Home Site Map Contact
Membership Events Sponsors Contact

CISO Executive Forum

November 3-4, 2005
Building Cost Effective Security Programs

Westin Tabor Center
Denver, CO

Speaker Bios

Dave Cullinane, CPP, CISSP, Director of Information Security, Washington Mutual

Dave Cullinane is a CPP, CISSP and former CBCP. He has been in the InfoSec Profession for more than 15 years. He has served on the ISSA Board of Directors for the past five years as Director of Vendor Relations, Director of Operations, Director of Communications and most recently is the President of the ISSA.

Dave is currently serving as the Director of Information Security for Washington Mutual Bank. He is a Certified Protection Professional under the auspices of the American Society of Industrial Security (ASIS) and a Certified Information Security Professional. He was elected to the ASIS Standing Committee on Computer Security and serves on the Editorial Advisory Board of Security Technology and Design magazine.

 
Scott Williams, Director, PricewaterhouseCoopers LLP

Scott Williams, a Director in PricewaterhouseCoopers Advisory Practice in Seattle, has served numerous clients with planning and implementing Information Security Solutions throughout his career. He works with clients to mitigate risks related to Information Security and Privacy and to assists companies in developing compliance programs to satisfy various regulations. Scott is a recognized speaker on InfoSec topics.

 
David J. Thomason, Director of Security Engineering, Sourcefire

Mr. Thomason is presently the Director of Security Engineering at Sourcefire. In 1986, Mr. Thomason started his career in security while in the United States Air Force. There, he was responsible for building systems compliant with the National Security Agencys C2-level security standard. Later in his Air Force career, Mr. Thomason was one of the founders of the Air Force Computer Emergency Response Team (AFCERT) where he worked in a number of roles including Incident Response Team Lead. After almost 10 years in the military, Mr. Thomason went to work for a defense contractor and continued to serve in the AFCERT where he was responsible for the successful apprehension and prosecution of three hackers. Subsequently, Mr. Thomason became a security consultant where he conducted hundreds of information security risk assessments, penetration tests and security system deployment and integration projects. In fact, Mr. Thomason was the project manager responsible for the largest deployment of intrusion detection systems in an American financial institution. Mr. Thomasons entire career has been security related with his focus being on intrusion detection systems.

 
Jean Pawluk, VISA

Jean Pawluk is Chief Architect for security at Visa with a global focus on security strategy, architecture, technology and tactics. She has over 25 years of experience in financial services and high tech industries alternating between strategic technical architecture, software development, and executive management roles at firms such as Visa, Equifax, and Tandem Jean developed an interest in security and cryptography early in her career developing ATM software and funds transfer networks for the financial industry. Her interest in security was re-awakened in the early 1990's when it became obvious that the Internet was totally insecure. She immediately focused on starting new security initiatives at Tandem. Jean headed up several teams to deliver various security & strong authentication solutions to overcome those threats including the first commercial PKI system in the world in 1997 (for the government of Singapore.). She has been a speaker and instructor to academic, business and technology groups on subjects such as data protection, regulatory compliance, electronic commerce, technology architecture and securing the Internet. Jean is active in a number of technical and information security working groups as well as several business associations. Ms. Pawluk is currently on the board of the Silicon Valley Information Security (ISSA) group.

 
Pete Lindstrom, Research Director, Spire Security

Pete Lindstrom is Research Director for Spire Security, an industry analyst firm focused on information security issues and market research. Lindstrom combines Fortune 500 corporate security experience with audit and consulting work for Coopers & Lybrand (now PriceWaterhouseCoopers) to offer clients a real-world view to evaluating, selecting and implementing the latest security technologies for enterprises. Pete has broad experience in the security space and leverages his knowledge to address resource allocation issues.

In Identity Management, he has been an advocate for streamlined user account management procedures and has experience with user account provisioning and password reset solutions. He has developed impact analyses for Vulnerability Management tools, particularly in the use of vulnerability assessment solutions. His experience with encryption and security design grounds activities in Trust Management, which also includes secure messaging and digital rights management.

With regards to Threat Management, he is well versed in intrusion detection and the surrounding complementary solutions. Lindstrom has conducted numerous security audits and security consulting projects at Fortune 500 companies including American Home Products (now known as Wyeth) and GMAC Mortgage. At American Home Products he was the technical lead on its Public Key Infrastructure project, defining the corporate implementation strategy and identifying the key technical issues of deployment. His team designed a multi-layered security architecture integrating new security technologies to provide confidentiality, authentication, access control, and data integrity in a complex network environment.

