
2018 Dallas Fraud & Breach Prevention Summit
Hear from industry leaders with specialties ranging from IoT and the emerging use of deception technology, to the ever-persistent and ongoing business email compromise trend, DDoS for extortion and ransomware attacks, 2018 promises to have more than enough for all of us to talk about and learn from each other. We have intentionally designed our sessions to address the needs of CISOs, fraud and risk teams, security and IT professionals, and many others by providing hands-on tools and real-world problems and solutions that attendees can take back to their offices.
Sessions from our Summit in Dallas, TX on April 24 - 25, 2018

Katie O'Shea
Cloud Security Specialist, Check Point
Katie O'Shea currently serves as Cloud Security Sales Specialist for Check Point Software Technologies, where she has served in different capacities since 2012. Prior to joining Check Point, she managed channel sales for key players in the cybersecurity solutions space.

Brett Johnson
Former Most Wanted and "The Original Internet Godfather"
Former United States Most Wanted, Brett Johnson, referred to by the United States Secret Service as "The Original Internet Godfather" has been a central figure in the cybercrime world for over 20 years. He built and was leader of ShadowCrew, the precursor to today's darknet markets. He was instrumental in developing many areas of online fraud while helping design, implement, and refine modern Identity Theft, Account Take Over Fraud, Card Not Present Fraud, IRS Tax Fraud, and countless other social engineering attacks, breaches, and hacking operations. Upon his capture, the United States Secret Service hired Johnson to work as a consultant and informant. Johnson worked with the Secret Service for several months before going on a cross country crime spree, being placed on the US Most Wanted List, being captured again, sent to prison, escaping prison, being captured yet again, and finally accepting responsibility for his actions. Today, Johnson works as a security consultant and public speaker. He is one of the world's foremost authorities on cybercrime and identity theft. During 2017, He has been featured in the book, "Kingpin" by Kevin Poulsen and on numerous media outlets, including the New York Times, NBC, CNN Money, Wired Magazine, Vice, RT TV, ArsTechnica, The Independent, and more.

Ronald Raether
Partner, Partner at Troutman Pepper
Ron Raether leads the Cybersecurity, Information Governance and Privacy practice and is a partner in the Consumer Financial Services practice group at Troutman Pepper. Ron is known as the interpreter between businesses and information technology, and has assisted companies in navigating federal and state privacy laws for over twenty years. Ron's understanding of technology led him to be involved in legal issues that cross normal law firm boundaries, including experience with data security, data privacy, patent, antitrust, and licensing and contracts. This experience allows Ron to bring a fresh and creative perspective to data compliance issues with the knowledge and historical perspective of an industry veteran.
Ron's involvement in seminal data compliance and data use cases has helped define current standards in several areas of the law. He assisted one of the first companies required to provide notice of a data breach and has since successfully defended companies in hundreds of class actions and regulatory investigations. Ron represents clients in a broad range of technology and data privacy matters including data aggregation and analytics, mobile applications, de-identification/anonymization, including correlating data from multiple connected devices, "connected-things (IoT)," electronic crash- and consumer-reporting systems, and payment technologies. Ron also advises on pre- and post-incident compliance concerns ranging from the development of incident response plans and workflows, guiding clients through immediate forensic investigations, coordinating initial crisis management, which includes navigating clients through the maze of state and federal notification requirements, addressing post-incident aftermath, and responding to regulatory inquiries. Balancing privacy, cyber security and business functionality, Ron's approach to data governance is uniquely designed with the industry in mind as it adapts to the ever-evolving technological and legal landscape.

Jon Phillips
VP Loss Prevention, Neiman Marcus Group
Jon Phillips is Neiman Marcus' VP of Loss Prevention, where he has served since 1989. He is responsible for overseeing all aspects of loss prevention for Neiman Marcus Group worldwide.

