10
1 MARCH, 2016 Letter from the President I hope this letter finds you doing well and enjoying the warmer weather. Thanks to those of you who have renewed your membership – the North Texas Chapter is now 2225 members strong! If you haven’t yet renewed, it’s not too late, just go to www.isaca.org and sign up for another year. The deadline for renewal is March 31, 2016. Our March meeting will take place on March 10 th at the Dallas Marriott Las Colinas located at 223 West Las Colinas Boulevard, Irving, Texas 75039. Shammy Rana, from CompuCom, begins our pre-lunch session discussing "Security Operations." Our lunch session features Robert Clyde, Clyde Consulting LLC and ISACA International Vice President, discussing Safely Embracing the Cyber Future" and Danny Goldberg, GoldSRD, presents "Audit Trends in the Next Five Years" during the post session. Be sure to join us to start earning your 2016 CPE. Register at http://www.cvent.com/d/rfqwb7/4W. The Spring Seminar "Securing and Auditing Virtualized Environments" presented by Alan Sugano will take place April 4-6 (8:00 AM - 4:00 PM) at the University of Texas at Dallas, JSOM, 800 West Campbell Road, Richardson, Texas, 75080. In this three-day seminar you will focus on ESX security. You will start with virtualization basics, hardware virtualization considerations, and different versions of ESX. You will examine best practices for securing ESX servers, access to the management console, ESX logging, and other configuration issues to ensure your ESX virtual server hosts are secure and stable. Case studies using a combination of live demonstrations and exercises will reinforce important virtualization concepts and associated audit points addressed in real audit projects. The cost for the seminar is $1,050 for Members and Non Members (training materials, breakfast, lunch, snacks, and beverages are provided) and up to 24 CPE credits can be earned. See Page 3 for all the details! Also, details about the seminar can be obtained at hp://www.cvent.com/d/jfq20j. Register at hp://www.cvent.com/d/jfq20j/4W. Online registraon closes on Wednesday, March 30, 2016 at 5:00 PM. No walk-ins. Prepay by Credit Card, PayPal only or check only. Note – Checks must be received in chapter PO Box no later than March 28, 2016. (P.O. Box 25026, Dallas, TX 75225-1026). The Chapter Events Policy was updated on January 1, 2016 to address the following changes: Only Credit Card (via Cvent) (V/MC/AMEX/Discover) and PayPal (via Cvent) will be accepted for walk in registrations at the monthly meetings. Cash and check will no longer be excepted onsite. Payment in the form of a check for Seminars must be received in the chapter PO Box no later than one week prior to the first day of the seminar. The updated Events Policy can be found on the chapter website at http://www.isaca-northtexas.org/SitePages/ ProgramPolicies.aspx. The CISA Certification Job Practice and number of questions on the CISA exam have been updated. Beginning in June 2016, the CISA exam will contain 150 questions testing the new job practice. The job practice domains are as follows: Domain 1—The Process of Auditing Information Systems (21%) Domain 2—Governance and Management of IT (16%) Domain 3—Information Systems Acquisition, Development and Implementation (18%) Domain 4—Information Systems Operations, Maintenance and Service Management (20%) Domain 5—Protection of Information Assets (25%) For more information visit www.isaca.org/cisajobpractice. The Spring Chapter CISA and CISM certification review classes will begin in April and May. The classes will take place at the University of Texas at Dallas, JSOM, 800 West Campbell Road, Richardson, Texas, 75080. Connued on next page... Laurie Flandrau Chapter President INSIDE THIS ISSUE: Letter from the President 1 Call for Volunteers! & Membership Renewal 2 2016 Spring Seminar 3 Next Meeting Agenda: Luncheon 4 Next Meeting: Pre & Post-Luncheon 5 In the News 6 Conferences & Training Opportunities 7 2014-2015 ISACA NTX Board & Coordinators 8 ISACA NTX Events Policy 9 Career Opportunities 10 Payments / Cancellations 10

Letter from the President - ISACA North Texas Documents/The Passwo… · Letter from the President ... just go to and sign up for another year. ... ISAA member benefits. Renew Now

Embed Size (px)

Citation preview

1

M A R C H , 2 0 1 6

Letter from the President I hope this letter finds you doing well and enjoying the warmer weather. Thanks to those of you who have renewed

your membership – the North Texas Chapter is now 2225 members strong! If you haven’t yet renewed, it’s not too late,

just go to www.isaca.org and sign up for another year. The deadline for renewal is March 31, 2016.

