APSIM Conference Day 2 – Sessions
Welcome to Day One of the APSIM Conference! This webpage provides information on each session, including presentation titles and brief topic descriptions. Interested in learning more about our presenters? Simply click on a speaker’s name to expand their biography and discover their background, experience, and areas of expertise.
KEYNOTE SESSION
Dr. Alexander Rudolph
Navigating Digital Sovereignty in a Zero Trust World
Concerns about digital sovereignty date back decades, but ruptures in the world order mean Canadians must acclimate to its new reality. The new and evolving risks brought by this rupture call into question existing practices and products used to protect Canadian digital security and information due to systemic losses of trust and reliability. In response, public and private leaders must adapt their existing approaches by implementing short- and long-term mitigation strategies to ensure the ongoing protection of Canadian privacy and security. This talk will explore contemporary definitions of digital and data sovereignty; new and evolving risks to Canadian digital sovereignty; how this impacts our existing assumptions and practices for protecting Canadians’ data and digital systems; and potential mitigation strategies.
Dr. Alexander Rudolph is one of Canada’s leading scholars and thought leaders on Canadian Cyber defence policy, which led him to found Canadian Cyber in Context, Canada’s first public policy research organization and publication dedicated to Canadian cyber defence policy. Canadian Cyber in Context’s mission is to bridge the divide between public policy, industry, and academia to advance Canadian discourse on cyber public policy and improve public understanding and awareness of Canadian cyber defence.
Alex holds a PhD in Political Science from Carleton University, where his dissertation explored how culture and subjectivity shape national approaches to cyber defence and cyber conflict. Alex’s 2018 Master’s thesis explored the potential impact of Canada’s adoption of offensive cyber operations on the Canadian Armed Forces, and he has researched and published on Canadian cyber defence policy ever since. His methods build on existing approaches to researching cyber public policy by integrating the sociology of hacking, information security, and open-source intelligence to show how global trends in information security impact Canadian digital sovereignty and public policy.
Alex’s research examines grand strategy and conflict in cyberspace and its impact on Canada. He regularly contributes to consultations and public discussions on Canadian cyber defence policy; his work has been featured in CBC News, Vanguard Defence, Digital Journal, Canadian Army Journal, and the Canadian Global Affairs Institute, and he has provided expert commentary in many more. He is a Fellow with the Canadian Global Affairs Institute, Triple Helix, and a Research Fellow with the North American Arctic Defence and Security Network.
Outside of his research, Alex has more than a decade of experience in government relations and public advocacy.
PLENARY SESSION
Canadian Democracy Under the Algorithm: The Power and Risks of Data in Politics
Political parties play a central role in Canada’s democratic system by selecting candidates and leaders, developing policy platforms, and mobilizing citizens during elections. In recent years, these functions have increasingly relied on the strategic use of personal data. Drawing on political marketing techniques, parties use data to better understand voters’ preferences, tailor campaign messages, and influence electoral behavior.
Political parties already have access to voters’ lists and supplement this information with data from commercial databases, surveys, digital canvassing, online petitions, and social media activity. By combining these sources, they create detailed voter profiles that support fundraising efforts, voter mobilization, and highly targeted political communication.
However, the controversial use of data for political purposes has already made the headlines. The growing use of personal data raises several democratic concerns First, limited regulation increases the risk of privacy breaches and inadequate data protection. Second, voter information could be used for purposes beyond electoral engagement, raising ethical questions about accountability and transparency. Third, micro-targeting may contribute to political polarization by exposing citizens to highly personalized messages that reinforce existing beliefs and reduce opportunities for broader democratic debate.
These challenges have fueled calls for stricter regulation of political parties’ data practices. Stronger oversight, greater transparency, informed consent requirements, and clear limits on data use could help protect privacy while preserving the integrity of democratic processes.
