Eli Lilly and Company (LLY) Earnings Call Transcript & Summary
November 5, 2020
Earnings Call Speaker Segments
Hunter Muller
executiveWell, great interview. I thought -- hopefully, you enjoyed the interview with Trevor, so solid thought leadership in tech -- which are role of the tech leader, where we are today and what we need to be thinking about now, really excited about that. So next up, Securing the Future. We have Chris Goettl, Director of Product Management, Ivanti; Meredith Harper, VP, CISO at Eli Lilly and Company; Monti Knode, Director of Customer Success at Horizon3.ai; and JJ Markee, CISO at Baxter; and Laura Whitt-Winyard, Global CISO of DLL Group. Hey, folks, great see you all.
Laura Whitt-Winyard
executiveHi, Hunter. Thanks for having me.
Monti Knode
executiveHey, Hunter. Good afternoon.
Hunter Muller
executiveThanks, all. Thanks to all for making it. Wow, what an incredible time we're in right now, coming a week -- just a week from -- a week of history, right, here in the United States, that's for sure. Meredith, you're up first, a little bit about Eli Lilly, the context of the company. And post-pandemic, when you think about how things have changed in regard to your recruitment plans, what are you doing differently? Are you there? I can't hear you for some reason. Maybe it's on mute? No.
Chris Goettl
executiveHello. Chris from Ivanti here.
Hunter Muller
executiveHi, Chris.
Chris Goettl
executiveHi. I was finally to join by audio only. I apologize for the delay. I was having an error trying to connect the app.
Hunter Muller
executiveGood to have you.
J. Markee
executiveHello. This is JJ Markee on as well on the phone only as it was failing to join the meeting.
Hunter Muller
executiveSorry about that. Okay. Well, why don't we start with -- is Laura on the call as well?
Laura Whitt-Winyard
executiveI am here.
Hunter Muller
executiveHey, Laura -- oh, sorry. There you are. Great. Great to see you, Laura. When you think about what's changed so fast, so quickly, how do you develop a collaborative culture? Culture really matters, right, Laura?
Laura Whitt-Winyard
executiveAbsolutely.
Hunter Muller
executiveHow do you develop sort of a collaborative culture of ops, dev and security?
Laura Whitt-Winyard
executiveI think that now is the time where it's more crucial than ever. There's a massive acceleration into digital transformation. And I think with that acceleration for digital, there's a lot of push of going to the cloud, DevOps really enabling the business as quickly as possible. And I think it's important that security especially collaborates with the developers, with the program managers and is really invested in the security-by-design methodology so that we enable the business to go at the speed they require.
Hunter Muller
executiveGot it. A little bit about DLL Group?
Laura Whitt-Winyard
executiveYes. So DLL Group, we're a global company. We are in 35-plus countries. So we're signed with regulations all around the globe. We are a leasing company, and we are a wholly owned subsidiary of Rabobank out of the Netherlands.
Hunter Muller
executiveGot you. Great. Stay with me. I'll circle back to you.
Laura Whitt-Winyard
executiveSure.
Hunter Muller
executiveThanks for just popping in there. Hey, Meredith, can -- does the microphone work now? We still don't have sound. So you want to try dialing in, literally just dial in and we'll circle back here in just a minute. Hey, Monti, you want to kick it off here a little bit about Horizon3.ai and your background?
Monti Knode
executiveYou bet. So good afternoon, everybody. My name is Monti Knode. I'm the Director of Customer Success for Horizon3.ai, a small data-based company that is really focused on cybersecurity right now. I just retired from the military after 26 years as a colonel in our Air Force, where I was a cyber operations officer. And I got to grow up in special operations, do some cool things there and then do some cool things in cyber, and now with Horizon3 really getting to help grow something that I'm very passionate about and surrounded by a lot of people who are passionate about it as well in cybersecurity.
Hunter Muller
executiveAnd what's unique about the company?
