The biggest fear is not the technology, it is the potential of human error that could expose your organization to a cyberattack. The majority of CISOs agree that an employee carelessly falling victim to a phishing scam is the most likely cause of a security breach. Most also agree that they will not be able to reduce the level of employee disregard for information security. How do we guard against human error without limiting employee efficiency and productivity?
The Greatest Fears?
CISO Council
November 16, 2021
Speakers


Jeffrey Vinson
SVP CISO
Harris Health System
CISO Council Speaker
Jeffrey M. Vinson, Sr. is the Senior Vice President and Chief Cyber and Information Security Officer (CISO) at Harris Health System. He is a globally recognized security executive , a retired military officer and a former technical director at NSA (National Security Agency). He has been involved with information security for over 25 years and has the rare distinction of having expert experience in the military, federal government, financial services and healthcare industries. He has held positions such as Vice President, Technical Director, and other senior level security management roles. Jeffrey has led penetration testing exercises while working at NSA (National Security Agency) as a technical director and has created security operations teams and GRC teams for financial services and healthcare organizations. He provides expert security advice and guidance to small and large companies and is a highly sought-after speaker at security conferences throughout the country. Jeff is a member of C|CISO exam writing and events committee for EC-Council and was one of their first C|CISO summit speakers for their inaugural global CISO Executive Summit. He is listed as one of the top influencers in Information Security for Healthcare and most recently was listed as one of the top 100 global CISO’s. Jeffrey earned his Bachelor’s degree in Industrial Technology from Elizabeth City State University and holds numerous internationally recognized security certifications.


Paul Raines
CISO
United Nations Development Programme
CISO Council Speaker
Paul Raines is the Chief Information Security Officer for the United Nations Development Programme. In that capacity he is responsible for managing the cyber-security and disaster recovery planning for the Organisation’s 177 locations around the world. His unit is the first and only United Nations unit to be ISO 9001, ISO 20000 and ISO 27001 certified. His information security unit has won international awards for outstanding performance including an Honors Laureate award from Computer World magazine in 2013 and a 6 time winner of the CSO50 award from CSO magazine—more than any other organisation since the award was established. The CSO award honors the top 50 cybersecurity organisations in the world for business value and thought leadership. In 2020 his unit won a Future Edge 50 award from CIO magazine for technological innovation in developing an incident response and threat hunting platform. Finally, Computer World magazine has twice selected Mr. Raines for its Premier 100 award for being among the 100 most influential IT leaders in the world.
Prior to UNDP, Mr. Raines worked for the Organisation for the Prohibition of Chemical Weapons (OPCW) where he, as well as other members of the organisation, was a joint recipient the 2013 Nobel Peace Prize. Prior to working for the United Nations he was the Chief Informations Security Officer for Bloomberg LP, Barclays Capital and the Federal Reserve Bank of New York. He is a graduate of the United States Air Force Academy and Harvard’s Kennedy School of Government. For relaxation he enjoys opera, Shakespearean plays, French wine and sometimes just sitting in a cafe with an espresso and pain au chocolat reading a good book on Roman history.


Eric Staffin
Partner & SVP, CISO
IHS Markit
CISO Council Speaker
Eric has extensive leadership and practical C-suite experience working as a Chief Information Security Officer, Chief Risk Officer, and Risk Policy Committee Chair in regulated and non-regulated companies. He has a proven track record of building high-performance teams and partnering with both clients and colleagues to drive the recognition and treatment of franchise level strategic, cyber, privacy, operational, and regulatory compliance risks within interconnected global companies.
Eric currently serves as the Chief Information Security Officer (CISO) for IHS Markit (INFO), a $45 billion public company that is a global leader in information, analytics, and solutions for the major industries and markets that drive economies worldwide. He is charged with driving the design, implementation and continuous improvement of a global cybersecurity program that supports innovation as an enabler of business and revenue growth establishes a stronger enterprise-wide posture that reduces risk, improves decision-making, and accelerates business priorities, and, cost-effectively mitigates and reduces the risk and impact of the client, market and regional disruptions caused by physical, technology and cybersecurity-related incidents. Previously, Eric held senior leadership team roles at S&P Global (Chief Risk Officer, S&P Global Market Intelligence) and Thomson Reuters (Chief Resiliency and Business Information Security Officer, Wealth Management), and senior product, operational, and risk management roles at Citibank and Bankers Trust.
Eric received his Bachelor of Arts degree in Economics from the University of Michigan and his Master’s Degree in Business Administration in Finance and Management from New York University’s Stern School of Business. He is a co-Chair for the New York CISO Advisory Forum, holds the CISSP certification from (ISC)2, the FBCI (Fellow) certification from the Business Continuity Institute (BCI), and serves as a speaker, trainer, contributor, moderator, and panelist for (ISC)2, the BCI, DCRO, ISACA, and several New York metropolitan area business schools on topics including Operational Risk, Crisis & Incident Management, Data Privacy, Supply Chain Resiliency, and Cybersecurity and Business Resiliency Convergence.


