ISACA BATON ROUGE CHAPTER QUARTERLY NEWSLETTER MARCH 2009


Congratulations 09-10 Chapter Officers!

The votes are in! Our 2009-2010 ISACA Chapter Officers have been selected. The ISACA Baton Rouge Chapter is proud to welcome our new officers:

Chapter President

Stacy Manning…….

Vice President

Slava Sotnikov………………………….……

Chapter Secretary and Treasurer

Colleen McGehee………………….

Membership Director

Michelle Seeling…………………..

CISA, CISM, CGEIT Coordinator

Michael Redmond………………………

Marketing Coordinator

Jon Davis…………………………

Webmaster

Rochana Lahiri………………………….

Publicity Coordinator

Dana Tarver……………………………

Immediate Past President

Stephen Rosales…..

All Chapter Officers have agreed to perform the duties prescribed by the Chapter bylaws adopted by the Chapter. Again, the ISACA Baton Rouge Chapter would like to thank these officers for volunteering their time to help our chapter grow and succeed.■

Distance Learning Update

March 2009 e-Symposium

ISACA’s March e-Symposium is scheduled for Tuesday, 31 March 2009.To register for the March e-Symposium and take the first step toward earning three free continuing professional education (CPE) credits, please visit .All e-symposia are recorded and archived for viewing on demand. For more information, please visit .

ISACA e-Learning Campus

The CISA® Online Review Course is now available on the ISACA e-Learning Campus. This interactive, web-based courseprovides CISA exam candidates and ISACA members with an efficient, cost-effective tool for exam preparation and for performing information systems audits and reviews. For information, visit .■

May Meeting Spotlight

Continuous Auditing using ACL

Speaker: Ryan Babin, LASERS Audit Services Director

Ryan Babin is the Audit Services Director for the Louisiana State Employees’ Retirement System (LASERS). He began work as an Internal Auditor for LASERS in 2003. He received an undergraduate degree in Accounting from Nicholls State University (NSU). Ryan’s proficiency in various automated tools has allowed him to successfully establish a continuous auditing program at his organization. His experience consists of performing audits in some of these key areas: information technology, investments, and accounting. His professional certifications include: CPA, CIA, CISA.

Date: 20 May 2009

Time: 11:30 a.m – 1:00 p.m.

Location: Mansurs on the Boulevard

5720 Corporate Blvd #A Baton Rouge, LA 70808

CPE: 1 Credit

Cost: $45 Members, $60 Non-Members

Entrée Selection: A salad, your choice of entrée, one side de jour, and a choice of dessert will be included with all meals. Please select from the following:

1 - Filet Mignon 6 oz. (beef tenderloin seared and finished with Bordelaise)

2- LemonCaper Chicken(boneless breast sauteed, topped with mushrooms, creole caper butter)

3 - Shrimp Vacherie (Two jumbo shrimp seafood stuffed & fried, served with Creollaise)

4 - Fresh Fish Cocodrie (Fresh fillet panned, topped with crabmeat, green onions and mushrooms, finished with Beurre Blanc)

RSVP: Send email RSVP by May 15th to

. Include your entrée selection. Please remember we are charged for no-shows that have not cancelled ahead of time.

ISACA BR Chapter Statistics

Conference Spotlight

North America CACS

3-7 May 2009

Orlando, Florida, USA

The North America Computer Audit, Control and Security (North America CACSSM) conference provides a customized experience where attendees will explore the topics most important to the professional development and discover new technologies and trends specific to their location and industry. North America CACS provides the most comprehensive training for IT audit, security and governance professionals in North America. The conference focuses on the latest strategies to address IT auditing and security challenges from business, managerial and operational perspectives. The conference will be held 3-7 May 2009 in Orlando, Florida, USA. Attendees can earn up to 44 CPE credits.

Future Conferences and Training Weeks

Upcoming events are noted in the Calendar of Events. Other 2009 events to keep in mind include:

15-19 June—ISACA Training Week, Vienna, Austria

19-22 July—International Conference, Los Angeles, California, USA.■

1ISACA Baton Rouge Chapter

ISACA BATON ROUGE CHAPTER QUARTERLY NEWSLETTER MARCH 2009

Certification Update

CISA and CISM in the News

The CISM certification has been ranked as the third-highest-paying certification in Certification Magazine’s 2008 Salary Survey.

According to BankInfosecurity.com, industry recruitment experts and information security professionals noted CISA and CISM as two of the top five certifications for 2009, as they provide assurance that the holder has extensive experience in their fields above and beyond passing a test. ISACA’s new CGEIT™ designation is also mentioned as a top certification to earn in 2009.

CISA and CISM Exam Highlights

The results of the December 2008 exams were released by one-time e-mail notification, posted to the candidate’s profile on the ISACA web site and sent by post in early February. To ensure the confidentiality of scores, exam results will not be reported by telephone or fax.

CISA, CISM and CGEIT Applications

To enable ISACA to process applications more efficiently, please collect all application documentation [verification of work experience form(s) and any applicable university transcript or letter] and send them together in one package to ISACA International Headquarters.