Our March meeting will take place on March 10th at the Dallas Marriott Las Colinas located

at 223 West Las Colinas Boulevard, Irving, Texas 75039.

Shammy Rana, from CompuCom, begins our pre-lunch session discussing "Security

Operations." Our lunch session features Robert Clyde, Clyde Consulting LLC and ISACA

International Vice President, discussing Safely Embracing the Cyber Future" and Danny

Goldberg, GoldSRD, presents "Audit Trends in the Next Five Years" during the post session. Be

sure to join us to start earning your 2016 CPE. Register at http://www.cvent.com/d/rfqwb7/4W.

The Spring Seminar "Securing and Auditing Virtualized Environments" presented by Alan Sugano will take place

April 4-6 (8:00 AM - 4:00 PM) at the University of Texas at Dallas, JSOM, 800 West Campbell Road, Richardson,

Texas, 75080.

In this three-day seminar you will focus on ESX security. You will start with virtualization basics, hardware

virtualization considerations, and different versions of ESX. You will examine best practices for securing ESX servers,

access to the management console, ESX logging, and other configuration issues to ensure your ESX virtual server

hosts are secure and stable. Case studies using a combination of live demonstrations and exercises will reinforce

important virtualization concepts and associated audit points addressed in real audit projects.

The cost for the seminar is $1,050 for Members and Non Members (training materials, breakfast, lunch, snacks, and

beverages are provided) and up to 24 CPE credits can be earned.

See Page 3 for all the details! Also, details about the seminar can be obtained at http://www.cvent.com/d/jfq20j. Register at http://www.cvent.com/d/jfq20j/4W. Online registration closes on Wednesday, March 30, 2016 at 5:00 PM. No walk-ins. Prepay by Credit Card, PayPal only or check only. Note – Checks must be received in chapter PO Box no later than March 28, 2016. (P.O. Box 25026, Dallas, TX 75225-1026).

The Chapter Events Policy was updated on January 1, 2016 to address the following changes:

Only Credit Card (via Cvent) (V/MC/AMEX/Discover) and PayPal (via Cvent) will be accepted for walk in

registrations at the monthly meetings. Cash and check will no longer be excepted onsite.

Payment in the form of a check for Seminars must be received in the chapter PO Box no later than one week prior

to the first day of the seminar.

The updated Events Policy can be found on the chapter website at http://www.isaca-northtexas.org/SitePages/

ProgramPolicies.aspx.

The CISA Certification Job Practice and number of questions on the CISA exam have been updated. Beginning in

June 2016, the CISA exam will contain 150 questions testing the new job practice.

The job practice domains are as follows:

Domain 1—The Process of Auditing Information Systems (21%)

Domain 2—Governance and Management of IT (16%)

Domain 3—Information Systems Acquisition, Development and Implementation (18%)

Domain 4—Information Systems Operations, Maintenance and Service Management (20%)

Domain 5—Protection of Information Assets (25%)

For more information visit www.isaca.org/cisajobpractice.

The Spring Chapter CISA and CISM certification review classes will begin in April and May. The classes will take place at the University of Texas at Dallas, JSOM, 800 West Campbell Road, Richardson, Texas, 75080. Continued on next page...

Laurie Flandrau Chapter President

I N S I D E T H I S

I S S U E :

Letter from the

President

1

Call for

Volunteers! &

Membership

Renewal

2

2016 Spring

Seminar

3

Next Meeting

Agenda:

Luncheon

4

Next Meeting:

Pre &

Post-Luncheon

5

In the News 6

Conferences &

Training

Opportunities

7

2014-2015

ISACA NTX

Board &

Coordinators

8

ISACA NTX

Events Policy

9

Career

Opportunities

10

Payments /

Cancellations

10

2

T H E PA S S W O R D

Call for Volunteers!

Are YOU ready for a new adventure?