Bill Curry
Solutions Architect
Cyren


Amit Basu
CISO/CIO
International Seaways
CISO Council Speaker
Amit Basu is the head of IT and IT Security at International Seaways (INSW). INSW, headquartered in New York City, is one of the largest tanker companies providing energy transportation services worldwide. Amit is a proven IT leader with over 25 years of experience in maritime IT and has pioneered several technology innovations in maritime. Over the last decade, Amit has led a digital transformation in INSW with a Cloud-Only IT strategy and is instrumental in designing a multi-layered cybersecurity framework promoting a cyber resilience culture. Amit holds an MBA as well as a Master of Science degree in Information Management from the Stevens Institute of Technology, New Jersey. He is also a Certified Information Security Manager from ISACA, certified in Cybersecurity Risk Management by HarvardX, Cybersecurity Oversight by Carnegie Mellon University, Maritime Cybersecurity by Lloyds Maritime, and Artificial Intelligence by MIT Sloan School of Management. Amit is an advisory board member for the Cybersecurity program at Pace University and Ithaca College, on the advisory board of Exium, and a member of the Governing Body of New York CIO Executive Summit.


Ira Winkler
CISO
Skyline Technology Solutions
November 16, 2021
VirtualAgenda
All times Eastern Standard Time (EST)
11:00 AM-12:15 PM
The Greatest Fears?
Chair


Ira Winkler
CISO
Skyline Technology Solutions
Panelists


Jeffrey Vinson
SVP CISO
Harris Health System
Jeffrey M. Vinson, Sr. is the Senior Vice President and Chief Cyber and Information Security Officer (CISO) at Harris Health System. He is a globally recognized security executive , a retired military officer and a former technical director at NSA (National Security Agency). He has been involved with information security for over 25 years and has the rare distinction of having expert experience in the military, federal government, financial services and healthcare industries. He has held positions such as Vice President, Technical Director, and other senior level security management roles. Jeffrey has led penetration testing exercises while working at NSA (National Security Agency) as a technical director and has created security operations teams and GRC teams for financial services and healthcare organizations. He provides expert security advice and guidance to small and large companies and is a highly sought-after speaker at security conferences throughout the country. Jeff is a member of C|CISO exam writing and events committee for EC-Council and was one of their first C|CISO summit speakers for their inaugural global CISO Executive Summit. He is listed as one of the top influencers in Information Security for Healthcare and most recently was listed as one of the top 100 global CISO’s. Jeffrey earned his Bachelor’s degree in Industrial Technology from Elizabeth City State University and holds numerous internationally recognized security certifications.


Paul Raines
CISO
United Nations Development Programme
Paul Raines is the Chief Information Security Officer for the United Nations Development Programme. In that capacity he is responsible for managing the cyber-security and disaster recovery planning for the Organisation’s 177 locations around the world. His unit is the first and only United Nations unit to be ISO 9001, ISO 20000 and ISO 27001 certified. His information security unit has won international awards for outstanding performance including an Honors Laureate award from Computer World magazine in 2013 and a 6 time winner of the CSO50 award from CSO magazine—more than any other organisation since the award was established. The CSO award honors the top 50 cybersecurity organisations in the world for business value and thought leadership. In 2020 his unit won a Future Edge 50 award from CIO magazine for technological innovation in developing an incident response and threat hunting platform. Finally, Computer World magazine has twice selected Mr. Raines for its Premier 100 award for being among the 100 most influential IT leaders in the world.
Prior to UNDP, Mr. Raines worked for the Organisation for the Prohibition of Chemical Weapons (OPCW) where he, as well as other members of the organisation, was a joint recipient the 2013 Nobel Peace Prize. Prior to working for the United Nations he was the Chief Informations Security Officer for Bloomberg LP, Barclays Capital and the Federal Reserve Bank of New York. He is a graduate of the United States Air Force Academy and Harvard’s Kennedy School of Government. For relaxation he enjoys opera, Shakespearean plays, French wine and sometimes just sitting in a cafe with an espresso and pain au chocolat reading a good book on Roman history.


Eric Staffin
Partner & SVP, CISO
IHS Markit
Eric has extensive leadership and practical C-suite experience working as a Chief Information Security Officer, Chief Risk Officer, and Risk Policy Committee Chair in regulated and non-regulated companies. He has a proven track record of building high-performance teams and partnering with both clients and colleagues to drive the recognition and treatment of franchise level strategic, cyber, privacy, operational, and regulatory compliance risks within interconnected global companies.
Eric currently serves as the Chief Information Security Officer (CISO) for IHS Markit (INFO), a $45 billion public company that is a global leader in information, analytics, and solutions for the major industries and markets that drive economies worldwide. He is charged with driving the design, implementation and continuous improvement of a global cybersecurity program that supports innovation as an enabler of business and revenue growth establishes a stronger enterprise-wide posture that reduces risk, improves decision-making, and accelerates business priorities, and, cost-effectively mitigates and reduces the risk and impact of the client, market and regional disruptions caused by physical, technology and cybersecurity-related incidents. Previously, Eric held senior leadership team roles at S&P Global (Chief Risk Officer, S&P Global Market Intelligence) and Thomson Reuters (Chief Resiliency and Business Information Security Officer, Wealth Management), and senior product, operational, and risk management roles at Citibank and Bankers Trust.
Eric received his Bachelor of Arts degree in Economics from the University of Michigan and his Master’s Degree in Business Administration in Finance and Management from New York University’s Stern School of Business. He is a co-Chair for the New York CISO Advisory Forum, holds the CISSP certification from (ISC)2, the FBCI (Fellow) certification from the Business Continuity Institute (BCI), and serves as a speaker, trainer, contributor, moderator, and panelist for (ISC)2, the BCI, DCRO, ISACA, and several New York metropolitan area business schools on topics including Operational Risk, Crisis & Incident Management, Data Privacy, Supply Chain Resiliency, and Cybersecurity and Business Resiliency Convergence.


Bill Curry
Solutions Architect
Cyren


Amit Basu
CISO/CIO
International Seaways