March Chapter Meeting

Please let us know how we can better serve your needs by sending an email message to our Board of Directors.

 

Discovering the Pot of Gold in GRC

March 17, 2016 - click to add to calendar

CPE Credits: up to 2.0 hours of CPE is available

Co-Presented by:
Stephen E. Coury, Chief Information Security Officer
Bryce Batchman, Controls Automation Analyst
Tricia Scherer, Business Analyst

Summary

The City and County of Denver will highlight two areas of its Governance, Risk and Compliance program. The first being how they used automation to validate the efficacy of controls in their payment network. With the advent of more aggressive attacks on point of sale systems and the stricter Payment Card Industry (PCI) data security requirements, it is critical that organizations remain vigilant in ensuring their security controls are working.

The second area will be how the City decided to adopt the NIST Cybersecurity Framework and their ongoing efforts to implement a GRC software tool. As the City's GRC function is relatively new, it had the opportunity to survey some of the many available security frameworks. After selecting one that they are confident will meet the City's needs, they are working to take advantage of the many benefits that a GRC software tool has to offer.

Learning Objectives:

  • Using automation to test Payment Card Industry (PCI) controls
  • Implementing a GRC software tool
  • About the Speakers:

    Mr. Coury is the Chief Information Security Officer (CISO) for the City and County of Denver. He is responsible for Information Security, Governance, Risk, and Compliance. With over 25 years' experience in information technology, including over 15 years in IT Audit, his background includes municipal government, consumer banking, investment banking, insurance, and telecommunications. Steve has been with the City for nearly seven years, and is in his second year serving as the CISO. He previously served in the City Auditor's office having established the IT Audit function. Steve is a Certified Information Systems Auditor (CISA). Steve views information security as an enabler to conduct business in new and safe ways that protect the City's data, network, and employees.

    Mr. Batchman is a Controls Automation Analyst with over a decade of experience in numerous technology roles in federal and local government. Bryce focuses on designing and automating innovative tests to validate IT security controls.



    Ms. Scherer is a Business Process Analyst with over 15 years of IT consulting and IT audit experience. Tricia is a key player in developing the City's Governance, Risk and Compliance program and implementing the Cyber Security Framework into a GRC software tool.



    Who should attend
    IT Leaders (CIOs/CTOs/CSOs/CISOs), IT practitioners (Directors and Managers), IT Audit and Security professionals, Internal and External Auditors.

    Field of Study
    IT Security

    Instructional delivery method
    Group Live



    Agenda
      11:00 a.m. - 11:45 a.m. Registration, Lunch & Networking
    11:45 a.m. - 12:00 p.m. ISACA Chapter Announcements
    12:00 p.m. - 1:45 p.m. Presentation
    1:45 p.m. - 2:00 p.m. Door prizes
     
    Fees
    ISACA Denver Chapter Members:   $25
    Non-Members:   $35

    There is a $5.00 discount for credit card payments.

    Walk-in non-members must pay by cash/check and will be charged an additional $10.00 fee above the normal non-member fee.

    Walk-ins may be turned away if space is not available.

     
    Location: Maggiano's DTC
    7401 South Clinton St.
    Englewood, CO 80112

    Registration

    Registration for this event is closed.

    © 2004-2013 ISACA Denver Chapter. All rights reserved.