ISACA® Western New York Chapter - February 2010 Newsletter



 


Monthly Newsletter 

February 2010 

Vol.2 Issue 2

CHAPTER NEWS

Our chapter's Annual general Meeting will be held this coming March 4th at the Holiday Inn in Batavia, NY from 7:30-10:00 featuring Xerox's Joel cort for a presentation on ISO/IEC 27002:2005 with a comparison to SAS-70 audits. Please join us as we discuss our 2009 milestones, 2010 Program of Events, and chapter business. come meet your chapter leaders and help celebrate our chapter's 30th anniversary! Breakfast is provided. Please RSVP by February 25th to Chapter Secretary Alex Douds. Cost: $15/Student, $20/Member, $25/Non Member.

In This Issue:

Chapter News
Member Spotlight
President's Message
Upcoming Events
ISACA Resources
Technology News
Featured Download
Trivia

MEMBER SPOTLIGHT

John Sabadasz

John Sabadasz is an Assistant Senior IT auditor at M&T Bank. Mr. Sabadasz has over six years of information technology related work experience, with four of those dedicated to IT Audit. He also holds the Certified Information Systems Security Professional designation (CISSP).

Mr. Sabadasz has been a member of ISACA since January 2007, and is currently working towards obtaining his CISA designation. He values the networking opportunities of the organization, along with the wealth of information and shared experiences available both online and in print (ISACA Journal). He is looking forward to the chapter annual general meeting and breakfast CPE session on March 4th, the30th Anniversary Celebration of the local chapter, and the announcement of future 2010 chapter events.
 

PRESIDENT'S MESSAGE

I am looking forward to this year's Annual General Meeting and 30th Anniversary celebrations. We achieved many exciting milestones in 2009 and expect continued success in 2010. I hope to see you there!


Peter Spier

Chapter President

UPCOMING EVENTS

Annual General Meeting Featuring ISO/IEC 27002:2005 Presentation by Joel Cort

Join us for our Annual General Meeting to review 2009 and learn what's in store for 2010. Xerox's Joel Cort will also offer an informational presentation on ISO/IEC 27002:2005. Date/Location: Thursday, March 4th, Batavia Holiday Inn. Please RSVP to Chapter Secretary Alex Douds.

TRIVIA

Which of the following BEST determines whether complete encryption and authentication protocols for protecting information while being transmitted exist?


A. A digital signature with RSA has been implemented.
B. Work is being done in tunnel mode with the nested services of AH and ESP.
C. Digital Certificates with RSA are being used.
D. Work is being doen in transport mode with the nested services of AH and ESP.


Submit your response through our Contact form. The first received, correct answer wins a $5 Amazon Gift Certificate and special mention in our next issue!

 

ISACA RESOURCES

 

The ISACA Journal

The ISACA Journal is provided free to ISACA members and is available to others by subscription. It is released bimonthly, and provides professional development information to those spearheading IT governance and those involved with information systems audit, control, and security. This leading industry publication is read by more than 86,000 professionals in over 160 countries around the world.

Did you know: Within each ISACA journal is a free quiz, worth 1 CPE hour for those requiring certification maintenance? 



 

 

TECHNOLOGY NEWS

Mozilla weighs privacy warnings for web pages.

Unless you speak lawyerse as a second language, a Web site's privacy policy can seem as incomprehensible as the loudspeakers on New York City.

By Dean McCullagh
Source:cnet news

The organization behind Firefox, the world's second most popular Web browser, has embarked on an ambitious project to change this. Instead of forcing people concerned about privacy to scroll through pages of "notwithstanding anything to the contrarys," the Mozilla Foundation is designing a standard set of colored icons to reveal how data-protective--or how intrusive--Web sites are.

It does seem a bit odd that, in the era of the iPad and cars that nearly drive themselves, technologists have been unable to puzzle out a better way to display that privacy information. The Mozilla Foundation's tentative solution is to employ the leverage it has through Firefox, used by something like 350 million people worldwide, to convince publishers to disclose their privacy practices in a standard way that would be displayed in a Web browser's address bar.

"The most important thing we can be doing now is to create the information architecture which defines what people should care about privacy," said Aza Raskin, head of user experience for Mozilla Labs. A list of eight categories used for brainstorming includes whether the Web site shares information with third parties, whether data are retained after use, whether data are encrypted, and whether collected data are personally identifiable.

Read the full story on cnet's site at the link above.

FEATURED DOWNLOAD

COBIT Overview

COBIT's success as an increasingly internationally accepted set of guidance materials for IT governance has resulted in the creation of a growing family of publications and products designed to assist in the implementation of effective IT governance throughout an enterprise. This overview summarizes its purpose, value, and usage. Members have online access to the full framework at the main ISACA website.
Copyright © 2010 ISACA® Western New York Chapter. All rights reserved.
If you wish to cancel your subscription to this newsletter click here