Day 1
Tuesday, May 05, 2026
All times below are Eastern Time
08:30AM – 09:20AM
In-Person
Registration & Breakfast
09:00 AM
09:00AM - 09:20AM
Virtual
Virtual Broadcast Begins
09:20 AM
09:20AM - 09:30AM
Opening Remarks
Brendan Kwolek
Chief Information & Digital Officer, Halton Healthcare
Kopiha Nathan
Privacy and Compliance Officer, HIROC
09:30 AM
09:30AM – 10:15AM
Session 1
KEYNOTE | The Ongoing Evolution of the Dutch Model for Healthcare Cybersecurity
Expand/collapse session description...
The Netherlands has developed its own system for securing their healthcare data and they are looking to extend this beyond just hospitals. It has been a large project, and one that is seeing great success.
This session will look at the lessons learned from various risk assessments the Netherlands ran, how they approached them, and where they are looking to improve and expand.
Key Session Takeaways Include:
- How the Dutch designed their cybersecurity system and why
- How it’s deployed in practice, and how it’s managing new and emerging threats
- Testing standards, and moving beyond just penetration testing
- New plans in development for expanding to other healthcare providers and what they may look like
Dr. Wim Hafkamp
Managing Director, Z-CERT, Computer Emergency Response Team (CERT) for the healthcare sector in the Netherlands
10:15 AM
10:15AM – 11:00AM
Session 2
When AI & Quantum Converge: The Case For Rethinking Identity Security In Healthcare
Expand/collapse session description...
Key Session Takeaways Include:
- Adversaries are already harvesting encrypted healthcare data today, waiting for quantum to make it readable.
- The breach is happening now, the damage is on a timer.
- AI is accelerating that timeline while making the harvesting phase more precise.
- Healthcare identity programs were built to handle neither threat. The decisions made in the next two to three years will determine exposure when Q-Day arrives.
Anastasia Lou Regen
Partner, Technology Consulting, Cybersecurity, EY
Prakhar Arora
Senior Manager, Identity and Access Management (IAM), EY
11:00 AM
11:00AM - 11:30AM
Break
Morning Break
11:30 AM
11:30AM – 12:15PM
Session 3
LDGs, OHTs, LTC, Home Care, Primary Care: How Are We Going To Secure The Entire Healthcare System?
Expand/collapse session description...
Hospital boards in Canada play a crucial role in ensuring strong governance, patient safety, and risk mitigation. However, effectively communicating complex healthcare data, regulatory requirements, and safety concerns in a way that enables informed decision-making is a challenge for hospital executives and administrators.
This session will provide practical guidance on structuring board reports, aligning with Canadian healthcare governance expectations, and ensuring compliance with key safety and risk requirements.
Key Session Takeaways Include:
- Understanding Canadian hospital board governance and their oversight responsibilities
- Best practices for reporting patient data security and risk management to boards
- Strategies for presenting critical healthcare data in a clear, actionable format
- Meeting expectations set by Accreditation Canada, provincial health ministries, and regulatory bodies
Dr. Wim Hafkamp
Managing Director, Z-CERT (Netherlands)
Keith Lawson
CISO, London Health Sciences Centre
Gary Rankin
CISO, Hamilton Health Sciences
12:15 PM
12:15PM – 01:15PM
Break
Networking Lunch
01:15 PM
01:15PM – 02:00PM
Session 4
Fireside Chat: A Data Centric Approach To Securing Healthcare Customers In The Age Of AI
Expand/collapse session description...
Session description coming soon…
Greg Jackman
Canadian Country Manager, Cyera
Iain Paterson
Chief Information Security Officer, WELL Health Technologies
02:00 PM
02:00PM – 02:45PM
Session 5
Crisis Communications for Cyber
Alicia Pereira
VP, Marketing & Communications,Ontario Centre of Innovation
02:45 PM
02:45PM – 03:15PM
Break
Afternoon Break
03:15 PM
03:15PM – 04:00PM
Session 6
KEYNOTE | Cyber Threats & Mitigations: Gain A Better Understanding Of The Current Canadian Cyber Threat Landscape & Resilience Strategies
Expand/collapse session description...
Canada’s cyber threat landscape is escalating, increasingly influenced by geopolitics and global instability. Healthcare remains a prime target for both state-aligned and criminal actors because of its operational fragility, highly sensitive data, and dependence on tightly connected digital and physical systems that must stay available.
This session highlights where risk is expanding beyond traditional IT—especially across operational technology (OT), supply chains, and emerging AI—creating the potential for cascading disruption across healthcare and other critical infrastructure.