Each year the Chapter solicits nominations of those individuals interested in serving as a chapter officer or appointed volunteer. The North Texas Chapter of ISACA Board of Directors is comprised of nine officers and the three most recent past presidents. The officers are elected each year and work with the appointed volunteers to provide the leadership for the chapter. These are dedicated volunteers who give of their time and energy to enhance and advance the technology assurance, risk management, security and IT governance professions and organize educational meetings and seminars for our membership. The officer positions are: President, Secretary, Treasurer, VP Programs, VP Education, VP Facilities, VP Communications, VP Membership and VP Certification. The appointed volunteer positions are: Assistant Treasurer, Education Coordinator, Certification Coordinator, Academic Relations Coordinator, Reservations Coordinator, Newsletter Coordinator, Website Coordinator, Marketing Coordinator, Chapter Photographer, Jobs Coordinator CPE Compliance Coordinator and Volunteer Coordinator. There may be multiple coordinator positions depending on interest. We are looking for Chapter members who have an active interest in the overall success of our Chapter and have demonstrated

leadership abilities in their current professional or chapter role(s). If you are interested in serving in as an officer or appointed

volunteer for the 2016-2017 Chapter year (beginning July 1, 2016) please send an email to [email protected]

indicating your area(s) of interest and contact information. A nominations committee member will contact you to discuss your

interest and experience.

P A G E 2

Renew Your Membership!

Don’t Miss Out! Renew Your ISACA Membership and/or Certification(s) by

March 31, 2016.

Time is running out! If you have not yet renewed your membership for 2016, act

now to avoid missing out on exclusive ISACA member benefits.

Renew Now !

If you have certifications that need to be

renewed, don’t delay:

To pay your certification maintenance fee(s) online, go to www.isaca.org/renew

To report your 2015 CPE, go to www.isaca.org/reportCPE

Hurry, just a few weeks until renewal

deadline!

...continued from page 1

The CISA classes will be held on April, 30th, May 7th, May 14th, and May 21st. The CISM review classes will be held on May 7th, May 14th, and May 21st. All classes are from 9:00 AM – 5:00 PM. Registration will open in the next few days, please watch your email for an announcement.

We have great topics and speakers planned through the end of our chapter year in June. We hope to

see many of you at our upcoming meetings.

April 14th

– Marriott Los Colinas

Pre-lunch session: Tanya Baccam, Baccam Consulting, UNIX Security

Lunch: Clay Risenhoover, Risenhoover Consulting, Microsoft SQL Server Security and Auditing

Post-session: Clay Risenhoover Risenhoover Consulting, Active Directory Audit Techniques

May 12th

– Marriott Dallas

Pre-lunch session: Nimesh Ravasa and Dariya Kazumov, Deloitte & Touche LLP. Innovation in

Audit

Lunch: To be announced

Post-session: To be announced

June 9th

– To be announced

Pre-lunch session: To be announced

Lunch: Jim Tarantino, High Water Advisors, Data Analytics for IT Audit (Part 1)

Post-session: Jim Tarantino, High Water Advisors, Data Analytics for IT Audit (Part 2)

Please share your comments or concerns about the chapter with me at president@isaca-

northtexas.org or by reaching out to me or any Board member at an event.

Laurie Flandrau, CISA, CRISC

GM Financial

President – ISACA North Texas

3

ISACA North Texas Spring 2016 Seminar

Securing and Auditing Virtualized Environments

Presented by - Alan Sugano

April 4-6 (8:00 AM - 4:00 PM)

University of Texas at Dallas, JSOM, 800 West Campbell Road, Richardson, Texas, 75080

INSTRUCTOR

Alan Sugano is President of ADS Consulting Group, Inc. Mr. Sugano’s areas of expertise include networking; server, workstation, and application virtualization; security; custom programming; Web development;

SharePoint; and SQL server development. Previously, he was with Coopers & Lybrand (now

PricewaterhouseCoopers) as an MAS consultant.

Mr. Sugano speaks regularly on such topics as virtualization, network audit and security, troubleshooting, network design and implementation, server selection, network documentation and management, and disaster

recovery. He is a Contributing Editor for Windows IT Pro and the author of the Real-World Network Troubleshooting Manual. He is a Microsoft Most Valuable Professional (MVP).