Monti Knode
executiveSo what we do is we give an attacker's perspective. We definitely prioritize vectors over vulnerability. So you see a lot of alert fatigue and people who are very capabilities-poor but tools-rich. And a lot of the capabilities that we're looking at right now with security companies -- and there was just an article done on security being -- selling a lemon to a lot of the companies that are out there because they're not very happy with what they're getting. So what we're trying to do is turn that map around, to use a military colloquialism, and give an attacker's perspective so that you can see exactly what matters most, what -- and then get after it and fix what matters most because that's been something that's been so frustrating. I was a former CIO and CISO and it was so frustrating when somebody else, like an attacker, knew more about your network than you did. So that's what Horizon3 does, pretty good at it so far.
Hunter Muller
executiveExcellent. Thanks for being here, Monti. Good to see you. Chris, can you hear me there?
Chris Goettl
executiveYes, I can.
Hunter Muller
executiveExcellent. When you think about the expanded threat landscape in Ivanti, a little bit about Ivanti and the company, what's uniquely different about you all and what you're thinking about right now in terms of the trends and what you're tracking?
Chris Goettl
executiveYes. Absolutely. So Ivanti, we have accumulated a number of technologies over the years, and we're focused on helping companies to improve the areas that matter most, discovery of managing, securing and serving your business. So this is a variety of technologies. Security is not just a silver bullet that you can go to the next security event and buy off the shelf like that. It has to be something that is pervasive throughout all technologies across the organization. That is a mentality that you bring, a strategy that you execute, and that's what we're here to try to do for our customers from the basics of preventative security, traditional technologies like patch, app control, privilege management to new technologies like zero-trust access control. And yes, I'm happy to be here.
Hunter Muller
executiveSo when you think of this whole network from anywhere point of view and soon to be the hybrid model, how can Ivanti help assist organizations embrace this future of work now or the future of the organization here right now?
Chris Goettl
executiveYes, that's absolutely a good question and very relevant to a lot of people right now. This shift has caused all of our traditional ways of thinking to kind of -- it's basically broken the mold. We don't have a traditional perimeter anymore. We don't have a traditional way of managing devices anymore. I could have a user access an application from a device, and any of those 3 things could be a user that I expect or not, a device that I manage or have no idea about if it's a BYOB situation, and applications that could be on my network, in the cloud, virtually anywhere. So with that, this rapid shift to remote work had taken struggles that organizations had already been feeling and pretty much exacerbated them significantly. So now there was a scramble to be able to... [Technical Difficulty]
Hunter Muller
executiveChris, I think you broke up there.
Chris Goettl
executiveSorry about that.
Hunter Muller
executiveYou're back. Keep going.
Chris Goettl
executivePerfect. So with this shift to remote work, companies have had to make hard -- quick and fast decisions like opening up remote desktop externally. But doing so has opened them up to new exposures, like I could phish a user, get their credentials and just come right in through the RDP session because I'm somebody you know and trust. So to enable this new world of remote work, we need to make sure that we've got technologies that again can manage a user no matter where they are, identify that user and that they're somebody we trust, and the data and applications they want access to that they're actually authorized to have access to. So it's a rapidly changing world but one that there are technologies available today to help address the challenges for.
Hunter Muller
executiveExcellent. Thanks so much. JJ, are you out there?
J. Markee
executiveI am.
Hunter Muller
executiveSo I see you now. Thanks for coming on the program. A little bit about Baxter in the context of your role as the CISO. Paul Martin is a really great friend.
J. Markee
executiveYes. Unfortunately -- or fortunately, I've only been with Baxter about a year, and Paul is actually one of the reasons I joined and he recently retired. So we have a new CISO called -- named Talvis Love, who is very much going to carry the torch in Paul's stead. So Baxter, as a company, we are in the -- mostly in the pumps and bags business, so dialysis and medication delivery, nutrition, anything you can put in a saline bag for delivery. We are in pretty much every country in the world and have 53 manufacturing sites globally. I've been with Baxter about -- almost a year now and in charge of the security, cyber, whatever want -- else you want to call in the big bucket, but mostly cyber-related and IT infrastructure, et cetera.
Hunter Muller
executiveWhat keeps you up at night? What do you -- what keeps you up at night when your phone rings in the middle of the night?