June Exam Registration

Registration for the June 2009 CISA, CISM and CGEIT exams continues. The final registration deadline is 8 April 2009. To view additional exam details, please read the CISA, CISM or CGEIT BOI for the June 2009 exams, available at , and .

CISA and CISM Certification Renewals

Certificate holders who have not already done so should renew and report CPE hours as soon as possible to avoid revocation. Final reminder invoices have been mailed.

The CISA, CISM and CGEIT CPE policies are available at , and .

The renewal process can be completed online at and going to “My Renewals.”■

Research Update

1ISACA Baton Rouge Chapter

ISACA BATON ROUGE CHAPTER QUARTERLY NEWSLETTER MARCH 2009

Model Curriculum for Information Security Management

Designed to help colleges and universities worldwide meet the demand for future information security management professionals, the CISM task and knowledge areas provide the framework for this model. Itis posted for complimentary download at .

Enterprise Risk: Identify, Govern and Manage Risk, The Risk IT Framework Exposure Draft

The Risk IT framework provides the missing link between enterprise risk management and IT management and control. It fits seamlessly into ITGI’s IT governance framework and builds on all existing risk-related components within COBIT and Val IT. The framework allows business managers to assess IT controls for deficiencies and business risks. An exposure draft of the first Risk IT publication isposted for comments through 16 March 2009 at .

Recent ISACA/ITGI Releases

  • An Introduction to the Business Model for Information Security
  • COBIT and Application Controls: A Management Guide (scheduled to be released in April)
  • COBIT User Guide for Service Managers (scheduled to be available in March)
  • ITGI™ Enables ISO/IEC 38500: 2008 Adoption
  • IT Governance Roundtable: Value Delivery

1ISACA Baton Rouge Chapter

ISACA BATON ROUGE CHAPTER QUARTERLY NEWSLETTER MARCH 2009

1ISACA Baton Rouge Chapter

ISACA BATON ROUGE CHAPTER QUARTERLY NEWSLETTER MARCH 2009

Local Certification andTrainingOpportunities

LANtec of Louisiana

LANtec is hosting the following certification classes this quarter. They are offering a $200 discount to any ISACA member who signs up with them on any of the following training dates. Mention this newsletter to receive the discount!

CompTIA - Security +

6April 2009

Cost: $2195

PMI – Project Management Professional Certification Bootcamp

27April 2009

Cost: $2695

EC Council – CNDA – Certified Network Defense Architect (Ethical Hacking)

18May 2009

Cost: $2695

To register contact:

Christy Brasseaux, VP Operations

LANtec of Louisiana – Baton Rouge / Lafayette

Office (337) 233- 2016

SANS Mentoring

Slava Sotnikov, our ISACA BR Vice President, is a SANS mentor and is leading a mentor session in Baton Rouge titled Network Penetration Testing and Ethical Hacking. Follow the link below for more information. ■

Job Search Survival 2009

Undoubtedly, this is the toughest year on record to land a new job. Reaching your career goal will take courage and nerves of steel. Are you up to the challenge? Here are three tips for job-search endurance that will keep you on the right track toward your employment goal.

1. Keep your career goal realistic.

This is not the time to strike out in a risky career direction. Following your heart toward a career in which you have little qualifications could yield months of frustration as you find yourself competing against legions of candidates far more qualified. Unless you are in the position to hold out for a very long job search, concentrate on positions where you are best qualified.

2. Realize it will take longer to land your next position.

If you've never experienced a lengthy job search, set your expectations out several months and practice patience. You will apply for many positions as the perfect candidate, and get no response. Expect that. You will conduct perfect interviews and hear nothing back. Expect that as well. Just remember that eventually the right company with the right job at the right time will come your way if you stay calm and focused and don't let discouragement keep you from moving forward. Just keep with it.

3. Write a better resume than your competition.

Less jobs and more applicants equals extremely high competition. The quality of your resume has never been more important. For the best possible resume keep these guidelines in mind:

  • Focus your resume. Avoid a one-size-fits-all resume.
  • Showcase your best information in the top half of page one.
  • Include accomplishments that illustrate your ability to solve today's business challenges.

4. Sharpen your interview skills.

With employers interviewing only the best of the best, when you are chosen to interview be sure you are your competitive best. You CANNOT just wing an interview and expect to be called back for a second. Today it takes solid interview strategy to earn a second round of interviews. Interview books are helpful, but they usually fall short of teaching you how to read the interviewer's mind to understand his/her hiring motivations. A study in the art of selling is more effective to achieve great interview performance. A few basic selling strategies include:

  • Asking the right questions to understand the interviewer's hot button motivations.
  • Formulate answers around the interviewer's motivations.
  • Know your accomplishments well enough to weave them effectively through your interview to achieve top candidate status.

Throughout 2009, the best jobs will go to those who persevere and stay focused. Keeping your expectations and goals realistic will help prevent the emotional ups and downs. Prepare for your job search as if you were competing in a marathon. With patience, endurance and skill you will win your next job. ■

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Deborah Walker, CCMC is a career coach helping job seekers compete in the toughest job markets. Her clients gain top performing skills in resume writing, interview preparation and salary negotiation. Learn more about Deborah Walker, career coach at:

1ISACA Baton Rouge Chapter