Wednesday, October 18, 2017

The Ohio Digital Government Summit 2017 - Oct 17th & 18th


http://www.govtech.com/events/Ohio-Digital-Government-Summit.html


Today concluded the Ohio Digital Government Summit, which was held on The Ohio State University campus at The Ohio Union:



The highlight for me was the Tuesday afternoon Keynote, Morgan Wright, an internationally renowned Cyber-expert.  Morgan's talk was titled "Cyberstrike:  Warfare in the Fifth Domain" which is a dramatized report on the "black energy" cyber attack that crippled the Ukraine's power grid. This presentation was totally fascinating and kept you on the edge of your seat from start to finish.  You can read the abstract of his talk HERE.   Morgan discusses the historic cyber attack in this Fox News interview:



I got to meet Morgan personally, and chatted with him after his keynote.  It was an honor to meet you Morgan, thanks for your insights, and thanks for the selfie!



Another highlight of the summit was the content and interactions delivered by Brian Kelley, who is the former CIO for Portage County Ohio, and current CTO for the Ohio Turnpike and Infrastructure Commission.  Brian was very active during the summit.  He hosted several presentations and panels, and was active in the breakouts, including the OCITA group session.  Brian's morning presentation was titled "Cloud Chasing, a Sensible Approach", and then later he participated in a panel discussion with the theme "Navigating the Cyber Landscape in Your Own Organization".  Its great that we have people like Brian helping drive government IT & security here in Ohio.  Thank you Brian for your passion and for leveraging your skills to serve the people of Ohio.  I hope you will consider speaking for the Cybersecurity User Group in the near future.




Lots more to come.  Executive CISO Network breakfast meeting in the morning, The Michigan Digital Government Summit in Lansing next week, and then Security Summit Week in Cleveland is the week of Halloween.  For information about these security events and other events taking place across the region, check out our "Upcoming Meetings" area of this blog.

Take Care.

Gib

Friday, September 29, 2017

September 28th 2017 - Columbus Ohio

Thursday 9/28, The Cybersecurity User Group met at Smith & Wollensky in Easton.  We had one of our best meetings to date.  There were close to 40 security professionals in attendance, with interaction and discussion throughout.  I'm very thankful to everyone who helped make today's meeting a success, especially our speakers: Jerod Brennen (Keynote), Bill Evans (Sponsor), and Adrianne Ward (Roundtable Moderator), but also our attendees who contributed your time and ideas to the security discussions.

Smith & Wollensky's at Easton

Group Pictures:





Opening Welcome Statement, Gib Patt, Group Founder/Coordinator:




Keynote Speaker:  Jerod Brennen, Security Architect, GBQ Partners



  • Presentation Title:  "A Common Sense Approach to Information Security"
  • Topic Abstract and Speaker Bio:  HERE
  • Powerpoint Slides:  HERE
  • Full Audio of Jerod's Talk:  Coming Soon.
  • Pictures  and Short Video Clip of Jerod Presenting:







5-Minute Sponsor Segment: One Identity LLCBill Evans, Sr. Director, Marketing


  • Bill's Bio:  HERE
  • Presentation Title "Get IAM Right"
  • PowerPoint Slides:  HERE
  • Video of Bill's talk:  



Roundtable Group Discussion, Adrianne Ward, Director, Security Solution Architecture, Americas


Adrianne Ward moderated the roundtable group discussion
Despite having fractured her hand earlier this week, Adrianne still showed up to moderate our roundtable discussion with the group.  Lesson learned:  use care when removing large plates from deadlift machine at gym!

  • Roundtable Theme:  "A Selection of Current Statistics in IT Security"
  • Speaker Bio:  HERE
  • Powerpoint Slide:  HERE
  • Pictures Adrianne Moderating:





Next Cybersecurity User Group Meeting:  Dayton, November 9th.

