J_JTC_2019A 06/17/2019 09:08:45 AM Committee Summary PUBLICSTAFF SUMMARY OF MEETINGJOINT COMMITTEE COMMITTEE ON JOINT TECHNOLOGY COMMITTEE Date 06/17/2019 Attendance Baisley X Bridges X Tate * Titone X Singer X Todd X X = Present, E = Excused, A = Absent, * = Present after roll call Time 09:08:45 AM to 04:11:35 PM Place SCR 352 This Meeting was called to order by Senator Todd This Report was prepared by Andrea Denka Hearing Items Action Taken hPresentation from the Governor's Office of Information Techology Committee Discussion Only hPresentation from the National Cybersecurity Center Committee Discussion Only hPresentations from Various Cybersecurity Companies Committee Discussion Only 09:08:46 AM Luisa Altmann, Legislative Council Staff, provided an overview of the meeting agenda. Presentation from the Governor's Office of Information Techology - Committee Discussion Only Attachment Tag File Name Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/44AADFFD412B...$File/Attachment A - Securing Colo Deborah Blyth.pdf?OpenElement Attachment A - Securing Colo Deborah Blyth.pdf 09:11:09 AM Debbi Blyth, Chief Security Information Officer for the Governor's Office of Information Technology (OIT), gave a presentation about cybersecurity in Colorado using a PowerPoint (Attachment A). 10:06:19 AM Ms. Blyth responded to questions from the committee about two-step email verification, attachment scanning, cybersecurity training for students, and auto-updates. 10:11:52 AM Yvette Florez, Senior Manager of Identity & Access Management at OIT, presented on secure access in Colorado. Ms. Florez responded to questions about two factor authentication and employee offboarding. 10:39:56 AM Ms. Florez and Ms. Blyth responded to questions from the committee about blockchain technology in cybersecurity. Presentation from the National Cybersecurity Center - Committee Discussion Only Attachment Tag File Name Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/DDA7ADADD233...$File/Attachment B - NCC.pdf?OpenElement Attachment B - NCC.pdf 10:56:12 AM Vance Brown, CEO of the National Cybersecurity Center (NCC), and Forrest Senti, Director of Business and Government Initiatives at NCC, gave a presentation on national cybersecurity (Attachment B). Mr. Brown and Mr. Senti responded to questions from the committee about cyber camps for students. 11:55:22 AM The committee took a break for lunch. Presentations from Various Cybersecurity Companies - Committee Discussion Only Attachment Tag File Name Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/02D256F809CA...$File/Attachment C - Tanium.pdf?OpenElement Attachment C - Tanium.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/C0F3E8414269...$File/Attachment D - Optiv.pdf?OpenElement Attachment D - Optiv.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/900794794A51...$File/Attachment E 2018-ThreatLandscapeReport_FINAL.pdf?OpenElement Attachment E 2018-ThreatLandscapeReport_FINAL.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/41AD5DFBDC02...$File/Attachment P - ThreatX.pdf?OpenElement Attachment P - ThreatX.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/70085F6447BD...$File/Attachment N - Atos.pdf?OpenElement Attachment N - Atos.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/8647A2A7E8EC...$File/Attachment K - FireEye.pdf?OpenElement Attachment K - FireEye.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/94E06DF9EDEB...$File/Attachment J - Overwatch.pdf?OpenElement Attachment J - Overwatch.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/A792C7DE5B04...$File/Attachment M - A FireEye Overview.pdf?OpenElement Attachment M - A FireEye Overview.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/C68E4758B452...$File/Attachment I - OverWatchID.pdf?OpenElement Attachment I - OverWatchID.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/C6C749DBD30D...$File/Attachment L - Fireeye The Vision.pdf?OpenElement Attachment L - Fireeye The Vision.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/D6DF02963531...$File/Attachment F - LogRhythm.pdf?OpenElement Attachment F - LogRhythm.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/D7D1E64FE402...$File/Attachment O - Red Canary.pdf?OpenElement Attachment O - Red Canary.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/DBB42203962E...$File/Attachment H - Automox .pdf?OpenElement Attachment H - Automox .pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/E7B31D79BE50...$File/Attachment Q - ThreatX + GHX.pdf?OpenElement Attachment Q - ThreatX + GHX.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/FDF853693E35...$File/Attachment G - ManagedMethods.pdf?OpenElement Attachment G - ManagedMethods.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/22C44AEC0561...$File/Attachment U - Ping Identity.pdf?OpenElement Attachment U - Ping Identity.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/2C7310E27B93...$File/Attachment R - Coalfire.pdf?OpenElement Attachment R - Coalfire.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/BB41692124BA...$File/Attachment T - Spartan.pdf?OpenElement Attachment T - Spartan.pdf Attachment http://www2.leg.state.co.us/CLICS/CLICS2019A/commsumm.nsf/0/FBE159641D7F...$File/Attachment S - CyberGRX.pdf?OpenElement Attachment S - CyberGRX.pdf 01:29:21 PM Tim Howell and Aaron Goldstein, representing Tanium, presented about the work of their company to the committee using a PowerPoint (Attachment C). 01:39:26 PM Alex Wood and Robb Reck, representing Colorado = Security, presented about the work of their organization to the committee. 01:45:40 PM Jason Vossler and Everett Denney, representing Optiv, presented about the work of their company to the committee using a PowerPoint (Attachment D) and distributed a handout (Attachment E). 01:57:15 PM James Carder and Sara Avery, representing LogRhythm, presented about the work of their company to the committee using a PowerPoint (Attachment F). 02:08:14 PM David Waugh, representing ManagedMethods, presented about the work of his company to the committee using a PowerPoint (Attachment G). 02:18:44 PM Jay Prassl, representing Automox, presented about the work of his company to the committee using a PowerPoint (Attachment H). 02:33:21 PM Cameron Williams and Patrick Morrisroe, representing Overwatch ID, presented about the work of their company to the committee using a PowerPoint (Attachment I) and provided a handout (Attachment J). 02:43:16 PM Dustin Nowak, Jeffery Convington, and Keith Novak, representing FireEye, presented about the work of their company to the committee using a PowerPoint (Attachment K) and provided handouts (Attachments L and M). 02:52:31 PM Dean Weiner, representing Atos, presented about the work of his company to the committee using a PowerPoint (Attachment N). 03:05:00 PM Brian Beyer, representing Red Canary, presented about the work of his company to the committee using a PowerPoint (Attachment O). 03:14:54 PM Cody Cornell, representing Swimlane, presented about the work of his company to the committee. 03:23:56 PM Kelly Brazil and Jeannine Klinefelter, representing ThreatX, presented about the work of their company to the committee using a PowerPoint (Attachment P) and distributed handouts (Attachment Q). 03:31:18 PM Alan Ferguson, representing Coalfire, presented about the work of his company to the committee using a PowerPoint (Attachment R). 03:38:49 PM Kevin Ford and Marc Haverland, representing CyberGRX, presented about the work of their company to the committee using a PowerPoint (Attachment S). 03:49:50 PM Rick Tillery, representing Spartan, presented about the work of his company to the committee using a PowerPoint (Attachment T). 03:58:47 PM Robb Reck and Kyle Meinhold, representing Ping Identity, presented about the work of their company to the committee using a PowerPoint (Attachment U). 04:09:15 PM Committee members made concluding remarks. 04:11:35 PM The committee adjourned.