ABOUT THE SPEAKER
Eric Montigny
Eric Montigny is a full professor in the Department of Political Science at Laval University. He is also co-director of the Laval University and University of Lausanne International Laboratory on Political Parties, Representation, and Sustainable Development (PARDUR), a member of the Research Chair on Parliamentary Institutions, an associate researcher with the Political Communication Research Group, the Research Chair on Democracy, Living Together and Shared Values in Quebec and the Center for the Study of Values, Attitudes, and Societies at Concordia University. A specialist in political parties, his most recent publications focus on populism in Canada and the effects of big data and artificial intelligence on democracy. In 2025, his book Populism in Canada: A New Surge was published by Palgrave Macmillan, while the collective work Artificial Democracy: The Impact of Big Data on Politics, Policy, and Polity was published in English by UBC Press and in French by Presses de l’Université Laval.
BREAKOUT SESSION
Crisis Room (Cyber Attack Scenario)
Details coming soon!
BREAKOUT SESSION
Building Defensible Investigations
This session explores the investigation lifecycle, core principles of defensible investigations, and the balance between privacy and disclosure obligations under ATIPPA/PHIA and procedural fairness requirements.
ABOUT THE SPEAKER
Lori Ann Walsh, Access and Privacy Analyst, Office of the Information and Privacy Commissioner of Newfoundland and Labrador
Lori Ann Walsh is an Access and Privacy Analyst with the Office of the Information and Privacy Commissioner (OIPC) of Newfoundland and Labrador, where she conducts investigations under access to information and privacy legislation. With more than 20 years of experience in criminal intelligence, investigations, and public safety, Lori Ann has served as a Criminal Intelligence Analyst with the RCMP and Edmonton Police Service, a parole officer supervising high-risk offenders, and a licensed senior investigator leading complex workplace and regulatory investigations across multiple provinces. She also served as Co-Director of Security for the 2024 Newfoundland and Labrador Winter Games. Lori Ann holds a Bachelor of Arts in Sociology and a Diploma in Criminology.
BREAKOUT SESSION
AI in Healthcare: Managing Privacy Risks Through an AI Scribe Case Study
This presentation provides a high-level overview of artificial intelligence and its growing use across organizations, with a focused examination of AI in healthcare through an AI Scribe case study. It explores how AI systems rely on personal and sensitive information, the privacy risks they introduce, and the importance of applying privacy principles throughout the AI lifecycle. Using the AI Scribe implementation as a practical example, the presentation highlights how privacy assessments can support and enable responsible innovation while maintaining trust and regulatory compliance.
ABOUT THE SPEAKERS
Carla Calabrese, Senior Privacy Consultant, Mara Consulting
Carla Calabrese has over 15 years experience in public service with the Government of New Brunswick (GNB) and 20 years experience in private industry. She has been a trusted member of the Mara Consulting family for over 11 years. As a Senior Privacy Consultant, she takes great pride what she does and is passionate about working with clients to support them in advancing their privacy programs. Carla is known for being a coach and mentor, for building relationships, for a strong belief in team and the value of investing in people, and for high personal and professional standards.
She is a certified privacy professional and has experience in developing training and privacy management frameworks, assessing current and future states, conducting Privacy Impact Assessments (PIAs), analysing privacy impacts and gaps, documenting business processes and identifying risks and recommendations for complex multi-stakeholder engagements. Carla is also a member of the Mara AI Governance Committee providing oversight on to ensure AI is being leveraged responsibly and transparently within Mara.
Heather Youden, Senior Privacy Consultant, Mara Consulting
Heather Youden is a Senior Privacy Consultant at Mara Consulting with over 15 years of exclusive experience in the privacy field, specializing in privacy risk management, Privacy Impact Assessments (PIAs), privacy policies, procedures, training programs, and data breach investigations. She has worked closely with senior leadership across sectors including healthcare, energy, financial services, and retail to establish and strengthen privacy governance programs, and she advises clients on compliance with evolving federal and provincial legislation and privacy best practices.
