Cyber-attacks have increased dramatically over the last few years. The 2023 California Cybersecurity Education Summit provided an opportunity for government technology professionals to learn about the latest efforts to defend, respond and recover from cyber criminals who wish to do harm. The Summit, hosted by the California Department of Technology (CDT), the Governor’s Office of Emergency Services (CalOES), California Highway Patrol (CHP) and the California Department of Military (CalGuard), included cybersecurity leaders from state and local government throughout California.
The California Cybersecurity Education Summit is an essential event for security professionals and educators in the public and private sectors. It is a yearly focal point in the ongoing mission to safeguard Californians against cyber threats that have the potential to disrupt daily activities and impede our ability to provide services. It is also an opportunity to introduce the cybersecurity field to, and educate, our next generation workforce. I am eagerly anticipating the opportunity to see everyone at this in-person event in 2023 to exchange ideas about the latest trends, training, and techniques to bolster our state's security. We encourage you to join CDT, CalOES, CHP, and the CA Military Department at the Cybersecurity Education Summit this October.
– Vitaliy Panych, State Chief Information Security Officer, California Department of Technology
Thursday, October 12 |
|
8:00 am Pacific |
Registration and Morning RefreshmentsMagnolia Room, Grand Nave Lobby and 2nd Floor Atrium |
9:00 am Pacific |
Opening RemarksCamellia/Gardenia RoomLiana Bailey-Crimmins, State Chief Information Officer and Director, Department of Technology, State of California Amy Palmer, Deputy Secretary of Communications, California Government Operations Agency Tom Osborne, Deputy Director of Homeland Security, California Governor's Office of Emergency Services Vitaliy Panych, State Chief Information Security Officer, Department of Technology, State of California Major General Matthew Beevers, Adjutant General, California Military Department |
9:30 am Pacific |
Keynote – Keep Your Head Out of the Cyber Sand: Using Superior Communications to Get the Job Done!Camellia/Gardenia RoomRisk can take on many forms and governments must understand how to accept it, mitigate it, or insure against it while not sticking their head in the sand to ignore it. How will you assess your cyber risks and balance them against your needs? How will you make the rational decisions needed to be successful? How will you navigate the road to recovery? This session will answer these questions with a focus on ideas that will help you engage your leaders with real-world examples. Bryce Austin, CEO, TCE Strategy |
10:30 am Pacific |
Networking BreakMagnolia Room, Grand Nave Lobby and 2nd Floor Atrium |
11:00 am Pacific |
Concurrent SessionsNavigating the Ransomware Landscape3rd Floor RoomRansomware attacks are not just headline news; they are ever-evolving security threats that require a proactive defense. What can real-life examples teach us about building resilient systems and processes? How should your organization respond to minimize damage and downtime during an attack? This session delves deeper into actual ransomware incidents, showcasing effective strategies for preparation and response. Moderator: Phil Bertolini, Senior Vice President, Government Technology Jon Ford, Mandiant Sr. Practice Leader, SLED, Google Public Sector Tommy Gardner, Chief Technology Officer, HP Federal Gurinder Bains, Deputy Chief Information Officer, Information Technology Department, City of Oakland Frank Johnson, VP of Federal, Lookout Zero Trust: The Present and FutureTofanelli (2nd Floor)In an era of sophisticated cyber threats and complex network landscapes, Zero Trust architecture has rapidly become the security standard. How does the CISA Zero Trust Network Access (ZTNA) Maturity Model serve as a blueprint for implementing a robust security strategy? What emerging threats make this approach more crucial than ever? This session will provide an in-depth look at the CISA ZTNA Maturity Model, while also discussing its practical applications in today's remote work and cloud-centric realities. Moderator: Mike Driessen, Vice President, Government Technology Mario Garcia, Supervisory Cybersecurity Advisor, CISA William (Chip) Crane, Cybersecurity Executive Advisor, IBM Lou Norman, Multi-Domain Security Architect, Cisco Third Party Risk ManagementCarr (2nd