Cybersecurity grounded in reality.
I speak to public servants, nonprofit executives, corporate boards, and professional associations about the one thing most organizations aren't ready for until it's too late: what happens to the people they serve when their systems are compromised?
My talks are not technology briefings. They are civic arguments, grounded in 30 years of operational practice, 20 years in the election jurisdiction space, a seat on the DHS election security advisory council, and many years of cyberterrorism training for law enforcement professionals.
Jump to section
Speaking Topics
Cybercrime is a Civic Problem
Most civic leaders encounter cybersecurity through three lenses: regulatory compliance, breach response, or budget pressure. There's a fourth lens most haven't looked through: duty. This talk reframes the cybersecurity conversation as a civic obligation. It’s not what you have to do, but what you owe the people who depend on your organization.
The Governance Gap: What Boards Get Wrong About Cybersecurity
Boards govern culture, strategy, and risk. Cybersecurity sits at the intersection of all three, but most boards approach it as a technology question delegated to IT. This talk addresses the governance gap directly. What do boards need to understand? What questions should they be asking? What does it look like when risk governance is done right?
Operational Discipline Over Point Solutions
Three decades working in cybersecurity operations produced one consistent observation: organizations that are breached don't fail because they lack tools. They fail because they lack a cybersecurity operations lifecycle. This talk examines the difference between a patchwork security program and bespoke operational discipline, and what it takes to build a robust one.
Cybersecurity as Community Infrastructure
What does a municipality with a $40,000 IT budget have in common with a county that spends 20 times as much on cybersecurity? Both are trying to protect the same thing. This talk makes the case for cybersecurity as community infrastructure. What can shared-cost, shared-intelligence security operations do for organizations that can't afford to go it alone?
Cybersecurity Operations 2.0® — Why the Model Itself Is the Vulnerability
Most organizations aren't failing because they lack cybersecurity spending. They're failing because the model in which they operate was designed to keep them dependent, not defended. The traditional MSSP framework is asymmetrical by design: the vendor alerts, the customer responds, and the burden of building an actual operation falls on the organization least equipped to do so. It's a symmetrical model where the customer governs and the provider operates, each in the role they were built for. What does it look like when an organization stops patching the model and starts replacing it all together? Drawn from 30 years of operational practice and proven at scale with the City of Aurora, Illinois, where we mitigated more than 35,000 threats, with zero major incidents declared.
Engagement Formats
Keynote
A full-length address for conferences, association meetings, and civic leadership convenings. Keynotes deliver the civic argument at scale, built around Cyrus's understanding that cybersecurity is a community infrastructure problem, not a technology one.
Fireside Chat
A moderated conversation designed to surface the practitioner behind the argument. Fireside chats are ideal for leadership forums, fellowship programs, and executive audiences who want depth over polish.
Panel & Roundtable
Structured peer dialogue with executive, civic, or practitioner audiences. Cyrus serves as anchor voice, grounding the conversation in operational reality.
Board Briefing
A focused session for nonprofit or corporate boards on cybersecurity governance. Cyrus elicits insights on what the board is responsible for, what questions to ask leadership, and what risk committee maturity actually looks like in practice.
Workshop & Training
Workshops draw on experiences from more than six years of curriculum development and training 5,000+ professionals under DHS funding, across professional associations, municipal leadership cohorts, and law enforcement audiences.
Podcast Feature
Long-form conversation for civic, executive, and cybersecurity-focused podcasts. Cyrus speaks from operational experience, not talking points.
Television & Broadcast Media
Live and recorded segments for broadcast news, cable networks, and digital media. Cyrus has served as a recurring cybersecurity commentator with CNN, Bloomberg, ABC, CBS, FOX, and regional outlets.
Call for Presentation (CFP)
Available to submit for speaking opportunities at conferences, symposia, and civic leadership convenings. Topic abstracts and speaker materials available on request.
Moderated Guest Speaker
Available as a featured guest for organizational town halls, leadership development programs, civic engagement series, and university or college forums.
Cyrus J. Walker III is the Founder and CEO of Data Defenders, LLC®, a Chicago-based cybersecurity firm serving state and local governments, nonprofits, and SMBs. He brings 30 years of experience in federal law enforcement training, election security, and C-suite operations leadership.
Cyrus trained more than 5,000 federal, state, and local law enforcement professionals under U.S. Department of Homeland Security funding, pioneered Applied Computer Forensics™ for election system protection, and has served on the U.S. DHS Critical Infrastructure Partnership Advisory Council's Election Infrastructure Subsector Coordinating Council since 2023. He is a 2026 Daniel Burnham Fellow with Leadership Greater Chicago and an active board member across five civic and nonprofit organizations, including serving as Risk Committee Chair at Kaleidoscope.
