Massachusetts Public Sector Cybersecurity Summit 2026 Banner

Overview

The Massachusetts Public Sector Cybersecurity Summit is where government defends the future.

This public sector-focused event brings together IT security leaders, risk managers, and public officials to tackle the evolving cyber threats facing state and local government. Through expert-led sessions, peer exchange, and real-world case studies, attendees gain practical strategies to strengthen cyber resilience, protect critical infrastructure, and lead with confidence in an age of constant risk. Designed specifically for the public sector, this summit delivers insights you can act on and alliances you can trust!

A message from our Keynote Speaker

For a third year in a row, we are thrilled to convene the Public Sector Cybersecurity Summit, bringing together state and municipal cybersecurity professionals. This collaborative series of speakers and panel discussions will focus on risk management, cyber resilience, incident response, and more, giving participants the opportunity to learn from one another. I look forward to connecting with all of you again in Worcester for this year’s summit!

– Jason Snyder, Secretary, Executive Office of Technology Services and Security, and Chief Information Officer of the Commonwealth of Massachusetts

Speakers

Rachel Wilson

Rachel Wilson

Managing Director and Chief Data Officer, Morgan Stanley Wealth Management and Former NSA Senior Executive

Rachel Wilson is a Managing Director of Morgan Stanley Wealth Management and Chief Data Officer. Her team of security professionals is responsible for protecting all sensitive client data from any type of theft, loss or compromise. She also oversees the resilience of Wealth Management’s critical infrastructure and the continuity of core business processes at times of turbulence. Additionally, Rachel supervises the client fraud risk program, which institutes technical and business controls to help prevent unauthorized access to or misuse of client funds. As a senior subject matter expert, Rachel regularly advises Wealth Management leadership and clients on the cyber threat landscape and mitigation strategies.
From 2017-2020, Rachel served as the first-ever Head of Wealth Management Cybersecurity. In this role, Rachel advised senior business and technology leaders on a range of cybersecurity issues, including secure code development standards, secure network architecture, vendor relationships, advanced persistent threat (APT) detection and mobile security. Her team drove innovation for new cybersecurity and authentication technology in the pursuit of protecting the integrity and confidentiality of firm and client data. In 2019, Rachel was recognized by Morgan Stanley Wealth Management as part of the MAKERS Class, a program that honors women who serve as groundbreakers, innovators and advocates. She was also named one of the Top Women in WealthTech 2020 by ThinkAdvisor.
Prior to joining the firm in 2017, Rachel spent 15 years at the National Security Agency (NSA), where she held several key senior executive-level leadership positions. Between 2008 and 2010, she ran NSA’s counterterrorism operations and led a global enterprise in detecting and disrupting terrorist plotting against the U.S. and its allies. Between 2010 and 2012, Rachel served as NSA’s Chief of Operations in the U.K., working out of the U.S. Embassy in London. In this role, she worked with U.K. intelligence services to counter terrorist and cyber threats to the 2012 Olympics. Returning to the U.S. in 2012, Rachel spent nearly five years leading NSA’s cyber exploitation operations as the Deputy and then Chief of the Remote Operations Center within NSA’s Tailored Access Operations. In this capacity, she led the planning and execution of thousands of cyber exploitation operations against a wide array of foreign intelligence, military and cyber targets, and served as the committing official for many of NSA’s highest risk and most important intelligence gathering activities.
More
Chris Daggett

Chris Daggett LinkedIn

Director of Managed Services and Security, HUB Tech 

Chris is a highly skilled technology professional with over 20 years of IT experience. He leads a successful Managed Services and Security program at HUB Tech, which has become one of the top programs in the country. HUB’s program focuses on keeping customers Connected, Managed, and Secured. Before joining HUB, Chris spent most of his career in the enterprise space, primarily in the financial sector, where he held various roles from solution architect to technology risk manager.
More
Jenny Hedderman

Jenny Hedderman

Assistant Comptroller for Statewide Risk Management and Compliance, Office of the Comptroller, Commonwealth of Massachusetts