Floor)Third-party vendors can be the weakest link in your cybersecurity chain, making effective risk management essential. How can state RAMP and third-party certifications assure you're working with secure vendors? Besides SOC-2 Type 2, what other benchmarks should be recognized? In this session, we'll demystify the complexities of third-party risk management and introduce you to effective strategies and standard contract language. Moderator: Glenn Herdrich, Information Security Manager, County of Sacramento Samitha Amarasiri, Managing Partner, Optiv Chance Grubb, Government Engagement Director, StateRAMP Building and Maintaining the Cyber WorkforceBataglieri (2nd Floor)Attracting and retaining skilled cybersecurity professionals is a pressing challenge, amplified by the fast-evolving threat landscape. How can organizations leverage internships and early engagement programs to cultivate talent? What role do mentoring and targeted recruiting play in building a strong cybersecurity workforce? This session offers a 360-degree view of workforce development strategies, from early-stage involvement to long-term retention. Corey Bruins, Conference Director of California Programs and Events, Government Technology Amie Bergin, Division of Apprenticeship Standards, Apprenticeship Expansion unit, Department of Industrial Relations, State of California Steve Meyer, Senior Consulting Solutions Architect, World Wide Technologies Blueprint for Cybersecurity: Harmonizing with State and Federal StrategiesBondi (2nd Floor)Navigating the development of a cybersecurity strategy can be complex, especially when aligning it with both state-level guidelines like Cal Secure and federal initiatives such as those from CISA. How do you weave these components into your strategy? What role does workforce and education play in enhancing cybersecurity readiness? And where do you start if you're building a strategy from scratch? This panel will delve into the intricacies of crafting effective cybersecurity strategies in harmony with state and federal guidelines. Moderator: John Cleveland, Deputy State Chief Information Security Officer, Department of Technology, State of California Courtney Gleason, Manager, Cyber Security Services, Strategy and Governance, State and Local Government, KPMG Jeff Jennings, Senior SLED Practice Director, Fortinet Karl Kopper, Chief Information Security Officer, Department of Transportation (Caltrans) and Agency Information Security, California State Transportation Agency Eric Nehls, Cyber Policy and Strategy Planner, Cal-CSIC, Homeland Security Division, Cal OES |
12:00 pm Pacific |
Lunch & Learn – Navigating the Cybersecurity Support LandscapeCamellia/Gardenia RoomMaximize the resources available to you with insights from the California Department of Technology and Cal-CSIC. What state and federal programs are designed to support your cybersecurity initiatives? How can you tap into grants, training, and other forms of assistance? In this Lunch and Learn, you'll get an overview of key resources available to public sector entities, helping you bolster your cybersecurity posture. Korey Fesliyan, MTOT, Department of Corrections and Rehabilitation, State of California Jacob Hebb, Senior Incident Responder – Cyber Operations, Cal-CSIC, Homeland Security Division, Cal OES, State of California Doug Novak, Security Operations Center (SOC) Manager, Office of Information Security, California Department of Technology Maria Lipana, Cyber Threat Intelligence Branch Chief, California Cybersecurity Integration Center (Cal-CSIC), Homeland Security Division, California Governor’s Office of Emergency Services (Cal OES) |
12:30 pm Pacific |
Featured Speaker – Navigating Your Cyber Future: Next-Gen Threats, Strategies & TechCamellia/Gardenia RoomThe Center for Digital Government works tirelessly to analyze the current and future state of cybersecurity. How will governments stay ahead of cyber-attackers? Are the emerging threats just too much? What are the new approaches to addressing cyber challenges? This session will tackle these issues by having the CDG present an update on key issues and trends facing government cybersecurity leaders today. Dan Lohrmann, Senior Fellow, Center for Digital Government |
1:15 pm Pacific |
Break |
1:25 pm Pacific |
