CIO & CISO DACH Smart Webinar
Event Overview
Agenda
2:00 - 2:10 WELCOME REMARKS & INTRODUCTION
Arrival of Attendees via Smart Webinar
2:10 - 2:25 - DELEGATE PRESENTATION
THE HUMAR FIREWALL: HOW TO CREATE A CULTURE OF CYBER SECURITY
70% of all information security attacks target humans. Only 30% target systems. Increasing the awareness of employees is therefore the greatest lever for improving the general level of security in a company. Awareness campaigns are the key to mindful employees.
When building a campaign, many questions arises;
- How does a didactic thread succeed?
- How are high participation rates achieved?
- What is essential content, what does not belong in it?
- Which stakeholders have to be picked up?
- Where can I get free material?
In this keynote, our speaker will give an overview of past awareness campaigns with which he won the Digital Leader Award 2020 in the Cyber Security category.
Speaker:
- Florian Jorgens, CISO at Vorwerk
2:30 - 2:45 - PARTNER PRESENTATION
CYBER RESILIENCE: SUN TZU WAS ONLY HALF RIGHT
Increasingly, Cyber Resilience is measured in terms of frameworks for CIS Controls for advanced enterprises, raising the concern on how different operating environments are compared for operational certainty. Enterprises are benefiting from a huge business transformation resulting in an explosion of connected devices – bigger than the number of PC and mobile devices combined.
In this session, we dive into how biases in Cyber security have impacted the effectiveness of cyber defence and Security Operation centres and what organisations are doing to
address the bias and mature cyber capabilities.
With Armis’ best DACH partner.
Speaker:
- Andy Norton, European Cyber Risk Officer at Armis
2:45 - 3:30 - NETWORKING AND PANEL DISCUSSION
CYBER RESILIENCE
Increasingly, Cyber Resilience is measured in terms of frameworks such as IEC 62443 or NIST CSF, raising the concern on how different operating environments are compared for operational certainty. Enterprises are benefiting from a huge business transformation resulting in an explosion of connected devices – bigger than the number of PC and mobile devices combined, but are you managing the risk in doing so?
Moderator:
- Florian Jorgens, CISO at Vorwerk
Q&A Panelists:
- Dr. Gunnar Siebert, Head of M&A Cyber DACH at Aon
- Stefan Haverkock, VP IT Corporate & EMEA at Brenntag AG
- Alexander Kraus, Digital Transformation Manager (Digital Growth & Change/ Customer Experience) at GSK
- Uli Weller, Managing Director at Magellan Netzwerke
- Dr. Gregor Krah, Head of Business Management – Security Services at Magellan Netzwerke
Panel Questions:
1. The Center of Internet Security, calls organizations
a. who hold sensitive data
b. regulated in some way
c. wish to reduce the damage from a cyber attack
An implementation group 3. IG3 organizations require more safeguards to prove appropriate and proportionate security
1a) Do you fit the criteria to be categorized as implementation group 3.?
1b) What is more important, stopping a breach or proving you have done all the correct and responsible things?
2. Are Digital Transformation and cyber resilience two sides of the same coin. Or is one more dominant than the other?
3. Are Cyber Security frameworks a model of accountability to manage risk and reward? Are there any better methods to prove due diligence in risk management?
4. How many tools, platforms,agents and technologies are used to gather an inventory of IT OT and IoT devices and then manage the risks from their behaviors. Is the answer too many or not enough?
5. Often, the best gauge of success in a digital transformation project or cyber resilience project is cultural alignment, when all parties agree. Have you faced any cultural challenges that have stopped or delayed a project?
6. Is digital transformation an agent provocateur?. Is it raising broader questions about how we manage principle risks?
7. Are we in an undeclared war?
8. What are the three most important metrics to report in cyber resilience?
9. All systems have inherent risks. How will the way we deal with them differ between IT and IoT?
10. Does transforming physical systems into a digital platform, increase the responsibility of the operator to prove capable and responsible risk management?
3:30 - 3:45 - DELEGATE PRESENTATION
Cyber Security Issues / Cyber Threats
Cyber risk is only increasing as the business landscape continues to evolve toward a model of more digital interaction. Digital business components such as cloud, mobile, social, big data, and IoT are all part of the new cyber risk landscape that CISOs must manage. Balancing how to protect the organization while keeping every aspect of the business effectively running is perhaps the key issue for CISOs today.
Learning Outcomes
- Understanding the evolving threat landscape
- Why its important to have a robust and flexible security approach
- Insights on how to manage threats
Speaker:
- Dr. Gunnar E. Siebert, Head of M&A Cyber DACH at Aon