Jenny W. Hedderman Esq. is Assistant Comptroller for Statewide Risk Management and Compliance in the Massachusetts Office of the Comptroller. Attorney Hedderman specializes in compliance, internal controls, and risk management in the areas of statewide accounting, payroll, financial reporting, and statewide financial audits for 156 state agencies. Her current focus is developing the Comptroller’s Statewide Risk Management and Compliance program, including internal controls, security access management and cybersecurity awareness to reduce cyber incidents, and foster clarity, integrity and accountability for Commonwealth resources. Recent projects include the CTR Compliance Corner and CTR Cyber (macomptroller.org) that provide state agencies with resources to improve financial responsibility and protect data and assets. Attorney Hedderman is Chair and Comptroller Designee of the State Records Conservation Board, the Board Secretary to the Essex Co-Operative Farming Association, as well as Adjunct Professor in Law for the Business Manager at Endicott College, and Adjunct Professor for Cybersecurity and Privacy for the Graduate Program in Tax, Banking & Financial Law at Boston University School of Law.
More
Christine M. Horan

Christine M. Horan

Deputy Chief Risk Officer, Executive Office of Technology Services and Security, Commonwealth of Massachusetts

Christine M. Horan is the Deputy Chief Risk Officer for the Commonwealth of Massachusetts’ Executive Office of Technology Services and Security, where she leads enterprise risk management and cybersecurity strategy. With over two decades of experience in compliance, audit, and risk across both public and private sectors, Christine has held leadership roles at Bain Capital, HarbourVest Partners, and Fidelity Investments. She is known for building robust governance frameworks, managing complex regulatory environments, and driving cross-functional collaboration. Christine holds a Master of Science in Criminal Justice from Suffolk University and a Bachelor of Arts from St. Anselm College.
More
Edward Keefe

Edward Keefe

Unit Commander, Criminal Information Section, Commonwealth Fusion Center, Massachusetts State Police

Sam Kinch

Sam Kinch

Solution Engineer, Tanium

Sam Kinch is a Solution Engineer for Tanium with more than 22 years of cyber offense operations expertise – building, optimizing and streamlining Department of Defense (DoD), intelligence community, and Department of Homeland Security (DHS) cybersecurity initiatives. Kinch brings a strong passion for solving complex challenges, leading multi-disciplinary teams, building coalitions, and establishing international partnerships and programs to his role, supporting Tanium’s public sector customers.
Highlights from Kinch’s career include founding the DoD’s federal COVID Response Technical Security Team for DHS, serving as the National Guard’s Chief Advisor to U.S. Cyber Command, and providing critical expertise to the Defense Science Board on studies supporting the DOD scientific and technical enterprise, among other notable accomplishments.
Kinch gives back to several important nonprofit causes that focus on cyber education and holds numerous service decorations and honors from the DoD, as well as the United Nations, and NATO.
More
Peter Murphy

Peter Murphy

Assistant Comptroller, Chief Information Officer, Office of the Comptroller, Commonwealth of Massachusetts

Peter is an experienced technology leader for the Commonwealth of Massachusetts.  Most of Peter’s career has been in the Office of the Comptroller in Boston, where he has responsibility for high level IT strategy; identifying areas of cyber risk; as well as implementing risk strategy applications to mitigate those risks. Peter was a member of the original CTR Team responsible for implementing the CTHRU application into the Commonwealth’s website allowing the public to view for the first time how its dollars are spent and resources are allocated. 
More
Becky Watchorn

Becky Watchorn

SOC Vulnerability Management Program Manager, Executive Office of Technology Services and Security, Commonwealth of Massachusetts

Becky Watchorn is an accomplished Information Security Manager with more than two decades of experience leading global security programs, managing complex IT projects, and driving measurable improvements in cybersecurity resilience. Known for her customer-centric approach, Becky has built a career at the intersection of security, technology, and service delivery — ensuring that security programs not only meet compliance standards but also add measurable value to business operations focusing on reducing risk and strengthening systems.
Over the last 14 years, Becky has overseen global network security and vulnerability management programs and has spent the last two years with the Commonwealth building relationships to lead a successful vulnerability management program.
More
Matt Whitten

Matt Whitten

Chief Information Security Officer, Executive Office of Energy and Environmental Affairs, Commonwealth of Massachusetts 

