
This Event Was a Success! For Upcoming Events, Click Here.
Learning Opportunities | Networking & Community | Exciting Keynotes | Digital Expo Hall | On-Demand Sessions
AEHIS Healthcare Security Track
InfoSec World 2021 DIGITAL included an AEHIS Healthcare Security Track on Day 2 to include a number of healthcare security thought leaders brought to you by AEHIS. See information on LIVE sessions and speakers below.
Opening Session Title: Fireside Chat with Robert Herjavec – An Entrepreneurial Mindset for Cybersecurity Success Today… & Tomorrow | Wednesday, November 10, 2021, 10:00 AM – 11:00 AM
Speakers: Robert Herjavec, Parham Eftekhari
Description: Robert Herjavec has seen the cybersecurity community experience massive change over the past decade, growing rapidly and facing increasingly sophisticated attacks. Innovation and an entrepreneurial spirit is critical for cybersecurity leaders to be successful and for practitioners to defend their organizations. Join us for this intimate fireside chat with Robert and CyberRisk Alliance’s own Parham Eftekhari to learn about critical success factors for today’s cyber professionals, future trends, and of course plenty of behind-the-scenes stories from Robert’s experience on the Emmy Award winning show Shark Tank.
Session Title: How Secure Is Enough? Protecting Patients From Themselves. | Wednesday, November 10, 2021, 10:50 AM – 11:40 AM ET
Session Title: AEHIS Exclusive – Live! Advancing Your Connected Asset Cybersecurity Risk Program | Wednesday, November 10, 2021, 12:10 PM – 1:00 PM
Session Title: AEHIS Exclusive – Live! Cybersecurity Policy Pulse Check | Wednesday, November 10, 2021, 1:30 PM – 2:20 PM ET
Speakers: Mari Savickis, Rahul Gaitonde, Kevin Fu
Description: Join leaders on the front lines as we delve into the latest pressing issues in policy and advocacy. We’ll cover all the hot-button, must-know news you need on crucial policy action necessary for 2022. Look behind the scenes at Congress and the Biden Administration as we explore their current priorities and how stakeholders can influence them. Catch the latest new developments in policy incentives and penalties. Get the inside perspective on imminent challenges and opportunities as we advocate in DC for the crucial need for better cybersecurity in healthcare.
Session Title: AEHIS Exclusive – Live! Why is Healthcare So Bad at Cybersecurity? | Wednesday, November 10, 2021, 2:20 PM – 3:30 PM
Speaker: Christian Dameff, Will Long, David Finn
Description: Healthcare organizations are particularly vulnerable to and increasingly targeted by cyberattacks. These persistent and evolving threats put patient safety and care delivery at great risk, but it’s too costly, too disruptive to care delivery, and arguably impossible to eliminate every possible cyber risk. So, what is a healthcare organization to do? Noted physician, hacker and healthcare cybersecurity researcher, Dr. Christian Dameff, takes us on a journey that examines the challenging intersection of healthcare, patient safety, and cybersecurity, and offers a compelling vision for the future, one that balances a patient safety-focused culture with a complementary culture of cybersecurity resilience.
AEHIS Security Track Speakers
A dynamic entrepreneur, Robert Herjavec has built and sold several IT companies. In 2003 Robert founded Herjavec Group, and it quickly became one of North America’s fastest growing technology companies. Today, Herjavec Group is a global leader in information security, operating across the United States, United Kingdom and Canada; specializing in managed security services, advisory services, identity and incident response for enterprise level organizations. Robert’s ability to interpret industry trends and understand enterprise business security demands has helped him achieve the profile of a global cybersecurity expert. He has served as a Cybersecurity Advisor for the Government of Canada, participated in the White House Summit on Cybersecurity and is a member of the US Chamber of Commerce Task Force for Cybersecurity. His views on the threat landscape, on emerging technologies and on the need for a proactive security framework are regularly profiled across print, digital and television mediums. He shares his expertise with other entrepreneurs each week as a leading Shark on ABC’s Emmy Award-winning hit show Shark Tank.
