Best Practices for Effectively Addressing Third-Party Security Risk

CISO Council

November 1, 2022 - North America

Visionaries

Demi Ben-Ari Panorays, Inc.
Demi Ben-Ari

Co-Founder & CTO

Panorays, Inc.

Council Speaker

Demi helped co-found Panorays in 2016 and serves as its CTO, responsible for managing the company’s technical infrastructure, responding to marketplace developments related to third-party security, and directing the company’s analyst relations program, among many other things. Demi brings to Panorays his expertise in building communities and networks—both online and offline. His technical background enables him to provide visibility into companies’ blind spots and build large systems to empower users through insight-sharing. Demi is a recognized Google Developers Expert, co-founder of “Big Things”—one of the largest Big Data communities—and of the local Google Developer Group Cloud. He is a renowned international speaker, presenting Big Data solutions and distributed and scalable systems to both technical and management teams. Previously, he worked as a Senior Data Engineer at Windward, where he migrated an on-premise solution to Amazon Web Services, transitioning it to a distributed microservices architecture using big data technologies. Demi started his military service in the IDF elite programming course in Mamram, afterwards serving in Ofek for seven years, the software unit of the IAF, where he developed a missile defense system and was in charge of various intelligence and security-related tasks during his service. Demi graduated from the The Academic College of Tel-Aviv, Yaffo with a bachelor of sciences degree in Computer Science. In his free time, he serves as an advisory board member to multiple startup companies in deep tech and cyber security such as badook AI and others.

Dmitriy Sokolovskiy
Dmitriy Sokolovskiy

CISO

Semrush

Council Speaker

Dmitriy is currently a CISO and CSO at Avid Technology. From 1999 to 2007 he had first-hand experience with servers, networks and datacenters, and NOCs and SOCs as he worked at, and consulted for defense contractors, public and private financial and medical companies, and non-profits. Between 2007 and 2018, Dmitriy spent 11 years building and managing a cyber-security professional services team for CyberArk Software, personally participating in incident response and remediation for some of the largest breaches in US history, and then serving as a Cloud Security Architect for SaaS products utilizing CSA CCM and CIS CSC. Dmitriy currently advises infosec start-ups, venture capital, and private equity firms. He is a SANS Mentor, a member of the GIAC Advisory Board and holds the GISF, GCED and CISSP certifications. Certified Information Systems Security Professional (CISSP) and a Founding Board Member of the (ISC)2 Eastern Massachusetts Chapter. GIAC Certified Enterprise Defender (GCED), a member of the SANS Advisory Board and a SANS Mentor.

Grant Naschke 3M
Grant Naschke

Head of Global Cyber Threat Detection, Response, Intelligence

3M

Council Speaker

Driven, detail-oriented, business-focused, and enjoys leading people and driving change. Experienced as a Fortune 100 cybersecurity leader and as a Big4 consultant.

Has directed security operations & response, cyber threat intelligence, privileged access management, security policy & compliance, and managed security services.

Has worked cross-industry for Fortune 100s, and advised small and mid-size businesses. Enjoys taking on turn around projects and operating in new domains of technology and cybersecurity.

VJ Viswanathan Torqe
VJ Viswanathan

CEO

Torqe

Council Speaker

VJ Viswanathan is a seasoned global technology executive recognized and awarded for technology innovation, capability transformation and inclusive leadership. Most recently, VJ is the founding partner at CYFORIX, a global cybersecurity research, advisory & strategy firm delivering solutions to public and private sectors. He serves as the CEO at TORQE, a specialized due diligence, advisory and technology services firm delivering value through analytics and automation. VJ is also the co-host of ELEVATEINTEL, a podcast series at the nexus of technology, social and defense. With over 25 years of Enterprise technology, Cyber Security, Privacy, Compliance and Risk Management experience, VJ has a detailed track record of designing, implementing and leading highly successful programs, products & services at multinational brands spanning CPG, Telecom, Media, Supply-chain & Finance segments. As a strategic thought leader, VJ has delivered the first of its kind "Supply Chain Security" & “Omni-channel Risk management” frameworks. As a published author and featured keynote speaker at global industry events, he approaches disruptive digital paradigms with innovation, creativity and active collaboration with his key industry peers, national & international law enforcement and defense groups. VJ is an active advisor, investor at select incubators & accelerators groups. As a strategic advisor to VC & PE firms, he specializes in developing market analysis, competitive product road map and guides in opportunity mapping. As a Board member and subject matter advisor to CEOs and Corporate directors, VJ evaluates and audits cyber security program for veracity and operational effectiveness. VJ is passionate about animal rights and giving back to the technology & security industry. He has created a rescue & foster care group for large breed dogs. He is actively engaged with academic institutions and purpose driven professional groups like ‘Minorities in Cyber security’, where he serves as the Board member and chair of mentorship programs to develop the next generation talent through coaching and facilitating scholarships for cyber security education.

Dmitriy Sokolovskiy (1)
Dmitriy Sokolovskiy

CISO

Semrush

Council Speaker

Dmitriy is SVP/CISO at Semrush. He has had first-hand experience with servers, networks and datacenters, and NOCs and SOCs as he worked at, and consulted for defense contractors, public and private financial and medical companies, and non-profits. Between 2007 and 2018, Dmitriy spent 11 years building and managing a cyber-security professional services team for CyberArk Software, personally participating in incident response and remediation for some of the largest breaches in US history, and then serving as a Cloud Security Architect for SaaS products utilizing CSA CCM and CIS CSC. Dmitriy currently advises infosec start-ups, venture capital, and private equity firms. He is a SANS Mentor, a member of the GIAC Advisory Board and holds the GISF, GCED and CISSP certifications. Certified Information Systems Security Professional (CISSP) and a Founding Board Member of the (ISC)2 Eastern Massachusetts Chapter. GIAC Certified Enterprise Defender (GCED), a member of the SANS Advisory Board and a SANS Mentor.

Upcoming events

Agenda

All times Central Time

11:00 AM-12:15 PM

Best Practices for Effectively Addressing Third-Party Security Risk

InfoSec, IT risk and digital supply chain management professionals know the key to minimizing the risk of third-party breaches is to implement a comprehensive and efficient third-party security risk management (TPRSM) process. Our Panorays team will discuss discusses the increasing challenges surrounding third-party security as well as ways to efficiently and effectively manage the TPSRM process.

In Partnership With