Matt Whitten is the Chief Information Security Officer at the Massachusetts Executive Office of Energy and Environmental Affairs, overseeing Cybersecurity, Information Security, and Microsoft 365 Administration. He chairs the Commonwealth's statewide Cybersecurity & Vulnerability Management Subcommittee. 
Prior to joining the Massachusetts Executive Branch in 2016, Matt spent 12 years in the private sector in various roles at three early-stage information security companies, all of which were acquired. Matt grew up in the Boston area and holds a Bachelor of Science degree from Suffolk University. 
More
John Sarantakes

John Sarantakes LinkedIn

Chief Revenue Officer, BlackFog 

John Sarantakes brings 30 years of experience in technology sales and leadership. His background includes senior roles at Dell Technologies, Absolute Software (where he served as SVP and General Manager for North America and EMEA), and Headspring, where he led sales, marketing, and operations prior to its acquisition by Accenture. Throughout his career, John has worked extensively with enterprise and government security leaders. He now serves as Chief Revenue Officer at BlackFog.
More
Ed Therriault

Ed Therriault LinkedIn

Principal Digital Transformation Architect, Portage CyberTech

Ed has over 25 years of experience in the design, development, deployment and operations of privacy sensitive electronic service delivery solutions for both public sector and banking clients. Ed’s involvement in the domains of Identity, Credential and Access management, web content management and service transformation started with his participation in the creation of the Central Frame Database at Statistics Canada. He went on to participate in the creation of the Strategis ID and the web content management solutions at Industry Canada and has made immense contributions to the Govt of Canada's vision for citizen and business centric access to information and transactions.
More
Steve Troxel

Steve Troxel LinkedIn

ASG Field Chief Technology Officer, SHI International Corp

Steve Troxel is a Field CTO at SHI International Corp, advising public sector and commercial organizations across the U.S. With over 25 years of experience in IT infrastructure, cybersecurity, and enterprise strategy, he has held executive roles including interim CTO for the Arizona Department of Education and VP of Technology for a national payment card processor. His work bridges public policy, operational execution, and long-term technology planning.
More

Agenda

Thursday, October 29

8:00 am Eastern

Registration and Morning Refreshments in the Exhibit Area

9:00 am Eastern

Welcome and Opening Remarks

Jason Snyder, Secretary of Technology, Executive Office of Technology Services and Security, Commonwealth of Massachusetts

9:30 am Eastern

Keynote – Strengthening the Shield: Insights from the Trenches of National Security

There’s no question - public-sector leaders must continue to strengthen their cyber hygiene, foster cross-sector partnerships, and adapt to the evolving threat landscape. Join Rachel Wilson, former NSA cyber operations leader, for an engaging and action-driven keynote that bridges real-world cybersecurity expertise with the challenges of emerging technologies. Drawing on her experience safeguarding critical systems, Rachel explores the heightened risks posed by AI-enabled threats like ransomware, insider attacks, and credential exploitation. This session is a call to action for everyone, from CIOs to frontline technologists, to embrace a proactive and resilient approach to protecting critical assets in the age of AI.

Rachel Wilson, Managing Director and Chief Data Officer, Morgan Stanley Wealth Management and Former NSA Senior Executive

Sponsored by: Sonatype

10:30 am Eastern

Cyber Hackathon Kickoff

This hands-on session kicks off the Summit’s hackathon experience, introducing the environment, rules of engagement, and safety expectations. Attendees will jump into starter challenges designed to build an attacker’s mindset while reinforcing ethical practices. The lab stays open throughout the event, offering continued access to challenges, mentoring, and real-time coaching as you sharpen your skills.

10:45 am Eastern

Networking Break in the Exhibit Area

Refuel and reconnect over premium refreshments courtesy of Recharge Break Sponsors: xFact, LLC

11:15 am Eastern

Concurrent Sessions

Governing AI Before It Governs You

AI adoption is accelerating faster than governance. This session explores practical strategies for managing AI safely, including AI governance, Shadow AI, agentic AI, and risk management. Learn how organizations at different stages of AI maturity can embrace innovation while protecting systems, data, and public trust.