Edward Marx serves as the Chief Digital Officer for Tech Mahindra Health and Life Sciences. As CDO, he oversees digital strategy and execution for providers, payors, pharma and bio-tech. Edward is active on Boards, writing books and speaks globally as a Partner in Marx & Marx LLC. Edward was Chief Information Officer at Cleveland Clinic, an $11B health system with facilities in Florida, Nevada, Toronto, Abu Dhabi and London. His responsibilities included digital solutions and information technology. Prior to joining Cleveland Clinic, Edward served as CIO for The Advisory Board/NYC Health & Hospitals, Texas Health Resources and University Hospitals. Concurrent with his healthcare career, he served 15 years in the Army Reserve as a combat medic and combat engineer officer. Edward is a Fellow of the College of Healthcare Information Management Executives and Healthcare Information and Management Systems Society. He has won numerous awards, including HIMSS/CHIME 2013 CIO of the Year, and has been recognized by CIO and Computer World as one of the “Top 100 Leaders.” Becker’s named Marx as the 2015 “Top Healthcare IT Executive” and the 2016 “17 Most Influential People in Healthcare.” Edward is the author of 5 books including the 2019 healthcare bestseller “Voices of Innovation” and the 2020 bestseller “Healthcare Digital Transformation; How Consumerism, Technology and Pandemic are Accelerating the Future”. Ed is currently writing a book on “Patient Experience” from the perspectives of a cancer and heart attack survivor. Edward received his Bachelor of Science in psychology and a Master of Science in design, merchandising, and consumer sciences from Colorado State University. Edward is married to Simran and they have five children and four grandchildren. Both wellness fanatics, they love to exercise together and hike throughout the world. They co-wrote a book on passion in marriage to be released in 2022. Edward is a 7-year member of TeamUSA Triathlon and represents his country at championship events around the world.
Dr. Christian Dameff is an assistant professor of Emergency Medicine, Biomedical Informatics, and Computer Science (affiliate) at the University of California San Diego. At UCSD Health he was hired as the nation’s first Medical Director of Cyber Security. Published clinical works include post cardiac arrest care including therapeutic hypothermia, novel drug targets for acute myocardial infarction patients, ventricular fibrillation waveform analysis, cardiopulmonary resuscitation (CPR) quality and optimization, dispatch assisted CPR, teletoxicology, clinical applications of wearables, and electronic health records. Dr. Dameff is also a hacker and security researcher interested in the intersection of healthcare, patient safety, and cybersecurity. He has spoken at some of the world’s most prominent Cyber Security forums including DEFCON, RSA, Blackhat, Derbycon, BSides, and is one of the cofounders of the CyberMed Summit, a novel multidisciplinary conference with emphasis on medical device and infrastructure cybersecurity. Published cybersecurity topics include hacking 911 systems, HL7 messaging vulnerabilities, and malware.
A passionate digital health and technology policy expert, Mari draws from more than twenty years of experience working both within and outside the federal government. A long-time advocate for leveraging technology smartly, she champions policies that improve the clinical experience for providers and patients alike, and which promotes innovation and competition. In her position as Vice President of Public Policy with the College of Healthcare Information Management Executives (CHIME) she serves as the voice in Washington, DC for chief information officers (CIOs), chief security officers, and other c-suite executives charged with the purchase and secure deployment of healthcare technology. Mari oversees all advocacy and interaction with federal agencies, the White House, and Congress on behalf of CHIME. Her policy expertise spans numerous federal laws including the Health Insurance Portability and Accountability Act (HIPAA), the Health Information Technology for Economic and Clinical Health (HITECH) Act, the Medicare Access and CHIP Reauthorization Act (MACRA), the 21st Century Cures Act, and the Substance Use-Disorder Prevention that Promotes Opioid Recovery and Treatment (SUPPORT) Act. Mari is also a Medicare subject matter expert. Prior to joining CHIME in 2015, she served as Assistant Director of Federal Affairs at the American Medical Association (AMA) for nearly a decade leading their health IT and HIPAA advocacy. She formerly served in the Centers for Medicare & Medicaid Services (CMS) and the Office of the National Coordinator for Health IT (ONC). Mari initially entered the federal government after being selected for the highly competitive Presidential Management Fellows (PMF) program. Mari graduated from the University of Delaware with a Master’s in Public Administration and dual bachelor’s degrees in political science and Spanish from Ohio Wesleyan University.
Mari leads a wide swath of health IT policy priorities including those touching interoperability, cybersecurity, privacy, patient safety, telehealth, connected care, and next generation technologies including machine learning and 5G. She has adeptly led several coalitions, and she thrives working with a variety of stakeholders.
Rahul Gaitonde is the Acting Branch Chief for the Health Sector Cybersecurity Coordination Center (HC3), a U.S. Department of Health and Human Services (HHS) group working to improve cybersecurity in the healthcare and public health sector through information sharing and coordination. Prior to joining HHS, Mr. Gaitonde was in government consulting supporting the Departments of Health and Human Services and Homeland Security. Most recently he specialized in Telecommunications, Cloud Security, Risk Management and Cybersecurity issues. Originally from New Jersey, Mr. Gaitonde graduated from Temple University with a Bachelor of Arts in Political Science, and Bachelor of Arts in History, he went on to receive Masters of Public Policy with a focus in technology and telecommunications from George Mason University.
