Tag: speakers

Speaker Feature: Andrew Hay

Andrew Hay

Andrew Hay

Andrew Hay

@andrewsmhay

www.andrewhay.ca

DataGravity
Andrew Hay is the CISO at DataGravity where he advocates for the company’s total information security needs and is responsible for the development and delivery of the company’s comprehensive information security strategy. Prior to that, Andrew was the Director of Research at OpenDNS (acquired by Cisco) and was the Director of Applied Security Research and Chief Evangelist at CloudPassage, Inc.

Maneuvering Management Madness
Why do practitioners have such a hard time convincing their management team about the value of investing in security training, tools, and other initiatives? Is it because they’re too stubborn or busy to take the time to assess the concerns or is it more likely that you haven’t found the best way to communicate the threat to the business in a language that they understand?

Business leaders have implemented their own language, much of which was learned in business school, to better communicate with shareholders, board members, partners, and peers. Unfortunately, this language is often as foreign to most security practitioners as yours is to them. So what can practitioners do to better communicate with management?

This session will discuss several tactics to help convince your management team that your concerns are valid with examples on how to justify requests for headcount, procedures, policies, and human, tool, and training investment.

Register Now!


Keynote Feature: G Mark Hardy

G Mark Hardy

@g_mark

http://www.gmarkhardy.com/

 

GMH-photo-2.jpg (1090×1400)

G. Mark Hardy is founder and President of National Security Corporation and has provided cyber security expertise to government, military, and commercial clients for over 30 years. Also founder of CardKill, Inc., he is a retired U.S. Navy Captain, and an internationally recognized expert who has presented at over 250 events world-wide. He serves on the Advisory Board of the National CyberWATCH Center. A graduate of Northwestern University, he holds a BS in Computer Science, a BA in Mathematics, a Masters in Business Administration, a Masters in Strategic Studies, and holds CISSP, CISM, GSLC, and CISA certifications.

RVAsec Keynote

 

Register now


Keynote Feature: Jennifer Steffens

Jennifer Steffens

@SecureSun

http://www.ioactive.com/

 

IOActive

IOActiveCEO_JenniferSteffens_2013_02.jpg (1074×1267)

As its CEO, Jennifer Steffens spearheads all aspects of IOActive’s global CEO business operations and drives the company’s strategic vision. Jennifer brings a wealth of industry and business experience to the company, having been an early member of several successful startups.

Earlier in her career, Jennifer was a Director at Sourcefire, where she helped build and grow its run rate from $250K to over $35M in just four years. She helped commercialize the Snort open source intrusion detection and prevention technology and built several service offerings around research initiatives. Prior to joining IOActive, Jennifer came to Seattle to help startup GraniteEdge reinvent itself. While there, she led initiatives to restructure the company and developed a product strategy that ultimately secured two additional rounds of funding. With over ten years of industry experience, Jennifer has held senior management positions at Ubizen, NFR Security, and StillSecure.

Jennifer is a well-respected media source, appearing in InfoSecurity Magazine, SC Magazine, Good Morning America, BBC, Reuters, The Guardian, and CBS News. She has been invited to give keynote presentations at a variety of conferences such as HackInTheBox. Jennifer is a member of EWF, ISSA, and OWASP.

RVAsec Keynote

Register now

 


Speaker Feature: Michelle Schaffer and Tim Wilson

Michelle Schaffer/ Tim Wilson

@mschafer

 

Michelle Schafer heads up Merritt Group’s Security practice where she applies more than a decade of hands-on PR-related security experience spanning every discipline. She is known for creating and implementing strategic communications campaigns that drive results for clients such as Venafi, CrowdStrike, Ionic Security, Mach37, BlackHat and more.
Michelle has presented at Security B-Sides DC/Las Vegas and ISSA events and was recognized as a top influencer in the security community in 2010 and has been quoted in “Women in Security” stories.

Tim Wilson is the Editor in Chief of the number one security trade publication, DarkReading.com.

 

Hasty Headlines in InfoSec: Don’t Be Fooled by Everything You Read!

This session will discuss why some data breaches like Sony and Target get much more media attention than others and what enterprises can do to keep their names out of headlines, or at least be prepared when or if it ever happens to them. It will also give you an inside look at how security media determine what’s major news and what’s not and how PR “spin” is all part of the process.

Register now

 


Speaker Feature: Robert Stratton

Robert Stratton

@strat

https://www.mach37.com

 

200x200_stratton_Bob.png (200×200)Bob Stratton is a serial security startup guy. He is General Partner at Mach37, a business accelerator for security product startups. He was a pentester before you could buy it in a box, ran security for a tier-1 ISP, and helped launch one of the very first commercial network IDS products. He has been a Director of a major security software company’s research lab, and worked on the investment side to help bring a variety of new technologies to market. When he’s not hacking on ancient hardware, scanning satellites, or coaching startups, he might be flying airplanes, building radios or experimenting with fragrance chemistry.