Our next meeting will be in Dayton on Thursday November 9th.  I'll send a newsletter update with registration and details once the venue is confirmed.  Our speaker for the Dayton meetup is Dr. Loren Wagner, who's Ph.D. research and dissertation focuses on the NIST Cybersecurity Framework.  An abstract for Dr. Wagner's talk along with a short biography have been posted HERE.    The Cybersecurity User Group cannot express well enough how pleased we are that Dr. Wagner has agreed to speak for us, and to facilitate a discussion.  This will be a rare learning experience, so please block your calendars now if you are able to attend.

Our group is not meeting in October because there are just too many other security events happening across our region.  For a list of October events please see the previous blog post HERE.  Or you can just scroll down.

Thanks all.

Gib Patt
gib.patt@oneidentity.com
614 209 8516

Tuesday, September 19, 2017

Upcoming Security Events in September & October

<<NOTE>>  Details and REGISTRATION about the November 9th meeting of the Cybersecurity User Group are now posted HERE.

The following is a listing of all the security events in which we're participating through the end of October 2017.  We encourage your participation too, and hope to see you at one or more of these local security events:



Wednesday 9/20:  ISSA Central Ohio Chapter Meeting | 8am - Noon

  • Location: Expedient Upper Arlington,  5000 Arlington Centre Boulevard, Columbus, OH 43220 
  • Speaker:  TJ Adams, CISSP will be discussing about "Privileged Account Management" at 10am.
  • More Info and Registration HERE.

Thursday 9/20:  ISACA Detroit Chapter Meeting | 530 - 830
  • Location:  Michigan State University Management Education Center, 811 West Square Lake Road, Troy, Michigan 48098
  • Speaker:  Rob Clyde, Vice Chair ISACA International
  • More information HERE.
  • Registration

Wednesday 9/27  ISACA Northwest Ohio Chapter Meeting | 530 - 8

  • Location:  Buffalo Wild Wings;  1550 East Wooster Street;  Bowling Green, Ohio  43402
  • Speaker:  William McCreary, CIO at University of Toledo
  • Topic:   "Board of Directors Considerations for Technology and Cybersecurity"
  • Registration 

Thursday 9/28:  The Cybersecurity User Group Luncheon | 11am - 1pm
  • Speaker:  Jerod Brennen, Security Architect for GBQ Partners presents
  • Topic:  "A Common Sense Approach to Information Security". 
  • Round-table Moderator:  Adrianne Ward, Director Security Solution Architecture, One Identity LLC.
  • Smith & Wollensky, 4145 The Strand W, Columbus Ohio (Easton Town Center).
  • Registration

Thursday 10/12:  Central Ohio ISACA Chapter Meeting | 1130am - 1pm
  • Dan Vance, Clark Schaefer Consulting LLC
  • Topic:  "SOC and the Cybersecurity Threat"
  • Location:  Brio Tuscan Grille at Polaris Mall:  1500 Polaris Pkwy, Columbus, OH 43240
  • Abstract
  • Registration

Tuesday 10/17 and Wednesday 10/18:  The Ohio Digital Government Summit
  • Location:  The Ohio Union, 1739 North High St. Columbus OH 43210
  • Agenda and Registration HERE

Wednesday 10/18:  Central Ohio ISSA Chapter Meeting


  • Location:  Expedient/Tree of Life.
  • Address:  5000 Arlington Centre Boulevard, Columbus, OH 43220 
  • Speakers and Topics
    • Alan Swanke and Shixiong Shang,  "Multilevel Container Security Challenges"
    • Aaron Ansari, "Mid-Life InforSec Crisis"
    • Krisann Lucrezi, "The Value of Threat Intelligence"
  • Topic Abstracts and Registration:  HERE

Wednesday 10/18:  Northeast Ohio Information Security Forum Meeting
  • Wednesday October 18, 2017
  • 6:30 PM – 8:00 PM
  • Pizza and social start 6:00 PM
  • Location: OEC at 4205 Highlander Pkwy Richfield, OH 44286
  • Open to everyone and free as always
  • Agenda and Abstract:  HERE.


