Laura Rodgers

Laura Rodgers

Director of Cybersecurity Practice, NC State University

Actions

Laura Rodgers is Director of Cybersecurity Practice at the Secure Computing Institute (SCI) at North Carolina State University and Director of the North Carolina Partnership for Cybersecurity Excellence (NC-PaCE), a statewide coalition dedicated to strengthening North Carolina’s cybersecurity ecosystem. In these roles, she works with industry, government, and academia to advance cybersecurity resilience, workforce development, and cybersecurity innovation.

A recognized leader in cybersecurity compliance and workforce development, Laura is a frequent speaker on Cybersecurity Maturity Model Certification (CMMC), governance, risk management, and federal cybersecurity requirements. Prior to joining NC State, she served as Senior Cyber Compliance Manager for the North Carolina Military Business Center, where she developed and delivered cybersecurity and CMMC readiness programs for defense contractors across the state.

Laura currently leads cybersecurity preparedness initiatives for the agriculture and defense sectors and regularly advises organizations on navigating evolving federal cybersecurity requirements. She serves on the North Carolina IT Strategy Board Cybersecurity Subcommittee and advisory boards for the University of North Carolina Wilmington Center for Cyber Defense Education and the University of North Carolina Pembroke Cyber Defense Education Center. She is also a founding member of the Higher Education Cybersecurity Council, an initiative of the Center for Digital Education.

Creating a Culture of Cybersecurity - The Key to Security, Compliance and Resilience

Cybersecurity is not the responsibility of a person or a department; cybersecurity is a VALUE that must be embraced by all members of an organization. Cybersecurity is everyone's responsibility.

This session will provide actionable strategies to create a cybersecurity culture so your organization will be secure, compliant, and resilient - and avoid a "check-the-box" mentality.

Channeling Deming: Using TQM Principles to Build a Resilient Cybersecurity Program

Drawing on a career at Lockheed Martin and General Dynamics IT, I discovered that W. Edwards Deming’s Total Quality Management (TQM) principles are as vital to cybersecurity as they are to manufacturing. Over time, I’ve applied TQM to build compliance programs and quality management systems across quality, environmental health, and safety - and now, to help organizations develop resilient cybersecurity programs.

I’ve seen how TQM concepts provide the foundation for sustaining compliance and security in a variety of organizations. By fostering a cybersecurity culture, engaging every employee in the mission, and embedding continuous improvement, organizations can move beyond check-the-box compliance to true program maturity.

This presentation will show how Deming’s timeless principles can be leveraged to design, strengthen, and sustain cybersecurity programs that not only meet regulatory requirements but also build enduring resilience.

CMMC Is A Thing (Almost) - Now What Do We do?

After nearly five years of changes to the Cybersecurity Maturity Model Certification (CMMC), it has been published in the Code of Federal Regulations as a Proposed Final Rule, and is expected to be published as a Final Rule in late 2024.

CMMC is an assessment model for compliance to the requirements in NIST SP 800-171

This session will provide valuable knowledge and actionable strategies to ensure compliance with CMMC.

This informative session will include:

- An overview of the new CMMC model
- Key changes to CMMC and how they affect your organization
- What you should be doing now to be eligible to win contracts in 2025 and beyond
- Strategies for navigating changing regulations
- Resources to help you develop and strengthen you cybersecurity compliance program

Building a Governance, Risk, and Compliance Program From the Ground Up

GRC programs help organizations take a comprehensive and integrated approach to managing risks. In cybersecurity, this means addressing not only technical vulnerabilities but also considering the broader organizational and regulatory landscape.

A GRC program for cybersecurity is essential for organizations to proactively manage risks, comply with regulations, and maintain a resilient and effective cybersecurity posture in an ever-evolving threat landscape.

Building a Governance, Risk, and Compliance (GRC) Program From the Ground Up

GRC programs help organizations take a comprehensive and integrated approach to managing risks. In cybersecurity, this means addressing not only technical vulnerabilities but also considering the broader organizational and regulatory landscape.

A GRC program for cybersecurity is essential for organizations to proactively manage risks, comply with regulations, and maintain a resilient and effective cybersecurity posture in an ever-evolving threat landscape.

Laura Rodgers

Director of Cybersecurity Practice, NC State University

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top