Concurrent SessionsMaximizing AI's Role in Cyber Defense3rd Floor RoomWhile Artificial Intelligence can present as a potential risk vector, it is also increasingly becoming a cornerstone in cybersecurity strategies. Do you have a role for AI in your security program? This session will delve into how AI can enhance threat detection, streamline incident response, and improve data analytics, highlighting practical examples and best practices for leveraging AI as a powerful tool in your cybersecurity arsenal. Moderator: Vitaliy Panych, State Chief Information Security Officer, Department of Technology, State of California Maria Thompson, State and Local Government Cyber Security Leader, Amazon Web Services Johnny Wong, Senior Director, Solutions Architecture, Veracode Securing Your Digital Assets: From Hardware to DataTofanelli (2nd Floor)Asset management goes beyond just hardware and software; it also encompasses data as a critical organizational asset. How can you master your attack surface, including hardware, software, and identities, while also establishing robust data governance frameworks? What does compliance look like when treating data as an asset? This comprehensive session will cover the A to Z of asset management, integrating elements of data governance and compliance. Moderator: Joseph Maio, Information Security Officer, Natural Resources Agency, State of California André Benguerel, Technical Consultant, Nasuni David Lask, Chief Information Security Officer, Department of Forestry and Fire Protection (CAL FIRE), State of California Kyle Sullivan, Cyber Senior Manager, Deloitte Risk Mitigation in Infrastructure as CodeCarr (2nd Floor)Infrastructure as Code has revolutionized IT management, but how do you ensure it's secure? What role do DevSecOps and SecDevOps play in risk mitigation? How can these methodologies be integrated into your software development lifecycle? This session will explore how to infuse security into your Infrastructure as Code practices, offering valuable insights to improve your security posture. Moderator: Mike Driessen, Vice President, Government Technology Jerald Carter, Partner & Global Leader, ServiceNow Risk & Security Operations Guillaume Dubuc, Staff Cloud Solutions Architect, VMware Web App Vulnerabilities: Scanner Blind Spots & DevSecOps ImplicationsBondi (2nd Floor)In this presentation, 17-year web application penetration tester Jim Herndon will give examples of catastrophic web application vulnerabilities and why they were missed by scanners. He'll also review scanner types and why we seem to expect too much from web application scanners. This will be followed by a discussion of DevOps and DevSecOps, and why we can't lose the human touch in all of the automation. Mr. Herndon will close out with some Ideas on how we can deal with the rapid deployment paradigm of DevOps. James Herndon, Senior Security Consultant, e360 2023 Update: California's Cybersecurity Education and Workforce DevelopmentBataglieri (2nd Floor)Cybersecurity education and workforce development in California have seen notable advancements over the past year. What new collaborations have emerged among major stakeholders and key partners in K-12 and Higher Education? How have career education pipelines evolved, and what is the current status of degree programs, certificates, and digital badging? Additionally, what innovative models have been adopted for effective cybersecurity workforce development, such as apprenticeships? This session will offer an updated overview of the current landscape, focusing on recent developments and innovations in cybersecurity education and workforce development across California. Moderator: Keith Clement, Professor, California State University Fresno Erle Hall, Education Programs Consultant, Department of Education, State of California Markus Geissler, Professor, Computer Information Science, Cosumnes River College |
2:25 pm Pacific |
Networking BreakMagnolia Room, Grand Nave Lobby and 2nd Floor Atrium |
2:45 pm Pacific |
General Session – Navigating the AI Paradox in CybersecurityCamellia/Gardenia RoomArtificial Intelligence is reshaping the cybersecurity landscape, offering innovative protective measures but also introducing complex ethical and policy questions. This session will delve into how organizations can responsibly integrate AI technologies into their cybersecurity frameworks, touching on governance and risk management aspects, as well as how the State is planning to navigate these evolving challenges. Join us for a nuanced discussion that aims to equip cybersecurity leaders with the insights needed to balance innovation with security. Joseph Conti, Managing Director, and Ethical & Trustworthy AI Thought Leader, Deloitte William (Chip) Crane, Cybersecurity Executive Advisor, IBM |