Thursday 10/19:  CISO Executive Network Breakfast Series

  •  Location:  Vorys Sater Seymour & Pease LLP offices - 52 E Gay Street Columbus, OH 43215
  • Agenda and Abstract:   HERE.
  • This is a members only event but if you're interested in coming please contact me at gib.patt@oneidentity.com and I can request to bring you as a guest.  You can also view membership criteria and register to become a member HERE

Tuesday 10/24 and Wednesday 10/25:  The Michigan Digital Government Summit

  • Location:  Lansing Center, 333 East Michigan Ave, Lansing MI 48933
  • Agenda and Registration HERE

Tuesday 10/24:  SecureWorld Cincinnati

  • Location:  Sharonville Convention Center, 11355 Chester Rd, Cincinnati, OH 45246
  • Agenda and Registration:  HERE.
  • Keynotes and Speakers:  HERE.

Monday 10/30 through Friday 11/3:  Cleveland Security Summit Week 2017

  • Location:  The International Exposition Center, One I-X Center Dr, Cleveland, OH 44135
  • We are sponsoring this event and have a discount code.  If you plan on attending, please contact gib.patt@oneidentity.com for a discount code for extra savings on the purchase of your pass.
  • Information about the summit and keynotes HERE.
  • Registration.



Wednesday, August 30, 2017

August 29th 2017 - Toledo Ohio

The Cybersecurity User Group met yesterday in Toledo Ohio at the historic Oliver House, which is now the home of the Maumee Bay Brewing Company.  This is probably the most unique venue we've used for our group meetings to date.  The atmosphere in that old building was so cool, and the staff was excellent.  As always, our speaker's powerpoints, pictures from the event, short videos, and a recap of the agenda are all posted below:




We had 26 local Cybersecurity professionals in attendance.  Here are some pics of our group enjoying the presentations, lunch, and this special venue:








Our keynote presenter was Matthew Haschak, a 17-year veteran at Bowling Green State University and current Director of Security and Infrastructure at BG.  It was a great privilege for our group to hear from Matt.  He has a strong reputation locally and abroad for his leadership and expertise in the area of Cybersecurity.  Matt delivered an incredibly insightful presentation titled "Implementing Two-Factor Authentication at Bowling Green State University" where he shared the challenges, successes, and lessons learned from that experience.  Thanks again Matt for your contribution to our group.

Matt's presentation can be viewed/downloaded HERE.

A couple keepsakes from Matt's presentation are posted below:





We wrapped up our meeting with a round-table discussion moderated by Jackson Shaw, who is Vice President Product Management at One Identity.  It was a real honor to have Jackson's participation at user group.  He has been a pioneer and thinker in the IAM space since before "IAM" was even part of our common lexicon.  Jackson's round-table discussion guided us through insightful concepts related to "Managing Identity & Security in an increasingly SaaS world", which was also the title of his round-table.   

Jackson's slides are available for download HERE.

Jackson has the most relaxing profile pic I've ever seen:


Here is a pic from yesterday of Jackson leading the Cybersecurity group round-table in the historic Oliver House in Toledo:



We are planning our next meeting in Columbus at the end of September.   Still working to confirm our speakers.  As soon as those details are confirmed I will make an announcement. 

If you haven't already done so, please don't forget to send your ISACA and (ISC)2 member IDs to either myself (gib.patt@oneidentity.com) or Cynthia Au (cynthia.au@oneidentity.com), and we will submit 2 CPEs toward your continuing education requirements for your certs.

Yours Truly,

Gib Patt
The Cybersecurity User Group
gib.patt@oneidentity.com






Wednesday, July 26, 2017

July 25th 2017 - Southfield Michigan

Yesterday we met at Southfield's Bacco Ristorante "the buzzy Italian eatery".   I think I can speak for the group and say it was not only "buzzy" in that dining hall, but also a great time learning and networking with some of the best people!  We had 30 Michiganders and Ohioans in attendance, with roles ranging from Executives and Vice Presidents, to IT Directors, Managers, and Security Practitioners. The participation from members and speakers alike was superb.

