Zero Trust – What do I need, how do I do it, where do I start?

CISO Council

November 10, 2022 - National

Visionaries

Nick Curcuru

Head of Solutions

Venafi

Council Speaker

Nick Curcuru is a dedicated executive eager to solve cyber, data, and analytic challenges. He focuses on breaking down complex ideas into manageable projects, products, and services optimized for his customer’s needs. His unique skills as a data translator and storyteller enable him to bridge the gap between internal and external teams to ensure mutual success. Nick was selected as one of the top ten data futurists to watch by Enterprise Management 360 because of his successful 20 years in advanced analytics and cyber security. He was responsible for the creation of the global Enterprise Information and Cybersecurity and Privacy practice at Mastercard. He has consulted with the European Union, United States, Australian, British, and Canadian governments along with numerous commercial businesses on how to achieve PCI, HIPPA, GDPR, and Zero-Trust sustainable environments. He is on a mission to create environments where people and machines use information in a positive ethical way.

Grant Naschke

Head of Global Cyber Threat Detection, Response, Intelligence

3M

Council Speaker

Driven, detail-oriented, business-focused, and enjoys leading people and driving change. Experienced as a Fortune 100 cybersecurity leader and as a Big4 consultant.

Has directed security operations & response, cyber threat intelligence, privileged access management, security policy & compliance, and managed security services.

Has worked cross-industry for Fortune 100s, and advised small and mid-size businesses. Enjoys taking on turn around projects and operating in new domains of technology and cybersecurity.

VJ Viswanathan

CEO

TORQE

Council Speaker

VJ Viswanathan is a seasoned global technology executive recognized and awarded for technology innovation, capability transformation and inclusive leadership. Most recently, VJ is the founding partner at CYFORIX, a global cybersecurity research, advisory & strategy firm delivering solutions to public and private sectors. He serves as the CEO at TORQE, a specialized due diligence, advisory and technology services firm delivering value through analytics and automation. VJ is also the co-host of ELEVATEINTEL, a podcast series at the nexus of technology, social and defense. With over 25 years of Enterprise technology, Cyber Security, Privacy, Compliance and Risk Management experience, VJ has a detailed track record of designing, implementing and leading highly successful programs, products & services at multinational brands spanning CPG, Telecom, Media, Supply-chain & Finance segments. As a strategic thought leader, VJ has delivered the first of its kind "Supply Chain Security" & “Omni-channel Risk management” frameworks. As a published author and featured keynote speaker at global industry events, he approaches disruptive digital paradigms with innovation, creativity and active collaboration with his key industry peers, national & international law enforcement and defense groups. VJ is an active advisor, investor at select incubators & accelerators groups. As a strategic advisor to VC & PE firms, he specializes in developing market analysis, competitive product road map and guides in opportunity mapping. As a Board member and subject matter advisor to CEOs and Corporate directors, VJ evaluates and audits cyber security program for veracity and operational effectiveness. VJ is passionate about animal rights and giving back to the technology & security industry. He has created a rescue & foster care group for large breed dogs. He is actively engaged with academic institutions and purpose driven professional groups like ‘Minorities in Cyber security’, where he serves as the Board member and chair of mentorship programs to develop the next generation talent through coaching and facilitating scholarships for cyber security education.

Deepak Chebbi

Director Business Applications IT

AmerisourceBergen

Council Speaker

As Director Business Applications IT (Fortune 10 drug wholesale company with annual revenues of $18) he has established the business technology strategy and provided architectural oversight and solution delivery for approximately $200+ million multi-phase transformation projects with a resulting IRR of approximately 50+% across Supply Chain Management, Finance and Accounting, Customer Management, Human Resources, Marketing, and Business Intelligence and Data Analytics Business Capabilities.

Rafi Buchnick

Us Head Tech Risk

RBC Capital Markets

Council Speaker

Hello, my name is Rafi Buchnick. I am a risk and security expert with extensive experience leading cross-functional teams, assisting them in the delivery of secure IT solutions. I ensure protection for global business operations and mitigate cyber risks for multiple clients, worldwide and am recognized for my impeccable record, in protecting client business interests, and any further damages to operations, during forensic investigations. After serving as Captain in Israel’s IDF Intelligence Corps, I began my career working as Chairman of the Board, ‘Bashan’ Market and Productions. From there, I progressed to a position as Financial Controller, Schneider Children Medical Center, and then, as Division Deputy Head at the Israel Institute for Biological Research. The rest of my work history is detailed in this profile. For more than fifteen years, I have been involved in ensuring security operations and planning for business continuity, should there be a disruption in services and/or the occurrence of a natural or manmade disaster/cyberattack. I am successful because of my meticulous attention to detail, as well as my ability to communicate technical information in easy-to understand language. I know I am only as good as the team I assemble, so I take time to train, coach, and mentor team members for career growth and business success. My key areas of expertise include, but are not limited to, Information Security, Risk Assessments/Mitigation, Stakeholder Communication, Regulatory Compliance, Technology & Application Vulnerability Review, Investigations to Support Client Business Interests, Disaster Recovery & Business Continuity, Cross-Functional Team Collaboration, Cost Reduction, Project Management, Industry Best Practices, and Increasing Cyber Capabilities.

November 10, 2022

Agenda

All times Central Time

10:00 AM-11:15 AM

Zero Trust – What do I need, how do I do it, where do I start?

Organizations are asking these questions as they develop and implement their zero-trust approach to securing their networks. Most organizations understand what is needed from a people side to securing their networks, but they have trouble knowing what to do from a machine-to-machine approach to zero trust. This session will help you focus your efforts on what key capabilities are needed across the five pillars: network/environment, device, application workload, data, and identity. We will cover the abilities of the three foundational steps: visibility and analytics, orchestration and automation, and governance need to provide you to be effective with your machine-to-machine communication. At the end of the session, you will have the foundation for the development of the machine identity management strategy and action plan you need to implement zero-trust so you can build trust with your customers, constituents, partners, and within your organization.

In Partnership With