Key Session Takeaways Include:
- Understand today’s threat reality, and how geopolitical dynamics and actor tactics are impacting Canadian healthcare risk.
- Reduce your exposure in the “blind spots” by improving visibility of assets and dependencies, and address OT, third parties, and AI-driven risks.
- Improve operationalize resilience by adopting Cyber Readiness Goals, strengthen supply-chain risk management, and drive leadership-led accountability for measurable preparedness.
Lindsay MacDonald
Senior Director, Partnerships, Canadian Centre for Cybersecurity
04:00 PM
04:00PM – 04:10PM
Closing Remarks
Brendan Kwolek
Chief Information & Digital Officer, Halton Healthcare
Kopiha Nathan
Privacy and Compliance Officer, HIROC
04:10 PM
04:10PM - 06:00PM
Networking Cocktail Reception
Day 2
Wednesday, May 06, 2026
All times below are Eastern Time
08:15AM – 09:20AM
In-Person
Registration & Breakfast
09:00 AM
09:00AM - 09:20AM
Virtual
Online Broadcast Begins
09:20 AM
09:20AM - 09:30AM
Opening Remarks
Kopiha Nathan
Privacy and Compliance Officer, HIROC
09:30 AM
09:30AM – 10:15AM
Session 7
Leadership Challenges: Cyber Transformation, Identity, and Cloud
Expand/collapse session description...
Canadian healthcare is moving more services to the cloud while dealing with legacy systems, tight budgets, and constant pressure on clinical and IT teams. That mix creates familiar pain points: too many accounts and access paths, inconsistent sign-in rules across sites and vendors, limited visibility into who has access to what, and simple mistakes in cloud settings that can expose sensitive patient information. Add third-party access and the ongoing threat of ransomware, and identity plus cloud security quickly becomes the place where small gaps turn into big incidents.
This session shares how healthcare organizations are tackling these issues in practical ways—without slowing care delivery. You’ll hear approaches that have worked: simplifying access for busy staff, tightening vendor access, setting clear baselines for cloud services, and focusing on a few controls that reduce risk fast. The goal is to leave with steps you can apply even if your team is stretched thin.
Key Session Takeaways Include:
- What leaders need to be aware of in this shifting landscape
- How to reduce access sprawl and clean up old accounts, limit high-risk access, and make sign-in protections consistent across systems
- Make the cloud safer by default by starting with a small set of standard settings (who can share, where data can be stored, how activity is logged) and apply them across cloud tools.
- Strengthen the “outside your walls” risk by tightening third-party access, review who can connect remotely, and practice incident response so you’re not building the plan during an emergency.
Amy Yee
Board Member, Kemptville District Hospital
Keith Lawson
CISO, London Health Sciences Centre
10:15 AM
10:15AM – 11:00AM
Session 8
Healthcare AI Transformation: Managing The Implementation & Speed Of AI’s Impact On Your Organization
Expand/collapse session description...
Healthcare is being transformed faster than any of us anticipated, and the organizations leading that transformation are not just the ones adopting AI the fastest, they are the ones doing it smartest. This session is built specifically for healthcare leaders who understand that AI is no longer optional and are ready to move beyond the conversation about whether to adopt it, toward the far more important conversation about how to own it completely.
Key Session Takeaways Include:
- How to deliver on a clear, proven blueprint for embracing AI across your organization
- How to meet the speed your business demands and the confidence your patients, your board, and your regulators require
- How to ensure the responsible use of the technology, security, and strategic direction of your organization
Yama Saadat
Principal Solutions Engineer, Trend AI
11:00 AM
11:00AM – 11:30AM
Break
Morning Break
11:30 AM
11:30AM – 12:15PM
Session 9
Group Discussion: Final Thoughts | Where Do We Go From Here: Putting It All Together
Expand/collapse session description...
As we reflect on the themes and insights, this open discussion will offer some of the most salient ideas discussed over the past couple of days.
Provide input into which themes and ideas where most impactful, and how they will change how you practice cybersecurity in your own organisation.
Kopiha Nathan
Privacy and Compliance Officer, HIROC
12:15 PM
12:15PM – 12:25PM
Closing Remarks
Kopiha Nathan
Privacy and Compliance Officer, HIROC
Ongoing call for speakers
This is your opportunity to share your knowledge and experience with other industry professionals.
Please email us at info@sparkconferences.com to receive more information.
We look forward to receiving your submissions!
Join our mailing list
Receive news on this and other relevant upcoming healthcare industry events.