At GMAC Mortgage, Lindstrom identified security risks and control requirements for applications in Risk Management, Capital Markets, Servicing and Loan Originations. In addition, he has specific industry sector experience working with mortgage banking, pharmaceuticals, insurance and healthcare organizations. As an analyst with Hurwitz Group initially and now with Spire Security, Lindstrom is a frequent speaker and writer on security topics and is quoted often in the press. He is on the editorial advisory board of Information Security Magazine. Prior to his corporate and consulting career, Lindstrom held a variety of IT and finance-related assignments in the United States Marine Corps. He has a Bachelor of Business Administration from the University of Notre Dame and is a Certified Information Systems Security Professional (CISSP) and former Certified Information Systems Auditor (CISA).

 
Steve Hunt, President & CEO 4A International, LLC

For 23 years, Steve Hunt's career has spanned the breadth of the security industry: physical, homeland, corporate, and data security. Mr. Hunt has been called the world's most influential security analyst. He has spent his career identifying trends and best practices while working with hundreds of end-user organizations to solve practical and strategic problems related to security.

Mr. Hunt is on the board of the Open Security Exchange, advises the board of ASIS International through its Convergence Commission, and is a valued consultant to many of the world's largest corporations. From 1998 to 2005, Mr. Hunt led the security research teams of Forrester Research and Giga Information Group. Before joining Giga, he served as technical director to an Israeli security company's 20 worldwide channels and resellers. Previously, Steve worked as a consultant to Chicago's financial community. Throughout the 1980s, he implemented and designed security for facilities, including physical access control systems, disaster recovery, alarms, and surveillance.

He appears as a security analyst on CNBC, Fox News, CNN, and other news networks. His analysis appears frequently in the Financial Times, The New York Times, Business Week, and other global publications and trade magazines. He also gives roughly 20 keynote speeches annually on emerging trends for ASIS International, ITAA, ISSA, and business and security conferences around the world. Mr. Hunt's diverse background in security lends a fresh perspective on the industry and gives him special insight into the convergence needs of the market.

 
Bruce Schneier Founder and Chief Technical Officer

Internationally-renowned security technologist and author Bruce Schneier is both a Founder and the Chief Technical Officer of Counterpane Internet Security, Inc.

Schneier is the author of eight books, including his current best seller, Beyond Fear: Thinking Sensibly about Security in an Uncertain World, which tackles the problems of security from the small to the large: personal safety, crime, corporate security, national security. Secrets & Lies: Digital Security in a Networked World, which was published in October 2000, has sold 150,000 copies. One of his earlier books, Applied Cryptography, now in its second edition, is the seminal work in its field and has sold over 200,000 copies and has been translated into five languages. He writes the free email newsletter Crypto-Gram, which has over 120,000 readers.

Schneier designed the popular Blowfish and Twofish encryption algorithms, the latter a finalist for the new Federal Advanced Encryption Standard (AES). Schneier served on the board of directors of the International Association for Cryptologic Research, and is an Advisory Board member for the Electronic Privacy Information Center.

Schneier holds an MS degree in computer science from American University and a BS degree in physics from the University of Rochester.

 
Jeff Klaben, Group Director of Global R&D Security, Cadence Design Systems

Jeff Klaben is Group Director of Global R&D Security at Cadence Design Systems, the world's largest supplier of Electronic Design Automation (EDA) technologies and engineering services. He was previously Senior Manager of Enterprise Architecture and Global Information Security at Applied Materials, the world's largest supplier of products and services to the global semiconductor industry. In addition, he currently supports the FBI as Chair and CEO of the San Francisco Bay Area InfraGard.

Mr. Klaben has held Information Security management and consulting roles with High Tech, Government, Startup, and Health Care organizations such as Accenture, NCR, AT&T, CACI, Qwest, Anthem Blue Cross, United HealthCare, iCGCommerce, SilentTrust, and the United States Postal Service. He is a Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), and Certified Information Systems Auditor (CISA).

Jeff has also served on the executive boards of the Chicago Information Systems Security Association (ISSA) and the Association of Information Technology Professionals (AITP). He has presented at FBI briefings and industry conferences such as Cornerstones of Trust 2005, RSA 2004, Disaster Resistant California 2003, and Entrust Secure Summit 2000. He has been a contributing editor to the SANS guide - Windows NT Security Step by Step, has taught CISSP review courses, and assisted the White House with the rollout of the National Strategy to Secure Cyberspace.

Mr. Klaben graduated as an Honors Scholar from Wright State University with a B.S. in Management Information Systems and is completing his MBA at Santa Clara University.