The keynote presentation was delivered by David Cutri, Executive Director and Chief Compliance Officer at University of Toledo.  Dave's presentation was titled Cybersecurity and Corporate Governance, and delved into the 5 guiding principles for the Board of Directors.  It was a totally unique learning experience and I hope Dave will speak for us again in the future.  We are sincerely grateful for Dave's contribution, and cannot thank him enough for sharing his time and experience with our group.

David's presentation is available for download HERE.

Now I'm no photographer, my iPhone doesn't take the best pics, and low lighting in that dining hall doesn't help, but nevertheless I have posted some keepsakes from David's presentation below:





Gib Patt (yours truly) spoke to the group for a few minutes about the top challenges we're seeing at One Identity in the area of Identity & Access Management.

My slides, and the agenda slides for the event, are available HERE.
Don't forget to study up on Gall's Law HERE :)

One of my colleagues captured a couple pics of me at the podium.  Someone said I look like a hacker...is that true?





Next on the agenda was our group's very first round table discussion.  It was a lively exchange moderated by Wayne Smiley, One Identity Solution Architect and CISSP.    Wayne did a great job guiding us through some examples of real life phishing attacks and spurring a related conversation with the group.  The round table will become a staple at our events going forward.

Wayne's Slides are available HERE.

Here are some pics and a video of Wayne moderating the group discussion:





One Identity's Regional Director, Eric Robinson, asked the group some probing questions and helped guide part of the group discussion.  It was great to have Eric's participation.  Here is a short clip of Eric questioning the group:



As a reminder, our group is a CPE submitter for both (ISC)2 and ISACA credential holders.   Anyone who attended should send your membership ID to Cynthia Au, cynthia.au@oneidentity.com .  Cynthia will make sure your account is incremented by 1.5 credits for your attendance.  If you hold credentials from an organization other than (ISC)2 or ISACA and you have a continuing education requirement, please let me know and we'll look into it...maybe we can get you credits too.

Our next group meeting is in Toledo on August 29th, please see below for details.   I'll be sending a formal invitation within the next couple weeks.

Toledo Ohio
  • Guest Speaker:  Matthew Haschak, Director of IT Security at Bowling Green University
  • Topic:  Multi Factor Authentication.   I've also asked Matt to talk about his approach to "adaptive security" and how it improves security, and user experience.
  • Date and Time:  August 29th 2017, 11am - 1pm
  • Location: Maumee Bay Brewing Co. (Inside the historical Oliver House)
  • Address:  27 Broadway Street, Toledo, OH
  • Landing Page and Registration HERE.
Thanks again to our speakers, and to all of our attendees.  It was another great meeting, and I hope to see you all again soon.

Sincerely,

Gib Patt
614 209 8516
gib.patt@oneidentity.com

Thursday, July 6, 2017

April 2017 - Central Ohio InfoSec Summit

It's already July so this post is way late, but I wanted to recall the great experience we had at the 2017 Central Ohio InfoSec Summit, which had its 10th annual convention in April in downtown Columbus (my hometown).   It was a fantastic event with over 1,000 people attending. The conference halls were packed with the very best speakers in Information Security from all walks of life.  Here's the very cool and unique wooden name badge they gave to attendees....I recently had to wrestle this away from one of my kids:



If you've never attended the Summit, do yourself a favor and get a ticket for the 2018 convention.  My employer paid for my pass, and it was well worth it.  The website for this past summit is still up and running HERE if you want to check out the the 2017 agenda, speakers, and topics.

The highlight of the event for me was the Thursday evening talk given by William Binney, a former high-level National Security Agency intelligence official who, after his 2001 retirement, having served for 30 years, blew the whistle on NSA surveillance programs.   William's talk was titled "The Surveillance State and Big Data" and it was a provocative, controversial yet fascinating discussion about the role and limits of government surveillance capabilities.

