Operation: Defend The North 2025 (Calgary)

Operation Defend the North 2025 Calgary

OPERATION: DEFEND THE NORTHA Canadian Cybersecurity Readiness Exercise

Our immersive event simulates a large-scale cyber attack targeting Canada’s critical sectors — Energy, Finance & Banking, Healthcare, Government Services, and Telecommunications. Through a dynamic and interactive tabletop exercise, participants will navigate a high-stakes cyber crisis scenario. This experience brings together industry leaders, cybersecurity professionals, policymakers, and key stakeholders to collaboratively strengthen our national cyber resilience.

This event is online and in-person.

O Canada, we stand on guard for thee.

Protégera nos foyers et nos droits.

Event Details
General Admission
$199.00

Access to All Event Modules

Tabletop Cyber Crisis Simulation

Continental Breakfast, Boxed Lunch & Refreshment Breaks

In-Person Networking with Canada’s Cyber Leaders

Experience the frontline of cyber defence—up close and in action

Student Pass
$10.00

Reserved for Young Defenders of the North Hackathon Participants

Gain Entry to Select Event Modules & Simulation Highlights

Network with Cybersecurity Leaders & Industry Mentors

Experience Real-World Scenarios Designed for Future Defenders

Your first step from the hackathon floor to the frontline of cyber defence

Virtual Full Access
$10.00

Stream All Modules Live

Participate in Real-Time Chat & Polls

Access Virtual Expo Booths & Resources

On-Demand Replay via the siberX Platform

Join Canada’s Cyber Community—Anywhere

Virtual Starter Pass (Free)
Free

Free Access to the Opening Module

Preview the Live Cyber Crisis Simulation

Connect with Attendees in Real Time

Upgrade Anytime for Full Access

Experience the Event on the siberX Platform

Chief Innovations Officer
Mirai Security
Chief Innovations Officer at Mirai Security
Chair of Operation
Operation: Defend the North - siberX
Chair of Operation at Operation: Defend the North - siberX
Assistant Instructor
York University
Assistant Instructor at York University
Researcher
University of Calgary
Researcher at University of Calgary
VP, CISO
Equifax Canada
VP, CISO at Equifax Canada
Executive Director & CISO
Alberta Health Services
Executive Director & CISO at Alberta Health Services
Manager - Federal Account North America
SANS
Manager - Federal Account North America at SANS
Global Director Enterprise Architecture & CISO
Finning International
Global Director Enterprise Architecture & CISO at Finning International
Vice President, Cyber Risk Consulting
Aon
Vice President, Cyber Risk Consulting at Aon
President and Principal Consultant
Risk Embrace Inc
President and Principal Consultant at Risk Embrace Inc
  • Join us for breakfast and start your day off right!

  • Kick off "Defend the North" with an exciting overview of our mission and prepare for a dynamic cyber defence simulation.

  • The initial signs are subtle yet concerning. At Alberta’s Grid Operations Centre, an unusual surge of communication warnings begins to flood operator dashboards. The interconnectivity status of ODTN Power Co's three 100 MW solar farms across Alberta has flatlined – they've gone silent. While seemingly isolated, this anomaly triggers alarms within the grid monitoring systems. A call is placed to ODTN Power Co to investigate, and standard operating procedures are initiated to prepare reserve power capacity as a precautionary measure. The critical first step is to determine the cause of this sudden silence. Is it a technical glitch within ODTN's systems, a network anomaly, or something more sinister impacting their ability to communicate with the grid? The urgency to understand the root cause escalates as the interconnected nature of the power grid becomes a looming concern.

  • Recharge with a tasty snack break!