Cyrus has been featured on CNN, Bloomberg, Forbes, ABC, CBS, FOX, and the Chicago Tribune. He speaks to civic leaders, executive boards, and professional associations about cybersecurity as a civic obligation — not a technology problem.
Speaking Engagements
Conference sessions, panels, and workshops — upcoming and past.
Dual-Scope Defense: Six Years of Municipal IT + OT Security
A six-year municipal engagement covering both information technology and operational technology, and what it taught two critical sectors. Invited to four conferences in 2026.
- Aug 26–27 · WedSecure Carolinas Conference 2026Call for PresentationGreenville, SC · Roam Center · Healthcare, energy & technology practitionersEvent details ↗
- Sep 23 · WedNational Cyber Summit 2026Call for PresentationHuntsville, AL · Von Braun Convention Center · Government TrackEvent details ↗
- Oct 5–8 · MonICS Cybersecurity Conference 2026Call for PresentationNashville, TN · 25th Anniversary · ICS/SCADA, energy, water & critical infrastructureEvent details ↗
- Nov 15–18 · SunCyberMarketingCon & CyberCEO Summit 2026Call for PresentationAustin, TX · CyberCEO Summit TrackEvent details ↗
Other sessions
HCCA Healthcare Privacy Compliance Conference 2026Call for Presentation
“Before the Breach: What Privacy Officers Need to Understand About Cybersecurity Operations”
Virtual · Healthcare privacy & compliance officers
Event details ↗Blue Team Con 2026Call for Presentation
“The Contextualization Gap: Why Your SOC Has the Data But Not the Story”
Chicago, IL · Swissôtel · Security Operations & Tools
Event details ↗AI Reshaping Work & LearningPanel & Roundtable
Chicago, IL · Union League Club · INFORMS Chicago Panel
Event details ↗Workshops & series
SCORE Session 3 — RansomwareWorkshop & Training
“Ransomware: A Danger to Your Business and Your Wallet”
SCORE Mentors Chicago · Online
Event details ↗SCORE Session 2 — Cyber InsuranceWorkshop & Training
“Cyber Insurance: A Necessary Component for Your Cyber Operations”
SCORE Mentors Chicago · Online
SCORE Session 1 — Incident Response PlanningWorkshop & Training
“Incident Response Planning: How to Restore Your Business After a Cyber-Attack”
SCORE Mentors Chicago · Online
Frequently Asked Questions
What does Cyrus J. Walker III speak about?
Cyrus J. Walker III speaks on cybersecurity as a civic obligation rather than a technology problem. His five core topics are cybercrime as a civic problem, the governance gap in board-level cybersecurity oversight, operational discipline over point solutions, cybersecurity as community infrastructure, and Cybersecurity Operations 2.0® — the argument that the traditional managed-security model is itself the vulnerability. He speaks to mayors, city managers, nonprofit executive directors, corporate and nonprofit boards, and cybersecurity practitioners.
What is the difference between an MSSP and an MCOP?
A Managed Security Service Provider (MSSP) is asymmetrical by design: the vendor alerts, the customer responds, and the burden of building an actual security operation falls on the organization least equipped to do so. A Managed Cybersecurity Operations Provider (MCOP) is a symmetrical model in which the customer governs and the provider operates, each in the role they were built for. The provider hunts threats, eliminates them, builds the operation and manages it on a 24/7 basis, while the organization retains governance over what it is protecting and why.
What engagement formats does Cyrus J. Walker III offer?
Keynote, fireside chat, panel and roundtable, board briefing, workshop and training, podcast feature, television and broadcast media, call for presentation submission, and moderated guest speaker. Engagements are available nationally and virtually, based out of Chicago, Illinois.
What should a board understand about cybersecurity governance?
Boards govern culture, strategy, and risk, and cybersecurity sits at the intersection of all three. The common failure is treating cybersecurity as a technology question delegated to IT rather than a governance responsibility the board retains. Board-level cybersecurity maturity means knowing what questions to ask leadership, understanding what the organization is actually protecting, and treating risk oversight as continuous rather than incident-triggered.
What is a Regional SOC?
A Regional Security Operations Center, or Regional SOC, is a shared cybersecurity utility: several municipalities, counties, agencies, or nonprofits pool the cost of one security operation rather than each attempting to build its own. It is the regional-scale expression of the MCOP model — the same operations-first partnership, delivered across multiple communities instead of a single organization. The governing idea is that no one asks a small town to build its own power plant; a security operation is shared civic infrastructure in the same category as water or power. Communities that participate reach an operational tier — 24/7 monitoring, threat hunting, incident response, and governance reporting — that none of them could staff or fund alone.
Submit a Speaking Inquiry
Fill out the form and someone will follow up within 48 hours.