Agenda By Day


April 2, 2009
08:00-09:00 Registration & Refreshments In The Technology Showcase
09:00-09:15 Welcome/Opening Remarks
Simon Yates, Forrester, Speaker
09:15-10:00 State Of Information Security In 2009
Khalid Kark, Forrester, Speaker

The security organization is finally starting to get the visibility that it had been asking for, but now it doesn't know how to deal with it. Many chief information security officers understand that they need to align themselves with the business and provide strategic advice, but they don't know how. The results from Forrester's Enterprise And SMB Security Survey, North America And Europe, Q3 2007 highlight some of these issues, challenges, and priorities for CISOs. This survey covers:
- Top issues, challenges, and priorities for CISOs in 2008
- The changing responsibilities of the security organization
- Progress businesses have made in aligning security with other parts of IT and the business

10:00-10:45 Industry Keynote
Daniel Barriuso, Credit Suisse, Speaker
10:45-11:15 Morning Break In The Technology Showcase
11:15-11:55 Platinum Keynote
Raimund Genes, Trend Micro, Speaker
  • How has the Threat Landscape changed?
  • Who and what do we need to protect against?
  • What new approaches are there to combat organised cybercrime?
  • How could a cloud client architecture be the answer?
11:55-12:45 Industry Keynote
Paul Dorey, BP, Speaker
12:45-14:15 Lunch
14:15-15:00 Track Session

Track A: Security Technology & Architecture Best Practices
Identity and Access Management: Metrics That Sell
Andras Cser, Principal Analyst, Forrester

Track B: The Role Of The Security Professional In Turbulent Times
Protecting Your Company's Future With BC/DR Preparedness
Stephanie Balaouras, Vice President, Research Director, Forrester
15:00-15:10 Changeover Break
15:10-15:40 Guest Executives
Andrew Heather, Tripwire, Speaker
Presentation Title: Controlling Virtualisation Security Risks

Synopsis: The need for increased computing agility, coupled with the increasing cost and complexity of IT systems, have driven the rapid adoption of virtualisation technologies. While virtualisation has operational and economic rewards, the reality is that when information security controls are improperly implemented or neglected in virtualised environments, real security risks and exposures can be created faster than ever. The good news is that information security can take some practical steps right away to limit operational and security risks.

Session highlights will include:

  • Practical steps to take to implement effective security controls across virtual and physical infrastructures
  • How to "bake security in" from conception or incorporate security now if virtual machines are already operating
  • How to use tools to address security issues, including the freely available Tripwire ConfigCheck
15:10-15:40 Guest Executives
Tom Roelofs, ABN AMRO, Speaker
Presentation Title: Security Management in Turbulent Times

Synopsis: ABN AMRO Bank has gone through extremely turbulent times. The presentation focuses on the impact of the organisational changes on security management and the key issues for the information security department. The actions to keep security management effective are discussed.

Session highlights will include:

  • An insight into consequences of the financial crisis on the financial sector.
  • Impact of organisational changes on security management and the key challenges.
  • Practical actions to implement effective Security Management during turbulent times.
15:40-16:10 Afternoon Break In The Technology Showcase
16:10-16:55 Track Session

Track A: Security Technology & Architecture Best Practices
Confessions Of A QSA: The Inside Story Of PCI Compliance
John Kindervag, Principal Analyst, Forrester

Track B: The Role Of The Security Professional In Turbulent Times
Data-Centric Endpoint Security
Natalie Lambert, Analyst, Forrester
16:55-17:05 Changeover Break
17:05-17:50 Industry Keynote
Simon Riggs, Reuters, Speaker
17:50-18:00 Closing Remarks
Simon Yates, Forrester, Speaker
18:00-19:30 Drinks Reception In The Technology Showcase

April 3, 2009
08:30-09:00 Registration & Refreshments In The Technology Showcase
09:00-09:10 Opening Remarks
Simon Yates, Forrester, Speaker
09:10-09:55 Using Proven Security Metrics In Uncertain Times
Andrew Jaquith, Forrester, Speaker

Exactly how do you establish effective metrics based on your organization¿s unique requirements? You¿ll discover how to quantify hard-to-measure security activities, compile and analyze all relevant data, identify strengths and weaknesses, set cost-effective priorities for improvement, and craft compelling messages for senior management. This session bridges management¿s quantitative viewpoint with the nuts-and-bolts approach typically taken by security professionals. You'll learn how to:
- Replace nonstop crisis response with a systematic approach to security improvement
- Understand the differences between "good" and "bad" metrics
- Measure coverage and control, vulnerability management, password quality, patch latency, benchmark scoring, and business-adjusted risk
- Quantify the effectiveness of security acquisition, implementation, and other program activities
- Implement balanced scorecards that present compact, holistic views of organizational security effectiveness

09:55-10:40 Industry Keynote
Manfred Schreck, Novartis, Speaker
10:40-11:15 Morning Break In The Technology Showcase
11:15-12:00 Industry Keynote
Jussi Jaakonaho, Nokia, Speaker
12:00-13:30 Lunch
13:30-14:15 Track Session

Track A: Security Technology & Architecture Best Practices
Planning Your Enterprise Security Strategy In The Internet World
Chenxi Wang, Ph.D., Vice President, Principal Analyst, Forrester

Track B: The Role Of The Security Professional In Turbulent Times
Demonstrating Business Value With GRC Technologies
Chris McClean, Senior Analyst, Forrester
14:15-14:20 Changeover Break
14:20-15:05 Track Session

Track A: Security Technology & Architecture Best Practices
Securing The Doors To Your IT Environment: Implementing Enterprise Strong Authentication
Bill Nagel, Researcher, Forrester Research

Track B: The Role Of The Security Professional In Turbulent Times
Protecting Critical Data From Abuse, Theft, And Corruption
Andrew Jaquith, Analyst, Forrester
15:05-15:15 Closing Remarks
Simon Yates, Forrester, Speaker