Shamoun Siddiqui
CISO, Neiman Marcus
Shamoun Siddiqui currently serves as CISO of Neiman Marcus. Prior to his current role, he was vice president and CISO at Nationstar Mortgage LLC. He holds bachelor's and master's degrees in mechanical engineering and a doctorate in aerospace engineering from the University of Texas at Austin. After a successful career in aerospace engineering, he switched to information technology and information security and has worked in these fields for 15 years. He formerly was director of IT at Hitachi Printing Solutions, manager for information security for CVS/Caremark, and director of information security at Sabre.

Jason Clark
Insider Threat Researcher, Carnegie Mellon University CERT Insider Threat Center
Clark is a researcher at the Software Engineering Institute, CERT, Carnegie Mellon University. His main area of interest is insider threat and cybersecurity. Clark has a bachelor of science from Syracuse University as well as two master's degrees in information technology and computer forensics from Rensselaer Polytechnic Institute and George Mason University respectively. He's in the doctoral program researching cybercrime at George Mason University and is expecting to graduate with his Ph.D in the Fall of 2014. He previously worked at the Census Bureau and the Institute for Defense Analyses.

Dan Mathews
Director of Sales Engineering, Lastline
Mathews, senior director of worldwide sales engineering at Lastline, has over 20 years' experience in design and implementation of networking and security solutions for large enterprises. Since 2006, he has consulted on information security strategy, tactical controls, regulatory compliance, governance frameworks and incident response planning. Previously, Mathews has served in various technical, marketing and advisory capacities at Edward Jones, CompuServe, UUNet, MCI, Verizon, Cybertrust, CompuCom and SecureWorks.

Matthew Maglieri
CISO, Ruby, parent company of Ashley Madison
Matthew Maglieri is the Chief Security Officer at Ruby, the parent company to several leading online dating brands including AshleyMadison.com. He is responsible for leading the architecture, development, and ongoing operation of Ruby's enterprise security program. Prior to joining Ruby, he served in a leading role developing Mandiant's Canadian practice and delivering a diverse range of strategic and technical consulting services including offensive red team operations, security operations center enhancement, and strategic transformation engagements.

Richard Murray
Supervisory Special Agent, FBI Dallas Cyber Task Force
Supervisory Special Agent (SSA) Richard Murray manages the FBI Dallas Cyber Task Force (CTF). The FBI Dallas CTF is responsible for investigating criminal and National Security computer intrusions in the greater Dallas-Fort Worth area and North Texas. SSA Murray has been an FBI Special Agent for 19 years and in his current position since August 2016. SSA Murray has more than a decade of experience working in the FBI's Cyber program in field offices and FBIHQ.

Ronald Raether
Partner, Partner at Troutman Pepper
Ron Raether leads the Cybersecurity, Information Governance and Privacy practice and is a partner in the Consumer Financial Services practice group at Troutman Pepper. Ron is known as the interpreter between businesses and information technology, and has assisted companies in navigating federal and state privacy laws for over twenty years. Ron's understanding of technology led him to be involved in legal issues that cross normal law firm boundaries, including experience with data security, data privacy, patent, antitrust, and licensing and contracts. This experience allows Ron to bring a fresh and creative perspective to data compliance issues with the knowledge and historical perspective of an industry veteran.
Ron's involvement in seminal data compliance and data use cases has helped define current standards in several areas of the law. He assisted one of the first companies required to provide notice of a data breach and has since successfully defended companies in hundreds of class actions and regulatory investigations. Ron represents clients in a broad range of technology and data privacy matters including data aggregation and analytics, mobile applications, de-identification/anonymization, including correlating data from multiple connected devices, "connected-things (IoT)," electronic crash- and consumer-reporting systems, and payment technologies. Ron also advises on pre- and post-incident compliance concerns ranging from the development of incident response plans and workflows, guiding clients through immediate forensic investigations, coordinating initial crisis management, which includes navigating clients through the maze of state and federal notification requirements, addressing post-incident aftermath, and responding to regulatory inquiries. Balancing privacy, cyber security and business functionality, Ron's approach to data governance is uniquely designed with the industry in mind as it adapts to the ever-evolving technological and legal landscape.

