Cybersecurity and Privacy Professionals Conference Call for Proposals



Presenting at the Cybersecurity and Privacy Professionals Conference (April 28–30, 2026 in Anaheim, CA) individually or as part of a team is a wonderful way to share knowledge, experiences, ideas and information. We are seeking presentations on cybersecurity and privacy topics that would be of interest to higher education CISOs, CIOs, CPOs, and other security and privacy practitioners. Submit a proposal to share future directions, best practices, stories on successful collaborations, or solutions to community-wide issues of interest.

EDUCAUSE is committed to highlighting the diversity of perspective, opinion, and representation in our community. Our program committee therefore strives to develop a program that truly represents that diversity. Similarly, we are eager to expand our community of presenters by encouraging and supporting new voices in higher education cybersecurity and privacy. We’d like first-time presenters to feel energized and inspired to submit a proposal and share their ideas and experiences.

Please read this page carefully before you begin work on your proposal, and be sure to submit by the deadline: January 12, 2026.

Ready to get started? Just follow these simple steps:

  • One Find out how to create an excellent proposal by reading this page and the helpful tips in the EDUCAUSE Presenter Concierge pages. The program committee will hold office hours to help with proposals. 
  • Two Develop a proposal in one of the program tracks.

  • Three Submit your proposal using the online submission form between December 15 and January 12. Submitters will be notified about decisions in mid-February.
  • Four If accepted, attend and present at the Cybersecurity and Privacy Professionals Conference, April 28–30, 2026, in Anaheim, CA. (Registration is required of all presenters.)

Guidelines for Submission

  • ☐ Do not list presenters on a proposal without their commitment that they will participate and that they agree to the terms and conditions for participation.
  • Profile Requirement: An EDUCAUSE profile is required in order to submit a proposal, present, and register for the event. Please take some time before submitting a proposal to ensure all presenters have profiles. Presenters can create or update their profiles on the EDUCAUSE membership page.
  • Presenter Registration: All speakers must present in person. We are not able to accommodate online presenters onsite. Presenters are responsible for registering in advance for the conference, paying the registration fee, and securing and paying for travel and lodging. (Exceptions may include accepted full and half-day preconference workshop presenters, who may receive modest compensation in the form of an honorarium and a complimentary conference registration.)
  • ☐ EDUCAUSE will not cover any additional costs such as travel and lodging expenses, online tools, assessments, books, or other presentation materials.
  • ☐ All selected presenters must agree to and complete speaker agreement forms in order to be confirmed for a session.
  • ☐ EDUCAUSE reserves the right to edit presentation titles and/or edit the session abstract for program publications.
  • ☐ Proposal titles and abstracts cannot be changed after the review and selection process.
  • Session Resources: Presenters will be required to upload their presentations and/or supporting materials and resources prior to the conference. These valuable resources will then be posted for attendees to access before and beyond the session.

A Special Note to Our Corporate Community

Are you or a co-presenter with a corporation and interested in presenting at this year’s event? EDUCAUSE values the insights from the corporate community.

  1. You can go through the CFP process and the program committee will determine acceptance to the program.
  2. You can contact [email protected] to purchase a Conference Partner Package that includes an Industry Insights Session, booth, branding, and more. Limited opportunities are available.

For guidance on creating a winning corporate CFP submission, see our tips here>>

  • Ratings from accepted corporate sessions in previous years indicated that the topics were timely/hot/of significant interest to the community.
  • Many of the accepted corporate presentations from past years were submitted with institutional partners. Try to pin down your institutional partners prior to submitting session proposals so that you can co-create the proposal and really elevate their voice. Our audience is keen to hear institutions talk about successful partnerships.
  • Higher-rated sessions indicated that session outcomes clearly tied to the goals for the session.
  • Higher-rated sessions represent diversity in perspective, opinion, and representation and the most interesting sessions are often ones that offer many different perspectives. Does my proposal reflect this?
  • The session description should always paint a clear picture about what will happen in-session. This is your opportunity to expand beyond the abstract and tell the story behind the abstract. Adding creative session elements like a design-thinking exercise or activity for the audience helps. With so much competition around session space these days, it is just as important to have an innovative, engaging session as it is to have an innovative, engaging topic.

Proposal Submission

Within the CFP submission site you will be asked to provide the following information. In addition, each submission should include the names and biographies of the proposed presentation team.

