Abstract
Malicious hackers and their malware creations are rampant on the Internet. Ransomware is taking down companies, hospitals, and even entire cities at will. Hundreds of millions of dollars are stolen, and millions of people's accounts are stolen every day. A large portion of the Internet is just hacker traffic, phishing, and their malware programs. However, most people are unaware that we can significantly reduce Internet crime, making it nearly impossible for hackers and their malware creations to be successful. There is a way to make a far safer Internet for you, your children, your grandchildren, and your grandparents. We have most of the needed technology, we just need to make it more pervasive.
Roger A. Grimes, CPA, CISSP, CEH, MCSE, CISA, CISM, CNE, yada, yada, Data-Driven Defense Evangelist for KnowBe4, Inc., is the author of 15 books and over 1500 articles on computer security, specializing in host security and preventing hacker and malware attacks. Roger is a frequent speaker at national computer security conferences and was the weekly security columnist at InfoWorld and CSO magazines between 2005 - 2019. He has worked at some of the world’s largest computer security companies, including, Foundstone, McAfee, and Microsoft. Roger is frequently interviewed and quoted in the media including Newsweek, CNN, NPR, and WSJ. His presentations are fast-paced and filled with useful facts and recommendations.
Traditional cyber risk assessments often provide limited value. They rely on subjective ratings, compliance checklists, and infrequent evaluations that fail to drive actionable security improvements. This session introduces a modern approach to make risk assessments more timely, relevant, and actionable by increasing assessment frequency, focusing on real-world threats, and building a continuous feedback loop to validate control effectiveness.
About the Speakers
Irina Loktionova is a seasoned Senior Cyber Risk Management Architect at Delta Dental of California with over a decade of experience in incident response, threat intelligence, and proactive threat hunting. Leading 24/7 cybersecurity operations, Irina specializes in leveraging the MITRE ATT&CK framework for continuous security improvement, developing sophisticated detection methods, and conducting digital forensic investigations. Certified by HarvardX in Cybersecurity Risk Management and as a Proofpoint Certified Email Authentication Specialist, Irina is dedicated to enhancing organizational resilience by integrating cutting-edge detection capabilities with real-world threat scenarios.
Chris Oshaben is a Senior Security Auditor at Delta Dental of California, specializing in cybersecurity risk management, internal controls, and compliance assurance. With extensive experience auditing security programs against frameworks such as NIST CSF, SOC 2, ISO 27001, HIPAA, PCI DSS, 23 NYCRR 500, and CIS CSC, Chris partners closely with organizational stakeholders to identify critical risks, enhance security maturity, and validate effective controls. He is adept at translating complex technical risks into clear, actionable insights that drive strategic decision-making. Chris holds professional certifications including CISA, CRISC, CISM, CCSK, and CDPSE, reflecting his deep commitment to cybersecurity excellence, risk-informed decision making, and continuous security improvement.