Here are a couple pictures from Mr. Binney's keynote:





And I was fortunate enough to meet up with William in the hallway after the keynote.  He agreed to a selfie with me:



That's all for now.  Hope you're all enjoying your summer!

Gib Patt
gib.patt@oneidentity.com
614 209 8516

Thursday, June 29, 2017

June 28th 2017: Columbus

We held our Executive Forum on The Cyber Risks That Matter to Corporate Boards last night in Columbus Ohio.  It was another fine evening, with lots of great real-world experiences being shared by our speakers, a round-table discussion with our attendees, and plenty of networking with our great Columbus-area executives.  Of course, we had some fine food from Mitchell's Ocean Club, which never disappoints, and the waiting staff was top notch!

Here are a couple group pictures of us enjoying the food and networking:




Our First Speaker was the CEO and Member of the Board for Cyber Risk Management LLC, Yong-Gon Chon.  Yong-Gon is responsible for the growth and execution for one of the largest pure-play cyber services companies.  Yong-Gon's talk was titled "Building a Cyber Balance Sheet For Your Board".   This was a fascinating talk on how cyber experts can begin to bridge the communication gap that exists between executive management and the board of directors.

Material's for Mr. Chon's presentation:




Mr. Chon can be seen in the video and pictures below, delivering his presentation:





Our meetings are funded by One Identity, and sometimes co-funded by consulting partners like Focal Point, and yet we only spend very little time talking about our brands, products, and services.  We use our marketing dollars to focus on what's really important to our attendees:  bringing together like-minded people for knowledge sharing and round-table discussion on topics that matter most to them. That is the mission of our group.  With that said, Bill Evans talked for a mere 5 minutes about One Identity, and here are some pics and videos from his brief talk:








Perhaps the most impactful presentation of the evening came from Robert Kemp, Director of Technology at Travel Centers of America, an incredibly successful company based out of Westlake Ohio, near Cleveland.  Robert is a highly successful and very talented IT & Security executive with 25 years of experience leading large IT organizations to business success.  Robert's presentation shared his lessons learned, successes, and challenges that he has experienced throughout his career.   Robert's presentation was titled "Talk The Talk!" and his slides can be downloaded below.  Enjoy the pictures and videos from Robert's presentation:







Our next two events are in the works.  Here are the details:

Southfield Michigan (our very first meetup in Michigan):
  • Guest Speaker:  David Cutri, Executive Director and Chief Compliance Officer, University of Toledo.
  • Topic: Cybersecurity From The Perspective of The Board of Directors
  • Date and Time:  July 25th 2017, 11am - 1pm
  • Location:  Bacco Ristorante
  • Address:  29410 Northwestern Hwy Southfield, MI 
  • Landing Page and Registration HERE

Toledo Ohio
  • Guest Speaker:  Matthew Haschak, Director of IT Security at Bowling Green University
  • Topic:  Still being finalized but I believe it will be on the business value of multi factor authentication, and I've asked matt to talk about his approach to "adaptive security" and how that improves security, and user experience.
  • Date and Time:  August 29th 2017, 11am - 1pm
  • Location: Maumee Bay Brewing Co. (Inside the historical Oliver House)
  • Address:  27 Broadway Street, Toledo, OH
  • Landing Page and Registration HERE.

Lastly, everyone should now know that our group is officially an (ISC)² CPE Submitter!  We're really excited about this.  All of our group attendees who are (ISC)² credential holders must earn continuing professional education (CPE) credits throughout the life of their certification.   They can now earn 1.5 credits for each of our meetings they attend.  Look for the "CPE Submitter" logo on our landing pages above.  We are also pursuing a CPE status for ISACA credential holders, so stay tuned. 

Sincerely,

Gib Patt
614 209 8516
gib.patt@oneidentity.com