April 11, 2025 1:00pm - 1:45pm ADT
Argyle Suite 3

2:00pm ADT

Digital Risk - Metrics and Reporting Automation
Friday April 11, 2025 2:00pm - 2:45pm ADT
This presentation will cover digital risk measurement, monitoring and reporting digital risks by employing automation. The below topics will be covered:

1) Risk Appetite as a Foundation for Risk Metrics
2) The What, Why and How of Risk Metrics 
3) The Essence of Risk Reporting 
4) Making Risk Reporting Effective 
5) Automation Case Study

The Learning Objectives will be to:
1. Get familiar with Risk Appetite
2. Understand the what and why of Risk Measures / Metrics
3. Understand the Metric build process
Speakers
avatar for Priya Mouli

Priya Mouli

Head of Information Security & Compliance, Sheridan College
Priya is an accomplished Cybersecurity / Tech / Data professional, advisor and thought leader with close to 20 years of demonstrated experience in IT Strategy, Operational Resiliency & Risk Management with a focus on Cybersecurity, Privacy, Data / AI Governance & Compliance.She is... Read More →
Friday April 11, 2025 2:00pm - 2:45pm ADT
Argyle Suite 3
 
Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.