  • Before the reserve capacity can be fully brought online, the situation rapidly deteriorates. Frequency across the Alberta power grid plummets unexpectedly. This critical instability triggers automated safety mechanisms: high-voltage transmission lines begin to trip offline. The cascading effect intensifies as baseload generators, unable to maintain stability, fail in quick succession. Within moments, darkness descends across Alberta. The blackout spreads with alarming speed, crippling essential infrastructure from oil sands operations to vital pipelines, effectively freezing the entire province. As grid operators scramble to diagnose the catastrophic failure and initiate reboot procedures, ODTN Power Co’s CEO receives a chilling text message: no subject, no sender—just a cryptic string of characters and geographical coordinates. The immediate priority shifts to containing the blackout and understanding the scope of the system failure. Simultaneously, a frantic effort begins to discover the underlying cause of this unprecedented collapse and the meaning behind the ominous message.

  • Refuel and re-energize with a warm lunch!

  • With Alberta plunged into darkness, the focus turns to identifying and eradicating the cause of the cascading failure. If the initial suspicion of a cyberattack is confirmed, this phase will involve pinpointing the point of intrusion within ODTN Power Co’s control systems and removing any malicious software or unauthorized access. The silent embedding of the threat within the solar farms months prior suggests a sophisticated and persistent adversary. Eradication efforts will require deep technical expertise in industrial control systems (ICS) and a thorough understanding of the compromised infrastructure. The cryptic text message and coordinates received by the CEO may provide crucial clues to the attacker's intent and potential targets for eradication. Ensuring the complete removal of the threat and securing the compromised systems against future attacks is paramount to restoring stability and preventing further damage.

  • Recharge with a tasty snack break!

  • With Alberta plunged into darkness, the focus turns to identifying and eradicating the cause of the cascading failure. If the initial suspicion of a cyberattack is confirmed, this phase will involve pinpointing the point of intrusion within ODTN Power Co’s control systems and removing any malicious software or unauthorized access. The silent embedding of the threat within the solar farms months prior suggests a sophisticated and persistent adversary. Eradication efforts will require deep technical expertise in industrial control systems (ICS) and a thorough understanding of the compromised infrastructure. The cryptic text message and coordinates received by the CEO may provide crucial clues to the attacker's intent and potential targets for eradication. Ensuring the complete removal of the threat and securing the compromised systems against future attacks is paramount to restoring stability and preventing further damage.

  • Take a moment to stretch and breathe deep!

  • The immediate response is dominated by the urgent need to restore power to Alberta. Grid operators work tirelessly to diagnose the system-wide failure, implement emergency protocols, and gradually bring generating capacity back online. Simultaneously, ODTN Power Co. must collaborate with grid operators, government agencies, and potentially cybersecurity experts to understand the attack and its impact. Post-incident activity begins concurrently. This includes a thorough forensic investigation of ODTN’s control systems to understand the initial intrusion, the lateral movement within their network, and the trigger for the cascading failure. Legal and regulatory implications will need to be addressed, and detailed documentation of the incident and the response efforts will be critical for future analysis and potential legal action.

  • Join us for breakfast and start your day off right!

  • Kick off "Defend the North" with an exciting overview of our mission and prepare for a dynamic cyber defence simulation.

  • The initial signs are subtle yet concerning. At Alberta’s Grid Operations Centre, an unusual surge of communication warnings begins to flood operator dashboards. The interconnectivity status of ODTN Power Co's three 100 MW solar farms across Alberta has flatlined – they've gone silent. While seemingly isolated, this anomaly triggers alarms within the grid monitoring systems. A call is placed to ODTN Power Co to investigate, and standard operating procedures are initiated to prepare reserve power capacity as a precautionary measure. The critical first step is to determine the cause of this sudden silence. Is it a technical glitch within ODTN's systems, a network anomaly, or something more sinister impacting their ability to communicate with the grid? The urgency to understand the root cause escalates as the interconnected nature of the power grid becomes a looming concern.

  • Recharge with a tasty snack break!