3:45 pm Pacific |
Networking ReceptionMagnolia Room and Grand Nave LobbyNetwork with your colleagues and discuss technology solutions with the event exhibitors. |
4:30 pm Pacific |
End of ConferenceConference times, agenda, and speakers are subject to change. |
1230 J Street
Sacramento, CA 95814
(916) 447-1700
Russell Atterberry
Undersecretary
CalVet
State of California
Andrew Bell
Information Security Officer
Military Department
State of California
Thys Bohr
Supervisor
CalVet
State of California
Brenda Bridges Cruz
Deputy Director, Special Projects
Department of Technology
State of California
Brent Carter
Assistant Chief
California Highway Patrol
State of California
Jennifer Chan
Chief Information Officer
California State Lottery
State of California
Brian Colt
Information Security Officer
Department of Corrections and Rehabilitation
State of California
Tonya D. Digiorno
Director of Information Technology
County of El Dorado
Jun Dai
Associate Professor
California State University
Faith DeuPree
Information Security Officer
Department of Finance
State of California
Jeremy Espiritu
Cybersecurity Training Coordinator
Office of Emergency Services
State of California
MARIO Garcia
Supervisory Cybersecurity Advisor
Cybersecurity and Infrastructure Security Agency
Department of Homeland Security
Pam Greeley
Information Security Officer
Highway Patrol
State of California
Ruth Green
Chief Information Security Officer
Judicial Council
State of California
Marc Hanson
Network Engineer
State of California
Amar Hariharan
Chief Information Officer
Department of Food and Agriculture
State of California
Richard Harmonson
Agency Chief Information Security Officer
Natural Resources Agency
State of California
Glenn Herdrich
Information Security Manager
County of Sacramento
Justyn Howard
Deputy Secretary, Fiscal Policy and Administration
State of California
Lloyd Indig
Chief Information Security Officer
Office of General Counsel, Department of Justice
State of California
Jose Jaramillo
Agency Risk Officer
Labor & Workforce Development Agency
State of California
Jared Johnson
Deputy State CIO & Chief Deputy Director
California Department of Technology
State of California
Marcie Kahbody
Agency Chief Information Officer
Transportation Agency
State of California
Ken Kojima
Agency Information Security Officer
Department of Corrections & Rehabilitation
State of California
Sofia Lim
Chief Executive
State of California
Mikael Magnuson
Cybersecurity Manager
California National Guard
State of California
Joseph Maio
Information Security Officer
Natural Resources Agency
State of California
Isaiah Mall
Chief Information Officer
CalVet
State of California
Mike Marshall
Chief Information Security Officer
Environmental Protection Agency
State of California
Robert Mayorga
Chief Security Officer
Franchise Tax Board
State of California
Eric Nehls
Cyber Policy and Strategy Planner
Office of Emergency Services
State of California
Tom Osborne
Deputy Director of Homeland Security
Office of Emergency Services
State of California
Vitaliy Panych
State Chief Information Security Officer
Department of Technology
State of California
Sandra Peterson
Cal-CSIC Project Manager
Office of Emergency Services
State of California
Aman Prasad
Partner integration Planner
Cal-CSIC
State of California
Michele Robinson
Chief Information Officer
California Department of Technology
State of California
Darice Trafton
Agency Information Security Officer
Business, Consumer Services and Housing Agency
State of California
Sejla Begic
Managing Director, Client Relationships Executive
Deloitte
Alyssa Beltramo
Account Executive
Lookout
Chuck Blaskoski
Client Executive
World Wide Technology
Herman Chao
Senior Account Executive
Amazon Web Services
Gary Christofferson
Director
Solution Engineering
VMware
Braden Connolly
Account Executive
Nasuni
Alan Franzenburg
Technical Consultant
HP Inc.
Ron Hamilton
Chief Information Security Officer
e360
Ewa Hoyt
Principal, Technology Sales Leader
IBM
Bruce Kuska
Cybersecurity Specialist
Cisco
John Norkey
Account Executive
Veracode
Shane Rogers
Senior Client Manager
Optiv
Vishal Verma
Director
KPMG LLP
Pat Vitalone
Director
Product Marketing, NGFW & FEX
Fortinet
Bret Waugh
Public Sector Account Manager
Google LLC
Pete White
Senior Advisory Solution Consultant, Security
ServiceNow
2024 Sponsorship opportunities are available. For more information, contact:
Heather Earney
Government Technology
Phone: (916) 932-1339
E-mail: heather.earney@erepublic.com