Asif Effendi
Director of Security, GE Oil & Gas - Digital
Asif Effendi currently serves as Director of Security for GE Oil & Gas, responsible for defining security standards on the digital IoT platform, designing and architecting the security for the shared and private cloud platforms as well as security governance across the information security spectrum. Prior to joining GE, Effendi was Director of Cybersecurity for CHRISTUS Health focused on security auditing and risk management. His cybersecurity experience includes his time at ExxonMobile, Citi, Pepsico, CVS and Deloitte and Touche.

Jay Johnson
Partner, Jones Day
Jay Johnson is a former federal prosecutor with 15 years of government and law firm experience in litigation, investigations, and regulatory compliance. Having previously tried a number of cases to juries in federal court, he represents companies facing complex litigation and advises on regulatory compliance measures, with an emphasis on data privacy, cybersecurity, intellectual property, and white collar issues. Johnson also co-founded the Firm's Global Privacy & Cybersecurity Update, a bi-monthly publication produced by a global 30-attorney team. Prior to joining Jones Day, Johnson was an Assistant U.S. Attorney in the Eastern District of Texas and the district-wide coordinator for computer hacking and intellectual property issues.

Shawn Tuma
Attorney, Spencer Fane LLP
Shawn Tuma is an attorney internationally recognized in cybersecurity, computer fraud and data privacy law, in which he has practiced for nearly two decades. In 2016, he was selected by the National Law Journal as a Cybersecurity Law Trailblazer and Texas SuperLawyers for the Top 100 Lawyers in DFW. He serves as General Counsel and Board Member for the Cyber Future Foundation, on the Policy Council for the National Technology Security Coalition, Cybersecurity Task Force for the Intelligent Transportation Society of America, Advisory Board of the University of North Texas Cyber Forensics Lab, and an Officer for the Computer & Technology Section of the State Bar of Texas, among many other activities.

Tara Brewer
Cyber Security Advisor Program, Office of Cybersecurity and Communications, US Department of Homeland Security
Tara Brewer currently serves as a cybersecurity analyst for the Stakeholder Engagement and Cyber Infrastructure Resilience (SECIR) Division of the Office of Cybersecurity and Communications' (CS&C) National Protection and Programs Directorate (NPPD). She supports the Cybersecurity Advisor (CSA) program and Department of Homeland Security (DHS) mission of strengthening the security and resilience of the nation's critical infrastructure. Under SECIR, Brewer supports the production of methodologies & the development of various tools used by the CSA program to measure and strengthen the cybersecurity management capabilities of critical infrastructure organizations across the Nation. Within DHS, Brewer has also supported Cybersecurity Education, Awareness, and Workforce Development (CE&A), sustaining the National Initiative for Cybersecurity Careers and Studies (NICCS). During this time she collaborated with DOD & The National Institute of Standards and Technology, promoting NIST Cybersecurity Framework. Prior to joining DHS, Brewer supported the United States Air Force 333rd Squadron, Cyber Defense School, where she focused on digital forensics confirming digital security & data integrity.

Ian Schneller
SVP, Global Information Security, Bank of America
Ian Schneller currently serves as Senior Vice President of Global Information Security for Bank of America. Prior to joining Bank of America, he served as the Executive Director of Global Cyber Partnerships and Government Strategy at JPMorgan Chase where he led global cyber strategies to uplift cyber threat intelligence, cyber operations and sector crisis response capabilities. Schneller also served 24 years in the Department of Defense, including having led a multi-billion dollar mission charged with developing and operating advanced cyber capabilities for the Undersecretary of Defense, the DoD Chief Information Officer, and the Secretary of the Air Force.

Brian Engle
Founder and CEO, Riskceptional Strategies
Brian Engle is the Founder and CEO of Riskceptional Strategies, focused on enabling the development of successful strategies for risk-based cybersecurity programs. In addition to consulting independently, Engle is also currently teamed up with CyberDefenses, a cybersecurity service provider of Fractional CISO services with strategic advisory services, information security program assessment, and cybersecurity program maturity evolution. Prior to founding Riskceptional, he was the Executive Director of the Retail Cyber Intelligence Sharing Center (R-CISC), the nonprofit organization established to support the retail and commercial services industries as the Information Sharing and Analysis Center for the retail industry, providing leadership of the organization from its inception to a sustained successful organization enabling cybersecurity threat sharing. His earlier experience includes serving as CISO and Cybersecurity Coordinator for the State of Texas, CISO for Texas Health and Human Services Commission, CISO for Temple-Inland, Manager of Information Security Assurance for Guaranty Bank, and Senior Information Security Analyst for Silicon Laboratories.