Heather has extensive healthcare experience, including providing privacy guidance for provincial Electronic Health Record systems, eHealth initiatives, and AI-related projects, and has developed an AI Governance Framework to support responsible AI implementation in healthcare. She has also supported Caribbean clients in adopting new privacy legislation. Heather holds a number of privacy certifications
BREAKOUT SESSION
Surveillance Panel
Details coming soon!
BREAKOUT SESSION
AI Is the Easy Part: Why Governance, Privacy, and Information Management Will Determine AI Success
Every department, agency, and council is being asked the same question: What is our AI plan? Yet much of the conversation continues to focus on models, copilots, platforms, and vendors. This session argues that technology is only one part of the challenge.
Drawing on Canada’s AI journey—from the launch of the Pan-Canadian Artificial Intelligence Strategy in 2017 to the federal AI Strategy for the Public Service 2025–2027—as well as practical examples from healthcare, municipal government, and provincial policy work, the presentation examines what organizations must have in place before AI can deliver meaningful and sustainable results.
The central message is straightforward: technology may represent only 10–20% of the AI challenge. The rest involves governance, privacy, information management, cybersecurity, people, processes, accountability, and organizational readiness. Participants will leave with a clearer understanding of why successful AI adoption depends less on selecting the newest tool and more on building the policies, data practices, oversight, and internal capacity needed to use it responsibly.
ABOUT THE SPEAKER
Richard Spencer, Faculty Researcher in Artificial Intelligence and Machine Learning, College of the North Atlantic
Richard Spencer is a Faculty Researcher in Artificial Intelligence and Machine Learning at the College of the North Atlantic, where he works on applied AI, cloud computing, data analysis, and the practical adoption of emerging technologies. His work is focused on moving AI beyond theory and demonstrations into useful, responsible workflows that can support real organizations, real employees, and real decision-making.
His current research includes the use of machine learning, computer vision, and hyperspectral imaging to support mineral exploration, drill-core analysis, quality control, and the identification of geological and mineralogical patterns. He has worked with complex hyperspectral datasets across VNIR, SWIR, MWIR, and LWIR sensors, as well as core imagery, assay data, and automated image-analysis models. This work is aimed at turning large volumes of technical data into structured, usable information that can improve consistency, reduce manual effort, and support faster interpretation.
In addition to his technical and research background, Richard brings direct public-sector experience as a municipal councillor. That role has given him practical insight into the realities of public administration, including limited staff capacity, public accountability, privacy, records management, procurement, policy development, community expectations, and the need for transparent decision-making. This combination of technical expertise and front-line public-sector experience shapes his approach to AI adoption.
BREAKOUT SESSION
Privacy Management and Accountability Program (PMAP)
Presenters will walk participants through the process of developing a Privacy Management and Accountability Program (PMAP).
This will include:
- What a PMAP is by definition;
- What is its purpose and how is the purpose achieved;
- What are the benefits of a PMAP;
- What does the assessment and development process look like;
- How is the GAP Analysis completed;
- What should be included in a PMAP;
- Available resources and tools.
ABOUT THE SPEAKERS
Michelle Butt, Privacy Coordinator, Government of Newfoundland and Labrador
Michelle Butt is a Privacy Coordinator with the Government of Newfoundland and Labrador. She works with departments to assess privacy program maturity and strengthen privacy management practices through policy development, compliance monitoring, training, and program implementation. Michelle also supports the development of personal information inventories and provides guidance on establishing and maintaining effective privacy management programs. Her work focuses on helping organizations build practical, sustainable privacy programs that support legislative compliance, responsible information stewardship, and the protection of personal information.
Erin Drover, Director of Privacy, ATIPP Office, Government of Newfoundland and Labrador
Erin Drover is the Director of Privacy for the ATIPP Office. She has been with the Office for more than 10 years, serving as a privacy analyst, manager, and now director. Her work has included managing and mitigating privacy breaches, developing privacy training, providing advice on a wide range of privacy issues, supporting policy development, and contributing to privacy impact assessments.

