Live Video-Broadcast: February 24, 2025
Select Your State Below to View CLE Credit Information
Sign-up for a law firm subscription plan and each attorney in the firm receives free access to all CLE Programs
Part 4 of this 4 Part series. This final segment weaves in key aspects of the previous webinars in a Q&A format where different experts are asked questions by the moderator that address everything from risk mitigation, upcoming implementation requirements, critical audit content, and addressing gaps found during audits. Legally liability for boards and individuals, as well as companies, will also be addressed.
This course is co-sponsored with myLawCLE.
Key topics to be discussed:
Date / Time: February 24, 2025
Closed-captioning available
Moderator, Rachel V. Rose | Rachel V. Rose – Attorney at Law, PLLC
Rachel V. Rose, JD, MBA is a Principal with Rachel V. Rose – Attorney at Law, P.L.L.C. (Houston, TX)
Ms. Rose has a unique background, having worked in many different facets of healthcare, securities, cybersecurity, as well as international law and business throughout her career. For over a decade, her practice has focused on transactional, compliance, and litigation matters related to cybersecurity, health care, securities, and Dodd-Frank/False Claims Act whistleblower claims. She has conducted HIPAA Risk Analyses for a variety of domestic and international organizations and represented persons related to government enforcement inquiries and responses on cybersecurity and healthcare related matters. Ms. Rose worked on Capitol Hill when HIPAA passed in 1996 and worked at HHS in 2009 when the HITECH Act was being implemented.
In addition to being extensively published, a sought-after presenter, and quoted expert, Ms. Rose holds an MBA with minors in healthcare and entrepreneurship from Vanderbilt University, a law degree from Stetson University College of Law, and an Executive Certification in Leadership and Negotiation from Harvard Law School. She is also the co-editor of the American Health Lawyers Association’s Enterprise Risk Management Handbook for Healthcare Entities (2nd Edition), as well as a co-author of the ABA’s books The ABCs of ACOs and What Are International HIPAA Considerations?, as well as various chapters in legal and medical books alike.
She has been named consecutively to the Texas Bar College, the National Women Trial Lawyers Association’s Top 25, Houstonia Magazine’s Top Lawyers (healthcare), the National Trial Lawyers Association’s Top 100, SuperLawyers (healthcare), as well as 1st Healthcare Compliance’s 2019 and 2022 Top Presenter. Ms. Rose is also an Affiliated Member with the Baylor College of Medicine’s Center for Medical Ethics and Health Policy, where she teaches bioethics.
Ted Dziekanowski | Veritas GRC
ISACA HQ CISA, CISM, CRISC, CCAK Trainer. Authorized ISC2 CGRC, CCSP, and CISSP Trainer, CDPSE.
A founding member of Veritas GRC, Mr. Dziekanowski has decades of experience and is extremely knowledgeable about global regulatory requirements around data and data flows. Technically, he’s had the opportunities to become proficient in many products and services supporting the management of data and cyber risk. Having taught just about every US Government Department and Agency along with all of the branches of the armed services, many state and local governments and most of the Fortune 100, Ted is a wealth of information.
Ryan Buckner | Schellman’s Learning, Education & Academic Development
Having directly performed and completed over 1,000 cybersecurity audits, Ryan is one of the most experienced IT and operational auditors in the world.
Ryan’s career focus has been on the performance improvement of IT audit professionals through educational and experimental audit programs and methodologies. With a heavy focus on the AICPA attest code, and various control and risk management frameworks, Ryan has served hundreds of project teams and organizations in the achievement of their IT audit certifications and compliance objectives.
Ryan is a Principal and the Chief Knowledge Officer at Schellman Compliance. Ryan currently serves on Schellman’s attestation leadership team to lead the firm-wide training services. Prior to this role, Ryan led the firm-wide research and development for attestation methodology for more than 15 years. Ryan maintains the following professional certifications, licenses, and designations, among others:
Ryan is also an AICPA-approved and nationally listed Peer Review Specialist for SOC examinations.
For 20+ years Ryan has evaluated the design, implementation, and operational effectiveness of risk mitigation strategies through both IT and operational / process controls. This included the identification of compliance, regulatory, and financial business objectives, and the assessment of risk management practices designed to address the risks to those objectives. Ryan has performed and managed all phases of the IT and cybersecurity audit process from risk assessment and management through the development and execution of audit programs for various industries. Ryan continues to be a frequent speaker and contributor to cybersecurity conferences and training forums.
Andy Watkin-Child, CSyP, CEng, MSyI, MIMechE, AMAE | Veritas GRC
Andy is a global leader in cybersecurity risk management. He has held leadership positions as Chief Information Security Officer (CISO) and Global VP of cyber risk for organisations with Balance sheets of $1trn. He was a founding member of the U.S DoD CMMC program and his work has been reviewed by members of the White House Office of the National Cyber Director, DoD, Cyberspace Solarium Commission and numerous UK and U.S Trade Associations. He holds Royal Charters in Security (CSyP) and Engineering (CEng).
Andy was the Group VP of Cyber Risk Banco Santander, CISO for Mizuho Corporate Bank and Counsel Appointed expert to the UK Information Commissioner. He is a founding partner of Veritas GRC and designs and delivers cyber risk regulatory compliance programs addressing board governance, cyber, risk and compliance.
I. SEC Final Rule, AI Guidance, and Enforcement Action Q&A | 12:00pm – 12:15pm
II. EU hot topics and considerations | 12:15pm – 12:30pm
III. What questions should I ask to ensure that an audit is effective, comprehensive, and legitimate? | 12:30pm – 12:45pm
IV. Applying NIST, ISO and FIPS | 12:45pm – 12:55pm
V. Conclusion | 12:55pm – 1:00pm