PROGRAM DESCRIPTION

In this three-day seminar you will focus on ESX security. You will start with virtualization basics, hardware

virtualization considerations, and different versions of ESX. You will examine best practices for securing ESX servers, access to the management console, ESX logging, and other configuration issues to ensure your ESX

virtual server hosts are secure and stable. Case studies using a combination of live demonstrations and exercises will reinforce important virtualization concepts and associated audit points addressed in real audit projects.

Presentation Method: Group-Live Program Level: Intermediate

Category: Specialized Knowledge & Applications

Prerequisites: A working knowledge of operating system security, networking concepts, and associated logical

access controls, Network Security, IT Audit and controls, or equivalent experience.

Advance Preparation: Recommended CPE Credits: up to 24.0

Cost: $1,050 for Members and Non Members (training materials, breakfast, lunch, snacks, and beverages are provided). Register at http://www.cvent.com/d/jfq20j/4W

Online registration closes on Wednesday, March 30, 2016 at 5:00 PM. No walk-ins. Prepay by Credit

Card, PayPal only or check only. Note – Checks must be received in chapter PO Box no later than March 28, 2016. (P.O. Box 25026, Dallas, TX 75225-1026).

For any information regarding refunds, complaints, and program cancellation policies, visit:

www.isaca-northtexas.org/SitePages/ProgramPolicies.aspx.

P A G E 3

COURSE CONTENT/LEARNING OBJECTIVES

1. Virtualization Basics - what it is

- advantages and disadvantages of virtualization - hardware considerations

- high availability - back-up strategies

- ESX and Hyper-V - integrating virtualization and disaster recovery

- potential hypervisor attacks

2. ESX Basics - ESX versions

- ESX 3.5 and 3.5i, 4.0 and 4.0i - managing ESX hosts

- ESX host security - patching ESX hosts

3. Developing an Audit Program for ESX/Hyper-V - hardware parameters

- proper UPS configuration for hosts and guests - best practices for console access

- log file configuration and review - firewall configuration

- SNMP configuration - Scanning for servers for security holes/viruses/root

kits

- back-up strategy - patch management

- VMotion/DRS security - virtual guest configuration

- virtual server guest base images

4

...and elsewhere

Did you enjoy CACS last year? This year it’s in Vegas! Be sure to get

registered!

Time is running out! Get your colleagues to join ISACA by December

31st to win a tablet or other prizes!

Many of us think we have all the right answers...but how many of us

know the right questions? Submit your certification exam questions to

ISACA and get PAID!

Haven’t even taken that test yet? The June 2014 exams are now open

for registration.

The 2013 IT Risk/Reward barometer examines plans and perceptions of

many of the hot topics in our field, taken from members around the

world.

Have a passion for helping out your fellow IT geeks? Want to do more

within the community? Become an ISACA volunteer!

T H E P A S S W O R D

How much is too much when it comes to IT risk management?

Microsoft has joined the FIDO (Fast IDentity Online) alliance in an

attempt to move away from passwords to more secure means of

authentication. Sounds great...but surely nobody will ever guess “123456”

is your password?

P A G E 4

Scenes from our June meeting...

Pre & Post Luncheon on next page

Luncheon

Luncheon registration opens at 11:15 am Lunch served no later than 11:45 am Speaker at 12:20 pm

Topic: “Safely Embracing the Cyber Future”

Presenter: Robert Clyde, CISM - Managing Director of Clyde Consulting LLC

Description: Security, risk and assurance professionals struggle to keep up and have to fight the natural instinct to just say “no” to new things. It seems like there is hardly a device or function that can’t be connected to

the Internet. This Internet of Things collects all kinds of data. The cloud gives new power to quickly spin up new workloads and scale with business needs. Big Data analytics provide insights that are enabling amazing new ways to improve efficiency, reach customers, cure cancer and diseases, and predict outcomes. This session explores this

future and points to examples that are already here. Speaker Bio: ISACA International Board Director and Vice President Rob Clyde, CISM, is the Managing Director of Clyde Consulting LLC. He recently served as CEO of Adaptive Computing, which provides workload

management software for some of the world’s largest cloud, HPC and big data environments. He is also a Director on the Board of Xbridge Systems which provides data loss protection software and TZ Holdings. He currently serves as the chair of ISACA’s finance committee. He has served as a member of ISACA’s Strategic Advisory Council,

Conference and Education Board, and the IT Governance Institute (ITGI) Advisory Panel and received both the John Kuyer and Wasserman awards from ISACA. He currently serves on the MIS Advisory Council for Utah State University.