  • Before the reserve capacity can be fully brought online, the situation rapidly deteriorates. Frequency across the Alberta power grid plummets unexpectedly. This critical instability triggers automated safety mechanisms: high-voltage transmission lines begin to trip offline. The cascading effect intensifies as baseload generators, unable to maintain stability, fail in quick succession. Within moments, darkness descends across Alberta. The blackout spreads with alarming speed, crippling essential infrastructure from oil sands operations to vital pipelines, effectively freezing the entire province. As grid operators scramble to diagnose the catastrophic failure and initiate reboot procedures, ODTN Power Co’s CEO receives a chilling text message: no subject, no sender—just a cryptic string of characters and geographical coordinates. The immediate priority shifts to containing the blackout and understanding the scope of the system failure. Simultaneously, a frantic effort begins to discover the underlying cause of this unprecedented collapse and the meaning behind the ominous message.

  • Refuel and re-energize with a warm lunch!

  • Before the reserve capacity can be fully brought online, the situation rapidly deteriorates. Frequency across the Alberta power grid plummets unexpectedly. This critical instability triggers automated safety mechanisms: high-voltage transmission lines begin to trip offline. The cascading effect intensifies as baseload generators, unable to maintain stability, fail in quick succession. Within moments, darkness descends across Alberta. The blackout spreads with alarming speed, crippling essential infrastructure from oil sands operations to vital pipelines, effectively freezing the entire province. As grid operators scramble to diagnose the catastrophic failure and initiate reboot procedures, ODTN Power Co’s CEO receives a chilling text message: no subject, no sender—just a cryptic string of characters and geographical coordinates. The immediate priority shifts to containing the blackout and understanding the scope of the system failure. Simultaneously, a frantic effort begins to discover the underlying cause of this unprecedented collapse and the meaning behind the ominous message.

  • Recharge with a tasty snack break!

  • With Alberta plunged into darkness, the focus turns to identifying and eradicating the cause of the cascading failure. If the initial suspicion of a cyberattack is confirmed, this phase will involve pinpointing the point of intrusion within ODTN Power Co’s control systems and removing any malicious software or unauthorized access. The silent embedding of the threat within the solar farms months prior suggests a sophisticated and persistent adversary. Eradication efforts will require deep technical expertise in industrial control systems (ICS) and a thorough understanding of the compromised infrastructure. The cryptic text message and coordinates received by the CEO may provide crucial clues to the attacker's intent and potential targets for eradication. Ensuring the complete removal of the threat and securing the compromised systems against future attacks is paramount to restoring stability and preventing further damage.

  • Take a moment to stretch and breathe deep!

  • The immediate response is dominated by the urgent need to restore power to Alberta. Grid operators work tirelessly to diagnose the system-wide failure, implement emergency protocols, and gradually bring generating capacity back online. Simultaneously, ODTN Power Co. must collaborate with grid operators, government agencies, and potentially cybersecurity experts to understand the attack and its impact. Post-incident activity begins concurrently. This includes a thorough forensic investigation of ODTN’s control systems to understand the initial intrusion, the lateral movement within their network, and the trigger for the cascading failure. Legal and regulatory implications will need to be addressed, and detailed documentation of the incident and the response efforts will be critical for future analysis and potential legal action.

Join us as a sponsor and position your brand at the forefront of cybersecurity innovation—gain exclusive visibility, connect with industry leaders, and make a lasting impact in the cyber community.

Air Canada Ticket Promo Code

V4CWT2T1
  • The booking is to be made to the following city: Calgary, YYC (CA)
  • The travel period begins Monday, October 13, 2025 and ends Tuesday, October 28, 2025.
  • Travel is valid Monday, Tuesday, Wednesday, Thursday, Friday, Saturday, Sunday.
  • For North America: 5% applies on standard fares, 10% on flex fares & higher.
  • For International Travel: 10% on standard fares & higher.
About the Venue

Bow Valley College

345 6 Ave SE, Calgary, AB T2G 4V1

A dynamic hub for innovation, education, and professional development, Bow Valley College stands at the forefront of learning in the heart of downtown Calgary.

Event Details