Moderator: Matt Whitten, Chief Information Security Officer, Executive Office of Energy and Environmental Affairs, Commonwealth of Massachusetts

Audrey Chen, Deputy CTO, AI and Emerging Technology, Executive Office of Technology Services and Security, Commonwealth of Massachusetts

John Sarantakes, Chief Revenue Officer, BlackFog

Three for the Price of One: Turn Audit Prep into Immediate Cybersecurity ROI

What if getting ready for an IT audit could actually make your organization more secure right now?
IT audits are now a reality for state and local government but preparing for them can do more than improve your audit results. Audit readiness can uncover risks, strengthen accountability, prevent and mitigate incidents, and build the case for cybersecurity investments. This practical session will show you how to turn audit preparation into real security improvements you can make now. Learn how to identify and prioritize gaps, anticipate common findings, strengthen governance, and leverage Massachusetts resources to improve your cybersecurity posture before the auditors, or hackers, arrive. Come for the audit prep…leave with a stronger cybersecurity program!

Session Leader: Jenny Hedderman, Assistant Comptroller for Statewide Risk Management and Compliance, Office of the Comptroller, Commonwealth of Massachusetts

Christine Horan, Deputy Chief Risk Officer, Executive Office of Technology Services and Security, Commonwealth of Massachusetts

Peter Murphy, Chief Information Officer, Office of the Comptroller, Commonwealth of Massachusetts

Modern Vulnerability Management from Detection to Remediation

Finding vulnerabilities is only the beginning. This session explores practical approaches to vulnerability management, remediation, automation, patch management, endpoint detection and response (EDR), and configuration best practices to help organizations reduce risk before attackers exploit weaknesses.

Sam Kinch, Solution Engineer, Tanium

Becky Watchorn, SOC Vulnerability Management Program Manager, Executive Office of Technology Services and Security, Commonwealth of Massachusetts

Identity Is the New Front Line

As identity-based attacks continue to rise, protecting people, accounts, and machine identities has become essential. Learn how to strengthen identity and access management, understand the growing impact of non-human identities, and leverage existing tools to reduce risk from AI-driven attacks and credential compromise.

Ed Therriault, Principal Digital Transformation Architect, Portage, CyberTech

12:15 pm Eastern

Lunch

1:15 pm Eastern

Concurrent Sessions

Preparing for the Next Wave of Cyber Risk

Emerging technologies including frontier AI models, quantum computing, automation, and evolving attack techniques are changing cybersecurity faster than ever. This forward-looking session examines what's coming next, how adversaries are adapting, and the steps public-sector organizations should take today to prepare for tomorrow's cyber risks.

Moderator: Chris Clifford, Enterprise Cloud Architect, Executive Office of Technology Services and Security, Commonwealth of Massachusetts

Steve Troxel, ASG Field Chief Technology Officer, SHI International Corp

Protecting Critical Infrastructure in an Era of Growing Cyber Risk

Water systems, transportation, utilities, and other critical infrastructure face increasing cyber threats fueled by geopolitical tensions and interconnected technologies. This session explores how IT, operational technology, and public works leaders can collaborate to strengthen resilience, improve preparedness, and protect essential services across Massachusetts.

Moderator: Gus Serino, Technical Advisor, Massachusetts Regional Drinking Water Cybersecurity Collaborative

Gary Cacace, Director of Security, Massachusetts Water Resources Authority

Chris Daggett, Director of Managed Services and Security, HUB Tech

Knowing What Matters Most: Data Protection in the Age of AI

You can't protect what you don't understand. This session explores practical approaches to data classification, helping organizations identify their most critical information, reduce unnecessary exposure, and strengthen cybersecurity strategies as AI expands access to data across the enterprise.

Stronger Together Building a More Secure Massachusetts

Cybersecurity is a shared responsibility. This panel explores how state agencies, municipalities, regional partners, insurers, and cybersecurity organizations are working together to share intelligence, expand resources, improve incident reporting, and build a stronger, more resilient cybersecurity ecosystem across the Commonwealth.

Steve Mirarchi, Assistant Director, SOC, Commonwealth of Massachusetts

2:15 pm Eastern

Networking Break in the Exhibit Area

Refuel and reconnect over premium refreshments courtesy of Recharge Break Sponsors: xFact, LLC

2:45 pm Eastern

General Session - Navigating Cyber Incidents Together

When a cyber incident occurs, knowing where to turn matters. This session highlights Massachusetts' incident reporting resources, including the State Security Operations Center, Fusion Center, MIIA, and other partners, while exploring practical guidance for coordinated response, information sharing, and recovery across state and local government.