Objectives - Attendees will learn about:

Understand potential risks related to the new technologies like cloud, social, mobile, Big Data, and the Internet of Things

Understand how these technologies might transform your business

Explore how to safely embrace new technologies like these

How ISACA can assist you in understanding and controlling environments leveraging such technologies

Program Level: Basic

Category: Specialized Knowledge & Applications

Prerequisites/Advance Preparation: None

Recommended CPE Hours: 1 per session

March Meeting Agenda When: Thursday, March 10th

Where: Marriott Dallas

223 West Las Colinas Boulevard

Irving, TX 75039

**Note about Presentations: ISACA North Texas can only post presentations from monthly meetings that are provided by the speaker with their permission. If a presentation is not on the website it either means we have not been granted permission or the speaker has not provided us the presentation to post yet.

February Door Prize Winners

5

T H E P A S S W O R D

Pre-Luncheon 10:30 AM (Pre-Luncheon registration begins at 10:00 am)

Topic: “Security Operations"

Presenter: Shammyangu Rana , Director Managed Security Services at Compucom Inc

Description: With 24X7 security operations, security monitoring and tools provide real time

event analysis. It is sometimes overwhelming for IT teams to respond and remediate at lighting

fast speed. Many companies have only an internally focused security incident response plan and

ignore a data breach response plan. Hence, when data breach occurs they find themselves

unprepared to deal with privacy rules, how to notify customers and how to answer media and the

government.

Speaker Bio: Shammyangu Rana is the director of security operations at Compucom Inc.

Prior to that Shammy oversaw the security and risk management program at Electronic Arts and

managed Global Security Operations. Some of the key programs executed by Shammy include:

application security, incident response, network security control design and implementation, vulnerability and threat management. Shammy holds a bachelor’s degree in computer science and

technology and a master’s degree in management and systems from New York University. In

addition, she has earned several certification credentials, including CISSP, CISM and CISA.

Objectives - Attendees will learn about:

Establishing practices for swift response to identified incidents

Implementing practical steps towards building a data breach response plan

Overseeing trends in operations and identified incidents

--------------------------------------------------------------------------------------------------------------

Post-Luncheon 1:30 PM

Topic: “Audit Trends in the Next Five Years

Presenter: Danny M. Goldberg, CPA, CIA, CISA, GoldSRD

Description: Mr. Goldberg will take attendees through emerging trends in the industry, including assessment of risk, assessing/capturing emerging risks and the current staffing shortage

in our industry and how companies are addressing it.

Speaker Bio: Danny M. Goldberg is a well-known speaker on internal auditing and People-

Centric Skills. Danny co-authored People-Centric© Skills: Communication and Interpersonal Skills for Internal Auditors, via Wiley Publications. This is the first book published specifically to address

the wide-ranging topic of communication skills for internal auditors. It has been offered through

the IIA and ISACA bookstores since July 2015. Additionally, Danny named as one of the Fort

Worth Business Press 40 Under 40 for 2014.

Objectives - Attendees will learn about:

Leading practices in assessing risk

Emerging risks and how to assess/capture these risks

Talent shortage and how it is being addressed by leading organizations

Watch Out Words and when to use them

P A G E 5

6

...and elsewhere

Did you enjoy CACS last year? This year it’s in Vegas! Be sure to get

registered!

Time is running out! Get your colleagues to join ISACA by December

31st to win a tablet or other prizes!

Many of us think we have all the right answers...but how many of us

know the right questions? Submit your certification exam questions to

ISACA and get PAID!

Haven’t even taken that test yet? The June 2014 exams are now open

for registration.

The 2013 IT Risk/Reward barometer examines plans and perceptions of

many of the hot topics in our field, taken from members around the

world.

