9:00 AM to 12:45 PM. He is a frequent contributor to both AdBytes and the privacy alerts published by Gowling WLGs Privacy & Data Protection Group. Nutter McClennen & Fish LLP, Adam Bookbinder Third party liability to customers and employees. 9:00 AM to 11:50 AM, Thursday, December 9th Breach Notification Requirements. The role of the Canadian Cyber Threat Exchange (CCTX) in Canada. Use the link below to register for Data Security on September 14th, 2022! The BBA Privacy & Cybersecurity Conference has been adapted to a virtual format and will feature two days of live and on-demand content curated and presented by top privacy, cybersecurity and digital law practitioners and industry experts. Theyll share tips on how your organization can leverage an assume breach mindset to be better equipped to recover in the inevitable event of a cyber attack. In addition to ransomware investigations, Shelleys casework has included website breaches, network intrusions and data theft, intellectual property theft, employee misconduct, spoliation, malware infections and tax fraud. He has over 22 years of experience assisting organizations protect and ensure the availability of sensitive information as well as preparing for and recovering from disruptions and some of the industrys most high-profile data breaches. Shelley joined Kivu in March 2016 and has since conducted and/or supervised over 200 cases, of which over 100 involved ransomware response. Bob has also provided operational leadership in investigating and analyzing the full range of threats to the security of Canada, which included leading the CSIS Counter Terrorism program. The PLI logo is a service mark of PLI. In this role she is responsible for the team reviewing data breach reports received by OPC from private sector organizations under the current voluntary regime. This program will presume a general familiarity with privacy and data security issues and is intended for intermediate to advanced professionals looking to hone their skills. Please select the best region for you and register below, CA Residents only: Do not sell my personal information, 2022 Rubrik Zero Trust Data Security. She is an EnCE-certified digital forensic analyst and specializes in ransomware investigations, digital forensic investigations, and incident response. He also contributes to other publications on advertising and privacy law-related matters. Most recently, Bob was a Director, Global Cyber Security at CGI. His experience includes reviewing the adoption of new website analytics tools and tracking programs, and the attendant privacy obligations, as well as reviewing and revising data transfer and processing agreements.Chris is the co-editor of the firms AdBytes advertising and marketing law newsletter. Steve Hawkins is Scotiabanks Chief Information Security Officer (CISO) and Senior Vice President, Information Security & Control (IS&C). Why this is important. He brings over 35 years of experience to these roles and leads a team of over 500 information security professionals that protect over $900 billion in assets, and information for 24 million customers across 50+ countries. Senior corporate and government executives. Brent appeared before the Supreme Court of Canada in support of the federal governments constitutional reference regarding a Canadian Securities Act. The CCTX is Canadas private sector organization for the sharing and analysis of cyber threat information, and enabling collaboration across all sectors. 9:15 AM - Implementing Cybersecurity and Data Privacy Practices, Best practices to ensure that your organization is protected and complying with current regulations. Conference Chair All rights reserved. Senior Legal Counsel Navigating the landmines.Progress to date. Legislators, regulators, and courts are rapidly developing new laws and compliance obligations to address the privacy and security implications of our expanding information economy and its continuously evolving risks. The common understanding is that you cant stop breaches, you can however ensure that your response is adequately prepared to manage them in a defensible manner to truly limit their impact. Most recently, Rob has helped one of Canadas largest financial institutions to refine operational business controls and compliance in its Cloud environments. Discounted group rates available by request. U.S. Attorneys Office for the District of Massachusetts, Pia Owens In his privacy practice, Chris advises organizations on the collecting, use, and disclosure of consumer information, including credit reporting, risk management and behavioural advertising and tracking. Im speaking at the Cybersecurity and Data Privacy Law Conference in Plano, Texas, USA, September 22-23, 2021. This annual conference focuses on the latest developments with the goal of keeping attorneys and other privacy and cybersecurity professionals informed and up-to-date in this complex and dynamic area. The Internet and evolving information technologies have prompted the development of powerful tools for the collection, use, storage, and disposal of personal information. Currently, he is delivering on Scotias transformation to a Digital Bank through key strategies aimed at keeping systems and consumers safe. LIVE ONLY, New Laws, New Regs, New RulesOh my! Conference fee includes conference information kit including speakers notes, lunch and cocktail reception. Your data is your most valuable asset - but its also your most vulnerable. Breach Notification Requirements. He holds an industry designation of Fellow, Chartered Insurance Professional (FCIP) and a diploma in Risk Management (CRM). She has also led a number of investigations with a focus on information