The Oregon Public Sector Cybersecurity Summit is where government defends the future.
This public sector-focused event brings together IT security leaders, risk managers, and public officials to tackle the evolving cyber threats facing state and local government. Through expert-led sessions, peer exchange, and real-world case studies, attendees gain practical strategies to strengthen cyber resilience, protect critical infrastructure, and lead with confidence in an age of constant risk. Designed specifically for the public sector, this summit delivers insights you can act on and alliances you can trust!
In government, our mission is not only to reduce risk, but to do so in a way that supports continuity of public services, responsible stewardship of resources, and earn the trust Oregonians place in us. The Oregon Public Sector Cybersecurity Summit brings public‑sector IT leaders together to collaborate, exchange insights, and advance cybersecurity resilience statewide.
– Ben Gherezgiher, Chief Information Security Officer, Enterprise Information Services, State of Oregon
Tuesday, September 22 |
|
8:00 am Pacific |
Registration and Morning Refreshments in the Exhibit Area |
9:00 am Pacific |
Welcome and Opening RemarksTerrence Woods, Chief Information Officer, Enterprise information Services, State of Oregon Ben Gherezgiher, Chief Information Security Officer, Enterprise Information Services, State of Oregon |
9:15 am Pacific |
Keynote – Strengthening the Shield: Insights from the Trenches of National SecurityThere’s no question - public-sector leaders must continue to strengthen their cyber hygiene, foster cross-sector partnerships, and adapt to the evolving threat landscape. Join Rachel Wilson, former NSA cyber operations leader, for an engaging and action-driven keynote that bridges real-world cybersecurity expertise with the challenges of emerging technologies. Drawing on her experience safeguarding critical systems, Rachel explores the heightened risks posed by AI-enabled threats like ransomware, insider attacks, and credential exploitation. This session is a call to action for everyone, from CIOs to frontline technologists, to embrace a proactive and resilient approach to protecting critical assets in the age of AI. Rachel Wilson, Managing Director and Chief Data Officer, Morgan Stanley Wealth Management and Former NSA Senior Executive |
10:15 am Pacific |
Quantum Computing and Cybersecurity: What Leaders Need to Know |
10:45 am Pacific |
Networking Break in the Exhibit Area |
11:15 am Pacific |
Concurrent SessionsCybersecurity, Agentic AI and the Future of TrustAgentic AI is rapidly changing how organizations automate decisions, detect threats, and increase operational efficiency, but it also introduces new cybersecurity challenges that cannot be ignored. How can technology leaders embrace AI innovation while protecting against shadow AI, foreign adversaries, and emerging operational vulnerabilities? This session will explore the critical role of governance, guardrails, and accountability in AI adoption. Attendees will gain practical insights into building trust, reducing risk, and creating secure foundations for AI-powered initiatives. Identity Management: Securing the Front DoorIdentity has become one of the most targeted vulnerabilities in modern IT environments, making effective management essential to cyber resilience. Are you confident that you can identify non-human identities, manage account lifecycles, and defend against phishing attacks and MFA fatigue? This discussion will examine strategies for centralized identity services and stronger access controls across the enterprise. Participants will leave with actionable best practices for reducing identity-related risk and strengthening overall security posture. Strengthening the Supply Chain with Zero Trust PrinciplesToday's interconnected technology ecosystem requires organizations to extend cybersecurity beyond their own networks and into third-party relationships. What steps can IT leaders take to apply Zero Trust principles while managing the complex realities of vendor and partner environments? This session will address supply chain risk management, third-party security expectations, and practical approaches for improving visibility and control. Attendees will walk away with clear next steps for enhancing resilience throughout their broader digital ecosystem. |
12:15 pm Pacific |
Lunch |
1:15 pm Pacific |
Bits and Bytes – Cybersecurity Never SleepsCyber threats don't keep business hours, making continuous collaboration, information sharing, and preparedness essential. In these two lightning talks, attendees will gain insight into the mission and current priorities of the MS-ISAC, along with available resources. We’ll also hear practical lessons from IT leaders on incident notification best practices, including effective communication strategies that improve response and recovery efforts. |