Parrish Gunnels
CISO, Kibo Commerce
Parrish Gunnels currently serves as the CISO for Kibo Commerce, a Vista Equity Partners company. Prior to this position, He was a Global IT Information Security Officer and Infrastructure Manager at Celanese Corporation, a $6.4B global technology and specialty materials company that engineers and manufactures a wide variety of products essential to everyday living. Parrish also held a role as a CISO / Sr. Director of Information Security for Invitation Homes, a Blackstone company.

Brian Wrozek
Managing Executive Director, Office of the CISO, Optiv
Brian Wrozek is a managing executive director, executive advisory in the Office of the CISO at Optiv. In this role, he works closely with security executives to provide C-Suite advisory services to define cyber strategy, roadmaps and solutions to meet clients' security objectives. Wrozek is the former chief security officer (CSO) for Alliance Data where he had enterprise responsibility for information security and physical security. Prior to Alliance Data, he was the IT security and privacy director at Texas Instruments where he managed all facets of electronic data and system security worldwide.

Jim Apger
Sr Security Architect, Splunk
Apger, a 20-year veteran of the tech industry is a member of the Global Security Specialists team at Splunk. His digital hardware and software background paved a path for him to spend nearly 10 years as an innovator in the network intrusion prevention space. Before joining Splunk as a security architect in 2014, Apger worked in the fields of web fraud detection, anti-money laundering, security information/event management, security operations and cyber threat intelligence.

Mark Loveless
Senior Security Researcher, Duo
Loveless, also known as Simple Nomad, has been involved in the hacker and security community for several decades. He has spoken at numerous hacker and security conferences worldwide, including Blackhat, DefCon, RSA, ShmooCon and DerbyCon. He has been interviewed by CNN, the New York Times, the Washington Post, Wired and others. As a security researcher for Duo Security, he explores IoT, network infrastructure, mobile security and other topics.

Mike Boose
Channel/Partner Sales Engineer, Arbor Networks
Mike Boose currently serves as a Channel Sales Engineer, supporting Arbor Networks' Central and Southeast regions. Having served in similar positions across a number top security organizations, Boose is able to draw from his years of experience to devise custom security solutions for any scenario.

David Houlding
Principal Healthcare Program Manager, Microsoft
David Houlding currently serves as the Principal Healthcare Lead on the Microsoft Azure Industry Experiences Team. He currently serves as Chair of the HIMSS Blockchain in Healthcare Task Force, a group of ~100 leaders from across healthcare worldwide, collaborating to advance blockchain in healthcare. Houlding also currently serves as an advisor to both the British Blockchain Association and Lifeboat Foundation. He has led the successful creation and deployment of a wide range of solutions to help reduce the cost of healthcare, improve patient outcomes, experiences, and engagement. Prior to joining Microsoft in 2018 Houlding served for over 10 years at Intel Health & Life Sciences where he was the Director of Healthcare Privacy & Security, responsible for enabling healthcare organizations worldwide to achieve compliance with regulations and data protection laws, and implement effective privacy and security programs. In his current role at Microsoft, Houlding works with key partners and industry influencers to enable healthcare organizations make use of cloud computing and related technologies to reduce healthcare costs, and enable new transformative healthcare use cases to improve patient outcomes, leveraging strategic technologies such as such as AI / ML, blockchain, IoMT (Internet of Medical Things), and others. Houlding has a proven track record for innovation with 5 patents granted by the USPTO.
Session Contributors
Insider Threat Researcher, Carnegie Mellon University CERT Insider Threat Center
Read BioCyber Security Advisor Program, Office of Cybersecurity and Communications, US Department of Homeland Security
Read Bio