security safeguards including the OPCs investigation of the Ashley Madison data breach in 2016, and its current investigation of the Equifax data breach in 2017. Continuing Legal Education since 1933. He specializes in IT vendor management, sourcing advisory, program management, service management, risk/compliance management and the application of new technologies for competitive advantage. Sidebar photo of Bruce Schneier by Joe MacInnis. Since 2012, Amanda Edmunds has worked as a manager within the Compliance Sector at the Office of the Privacy Commissioner of Canada. He is particularly concerned about the impact that managed security providers have on companies compliance and reporting efforts in cybersecurity, including Canadas new Mandatory Breach Notification (MBN) requirements. What steps should be taken now in anticipation of new regulations. Kevvie has served as an expert witness and advisor in data breach cases and is well experienced helping organizations demonstrate cyber defensibility after an incident. Cybersecurity and Data Privacy Law Conference. I'm a fellow and lecturer at Harvard's Kennedy School, a board member of EFF, and the Chief of Security Architecture at Inrupt, Inc. Iras practice focuses on complex commercial litigation, commercial fraud, intellectual property litigation, cybersecurity and information technology litigation. Rob has over 30 years of leadership in business operations, controls and advisory services, including over two decades advising IBMs largest clients. Shelley Ma is an Associate Director of Cyber Investigations at Kivu Consulting in Toronto. She holds a Bachelors degree in Economics and International Relations from the University of British Columbia. This personal website expresses the opinions of none of those organizations. Mr. Geminiuc is on the executive training faculty of CORE Center for Outsource Research & Education and has co-authored their outsourcing strategy course and transformation management course. Where We Are and Where Were Headed with Data Protection Laws. He has litigated a diverse array of cases over his career, including cases involving computer and Internet law, cybersecurity and cybercrime including privacy, data protection and information security. Information privacy (Cybersecurity and data protection), Whats new regarding US privacy frameworks, including the California Consumer Privacy Act, California Privacy Rights Act, Virginia Consumer Data Privacy Act, and the Colorado Privacy Act, Enforcement priorities of regulators at the federal and state level, The latest developments beyond the US, including the EU General Data Protection Regulation, India, Brazil, and Chinas strict new privacy law, Employee privacy and monitoring in a changing workplace: remote work risks and the global picture, Strategic approaches to privacy and cybersecurity risk in corporate transactions, Ethical and cyber-risk management issues in using information and technology, Privacy and security considerations in artificial intelligence, biometrics, cyber insurance, and other hot topics, Keeping up with cybersecurity challenges: a tabletop approach, The latest privacy and data security-related litigation, CPOs and CISOs share their insights on addressing the challenges of change. He has been recognized for his innovation, diplomacy and integrity in outsourcing governance, operational risk management, global service delivery, finance and IT controls. He is the co-founder of the KnowledgeFlow Foundation, a Canadian non-profit organization with the unique objective of bringing children, families and communities in touch with cybersafety techniques that provide lifelong protection from scams, privacy abuses, online victimization and cybercrime. 11:30 AM - The Role of the Office of the Privacy Commissioner of Canad, The Office of the Privacy Commissioner of Canada provides advice and, 1:00 PM - The importance of Collaboration in Cybersecurity. Strategies for avoiding and defending litigation and enforcement actions. Intended Audience: This program is intended for attorneys and professionals supporting any client with information privacy and security strategy, compliance and risk management issues. Facebook & Cambridge Analytica, Ashley Madison, CompuFinder, University of Calgary. Secure your data, wherever it livesacross enterprise, cloud, and SaaS. Steve majored in Finance graduating from McMaster Universitys Commerce Program Summa Cum Laude and has also attended the Queens Executive Program. They also raise the stakes for protecting this data in increasingly challenging risk environments, ranging from internal vulnerabilities to criminal cyberattacks and other threats. Jones Day, Seth Berman Claudiu Popa, CISSP, CIPP, PMP, CISA, CRISC, is the CEO of Datarisk Canada and Informatica Security Corporation. Draft regulations PIPEDA (Personal Information Protection and Electronic Documents Act). These trends create a wide range of compliance risk and liability issues associated with that information. Lessons learned, Grant Geminiuc, Managing Director Copyright 2022 PLI Practising Law Institute. Brent heads Gowlings Commercial Litigation Technology Sub-group. The Mathworks, Kathryn Stone Conroy Grant Geminiuc is Managing Director of R3P Consulting founded in 2008. In 2022, cyber-attacks have become a matter of when, not if. All Contents Copyright 1996-2022 Practising Law Institute. This is an event you won't want to miss. Partner Choate, Hall & Stewart LLP, Sara Cable Brent currently serves on the Cybersecurity and Data Privacy Committee of the U.S.