Kevin Fu is Associate Professor of EECS at the University of Michigan where he directs the Security and Privacy Research Group (SPQR.eecs.umich.edu) and the Archimedes Center for Medical Device Security (secure-medicine.org). His research focuses on analog cybersecurity—how to model and defend against threats to the physics of computation and sensing. His embedded security research interests span from the physics of cybersecurity through the operating system to human factors. Past research projects include MEMS sensor security, pacemaker/defibrillator security, cryptographic file systems, web authentication, RFID security and privacy, wirelessly powered sensors, medical device safety, and public policy for information security & privacy. Kevin was recognized as an IEEE Fellow, Sloan Research Fellow, MIT Technology Review TR35 Innovator of the Year, and recipient of a Fed100 Award and NSF CAREER Award. He received best paper awards from USENIX Security, IEEE S&P, and ACM SIGCOMM. His work on pacemaker security received an inaugural Test of Time Award from IEEE Security and Privacy. He co-founded healthcare cybersecurity startup Virta Labs. Kevin has testified in the House and Senate on matters of information security and has written commissioned work on trustworthy medical device software for the National Academy of Medicine. He is a member the Computing Community Consortium Council, ACM Committee on Computers and Public Policy, and the USENIX Security Steering Committee. He advised the American Hospital Association and Heart Rhythm Society on matters of healthcare cybersecurity. Kevin previously served as program chair of USENIX Security, a member of the NIST Information Security and Privacy Advisory Board, a visiting scientist at the Food & Drug Administration, and an advisor for Samsung’s Strategy and Innovation Center. Kevin received his B.S., M.Eng., and Ph.D. from MIT. He earned a certificate of artisanal bread making from the French Culinary Institute and is an intermediate level salsa dancer.
David Finn’s 30+ years in risk management and control objectives of technology (including audit, security, and privacy) equip him with a deep knowledge of healthcare from both the provider and vendor perspectives. He has demonstrated leadership skills in planning, management, and control of enterprise-wide, mission-critical information technology and business processes as a member of executive leadership teams at various organizations. He has a special knack for creatively engaging all types of audiences and conveying messages that even change-resistant users listen to and remember. He is focused on creating and maintaining trust in and value from information and information systems. Finn holds a BA degree from the University of North Dakota and a MA from Angelo State University. He currently serves on the CHIME Board of Trustees. During 2014, he worked closely with CHIME management to create and initiate the Association for Executives in Healthcare Information Security (AEHIS). In March 2016, Finn was named to the Health Care Industry Cybersecurity Task Force. This HHS task force was a requirement of Cybersecurity Information Sharing Act of 2015 (CISA). In 2017, Finn joined the 405(d) Working Group under the auspices of the Office of the CIO at HHS. He currently serves as VP at CHIME, responsible for providing programs, services and educational opportunities focused on the professional growth and development of leaders within the healthcare security, technology, and application focus areas, including their respective corporate foundations. Previously he served as EVP at CynergisTek, a top-ranked security provider in healthcare; HIT Officer, Symantec; Vice President and CIO/Privacy and Information Security Officer, Texas Children’s Hospital, and Integrated Delivery System; Executive Vice President, Healthlink (formerly IMG). His Board experience, in addition to both CHIME and HIMSS, also includes ISACA Professional Influence and Advocacy Committee member; Healthcare for the Homeless – – Houston; and the Patient Care Intervention Center.
Will Long is a Cybersecurity and Technology Leader who builds people, processes, and systems that enable organizations to identify and manage Will excels at translating highly technical information and intelligence into actionable recommendations for Boards of Directors, executive teams, As VP & Chief Information Security Officer (CISO) for Children’s Health, Will directed the development of information security policies, cyber incident response, security operations, risk assurance, and other security functions, and monitored for new and emerging threats. He maintained compliance with HIPAA, NIST and HITRUST certification. He also directed the efforts to secure connected medical devices used across hospital operations. Prior to Children’s Health, Long was VP of Technology and Infrastructure at Baylor Scott & White Health, where he created a more efficient and cost-effective organization, implementing standardized processes and merging infrastructure, biomed engineering, and imaging support from two healthcare In prior roles, Long held security and technology leadership positions where he developed security functions from the ground up. Long holds a Bachelor of Science in Electronic Engineering Technology and a Master of Science in Information Systems Management. Long also holds CHISL, CISSP, and CPHIMS certifications. Long founded and leads the North Texas Healthcare CISO Leadership Summit. In addition, he serves as Board Chair of AEHIS, an international consortium for healthcare information security leaders with more than 850 members. Long has been recognized nationally for his accomplishments, including CHIME Innovator of the Year, 2020; Tech Titians, 2018 Technology Advocate Award finalist; Dallas CEO/Dallas 500 Most Powerful Leaders in Dallas-Forth Worth, 2018 and 2019; and D-CEO 2018 – CIO/CTO Innovator of the Year finalist.
