[1 CPE] How to Keep AI From Taking Your Job

  Presented by Kate Belvoir • VP, Business Information Officer, Blue Cross of Idaho

Please join us for a unique presentation as Kate Belvoir will peel back the curtain about success stories when it comes to AI. Blue Cross of Idaho is a leader in the health insurance industry, addressing healthcare costs and delivering exceptional customer service through innovative tools and solutions. With 80 years of servicing their customers, the current landscape requires precise practices. Kate will speak on her experience of using AI to increase business efficiency, without sacrificing IT jobs.

Change is inevitable when it comes to technology. However, the headlines of AI replacing humans doesn’t have to be your reality. Kate will share her passion for what the future holds. The balance needed of humans using the current tools will be a focus. You will gain great insight on how to advance yourself and us AI as a tool, not a job killer. Don’t miss the chance to hear from one of Idaho’s leading companies!

Kate Belvoir serves as Vice President, Business Information Officer at Blue Cross of Idaho, where she leads business technology and enterprise transformation initiatives. She brings 28 years of experience with the organization, having begun her career in business operations before transitioning into IT. With deep expertise in aligning business and technology, Kate focuses on simplifying complexity, strengthening vendor partnerships, and delivering solutions that drive meaningful business value. She is passionate about building high-performing, values-driven teams and fostering a culture of collaboration, accountability, and continuous improvement—enabling both people and the organization to thrive.

An Idaho native, Kate is married and the proud parent of two boys. Outside of work, family remains at the center of her life and perspective.

[1 CPE] Proving Cyber Resilience: Measuring Outcomes, Not Effort

  Presented by Andy Rezabek, Sales Engineer • Horizon3

Most security programs measure effort — not outcomes. Organizations patch thousands of vulnerabilities, deploy dozens of tools, and run annual tabletop exercises… but when an attacker shows up, none of that matters.

What matters is whether they can prove their defenses actually work.

In this talk, Horizon3 shares how leading organizations are using autonomous pentesting to see their environment through the attacker’s eyes — continuously, safely, and at scale. By shifting from assumptions to proof, they’ve learned to:

  • Prioritize what’s exploitable. Focus limited resources on the weaknesses that truly put the business at risk that are known to be abused by threat actors.
  • Quickly fix what matters. Close the loop from find → fix → verify and reduce your exploitable attack surface.
  • Reduce attacker dwell time. Use pentest results to precisely deploy honeyTokens to detect compromise early, and to continuously prove your EDR and SIEM are tuned and working as intended.

Cyber resilience isn’t about being perfect — it’s about getting better over time. And the only perspective that truly matters is the attacker’s.

[1 CPE] 2026 Global Threat Landscape Report: Insights & Findings

  Presented by Eric Teece, Director, Systems Engineering • Fortinet

In 2026, the threat landscape cannot be accurately described through isolated indicators or single-domain trends. Adversaries operate across an end-to-end lifecycle that begins well before intrusion through exposure discovery, access brokerage, and industrialized preparation, and continues through exploitation, persistence, monetization, and operational impact.

Across exposure, exploitation, execution, and impact, the common variable is not just attacker sophistication. It is speed and reuse.

Come and learn our findings in exposure, weaponization, exploitation, post-exploitation, impact, cross-threat convergence, execution model, and cloud.

[1 CPE] Has Mythos Forever Broken Cybersecurity?

  Presented by Jesse Shairi, Sr Systems Engineer • Illumio

Mythos is a wake-up call to the exposure which everyone has to cybercrime. No target is too small and 100% of us will eventually be breached. Segmentation is the foundation of isolating the inevitable breach, preventing a small problem from escalating to putting you in the news as the latest victim. Learn how to discover and enforce all breaches, securing your environment from both known and unknown threats.

[1 CPE] Cybersecurity and Compliance For 2026

  Presented by Structured

This session examines how organizations can align cybersecurity, privacy, and compliance programs with the realities of 2026. The presentation reviews current threat trends, executive accountability requirements, and the expanding impact of artificial intelligence on risk management. It then connects federal, state, and industry obligations, including NIST CSF 2.0, HIPAA, CJIS, PCI DSS 4.0, CMMC, and emerging privacy laws to practical security program design. Attendees will leave with a clear framework for building a complete security program that integrates governance, segmentation, risk management, Zero Trust principles, and penetration testing to reduce risk and support regulatory readiness.

