Monday, 11 September 2017 | ||
08:00 - 08:30 | Registration and Coffee | |
08:30 - 08:45 | Welcome and Opening Remarks [More Info] Russell Branzell FCHIME, CHCIO, President and CEO, College of Healthcare Information Management Executives (CHIME), USA | |
08:45 - 09:30 | Keynote: What Healthcare Professionals Need to know about Healthcare Information Security [More Info] Russell Branzell FCHIME, CHCIO, President and CEO, College of Healthcare Information Management Executives (CHIME), USA | |
09:30 - 09:45 | Networking Break | |
09:45 - 10:30 | Effective Cybersecurity Begins with Organizational Culture [More Info] Theresa Z. Meadows MS, RN, CHCIO, FHIMSS, FACHE, Senior Vice President & Chief Information Officer, Cook Children’s Health Care System, USA Learning Objectives:
• Analyze the current and rapidly changing cybersecurity landscape
• Define basic principles of sound cybersecurity strategy and management
• Evaluate strategies for Board and organizational awareness, education and communication
| |
10:30 - 11:15 | The CIO/CISO Relationship: What Makes it Work? [More Info] Theresa Z. Meadows MS, RN, CHCIO, FHIMSS, FACHE, Senior Vice President & Chief Information Officer, Cook Children’s Health Care System, USA Karl J. West, Chief Information Security Officer and Assistant Vice President, Information Systems, Intermountain Healthcare, USA Learning Objectives:
• Discuss strategies and best practices for developing, implementing and managing an effective organization-wide cybersecurity program
• Identify best practices for the CIO and CISO to establish organizational and IT governance, budgeting, accountability and oversight responsibilities including the intersection of good governance practices with compliance
• Identify legal and other compliance requirements and any associated challenges for consideration by the CIO and CISO
• Discuss the day-to-day relationship and accountabilities between CIOs and CISOs; what are the keys to success for both?
| |
11:15 - 12:00 | Essential Factors for Cybersecurity Preparedness [More Info] Karl J. West, Chief Information Security Officer and Assistant Vice President, Information Systems, Intermountain Healthcare, USA Learning Objectives:
• Identify healthcare and non-healthcare strategic security frameworks and ways to leverage these both today and in the future
• Define IT and non-IT security assessments and best practices for overall management and controls including working with third party trading partners
• Outline strategies for building and retaining security staff talent and expertise
• Identify approaches to securing adequate funding to support your organization’s security strategies and activities plan
| |
12:00 - 13:00 | Networking Lunch | |
13:00 - 14:15 | Case Study: Dealing with a Real Life Data Breach [More Info] Russell Branzell FCHIME, CHCIO, President and CEO, College of Healthcare Information Management Executives (CHIME), USA Keith Fraidenburg, Executive Vice President & Chief Operating Officer, College of Healthcare Information Management Executives (CHIME), USA Learning Objectives:
• Discuss tools and processes that effectively positions organization to respond to threats and breaches
• Identify an effective incident management process including timeline, detection, response, escalation, mitigation, communication and non-IT recovery activities
• Evaluate effective strategies for training all organizational staff for response and recovery management
| |
14:15 - 14:30 | Networking Break | |
14:30 - 15:00 | Insights from the KLAS Cybersecurity 2017 Report [More Info] Jonathan Christensen, Cybersecurity Report Analyst, KLAS Enterprises, USA CHIME and KLAS are partnering on a cybersecurity project to discover where the energy exists around cybersecurity in healthcare and provide insights into technologies and measures providers are taking to enhance their security program and better manage risk. The survey reviews the effectiveness of technology vendors and consulting firms and identifies how well EHR vendors support providers' security goals. During this session, participants will learn about the compelling cybersecurity research KLAS is gathering from healthcare providers. KLAS recently interviewed nearly 200 organizations about their security programs (speaking primarily with CISOs, CIOs, CTOs, and other security professionals) and published the findings in its Cybersecurity 2017 Report. The report focuses on the most impactful technologies-specifically DLP, IAM, MDM, and SIEM-and the services provider organizations use most frequently to meet security needs. For bench marking purposes, interview organizations also shared best practices from and insights regarding their current security programs since security in healthcare has changed so rapidly over the past two years. This is a can't miss session for any health IT executive.
| |
15:00 - 15:30 | Process Makes Perfect: Strategies for Cybersecurity Success [More Info] Jonathan Christensen, Cybersecurity Report Analyst, KLAS Enterprises, USA Dr. Edward Cheng, CIO, University of Hong Kong (HKU), CIO & GMIT, HKU-Shenzhen Hospital, China Dickon Smart-Gill, Corporate CIO, Bumrungrad International, Thailand Adam Bangle, Vice President, International, Imprivata, UK Learning Objectives:
• Discuss strategies and best practices with development, implementation and management of an effective organizational-wide risk management and compliance programs
• Identify best practices for organizational and IT governance, accountability and oversight responsibilities including the intersection of good governance practices with compliance
• Identify legal and other compliance requirements and any associated challenges for consideration in an effective risk management program
| |
15:30 - 16:15 | Closing Keynote: Developing and Managing an Ongoing Risk Management Program [More Info] Karl J. West, Chief Information Security Officer and Assistant Vice President, Information Systems, Intermountain Healthcare, USA Learning Objectives:
• Identify strategies that fosters an organizational culture of continuous learning and process improvement for effective risk management programs including prevention and awareness
• Discuss strategies and approaches to maintain current working knowledge of cybersecurity and effective risk management programs along with ways to leverage industry knowledge to support effective organizational protections
• Evaluate the experience from those outside of healthcare and learn how non-healthcare industry experience can be leveraged in your organization
| |
16:15 - 16:45 | Faculty and Sponsor Reactor Panel - Q&A | |
16:45 - 17:00 | Program Closing Remarks | |
17:00 - 18:00 | Networking Reception |