risk. He is recognized for establishing innovative, industry-leading programs that mitigate financial and reputational risk, cybersecurity
postures that accelerate threat identification, and the integration of risk management into the organizational structure.
and physicians.
systems. He also oversaw a massive technology infrastructure upgrade to address issues implementing electronic health records (EHR) and adopted cloud and mobile infrastructure to change the way patients and employees interact with the healthcare system.
Carter is the CEO of First Health Advisory (First). First provides asset risk and efficiency solutions to hospitals, clinics, and Federal healthcare entities. Carter has spent 23 years in healthcare technology and security, serving in provider, vendor, and consultative leadership roles. Carter lives in Washington DC and is active in following regulatory and administrative policy as it relates to healthcare, medical device, IoT, and general cybersecurity measures that may impact the organizations his team advises.
Matt is accountable for enterprise-wide IT strategy, operations and cybersecurity. He also oversees the Bear Institute for Pediatric Health Innovation. This first-of-its-kind collaboration with Cerner Corporation, focused on utilizing innovation in electronic health information technology to advance evidence-based pediatric care, research, and education. In 2020, Matt was recognized as the Transformational Leader of the Year by the College of Healthcare Information Management Executives (CHIME) and American Hospital Association (AHA). The award honors the synergy between a CIO and CEO of an organization that has excelled in developing and deploying transformational information technology in a rapid timeframe with measurable business value. Since joining Children’s National Hospital in 2016, Matt has led efforts to establish new frameworks for strategic technology planning, operations improvement, and cybersecurity risk management. Matt developed an IT governance process which resulted in better allocation of resources to the needs, including efforts to deploy digital engagement technologies, uplift core enabling infrastructure and optimize provider EHR workflows, and expand data driven research platforms. In 2020, Children’s National Hospital was also recognized by CHIME as a Digital Health Most Wired organization for the effective application of foundational and advanced technologies into their clinical and business programs to improve health and care in their communities. Matt was also integral to our successful 2017 Health Information Management Systems Society (HIMSS) Davies Award, the most prestigious award in the industry, given annually for thoughtful application of health information and technology to substantially improve clinical care delivery, patient outcomes and population health. Matt has over two decades of experience designing, deploying and operating healthcare information technology solutions. Prior to joining Children’s National Hospital, Matt worked for Cerner Corporation for 18 years. In his early career he worked with numerous healthcare organizations, leading deployments of clinical and revenue cycle systems. Matt spent three years at East Jefferson General Hospital in Metairie, LA, leading an IT outsourcing engagement. He subsequently served as a Cerner Vice President and General Manager, overseeing IT management teams across 10 health systems with a total of 48 acute facilities. Matt is a certified Chief Information Officer through The College of Healthcare Information Management Executives (CHIME), the professional organization for Chief Information Officers and other senior healthcare IT leaders. Throughout his career, Matt has also participated in the Healthcare Information and Management Systems Society (HIMSS) on both regional and national levels.
Matt is a May 2021 candidate for an MBA from the Cornell Johnson of Business and a Masters in Healthcare Leadership from Weill Cornell Medicine. He also holds a BA in Pollical Science from Creighton University in Omaha, Nebraska.
Thank You to Our Planning Committee!
- Vikrant Arora, CISO, Hospital for Special Surgery
- Lee Baublitz, Medical Device Cyber Security Lead, Intelligent Technology LLC
- Sri Bharadwaj, VP, Digital Innovation and Applications, Franciscan Alliance
- Jeff Bontsas, CISO & VP of Information Security, Ascension Technologies
- Dan Bowden, VP & CISO, Sentara Healthcare
- Dan Czech, Director of Market Analysis, Security, and Privacy, KLAS
- Fabricio Gamboa, Epic and IAM User Security Coordinator, Southern Illinois Healthcare
- Jared Hamilton, Managing Director – Healthcare Cyber Leader, Crowe LLP
- Chris Logan, SVP and Chief Security Officer, Censinet
- Will Long (Committee Chair), CSO, First Health Advisory
- Brad Marsh, VP Informatics, First Health Advisory
- Kevin Shekleton, Vice President & Chief Engineer, Cerner
- Mitch Thomas, CSO, Encompass Health