Skip to content

UPCOMING EVENTS


Enterprise Risk / Security Management: Chicago (Rosemont/O’Hare), Illinois

Strategies for reducing risk to the enterprise.

May 28, 2025

9:00am-5:00pm

7 CPE / 0.7 CEU / CISSP / 7 PDU Credits Awarded

Conference location: Donald E. Stephens Convention Center Rosemont (O’Hare) Illinois

  


Overview

In today’s highly regulatory environment it is essential that you have a clear understanding of risk across the enterprise. A risk management framework can bring visibility to key business and compliance risks and enable a company to make decisions on where to prioritize its limited resources. It is through a risk management framework that real value to the business can be achieved.

With all of these challenges, how do you make this happen?

In this one day conference, attendees will be provided with examples of approaches to managing information and compliance risk through a risk management framework.


What You Will Learn

In this one day conference attendees will learn:

  • Critical Thinking and Threat Modeling
  • IT/Cybersecurity is a Journey, not a Destination – Recipes for Success
  • Surviving in a World of Financial Constraints and Rising Risks
  • AI & Security – Managing Risk in the Age of Autonomous Decision-Making
  • Zero Trust Segmentation – It’s Easier Than You Think
  • CISO Panel – Enterprise Security Leadership in a World of Continuous Disruption
  • CISO Panel – Measuring and Communicating Cyber Risk to the Board

Conference Price: $349.00 per person

Each attendee will receive a certificate awarding 7 CPE credits for CISSP continuing education, in addition to 0.7 CEUs and 7 PDUs. CISSP is a registered certification mark of (ISC)², Inc.

Exhibits

As is always the case at CAMP IT Conferences events, the talks will not include product presentations. During the continental breakfast, coffee breaks, and the luncheon break you will have the opportunity to informally meet representatives from the following sponsoring companies, who have solutions in the area of the conference.


CONFERENCE AGENDA

9:00am – 9:50am: Critical Thinking and Threat Modeling

Derek Milroy, Security Architect, Arthur J. Gallagher

This talk will cover two topics. First it will address how to think critically and eliminate BIAS etc. from your thinking, so you see a given situation more thoroughly. The second part will focus on Threat Modeling. Knowing how attacks are likely to occur against your environment will enable you to make better informed decisions as to the likelihood and potential impacts of a given risk.


9:50am – 10:20am: Refreshment Break and Exhibit Break


10:20am – 11:10am: IT/Cybersecurity is a Journey, not a Destination – Recipes for Success

Michael Robbins – Principal Advisory – Kudelski Security – PMP, QTE and CCSK

Why do some IT/Cybersecurity programs flourish while others stumble?  The difference lies in a relentless growth mindset!  Successful leaders push for 1% improvement every day, transforming their teams into powerful forces.  Get ready for the speaker to spice things up with sizzling examples from his competitive BBQ team, translating the journey of IT/cybersecurity excellence into a mouth-watering and engaging adventure.  Discover how a structured and repeatable process can be the savory recipe for success, using individuals and teams as the ingredients to help organizations to thrive in the ever-evolving world of IT and cybersecurity.


11:10am – 12:00pm: Surviving in a World of Financial Constraints and Rising Risks

Randy Herold, Chief Information Security and Chief Privacy Officer, ManpowerGroup

In a world shaped by tightening financial constraints and escalating cyber threats, the role of the Chief Information Security Officer (CISO) has never been more vital. Organizations must navigate limited budgets while defending against increasingly sophisticated attacks, making the CISO a key figure in aligning security priorities with business objectives. Their leadership is essential to safeguarding critical assets, maintaining compliance, and fostering a culture of security amid rising global uncertainty. During this interactive session you’ll identify ways to evolve your role as a business leader (not a security professional).

Topics Include:

  • Techniques for communicating with CEOs and CFOs
  • Hacks for finding mentors, developing your network and self-advocating
  • The metrics of champions


12:00pm – 12:40pm: Lunch and Exhibit Break


12:40pm – 1:30pm: AI & Security – Managing Risk in the Age of Autonomous Decision-Making

The rise of generative AI and autonomous systems has introduced new dimensions of enterprise risk—from prompt injection and data leakage to model hallucinations and ethical misuse. This session dives into practical strategies to govern AI usage securely, monitor model behavior, and build trust into AI-driven workflows without stifling innovation.


1:30pm – 2:20pm: Zero Trust Segmentation – It’s Easier Than You Think

Tim Connolly, Sr Systems Engineer, Illumio

A core principle of Zero Trust is to treat every network entity as potentially untrusted, necessitating the segmentation of the network into smaller, isolated segments. This segmentation helps to limit the impact of breaches by preventing lateral movement within the network.  We will discuss strategies to quickly implement Micro- segmentation to reduce risk, reduce ransomware propagation, and to limit the impact of breaches.


2:20pm – 2:50pm: Refreshment and Exhibit Break


2:50pm – 3:20pm: Building a Bulletproof Data Security Strategy: Principles, Pitfalls & Practical Steps

In today’s hybrid and multi-cloud environments, safeguarding sensitive data is more complex—and more critical—than ever. This session breaks down the core components of a robust data security strategy that aligns with business goals, regulatory requirements, and evolving threat landscapes. Learn how to balance prevention and detection, apply data classification, integrate security by design, and make smart technology investments. Whether you’re building a new program or maturing an existing one, this session offers practical guidance to help you secure what matters most—your data.


3:20pm – 4:10pm: CISO Panel – Enterprise Security Leadership in a World of Continuous Disruption

Panelists will include CISOs/Information Security Executives sharing experiences and lessons learned.

Today’s CISOs are more than security technologists—they’re business enablers. This panel will explore how security leaders are redefining risk priorities, communicating with boards, aligning with business strategy, and responding to a constantly shifting threat landscape. Hear firsthand how enterprise security executives are managing cloud transformation, regulatory changes, and workforce risks.

Moderated by:  TBD

Panelists will include:

  • Ryan Blackwell, SVP, IT Operations, Cloud and Cybersecurity, GAVS\GSLabs
  • Johnny Burton, VP of IT & Security Officer, The Family Institute at Northwestern University
  • Lori Kevin, VP Enterprise IT & Security, IMO Health
  • Ron Zochalski, CTO & CISO, Lake County Government – Indiana
  • Additional IT Enterprise and Information Security Executives sharing strategies, tactics and lessons learned.

    

  Blackwell                        Burton                        Kevin                     Zochalski


 

4:10pm – 5:00pm: CISO Panel – Measuring and Communicating Cyber Risk to the Board

Panelists will include CISOs/Information Security Executives sharing experiences and lessons learned

Security leaders are increasingly expected to speak the language of risk and ROI. In this panel, top CISOs will discuss how they’ve built risk quantification programs, framed threats in business terms, and used metrics to drive executive support. Gain insight into the tools and approaches used to make cyber risk relevant to board-level strategy.

Moderated by:  TBD

Panelists will include:

  • Fred Kwong, Ph.D., Vice President, Chief Information Security, DeVry University
  • Brian Palmer, Director of IT Security & Infrastructure, Ventas, Inc.
  • Todd Nugent, Interim CIO, Lewis Brisbois Bisgaard & Smith LLP
  • Safi Raza,
  • Neema Wasira-Johnson, Executive Director, Governance, Risk & Compliance, Insurance Organization
  • Additional IT Enterprise and Information Security Executives sharing strategies, tactics and lessons learned.

Kwong                            Nugent                      Palmer                  Raza                            Wasira-Johnson


CONFERENCE SPONSORS