[1 CPE] The People Behind the Threats and Trends: Observations from the Front Lines

  Presented by Peter Ingebrigtsen, Sr Technical Marketing Manager US • Arctic Wolf

Cybersecurity threats are shaped and stopped by the people on the front lines. This session explores how Arctic Wolf Labs research and SOC expertise uncover emerging threat patterns, contextualize real-world attacks, and turn raw telemetry into actionable defense –– showing how human-driven security operations deliver scalable protection in an evolving threat landscape.

[1 CPE] Building Trust for What’s Next: PKI Modernization & Quantum Readiness

  Presented by Bryan Pitts, Solutions Engineer  • DigiCert

Certificate lifetimes are shrinking. Browser requirements are evolving. Machine identities are growing exponentially. At the same time, organizations are beginning to plan for post-quantum cryptography while supporting new AI-driven systems that depend on trusted digital interactions.

These changes are transforming PKI from a traditional security function into the operational trust layer for modern business.

This session provides a practical roadmap for modernizing PKI, improving visibility into machine identities, automating certificate lifecycle management, and building crypto-agility for future cryptographic transitions. Attendees will leave with actionable steps to reduce operational risk today while preparing for post-quantum security and the next generation of digital trust.

[1 CPE] Driving Innovation with Unified Governance and Security

  Presented by Ken Robinson, Solution Engineer • Island

Browser-based apps, unsanctioned SaaS, and a fast-growing wave of AI assistants are reshaping modern work; and they are entering the enterprise faster than security teams can govern them. For today’s CIO and CISO, the mandate is no longer to choose between enablement and control; it’s to deliver both at once. “Shadow AI” has made that tension urgent and the organizations that win will be the ones that channel this energy safely rather than trying to block it.

This session lays out a practical path to enabling innovation without surrendering governance. We’ll explore how unified visibility into AI and other application usage, granular controls that keep sensitive data protected, and cross-functional collaboration between security, risk, and the business can turn these ungoverned risks into a governed advantage.

Join us to discuss:

  • Turning Shadow AI into sanctioned AI — enabling adoption while maintaining control.
  • Unified visibility and policy across browsers, SaaS, and AI tools.
  • Operational, risk, and compliance impacts — and the collaboration model that keeps organizations resilient, adaptable, and ahead.

[1 CPE] What the Hack is Going On?

  Presented by Tim Medin, Chief Executive Officer • Red Siege

A comprehensive overview of modern cybersecurity threats and how breaches occur. We will highlight the various methods used by cybercriminals, including phishing, social engineering, and ransomware attacks, and emphasize the importance of identifying and addressing vulnerabilities before they can be exploited. There are a lot of vulnerabilities in the wild, and IT administrators and security professionals often focus on the wrong issues because they are easier to monitor or measure. By the end of the presentation, you will have gained valuable insights into the latest cybersecurity threats and how to protect against them.

[1 CPE] A Sociopathic 5-Year-Old Has Your Access Token: AuthN/AuthZ for Agentic AI

  Presented by Gil Kirkpatrick, Chief Architect • Semperis

Semperis Chief Product Officer Alex Weinert describes AI agents as “curious, genius, sociopathic 5-year-olds.” He’s right, but while you can supervise one 5-year-old, you can’t supervise thousands of AI agents operating at millisecond speed across every system you own. You don’t supervise them. You childproof the house.

This session explores the access control model agentic AI actually requires, covering workload identity (SPIFFE, WIMSE, and the IETF’s AIMS draft), delegated OAuth (token exchange, actor chains, Rich Authorization Requests, sender-constrained tokens, and the 2026 MCP authorization spec), and dynamic per-action policy evaluation, including why a role is an input to an authorization decision, not the decision itself.

You’ll leave with a reference architecture, a maturity model, and a clear understanding of what’s standardized today and what still has to be built.