J. Markee
executiveWell, I'm sure I'll have the same concerns as Meredith, which really is a lot around the recent ransomware attacks. So you see a high vulnerability and a leverage point that bad guys are using in order to attack industries that will pay and have a requirement and need to pay to either protect patient lives or deliver product to people. So ransomware has been very, very prevalent over the last few months and has ramped up even more so in the last week with the FBI and CISA now seeing a large awareness campaign around the attacks that are going on in the health care industry. So I think that's the most prevalent in the near-term space. So if you go out to the mid-, longer-term space, the things you'll have are changes in privacy law. California just passed theirs. So there's a lot of privacy regulations, and that changes the game a little bit on how health care companies collect and handle and manage data even though we're getting to more consistency with Europe, but there is nuances within each country. And then a corollary to that one also is now data localization, where you start seeing a lot more countries enacting and erecting barriers to say, "All data of my citizens need to stay in my country," which is almost the antithesis of the Internet. So we've spent lots of money going to the cloud and optimizing and having single services. Now we're going to be kind of chopping those up into little pieces to serve little countries and different markets around the world, which will create a lot of inefficiencies in the way we've been building our services. So those are probably the near and a little bit more of the mid- to longer-term concerns that I've got.
Hunter Muller
executiveGot you. Great. Thanks, JJ. Stay with us. Go on mute if you can. That would be great. We'll try Meredith one more time. Meredith, are you there? Still a no, no. Can you call in, call in? You are. Okay. Strange. Hey, Laura, over to you.
J. Markee
executiveHunter, I would like to congratulate Meredith on being elected to the H-ISAC Board even though she can't respond. So that's a big honor. So you've got a very good panelist on this side with the rest of us.
Hunter Muller
executiveThanks, JJ. She is actually clapping and saying she's very happy and appreciative and smiling. Very good. Laura, when you think about securing the enterprise right now and the -- what do you think about the whole idea of automating security of the DevOps cycle? We heard a little bit about that early on...
Laura Whitt-Winyard
executiveYes. Sure. And my connection might be a little bit choppy as well here quickly. So if I break up, I'll [ circle ] back towards the [ base ]. Yes. I think it's pivotal. I think if we realize that developers and product managers are our internal customers from getting on the ground floor, [ making message ] or coding scans, automating the review and -- it's really going to, number one, reduce the number of vulnerabilities; but, number two, it's truly going to help us prevent rework of having to go back and fix something that's already been rolled.
Hunter Muller
executiveYou're chopping up a little bit there.
Laura Whitt-Winyard
executiveSorry. Can you hear me okay now?
Hunter Muller
executiveYes. Right -- and you're cut.
Laura Whitt-Winyard
executiveSorry. My power has gone now 4 times today at my house. So I don't know what's going on here in Pennsylvania.
Hunter Muller
executiveGot it.
Laura Whitt-Winyard
executiveI see Meredith has left again. Sorry. So yes, I think this partnership, especially nowadays, is [indiscernible] are difficult to partner with the business and with the development team [indiscernible] would be if you're physically in the office, [ standing and since you're coding ] in the very beginning.
Hunter Muller
executiveWe're having a hard time making it out. Stay with us for a minute. We'll try again here in a minute. Monti, over to you. When you think about delivery value and looking at ROI on security initiatives to the Board and the C-suite, what comes to mind?
Monti Knode
executiveSo -- and I want to say I've heard Laura speak to this topic before, and she's got a great way ahead on this. I think that's been one of the -- one great thing about this time is that people are actually listening to a CISO and a CIO. Maybe a little bit more companies are realizing just how much digital transformation matters to their business transformation. And so what you've got to do when you're up at that area, speaking ROI, you definitely got to speak that language that the Board is wanting to hear. So often, security is viewed almost like a boat anchor or a compliance check box and just some pain that somebody wants to make go away or hand to somebody else. And as security professionals, we've got to make that sale very clear to the C-suite on how security protects the enterprise, protects that business operation, let alone that company brand and reputation going forward. We've all seen some of the breaches happen and how that's absolutely destroyed credibility and customer base. And that's something that -- security, hopefully, we can convey in a more effective way to those partners at the top.