Have a passion for helping out your fellow IT geeks? Want to do more

within the community? Become an ISACA volunteer!

T H E P A S S W O R D

News from ISACA International ISACA has officially launched the Cybersecurity Nexus, a new

security knowledge platform and professional program that

provides cutting-edge thought leadership, training and

certification programs.

Contribute to ISACA’s knowledge center - Gather and share

knowledge, and earn badges!

...and be sure to take advantage of ISACA’s available research

and publications!

Have a passion for helping out your fellow IT geeks? Want to

do more within the community? Become an ISACA

volunteer!

Thinking of taking an ISACA exam this coming June? Register

early and save $50!

P A G E 6

...and in other news

Here’s a new one - An actual witch that

exorcises computers of viruses. I wonder how

she’d handle a “ghost in the machine?”

The latest Verizon Data Breach Report is out,

detailing a number of interesting

scenarios...including real pirates! Dark Reading

has a good summary.

There’s been a lot lately about Apple vs. the

FBI in gaining access to their encrypted devices. If you haven’t been keeping

up with the developments, here’s a good breakdown. Which side do you fall

on?

Travel much? If so, you’ve probably worked on a plane at some point using

their available Wi-Fi. ArsTechnica discusses why you should perhaps

reconsider sending those confidential emails...

7

P A G E 7

T H E PA S S W O R D

Upcoming Conferences & Training

Opportunities

Registration for North America CACS is in full swing. This year it’s in

our backyard - New Orleans! Register by March 9th to save $200

towards earning 39 CPE!

Your company cool enough to send you to the greatest training

money can buy? How about EuroCACS 2016 in Dublin, Ireland!

Register by March 16th and save $200!

Just looking for some straight training? ISACA offers four-day training

courses around the country surrounding a variety of topics. Take a

trip and learn something new!

Don’t have time for all that travel? Try one of ISACA’s virtual

conferences! The latest covers cybersecurity for the enterprise

Tanya Baccam of Baccam Consulting has a number of IT Audit training opportunities being offered in the near future here in Dallas!

March 28-30, 2016 – Foundations of IT Auditing in Dallas, TX

Click here for more information.

April 25-29, 2016 – CISSP Preparation in Dallas, TX

Click here for more information.

May 16-18, 2016 – Auditing Active Directory and Windows in Dallas, TX

Click here for more information.

Coming May 2016 – Auditing Oracle Databases in Dallas, TX

Click here for more information.

Coming July 2016 – Auditing Web Applications in Dallas, TX

Click here for more information.

Coming September 2016 – Auditing UNIX/Linux in Dallas, TX

Click here for more information.

Coming November 2016 – Auditing Network Security in Dallas, TX

Click here for more information

These courses offered by Baccam Consulting provide an excellent way to develop your IT audit skills and receive CPEs via NASBA at the same time. If you have questions, you can contact Tanya at [email protected] or visit to www.securityaudits.org/events.html.

Thursday Workshop

Attendees choose one of three workshops: Price: $325 per person

Fraud Risk Workshop - Scott Langlinais: 21 years of internal audit and forensics experience and founder of Langlinais Fraud and Audit Advisory Services.

Internal Control / Anti-Fraud Program Design - Steve Dawson: President of the Dawson Forensic Group and for over 30 years has performed forensics engagements and forensic training services.

Workshop presented by Crowe Horwath - Topics and speakers to be released shortly.

Friday Conference

Price: $325 per person

Keynote Speakers:

Richard Bowen: Citigroup Whistleblower who repeatedly warned Citi executive management of risky business practices and potential losses related to mortgage lending.

Joanne Fox Phillips: In July 2014, Joanne published Revenge of the Cube Dweller, the first in a series of internal audit fiction novels. Joanne Phillips will discuss real life examples of fraud and sabotage by employees.

More Details!!!

Mark the Date! - 11th Annual IIA

Fraud Summit @ UT Dallas

March 31st & April 1st

Up to 15 CPE!!!

Registration is closed, but you can still get on the

waitlist!