How Security Products Could Change the World, and Often Don’t.

Many security professionals find themselves wondering how it is that some security products ever made it into the market. If you’ve ever asked yourself that, wondered why the “good” seems to be the enemy of the “best,” or thought you might be able to do it better than the current players, this may be a talk for you. This talk will cover the things that have to happen in order to successfully bring a security product to the market, who is arrayed against it from day 1 (you may not have heard of some of them), and what it takes for a consultant to be in 100,000 places at once. Warning: thin-skinned consultants, bloviating product vendors, and ethereal marketing people may find some aspects of this talk objectionable. Professional discretion is advised.

Register now


Speaker Feature: Boris Sverdlik

Boris Sverdlik

@jadedsecurity

 

Oscar Insurance

Jaded Security Guy

You’re HIPAA certified and Bob just killed someone from the parking lot

My friend Bob is undergoing Chemo and his wife asked him to get a copy of his medical records for a second opinion. Bob being an obedient husband had to jump through hoops to get copies of HIS records thanks to the monotony that we know as HIPAA.

So one day while Bob is waiting for his treatment he notices that the facility has several blatant physical security issues which could allow someone of a more shady nature to obtain his health records without jumping through hoops. Follow Bob in his adventures..

 

Register now


Speaker Feature: Chris Eng

Chris Eng

@chriseng

 

Chris Eng is vice president of research at Veracode. In this role, he leads the team responsible for integrating security expertise into all aspects of Veracode’s technology. Throughout his career, he has led projects breaking, building, and defending web applications and commercial software for some of the world’s largest companies.

Chris is a frequent speaker at premier industry conferences, where he has presented on a diverse range of topics, including cryptographic attacks, agile security, mobile application security, and security metrics. He has been interviewed by Bloomberg, Fox Business, CBS, and other media outlets worldwide.

Security Speed Debates

Match wits in a fast-paced debate covering a handful of topical security issues and customer-revelant subjects. Two teams of volunteers will face off, and the audience will determine which side made the most convincing (or entertaining) arguments. Topics will not be announced in advance, so participants will have to think on their feet!

 

Register now


Speaker Feature: Kizz MyAnthia

Kizz MyAnthia

@kizzmyanthia

http://kizzmyanthia.com/

 

200x200_kizz.png (200×200)Infosec specialist whose qualifications include an indepth understanding of security principals and practices; C|EH, MCSE+Security designations; and detailed knowledge of security tools, technologies and development. Seven years of security experience in the creation and deployment of solutions protecting networks, systems and information assets for diverse companies and organizations, with over 10 years overall in the industry.

 

Into The Worm Hole: Metasploit For Web PenTesting

Metasploit is most commonly known for its epic pwnage of network and service level vulnerabilities. What you may not know is that same epic pwnage can be leveraged exploiting web application vulnerabilities. By leveraging the ability to custom build Metasploit modules or tools using the framework the power of Metasploit is only limited by the imagination of the user. “Into The Worm Hole: Metasploit For Web PenTesting” will build on prior knowledge of Metasploit and help elevate the tester’s skills and abilities by working hands-on building a custom scanner, using Metasploit to exploit Web Vulnerabilities, and learn to use Metasploit for phishing, XSS, and other web application vulnerabilities.

 

Register now

 


Speaker Feature: Jason Scott

Jason Scott

@textfiles

http://textfiles.com

 

Jason Scott is an archivist, historian, documentary filmmaker, information collector, and public speaker. He figured you’d be sick of historical computing by now, but it’s not happening.

All Watched Over By Machines of Loving Grace

For over a century, the selling of computers as the inevitable tools of liberation, productivity, and new ways of life has led to some of the most striking images and words in the world of advertising and public relations. Jason Scott, the free range archivist of the Internet Archive, presents a slideshow and tour through some of the most notable excessive and most outlandish promises of the technology industry.

Register now


Speaker Feature: Adam Crosby

Adam Crosby

 

Former IDS analyst turned red teamer turned powerpoint jockey née cloud architect. Allergic to alcohol, compensates with Diet Coke.

Embracing the Cloud

It’s inevitable at this point, so rather than fighting, you may as well embrace it – cloud computing is coming to your organization soon (or more realistically, is already there, possibly under the radar!).
This talk covers how to get over the hump of resistance, do so smartly, and possibly enjoy some security benefits in the process. The focus here will be on info sec (or ‘cyber’), rather than the normal DevOps/Agile mumbo jumbo. Vendor selection, indicators of success, net new threat models and mitigations, and net new potential capabilities will be covered.

Register now