-based DRI (Defence Research Institute). Equifax, 9/17 The largest breach in history data of 143m Americans compromised. How to protect your firm. Prior to joining the firm, he was the Vice President, Chief Information Security and Privacy Officer at Sentry Investments. Bob is the Executive Director of the Canadian Cyber Threat Exchange (CCTX). Ontario Privacy Commissions new notification requirements. The rapidly changing environment and escalating risks. This program will presume a general familiarity with privacy and data security issues and is intended for intermediate to advanced professionals looking to hone their skills. Prerequisite: A general familiarity with privacy and cybersecurity law issues. Navigating the landmines.Progress to date. Boston Bar Association | 16 Beacon St. | Boston, MA 02108 | www.bostonbar.org. If you are interested in sponsoring the 2021 Privacy & Cybersecurity Conference, please contact Mariah Hanlon at mhanlon@bostonbar.org. Prior to joining the OPC, Ms. Edmunds held a variety of positions within the Government of Canada, largely in the field of International Affairs. Over the past 26 years, Ed Dubrovskys name has been synonymous with information security, Cyber breach response, risk management and cyber education. Robs passion is ensuring that there is structure, good governance and financial benefit whenever an organization entrusts processes, services and infrastructure to a third party. Contact Ashley Young at ayoung@bostonbar.org for more information. Mandatory Breach Notification Became Law November 1st. Manish has also led the Merchant Compliance and Data Breach Investigation team for JP Morgan Chase globally, where he oversaw complex high-profile global cyber breaches of large merchant companies within the JPMC portfolio. Deputy Chief, Securities, Financial, and Cyber Fraud Unit The businesses and activities most affected. Data Is a Toxic Asset, So Why Not Throw It Out? A widely-recognized expert in civil litigation, Ira currently serves as Co-Chair of the Litigation Committee of the International Bar Association (IBA). He has advised on some of the largest outsourcing deals in Canada, established several IT vendor management offices, acted as Interim CIO for Shoppers Drug Mart and has overseen 100+ consolidations and transitions. In collaboration with The Poirier Group, Rob has recently developed a rapid MBN Readiness Assessment that quickly highlights gaps in organizations MBN posture. Mandatory Breach Notification is now in effect. This fund provides critical support for Boston Bar Association programs and initiatives that foster the education and professional development of lawyers. The latest cyber attack methods and defensible breach response procedures to limit impact. Rob Brickman, CPA, CA is President of Rob Brickman & Associates Ltd., a Toronto-based consultancy that makes organizations more effective, compliant, adaptive and profitable in managing their reliance on third parties. June 06, 2022, 9:00 AM - June 07, 2022, 4:45 PM CT, ITC Litigation and Enforcement: Exploring Trends, Legal Issues, and Compliance Strategies, Privacy and data security litigation and settlement trends, and what the future holds. At Rubriks Data Security Summit, were bringing together the worlds leading experts and voices in cyber security to share insights on how to combat the world of cyber crime. How the Cybersecurity consultant can engage before an issue arises. What type of Cyber Insurance to buy. With most of the IT budget allocated to Keep The Lights On, Mr. Geminiuc brings a innovated approach to reduce IT operating expenses and increase return on IT capital investment programs. He leads Cyber Investigations and Computer Forensics for Canada. Office of the Massachusetts Attorney General, Seth Kosto R3P Consulting Limited. We provide the highest-level ever current products and services to satisfy the knowledge and professional development requirements of our members and customers. How these cases are affecting the current landscape. His experience includes cyber breach coaching, cyber risk, consumer, implementation and other disputes for e-commerce vendors and software developers. His practice includes advising clients on privacy and consumer protection law, including drafting and reviewing privacy policies and advising on privacy in the context of financial institutions, social media, consumer marketing campaigns, electronic commerce and Canadas anti-spam legislation (CASL). Amy Harman Burkart On Tuesday, June 7, Greenberg Traurig Shareholder Ian C. Ballon, Co-Chair of the firm's Global Intellectual Property & Technology Practice, will lead the session, "How to Mitigate Evolving Litigation Risk in Privacy and Data Security: Lessons Learned from the Trenches.". Lessons learned. Manager, Breach Response and Complaint Intake, Personal Information Protection and Electronic Documents Act (PIPEDA),Office of the Privacy Commissioner of Canada (OPC). Prince Lobel Tye LLP. As an executive consultant, interim executive, instructor, speaker and author, he is a major change agent in enterprise IT infrastructure of Fortune500 companies. Associate Kevvie is a partner at Deliotte Consulting, and the National Resilience Practice Leader responsible for the strategy and delivery of Crisis Management, Cyber Response and Business Continuity services. SEC Cybersecurity Enforcement: Recent Trends and the 2022 Landscape, The New DOJ Civil Cyber-Fraud Initiative: What does it mean for me? PHIPA (Personal Health Information Protection Act). Mr. Dubrovskys passion is in evolving cyber resiliency by furthering education of clients about the topic of the evolving cybercrime economy and improving clients security posture in a strategic manner. Matthew Davies is Vice-President and product manager for Professional, Media and Cyber Liability at Chubb Insurance Company of Canada.