Themes and Tracks

Security by Default, Privacy by Design

The 2026 Cybersecurity and Privacy Professionals Conference theme for this year is, "Security by Default, Privacy by Design."

Conference Tracks

The program committee has identified five areas of focus (tracks). Concerns related to small colleges, AI, and privacy are spread across each of these track areas. Proposals will be selected to ensure that the conference program offers a comprehensive, noncommercial, objective, and diverse treatment of issues related to the theme and tracks of this conference. You may be invited to present in a format or track other than the one you selected.

This track focuses on the people side of cybersecurity and privacy, where culture, communication, education, and creativity intersect to reduce human risk and build institutional defenses. Sessions will explore strategies for designing and delivering awareness programs, training initiatives, and human-centric interventions that resonate across campus and extend into our communities.

Discover how to deliver training and campaigns that promote secure behavior, and build a culture where responsibility is shared, not mandated. Sessions will cover topics such as security awareness campaigns, phishing and social engineering training, using generative AI, addressing insider threat, newsletters and campaigns, behavioral metrics and program assessment, security culture gamification, engagement strategies, privacy literacy, creative events and communications, and extending security awareness into community and personal contexts.

This track addresses the critical intersection of governance structures, regulatory compliance, and risk management in higher education. Sessions explore effective governance models that drive strategic alignment, accountability, and data-informed decision-making. Participants will examine responsible AI policy adoption, ensuring institutional data protection while advancing innovation.

The compliance component addresses diverse regulatory requirements, including FERPA, HIPAA, GDPR, CCPA, regulated research, export controls, and CUI. Practical guidance covers auditing practices, breach notification, and managing compliance across complex digital infrastructures.

Risk management sessions focus on cybersecurity risks, third-party vendor assessment, cloud service security, and supply chain risk, providing actionable frameworks for how risk assessment informs threat mitigation. Attendees from all institutional roles will gain strategies to strengthen governance, ensure compliance, calculate risk, and build programs that support the mission of higher education in an evolving regulatory landscape.

This track explores the leadership skills and strategies needed to build, sustain, and advance cybersecurity and privacy as institutional functions that span the entire fabric of higher education. Sessions examine how to secure resources, measure return on program investments, build effective teams, influence key stakeholders, build community and connection across institutions, and position security and privacy as enablers of institutional success.

Discover how to build high-performing teams in resource-constrained environments, support the mental health and well-being of cybersecurity and privacy professionals, lead remote and distributed teams effectively, and secure executive buy-in for critical initiatives. Sessions address organizational change management, cross-functional collaboration, developing security culture, advocating for resources, building strategic partnerships, and demonstrating how cybersecurity and privacy functions influence and support all areas of campus, from academics to research to student services.

This track explores technical strategies and operational improvements that enhance the effectiveness of cybersecurity operations and privacy programs through automation, streamlined processes, and innovative implementations. Attendees will discover practical approaches to consolidate security tool functionalities, improve visibility across their environment, and optimize day-to-day operations, from managing data inventory and privacy impact assessments to incident response and threat detection.

Presenters will share how they streamlined incident response workflows, automated request handling, managed alert fatigue, enabled credential rotation and secrets management, deployed infrastructure as code, updated asset inventories and SBOMs, and leveraged community resources and open-source solutions to drive cost-effective innovation. Sessions include case studies showcasing successful implementations and lessons learned. Topics also include student-powered security operations centers, integrating AI into security and privacy operations, optimizing detection and response pipelines, and adopting technical workflows that address the unique operational challenges of higher education environments.

This track provides technical deep dives into the evolving threat landscape and advanced defensive architectures for higher education. Designed for anyone seeking to understand how sophisticated attacks work and how to defend against them, sessions explore cutting-edge attack vectors, including AI-powered attacks, adversarial machine learning, ransomware evolution, and advanced persistent threats, alongside sophisticated defense mechanisms.

Attendees will examine zero trust architecture, privacy-enhancing technologies, secure AI/ML systems, post-quantum cryptography, secure enclaves, endpoint device management, and proactive intrusion and data loss detection strategies. Sessions explore lateral movement detection and prevention, indicators of compromise, kill chain analysis, penetration testing methodologies, threat hunting, threat intelligence, secure software development practices, data loss prevention, advanced persistent threats, mitigating zero-day and critical vulnerabilities, examining breaches for lessons learned, and architectural design patterns that balance open collaboration with robust protection.