8

2015-2016 ISACA North Texas Coordinators

P A G E 8

T H E P A S S W O R D

2015-2016 ISACA North Texas Board of Directors Position Volunteer Affiliation E-mail Address

President Laurie Flandrau GM Financial [email protected]

Secretary Eric Ballantyne General Datatech, L.P. [email protected]

Treasurer Chris Jordan D.R. Horton [email protected]

VP Programs Carol Barke Barke & Associates, LLC [email protected]

VP Education Iddah Wangondu Alliance Data [email protected]

VP Facilities Doug Gorrie Vendor Resource Management [email protected]

VP Communications Brittany George Weaver [email protected]

VP Membership Austin Browning State Farm [email protected]

VP Certification Kyle Wess EY [email protected]

1st Past President Greg Streder General Datatech, L.P. N/A

2nd Past President Marvin Reader Coalfire Systems N/A

3rd Past President Sue Pagel University of North Texas N/A

Position Volunteer Affiliation E-mail Address

Assistant Treasurer Sowmitha Kalyan EY [email protected]

Education Coordinator Roshan Pulikkiel City of Garland [email protected]

Education Coordinator Raveen Bhasin Weaver [email protected]

Certification Coordinator Sean McAloon Crowe Horwath [email protected]

Certification Coordinator Dariel Dato-on EY [email protected]

Certification Coordinator Shariq Hirani EY [email protected]

Academic Relations Coordinator Jose Lineros University of North Texas [email protected]

Reservation Coordinator Leslie Norwood Ocwen Financial

Corporation [email protected]

Newsletter Coordinator Ian Connors Crowe Horwath [email protected]

Website Coordinator Jeff Kromer UT Southwestern [email protected]

Marketing Coordinator Shirley Walker Bank of America [email protected]

Marketing Coordinator Neha Patel Weaver [email protected]

Chapter Photographer Zac Taylor Grant Thornton [email protected]

Jobs Coordinator Joe McKeman IBM [email protected]

CPE Compliance Coordinator Lisa Bartsch Capital One [email protected]

Volunteer Coordinator Eryn Shields GM Financial [email protected]

9

T H E PA S S W O R D

ISACA North Texas Events Policy 1/1/2016

The ISACA North Texas Chapter offers three types of fee based programs: Chapter Monthly Meetings, CISA® and CISM® Review Courses, and Seminars. The chapter strongly encourages advance registration and payment for all events, as this reduces chapter expenses and the capacity for many of our events is limited due to the size of the event locations. Therefore, seats may not be available on the day of the event for walk-up registrants. The table on the final page of this newsletter summarizes the chapter's payment and cancellation policies. Payment Policy All advance, online event registration payments will be made through CVENT. For advance, online

registrations, payment is accepted via Visa, MasterCard, American Express, Discover and PayPal. Advance registrations will not be accepted after the time noted above unless otherwise noted in online event

details. For walk-in registrations, credit card via Cvent, check, cash or Paypal payment is required. Cancellation and Refund Policy The North Texas Chapter of ISACA (ISACA NTX) strives to provide appropriate facilities for meetings, seminars and certification review classes. Since facility providers and/or speakers require advance notice and financial commitment, ISACA NTX must balance those obligations against our members’ periodic need to cancel a reservation based on job requirements, illness or other circumstances. Upon receipt of e-mail notification to [email protected], ISACA NTX will refund prepaid fee according to the following deadlines: Monthly Program Meetings - cancellations must be received by 6:00 PM three days prior to the meeting. Certification Reviews - cancellations must be received at by 6:00 PM eight days before the first class. Seminars - cancellations must be received by at least one week prior to the first day of the seminar. If unusual

cancellation terms are required based on speaker and/or venue, details will be included in the online event details.

Attendee substitution is permitted at any time until the event by contacting the Registration Coordinator at [email protected] and is subject to any additional charge for non-member fees. Cancellations and refund for advance registrations are allowed if cancellations are submitted to [email protected] by the deadline noted in the table above. Advance registrants who do not attend the event or do not cancel by the date noted in the table above are not eligible for a refund. Attendee substitutions are permitted at any time until the event, subject to any additional charge for non-

member fees. Inquire with Chapter Registration Coordinator at [email protected].