Hunter Muller
executiveExcellent. Thanks, Monti. Appreciate it. Hey, Meredith, we give it one more try? I can't hear you. Over to JJ. What's new since the pandemic for you?
J. Markee
executiveI think the pandemic has been actually an opportunity for a lot of people. You've got both sides. You've got the pain and challenges, but I think it's also unleashed a lot of creativity within companies to solve problems. I think you have had historical barriers that people may or may not have wanted to tear down, let's say, from a process flow. Digital signing is probably a good thing, electronic signatures. A lot of companies have been hesitant. A lot of companies in manufacturing spaces for a long time like the wet signatures. This has kind of put that in stark contrast to say, "Okay, how much - how many wet signatures do we really need?" Because right now, they're really, really hard to get, and you're going to be shipping documents all over the place. So digital signatures has been one of those areas that has really said, "Okay, this is an opportunity to meet the need." Telemedicine is another one that says, okay, it's been a promised product for many years. Now it's actually taken off. So I think a lot of the timing, you say, "Okay, what's new in COVID?" There's a lot of innovation that's going in. And so there's a lot of new opportunities that are being created. The unfortunate side is a lot of the things and the way we have done things in the past are failing miserably. When you go into the hotel, restaurant space, the entire leisure industry has been decimated. So you get a lot of unfortunate pain. At the same time, you're having a lot of opportunity for new advancement for people to say, "Okay, how do we collaborate?" You mentioned a little bit about collaboration, better, different. And that's -- the e-mails are going away. Team calls are on the increase, WebEx calls, wherever you want to call. But the utilization of those tools has skyrocketed. So I think at the principle, people do want to collaborate, people do want to have interaction, and people do want to achieve the same goals as before, but it's really been your opportunity to do it differently. So I think the opportunities have been -- are there for people who have their eyes open and are willing to kind of step up and be aggressive and just say, "Okay, maybe we did something the same way for 20 years, and we no longer can do it that way. So let's look at a better or a different way to do it."
Hunter Muller
executiveVery thoughtful. Thanks, JJ. I appreciate the answer to that. Over to Chris. Chris, recently, Ivanti announced the acquisition of MobileIron and Pulse Secure. How will both these acquisitions help your customers?
Chris Goettl
executiveYes. So this goes back to the strategy for Ivanti, which is how to help our customers to bring what's in our environment. To manage our environment, we need the right technologies to be able to -- so that we're able to discover, identify what needs to be managed and manage it properly. We need good security technologies to not only prevent but also to control access throughout our environment. So MobileIron and Pulse Secure are really coming in to help us with 2 of those key strategies. MobileIron around the management. I need to be able to manage traditional clients. I need to be able to manage mobile devices in a more modern way. Most organizations haven't fully achieved that transition yet. So they need to straddle both the traditional and the modern management, and they need a platform that can help them to achieve both. And that's the benefit of bringing Ivanti's client management and MobileIron's mobile management together. The security side, we've got some great preventative capabilities. Again, we've got industry-leading patch management. We've got a very robust app control and privilege management capability already. Pulse Secure really brings in a new layer of much-needed security. So EDR came into the security space and large assertions as to what it would do, but it's hard to take a decent skill set to maintain. And if you haven't done those preventative things, it ends up with so many events to have to go through that you miss those critical items that come in there. Going to the topic of modern-day ransomware, these ransomware attacks are no longer just throwing ransomware, malware into the environment and hoping to hit something. These threat actors are in your environment, they're behaving like a persistent threat actor, and they're able to get very stealthy very quickly. So the preventative capabilities will only hold them at bay until they find that chink in the armor to get in. At that point, if you're reliant on EDR to spot them, are they going to get lost in the noise of all of the events? Are they not going to get spotted because they've compromised a credential? And now they're masquerading as somebody you trust and tools you expect. So this is where zero trust from Pulse Secure really comes into play, providing access controls and a 360 visibility, premised to cloud, client-to-mobile device, getting that visibility and forcing threat actors to take more risks, which make it so technologies like EDR are going to be successful in spotting those events as they happen instead of a threat actor being able to go stealthy on us and be able to go under the radar. So those are 2 very key pieces of the Ivanti strategy to help us strengthen our approach and help our customers to be successful.
