Ransomware Attacks: What Every In-house Counsel Should Know (Dec. 11, 2025)
Includes a Live Web Event on 12/11/2025 at 2:00 PM (EST)
-
Register
- Non-member - $80
- Member - Free!
- *Further discounts may apply once you log in.
Join leading cybersecurity experts and privacy practitioners as they cover key information to help in-house counsel navigate an attack. The panel will discuss why no organization is immune, how an attack unfolds, forensic investigations, and regulatory compliance issues. For added insight, an expert ransom negotiator will discuss the psychology behind negotiating a ransom.
Generously Sponsored by Jackson Lewis and the Employment and Labor Law Network
This live program offers free CLE in select jurisdictions for members of ACC. Please see details below!
CLE/CPD CREDIT IS AVAILABLE IN THE FOLLOWING JURISDICTIONS:
*Alaska, *Arizona, California, *Connecticut, Georgia, *Hawaii, Illinois, Minnesota, Missouri, *Montana, *New Hampshire, *New Jersey, *New York, *North Dakota, Ohio, Pennsylvania,Tennessee, Texas, and Washington.
*Indicates that CLE/CPD credit is available by virtue of reciprocity with another jurisdiction.
ACC WILL MAKE AN APPLICATION FOR CLE UPON REQUEST IN THE FOLLOWING JURISDICTIONS:
Arkansas, Colorado, Delaware, Kansas, Louisiana, New Mexico, North Carolina, South Carolina, and Vermont.
Requests must be made one week prior to the scheduled program date to ensure timely application submission. Please use the form below to submit your request for CLE.
CLICK HERE TO ACCESS THE FORM!
ATTENDEES MUST SELF-FILE IN THE FOLLOWING JURISDICTIONS (A CERTIFICATE WILL BE PROVIDED TO ASSIST YOUR FILING EFFORTS):
Alabama, Florida, Idaho, Indiana, Iowa, Kentucky, Maine, Mississippi, Nebraska, Nevada, North Carolina, Oklahoma, Oregon, Puerto Rico, Rhode Island, Utah, West Virginia, Wisconsin, and Wyoming.
CLE/CPD IS NOT MANDATORY IN THE FOLLOWING JURISDICTIONS:
District of Columbia, Maryland, Massachusetts, Michigan, South Dakota
Key:
Mary Costigan
Principal
Jackson Lewis P.C.
Mary Costigan ((https://www.jacksonlewis.com/people/mary-t-costigan))
Mary T. Costigan is a principal in the Berkeley Heights, New Jersey, office of Jackson Lewis P.C. She holds Certified Information Privacy Professional/US and EU designations from the International Association of Privacy Professionals (iapp).
Mary’s practice focuses on data privacy and cybersecurity. She counsels a wide range of regional, national and multinational clients on data privacy and cybersecurity laws, compliance, and best practices.
Shana Ricchiuto
Head of Legal
Syntax
Shana Ricchiuto (https://www.linkedin.com/in/shana-ricchiuto-2a36bba5)
Shana Ricchiuto is an attorney with over 10 years of experience in the area of technology transactions. At Syntax, Shana is currently the SVP Legal Affairs, Americas and the Data Protection Manager for the Americas. In this role, Shana has led the strategic development of the legal department at Syntax, including its implementation of AI within the Legal Department. She has designed and implemented data privacy and data protection programs each aimed at mitigating specific potential exposures. Shana is passionate about problem solving and reinventing how legal work can be done using the latest technological advancements.
Prior to her joining Syntax, Shana was the Managing Attorney at a law firm that focused on providing outside counsel support in the area of data privacy. Shana obtained her bachelor's degree from Sarah Lawrence College, Juris Doctor from New York Law School, and recently completed the Executive Leadership MBA Program at McGill University under Syntax's leadership development program.
Abbey Mirelli
Manager, Incident Response
Pondurance
Abbey Mirelli (https://www.linkedin.com/in/abbey-mirelli)
With over 5 years of hands-on experience in cybersecurity, Abbey Mirelli is the Manager of the Incident Response (IR) team, where she leads investigations into ransomware, extortion, fraud, and other major security incidents. She specializes in incident response, threat hunting, and forensic investigations, helping organizations understand attack vectors, scope, and impact while ensuring swift containment and recovery. As IR Manager, Abbey not only directs complex investigations but also mentors her team and collaborates with cross-functional stakeholders, law enforcement, and legal counsel to minimize business impact. She also designs and facilitates tabletop exercises (TTX) that simulate real-world attacks, enabling organizations to identify gaps, improve preparedness, and strengthen overall security resilience.
Jennifer Polliard
Director
Booz Allen
Jennifer Polliard is a Sr. Director at Booz Allen and leads the Threat Actor Communication & Intelligence (TACI) team for the commercial Incident Response business. A 25-year veteran of local law enforcement and the military police, Jennifer is an experienced negotiator who has handled thousands of crisis negotiations during her career.
Jennifer has a proven track record in intelligence gathering, strategy development, and crisis communications/negotiations, which she uses as she leads a team of experts who navigate hundreds of ransomware events and other cyber incidents each year. Jennifer and her team work with a broad range of companies across every business sector, from small, privately owned organizations to the Global Fortune 2,000. Jennifer and her team successfully negotiate and communicate directly with adversaries by using data-driven intelligence and tracking the behaviors/patterns of threat actor groups (both independent and nation-state affiliated). The TACI team also works closely with clients to proactively develop strategies to mitigate ransomware incidents. In addition to her round-the-clock work assisting clients, Jennifer is an oft-sought keynote speaker and presenter on ransomware negotiations. Jennifer also helps legal counsel prepare for litigation related to cyber incidents, including acting as an expert consultant and courtroom witness. An advocate for women in cybersecurity, Jennifer serves as a mentor and often speaks to individ