ISACA® Western New York Chapter - April 2009 Newsletter



Monthly Newsletter

April 2009 

Vol.1 Issue 1
CHAPTER NEWS

Web Site Re-Launch!
Have you been to ISACAWNY.org lately? Thanks to Michael Pinch and the Web Committee our chapter's site is better than ever! Featuring a dynamic new look, forums, job listings, and a chapter event calendar among other exciting content; the site is planned to serve member communications needs. Be certain to register an account by April 30th to be automatically entered into the Re-Launch Prize Drawing to WIN! an 8GB iPod, one of two Regal Ultimate Premiere Movie Packs, or one of 25 1GB Flash Drives!


Chapter Annual General Meeting Held
The chapter held its Annual General Meeting at the Batavia Holiday Inn on March 24th featuring a presentation by UberGuard Information Security Consulting's Christopher Karr on Social Engineering, the introduction of the chapter's Board of Directors, preview of 2009 events, and annual budget review.
In This Issue:

Chapter News
Member Spotlight
President's Message
Upcoming Events
Academic Relations
Technology News
Featured Download
Trivia

MEMBER SPOTLIGHT

Paul Schneider

Paul Schneider is the IT Audit Manager with the Office of University Audit at the University of Rochester, New York and a Board Member of our chapter. Paul has over 30 years business experience in Academics, Health Care, Industry and Government and specializes in information system process, controls and compliance audits. A graduate of Hamilton College, Paul has graduate degrees from Princeton University and the University of Rochester including an MBA from the Simon School of Business where he was Operations Supervisor of their data center. Paul holds the CISA, CISM, CGEIT, CIA and CCP certifications in addition to specific technical competency credentials and is pleased to be an active chapter member.

“ISACA is a reliable and effective Information System (IS) audit resource. In addition to providing a published knowledge base, it provides information sharing and experience transfer among peer professionals both at national events and at the local chapter level. In challenging financial times, where National travel may not be an option for all, local ISACA Chapters help fill the gap and provide cost effective local learning and information sharing programs," states Schneider.

PRESIDENT'S MESSAGE

I would like to thank you for being a member of our chapter. We have some exciting things planned for this year including our new web site, education opportunities, and member awards among other events and activities.

This is an exciting time for our chapter as we experience growth and new opportunities for member involvement. We welcome your input and support and look forward to a great year.


Peter Spier

Chapter President

UPCOMING EVENTS

CISA® Study Review Sessions
Are you registered for the upcoming CISA® Certification Exam? Whether you are preparing for the exam, thinking about taking it in the future, or encouraging one of your peers, our April 18th, 8-12 review session at the Comfort Inn University in Amherst, NY or our April 25th, 10-2 review session at the University of Rochester's Eastman School in Rochester, NY can help.

ACADEMIC RELATIONS

Model Curriculum for Information Security Management
The new Model Curriculum for Information Security Management is designed to help colleges and universities worldwide meet the demand for future information security management professionals. The Certified Information Security Manager® (CISM®) task and knowledge areas provide the framework for the model. Graduates of ISACA-approved programs will be well positioned to fill the market demand for information security managers and will qualify for one year of work experience toward the CISM certification. Model Curriculum for Information Security Management is posted for complimentary download at  www.isaca.org/modelcurricula.

 

 

TRIVIA

Name that President

ISACA® is celebrating its 40th anniversary. Who was its founding President?


Submit your response through our Contact form. The first received, correct answer wins a $5 Amazon Gift Certificate and special mention in our next issue!

 

TECHNOLOGY NEWS

Melissa Anniversary Marks Birth of E-mail-Aware Malware
Supermodel of computer virus world turns 10, still spreading
Source:The Register



Thursday, March 26th marked the 10th anniversary of the notorious Melissa virus, the first successful email-aware virus.

The Word macro virus, allegedly named after a lap dancer that creator David L. Smith met in Florida, spread via infected Word documents. Windows users who opened the Word document on unprotected systems became infected with the malware, which forwarded itself to the first 50 people in an infected user's Microsoft Outlook address book, further spreading the infection in the process.

Infected emails appeared with the subject lines such as "Here is that document you asked for... don’t show anyone else;-)". The basic social engineering tactic piqued people's interest to the extent that the malicious messages mushroomed in a matter of hours, overloading email servers across the globe in the process.

FEATURED DOWNLOAD

Aligning CobiT® 4.1, ITIL® V3 and ISO/IEC 27002 for Business Benefit


Every enterprise needs to tailor the use of standards and practices to suit its individual requirements. All three standards/practices covered in this guide can play a very useful part—Cobi T and ISO/IEC 27002 helping to define what should be done and ITIL providing the how for service management aspects.

Copyright © 2009 ISACA® Western New York Chapter. All rights reserved.
If you wish to cancel your subscription to this newsletter click here