Delivery Choices

You should select the delivery format that best fits your session structure and presentation style. Note: Although EDUCAUSE will make every effort to honor your preference for delivery format, we may reassign the format based on space and program balance.

Show your peers how you get work done. Demonstrations walk attendees through examples of tools, workflows, and operational approaches you've successfully deployed at your institution. This is your opportunity to give colleagues a clear view of what implementation actually looks like and what it looks like when security and privacy programs meet the day-to-day realities of higher education. Whether you're walking through a workflow you've refined, demonstrating a tool you've configured for your environment, or illustrating how you've operationalized your controls, the goal is to give attendees something concrete they can apply at their own institutions. These will be either 30-minute or 45-minute sessions. You may have a maximum of two presenters for this session type.

Lead a conversation that matters. Facilitated discussions bring colleagues together around timely topics, emerging challenges, and questions that lack established playbooks. These sessions work when you have a challenge that needs multiple perspectives and lived experiences from different institutional contexts. This is your opportunity to tap into the collective wisdom of the community. These will be either 30-minute or 45-minute sessions. You may have a maximum of two facilitators for this session type.

These sessions are opportunities to share topics of interest, lessons learned, foresight, or evidence of impact related to a conference theme. Presenters, whether one person or a group, should include ways to actively engage the audience in the session. If you are proposing a panel, it should represent two or more opposing viewpoints for a lively group discussion. The best panels and group presentations have diversity in perspective, opinion, and representation and the most interesting sessions are often ones that offer many different perspectives. These will be either 30-minute or 45-minute sessions. You may have a maximum of four presenters/panelists for this session type.

Posters give participants and presenters the opportunity to share and examine problems, issues, and solutions in a casual, personal environment. Poster presenters are expected to engage with individuals, either one-on-one or in small groups, for short periods of time throughout the time slot allocated. Presenters will use a physical poster display to visually present their topics. There will be multiple poster sessions happening at the same time, allowing for attendees to visit many posters and peruse the various topics. These will be 45-minutes. You may have a maximum of two presenters for this session type.

Session Title, Abstract, Engagement Strategies, and Takeaways

Session Title

Create a short title that is creative, yet descriptive. We ask that you do not use institution, company, or product names anywhere in the title.

Abstract

This is a short description of what your session is about. If your proposal is accepted, the abstract is what most attendees will use to make decisions about which sessions to attend. What can you say that will encourage your colleagues to attend your session?

Session Takeaways and Participant Engagement Strategies

Clear session outcomes/takeaways and creative engagement strategies are essential components of every session. Proposal reviewers will closely examine and rate each proposed session's takeaways, which should clearly describe what participants will know or be able to do as a result of participating in the session. A successful proposal must also include the specific and creative ways in which the presenter(s) will engage with participants.

Session Description

This is where you get to more fully describe the plan for your session and the importance, relevance, value, uniqueness, and/or interest to our community of higher education professionals. You’ll describe how the session will unfold (timetable), the key findings or points you will present, supporting evidence, and so forth.

Keywords

These are areas of specific interest and will help attendees fine-tune their personalized schedules. Optional: You will be asked to provide three keywords or short phrases that relate to your presentation.

Checklist iconSelection Process

Proposals are selected to ensure the conference offers a comprehensive, non-promotional, not commercially biased, objective, and diverse program. Proposals that clearly describe innovative and creative work will receive the highest priority in the selection process. Attention will also be given to heterogeneity of institutions/organizations, presenters, and geographic location.

The identity of proposal submitters and proposed presenters will be hidden during the main review process. Proposals will be reviewed by peer reviewers and the conference Program Committee using the following selection criteria:

  • Relevance of Topic: Is the topic of relevance, importance, value, and/or interest to higher education?
  • Session Outcomes Achievability: Is there alignment between the stated session outcomes and the proposal description?
  • Quality of Submission: Does the proposal demonstrate quality, as measured by accuracy, clarity, comprehensiveness, and depth of demonstrated understanding of the topic?
  • Engagement/Knowledge Transfer: Does the proposal provoke discussion, audience engagement, and/or facilitate knowledge transfer and development of new competency?