1:45 pm Pacific |
Short BreakPlease proceed to the concurrent sessions. |
2:00 pm Pacific |
Concurrent SessionsNavigating Today’s Cyber Threat LandscapeCyber threats continue to evolve in both sophistication and frequency, challenging organizations to adapt their defenses faster than ever before. What should leaders know about insider threats, ransomware trends, and the unique mitigation strategies? This panel of experts will provide a current view of the threat environment alongside guidance for navigating compliance requirements and security mandates. Key takeaways include risk-prioritized actions that help organizations better prepare for today's most pressing threats. Incident Response Communication: From Detection to RecoveryA successful incident response program depends on more than technology; it requires coordinated communication, clear decision-making, and organizational readiness. How can teams effectively manage internal stakeholders, develop external communication plans, and address the growing influence of cyber insurance requirements during a security event? This session will examine the critical components of incident response planning before, during, and after an attack. Attendees will learn how to improve preparedness, minimize business disruption, and support a smoother recovery process. Exclusive Briefing for Industry PartnersHosted by: Terrence Woods, Chief Information Officer, Enterprise Information Services, State of Oregon Ben Gherezgiher, Chief Information Security Officer, Enterprise Information Services, State of Oregon |
3:00 pm Pacific |
Networking Break in the Exhibit Area |
3:20 pm Pacific |
General Session – From Firewalls to Zero Trust: 25 Years of Public Sector Cyber Defense and the Road to 2050A quarter-century ago, government cybersecurity was an afterthought, a simple antivirus scan on a desktop computer. Today, it is the foundational pillar of the public sector, requiring continuous monitoring of cloud-native infrastructure, AI-driven threat hunting, and unified "whole-of-state" collaboration. As the Center for Digital Government (CDG) marks its 25th anniversary, join us for a high-energy retrospective on how our collective security posture has evolved alongside digital services. We will dissect the major waves of cyber transformation we’ve weathered together and lay out a strategic roadmap to secure the next generation of digital government. Dan Lohrmann, Senior Fellow, e.Republic / Government Technology |
4:00 pm Pacific |
Networking Reception in the Exhibit AreaNetwork with your colleagues and discuss technology solutions with the event exhibitors. |
4:30 pm Pacific |
End of ConferenceConference times, agenda, and speakers are subject to change. |
200 Commercial Street SE
Salem, OR 97301
(503) 589-1700
Cinnamon Albin
Deputy Chief Information Security Officer
Enterprise Information Services
State of Oregon
Ben Gherezhiher
Chief Information Security Officer
Enterprise Information Services
State of Oregon
Jimmy Godard
Chief Technology Officer
Enterprise Information Services
State of Oregon
Shirlene Gonzalez
Legislative Director
Enterprise Information Services
State of Oregon
Hope Hiebert
Communications Director
Enterprise Information Services
State of Oregon
Rick Snaric
Chief Cybersecurity Technology Director
Enterprise Information Services
State of Oregon
Terrence Woods
Chief Information Officer
Enterprise Information Services
State of Oregon
Birol Yesilada
Professor and Director
Cybersecurity Center for Excellence and Mark O. Hatfield Cyber Defense Policy
State of Oregon
Open to Public Sector only.
Registration - Free
If you represent a Private Sector organization and are interested in Sponsorship Opportunities, please contact Heather Earney.
This event is open to all individuals who meet the eligibility criteria, without regard to race, color, religion, gender, gender identity, age, disability, or any other protected class. We are committed to fostering an inclusive and welcoming environment for all participants.
Need help registering, or have general event questions? Contact:
Kathy Simpson
Government Technology
A division of e.Republic
Phone: (916) 932-1394
E-mail: ksimpson@erepublic.com
Already a sponsor, but need a hand? Reach out to:
Mireya Gaton
Government Technology
A division of e.Republic
Phone:(916) 296-2617
E-Mail: mgaton@erepublic.com
Want to sponsor and stand out? Reach out to explore opportunities!
Heather Earney
Government Technology
A division of e.Republic
Phone: (916) 365-2308
E-mail: heather.earney@erepublic.com