Hunter Muller
executiveChris, thanks for coming on the program. And thanks for your support, and I believe you're in the marketplace as well. So great job. Guys, it's a wrap today. Monti, final comment, final word, Monti?
Monti Knode
executiveWe're in a great business, Hunter. Glad to be a part of it.
Hunter Muller
executiveGot you. Right. Real exciting time, right? You agree, Chris? Laura, final comment? Great to see you. Guys, what a great summit. Sorry about the technical...
Laura Whitt-Winyard
executiveI need to say [ take ] this opportunity to be sure you have everything.
Hunter Muller
executiveOne more time? Great time to be...
Laura Whitt-Winyard
executiveThat's from me, Hunter.
Hunter Muller
executiveThank you. Great time to be a tech leader, guys. Another great summit from HMG Strategy. Apologies on the technical glitch there. We'll smoothen it out next time for sure. A big shout out to our partners, BetterCloud, Darktrace, RingCentral, Ivanti as well as Rimini Street and Okta and the HMG marketplace. Big shout out to the Philadelphia SIM Chapter. Appreciate a relationship we've been building on some 8 years, long and strong, and all of our presenters and the speakers. I'd like to invite August Pelliccio to the stage. August, are you there with us? And -- great to see you coming in from your studio office in New York. I see. That's great. August is our key -- in addition to social media here at HMG. August has -- leads the HMG recognition program. August, take this portion of the program away. Let's go.
August Pelliccio
executiveThanks, Hunter, and thanks, everyone, for staying on the line right until the very end. So we're recognizing Laura Whitt-Winyard today, Global CISO for DLL. She was on our last panel, and we had a couple of technical glitches, but otherwise, some really great thought leadership that you were sharing today, Laura. I just want to give everybody a little bit of background on Laura. She's a visionary, cybersecurity, privacy, compliance, risk management leader with seasoned experience in creating and leading highly effective and successful risk management programs, products and services. She's a change agent. She has fostered extensive hands-on enhancement of cybersecurity programs. Laura has taken on a diversity of roles in IT and security across an impressive career, including security management positions with Bloomberg and Comcast. Now as Global CISO with DLL, Laura has built a robust network and team of IT and cybersecurity specialists, leading DLL to a higher security maturity level in more than 30 countries. Part of Laura's special touch, she lives and breathes security, staying on top of global cybersecurity news from the moment she wakes up each morning. Laura, you're a one of a kind leader, a passionate CISO. We commend all of the important strides you've made and congratulate you for winning this award.
Laura Whitt-Winyard
executiveThank you so much. I'm so honored to receive the award. But in reality, I owe it all to the cybersecurity professionals that surround me and the cybersecurity community as a whole. I would be nowhere without them. And I just really love the security community, and I'm so grateful for them. And I absolutely adore my team at DLL, and they're just really top-notch security professionals.
Hunter Muller
executiveCongratulations, Laura. Great acceptance speech, and we look forward to working with you in more summits going forward.
Laura Whitt-Winyard
executiveThank you. I look forward to it. Cheers, Hunter.
Hunter Muller
executiveTake care. Another great summit. August, guys, as always, folks, please reach out to your network. Refer folks to the HMG summit model and other series, and we look forward to the next time we're together. Be safe and lead on.
Read the full transcript via the API
You're viewing the first half of this call. Get the complete Eli Lilly and Company transcript — plus 250,000+ transcripts from 12,000+ companies, speaker segments, AI summaries and full-text search — through the EarningsCalls.dev API.
Get the API View API docs →This call discussed
For developers and AI pipelines
Programmatic access to Eli Lilly and Company earnings transcripts and 250,000+ others is available through the
EarningsCalls.dev REST API. Plans from $24.99/month — full transcripts, speaker segments,
full-text search, and the recently-added /api/v1/transcripts/recent polling endpoint for ETL pipelines.