-->Please see last page for table that summarizes payments & cancellations policy<--

P A G E 9

10

Current Career Opportunities P A G E 1 0

Questions? Comments? Corrections? Please advise us at [email protected] T H E P A S S W O R D

Job Title Company Location Category Career Level Post Date Exp. Date

IT Internal Auditor UT Southwestern Medical

Center Dallas Permanent Non-Management 11/20/2015 4/30/2016

Vendor Auditor (IT) Ocwen Coppell, Texas Permanent Non-Management 12/16/2015 4/1/2016

Senior Internal Auditor University of North Texas Denton Permanent Non-Management 1/26/2016 3/25/2016

Information Security &

Compliance Analyst ABC Financial Services,

Inc. Sherwood, AR Permanent Non-Management 1/28/2016 4/1/2016

Integrated Auditor Parkland Health & Hospital

System Dallas Permanent Non-Management 2/1/2016 6/30/2016

IT Advisory Manager Weaver Houston Permanent Management 2/9/2016 4/1/2016

IT Advisory Associate II Weaver Houston Permanent Non-Management 2/9/2016 4/1/2016

Information Technology Auditor

III Santander Consumer USA Dallas, Texas Permanent Non-Management 2/10/2016 3/16/2016

IT/IS Auditor Aporia Solutions Texas Permanent Non-Management 2/18/2016 3/31/2016

IT SOX Staff Auditor GM Finance Arlington, TX Permanent Non-Management 2/19/2016 3/31/2016

Enterprise Risk Services Senior

Associate BKD LLP Dallas, TX Permanent Non-Management 2/29/2016 6/1/2016

Engagement Based IT Audit

Manager CHAN Healthcare Remote Permanent Non-Management 2/29/2016 4/30/2016

Engagement Based IT Audit

Senior Manager CHAN Healthcare Dallas (remote

position) Permanent Management 2/29/2016 4/30/2016

Senior Internal SOX Auditor Thomas Edwards Group Dallas Permanent Non-Management 3/1/2016 5/2/2016

The following table summarizes the chapter's payment and cancellation policies:

The Password is a free copyrighted publication of the North Texas Chapter of ISACA. It is published periodically from August through June. It is objective of the North Texas Chapter of ISACA to be a forum of free expression and interchange of

ideas. Statements of position or expressions opinion appearing herein are those of the authors and not, by the fact of publi-cation, necessarily those of ISACA or the North Texas Likewise, the publication of any advertisement is not construed

to be an endorsement of the product or service offered unless specifically

Copyright 2016 ISACA North Texas Chapter

Policy Chapter Monthly Meetings CISA or CISM Review Courses Seminars

Payments Advance registration payments accepted

Credit Card** (Visa/MC/AMEX/Discover) and PayPal**

Credit Card** (Visa/MC/AMEX/Discover), PayPal**, Check, or Purchase Order (Invoice payment must be received by the pre-registration deadline)

Credit Card** (Visa/MC/AMEX/Discover), PayPal**, Check, or Purchase Order (Invoice payment must be received one week prior to the first day of the seminar)

Advance registration cutoff date

6:00 PM three days before the event (May be earlier if a joint event with another organization that requires earlier registration counts)

6:00 PM eight days before the first class. 6:00 PM two weeks prior to the first day of the seminar.

Walk-in registration payments accepted

Credit Card** (Visa/MC/AMEX) and PayPal**

All attendees must pre-register for this event. Walk-in registration is not permitted.

All attendees must pre-register for this event. Walk-in registration is not permitted.

Cancellations

Cut-off date for cancellations

6:00 PM three days prior to the event. 6:00 PM eight days before the first class. At least one week prior to the first day of the seminar.

Substitutions permitted for cancellations after cutoff date?

Attendee substitution is permitted at any time until the event, subject to any additional charge for non-member fees. Inquire with Chapter Registration Coordinator at [email protected]

Attendee substitution is permitted at any time until the event. Inquire with Chapter Registration Coordinator at [email protected]

Attendee substitution is permitted at any time until the event, subject to any additional charge for non-member fees. Inquire with Chapter Registration Coordinator at [email protected]

**Credit Card and Paypal only if you register electronically via Cvent on the chapter website