Moderator: John Petrozelli, Director, Mass CyberCenter

3:10 pm Eastern

Closing Session – The Cyber State of the Commonwealth

Gain a comprehensive update on Massachusetts' evolving cybersecurity landscape, including the latest threats, statewide initiatives, and emerging risks facing agencies and municipalities. Learn how stronger intelligence sharing, regional collaboration, and a "better neighbors" approach can help organizations prepare for and respond to today's rapidly changing threat environment.

Detective Lieutenant Edward Keefe, Unit Commander, Criminal Information Section, Commonwealth Fusion Center, Massachusetts State Police

3:55 pm Eastern

Hackathon Results

4:00 pm Eastern

Networking Reception in the Exhibit Area

Network with your colleagues and discuss technology solutions with the event exhibitors.

4:30 pm Eastern

End of Conference

Conference times, agenda, and speakers are subject to change.

DCU Center

50 Foster St.
Worcester, MA 01608
(508) 755-6800

Get Directions To
DCU Center

Planning Committee

Representatives

Erica Bradshaw
Deputy Secretary
Executive Office of Technology Services and Security
Commonwealth of Massachusetts

Nicholas Butts
Outreach Manager
MassCyberCenter

Donald Chamberlain
Chief Operating Officer, Assistant Secretary for Security and Operations
Executive Office of Technology Services and Security
Commonwealth of Massachusetts

Jenny Hedderman
Assistant Comptroller Risk/Compliance
Office of the Comptroller
Commonwealth of Massachusetts

Edward Keefe
Lieutenant, Commonwealth Fusion Center
Massachusetts State Police
Commonwealth of Massachusetts

Greg McCarthy
Chief Information Security Officer
City of Boston

Maria Michalski
Chief Information Officer
Executive Office of Public Safety and Security
Commonwealth of Massachusetts

Matthew Moran
Assistant Secretary and Chief Engagement Officer
Executive Office of Technology Services and Security
Commonwealth of Massachusetts

Thomas Myers
Chief Privacy Officer and General Counsel
Executive Office of Technology Services and Security
Commonwealth of Massachusetts

Anthony O'Neill
Chief Information Security Officer and Chief Risk Officer
Executive Office of Technology Services and Security
Commonwealth of Massachusetts

John Petrozzelli
Director
MassCyberCenter

Jessica Powers
Director of Internal Communications
Executive Office of Technology Services and Security
Commonwealth of Massachusetts

Scott Range
Law Enforcement Advisor
Executive Office of Public Safety and Security
Commonwealth of Massachusetts

Cheri Rolfes
Chief of Staff
Executive Office of Technology Services and Security
Commonwealth of Massachusetts

Jason Snyder
Secretary and Commonwealth Chief Information Officer
Executive Office of Technology Services and Security
Commonwealth of Massachusetts

Tracy Sullivan
Director of Municipal Information Systems
Town of Weston

Susan Terrey
Deputy Secretary
Executive Office of Public Safety and Security
Commonwealth of Massachusetts

Matt Whitten
Chief Information Security Officer
Executive Office of Energy and Environmental Affairs
Commonwealth of Massachusetts

Jarrett Wright
Chief Information Security Officer
Massachusetts Port Authority
Commonwealth of Massachusetts

Registration Information / Contact Us

Event Date: October 29, 2026

Open to Public Sector only.

Registration - Free

If you represent a Private Sector organization and are interested in Sponsorship Opportunities, please contact Heather Earney.

This event is open to all individuals who meet the eligibility criteria, without regard to race, color, religion, gender, gender identity, age, disability, or any other protected class. We are committed to fostering an inclusive and welcoming environment for all participants.

Contact Information

Need help registering, or have general event questions? Contact:

Audrey Houser
Government Technology
A division of e.Republic
Phone: (916) 932-1420
E-mail: ahouser@erepublic.com

Already a sponsor, but need a hand? Reach out to:

Mireya Gaton
Government Technology
A division of e.Republic
Phone:(916) 296-2617
E-Mail: mgaton@erepublic.com

Want to sponsor and stand out? Reach out to explore opportunities!

Heather Earney
Government Technology
A division of e.Republic
Phone: (916) 365-2308
E-mail: heather.earney@erepublic.com

Venue

DCU Center

50 Foster St.
Worcester, MA 01608
(508) 755-6800