<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>New York Metro Chapter, ISSA &#187; General</title>
	<atom:link href="http://www.nymissa.org/category/general/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.nymissa.org</link>
	<description>A Non-Profit Organization</description>
	<lastBuildDate>Wed, 25 Aug 2010 11:03:22 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
	<!-- podcast_generator="podPress/8.8" - maintenance_release="8.8.4" -->
		<copyright>Copyright &#xA9; 2010 New York Metro Chapter, ISSA </copyright>
		<managingEditor>online@nymissa.org ()</managingEditor>
		<webMaster>online@nymissa.org ()</webMaster>
		<category>posts</category>
		<itunes:keywords></itunes:keywords>
		<itunes:subtitle></itunes:subtitle>
		<itunes:summary>A Non-Profit Organization</itunes:summary>
		<itunes:author></itunes:author>
		<itunes:category text="Society &amp; Culture"/>
		<itunes:owner>
			<itunes:name></itunes:name>
			<itunes:email>online@nymissa.org</itunes:email>
		</itunes:owner>
		<itunes:block>No</itunes:block>
		<itunes:explicit>no</itunes:explicit>
		<itunes:image href="http://www.nymissa.org/wp-content/plugins/podpress/images/powered_by_podpress_large.jpg" />
		<image>
			<url>http://www.nymissa.org/wp-content/plugins/podpress/images/powered_by_podpress.jpg</url>
			<title>New York Metro Chapter, ISSA</title>
			<link>http://www.nymissa.org</link>
			<width>144</width>
			<height>144</height>
		</image>
		<item>
		<title>GRC Automation and CISO Panel</title>
		<link>http://www.nymissa.org/2010/08/15/grc-automation-and-ciso-panel/</link>
		<comments>http://www.nymissa.org/2010/08/15/grc-automation-and-ciso-panel/#comments</comments>
		<pubDate>Sun, 15 Aug 2010 15:34:22 +0000</pubDate>
		<dc:creator>ibryski</dc:creator>
				<category><![CDATA[Event Calendar]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.nymissa.org/?p=578</guid>
		<description><![CDATA[[ September 15, 2010; 5:00 pm to 8:00 pm. ] In the first session we will learn how companies with continuous control automation and monitoring, move into the next generation where efficiency and effectiveness of their controls systems become the focus.  Efforts are still streamlined through regulation mappings to policies and the connected controls that ensure adherence. However, by establishing the baseline, the focus can now [...]]]></description>
			<content:encoded><![CDATA[<p>In the first session we will learn how companies with continuous control automation and monitoring, move into the next generation where efficiency and effectiveness of their controls systems become the focus.  Efforts are still streamlined through regulation mappings to policies and the connected controls that ensure adherence. However, by establishing the baseline, the focus can now shift to measurement of the increased ROI of new initiatives, increased process efficiencies and control effectiveness. Sustainable and repeatable processes increase data and control quality, and real-time information on assets prevents loss through proactive remediation or mitigation of control violations.  Finally, centralizing the controls management approach provides greater visibility into the effectiveness of existing disparate controls systems.</p>
<p>This will be followed by a moderated CISO panel on the state of information security, cloud computing, mobility, advanced threats of malicious software and more.</p>
<p><strong>Presenters</strong></p>
<ol>
<li>Amad Fida, President at brinQa</li>
<li>Phil Venables, CISO at Goldman Sachs</li>
<li>Thomas Doughty, CISO at Prudential Financial</li>
<li>Mark Clancy, CISO at DTCC</li>
<li>Dov Yoran, Co-founder at MetroSITE Group</li>
</ol>
<ul>
<li><strong>Venue: </strong>KPMG, 345 Park Ave, New York, NY</li>
</ul>
<ul>
<li><strong>Dress Code:</strong> Business Casual</li>
</ul>
<p><a href="http://guest.cvent.com/d/ydqf0w">CLICK HERE</a> for agenda and registration.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.nymissa.org/2010/08/15/grc-automation-and-ciso-panel/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Summer Networking Event with Ira Winkler</title>
		<link>http://www.nymissa.org/2010/07/13/summer-networking-event-with-ira-winkler/</link>
		<comments>http://www.nymissa.org/2010/07/13/summer-networking-event-with-ira-winkler/#comments</comments>
		<pubDate>Tue, 13 Jul 2010 11:13:08 +0000</pubDate>
		<dc:creator>ibryski</dc:creator>
				<category><![CDATA[Event Calendar]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.nymissa.org/?p=558</guid>
		<description><![CDATA[[ August 11, 2010; 5:00 pm to 8:00 pm. ] As summer temperatures soar, most people think of enjoying themselves by relaxing and taking vacations. Security and privacy professionals, however, remain vigilant and on guard in an effort to safeguard their organizations.

The NY Metro ISSA is delighted to host a "Summer Networking Event" designed to provide their membership with an environment in which to share [...]]]></description>
			<content:encoded><![CDATA[<p>As summer temperatures soar, most people think of enjoying themselves by relaxing and taking vacations. Security and privacy professionals, however, remain vigilant and on guard in an effort to safeguard their organizations.</p>
<p>The NY Metro ISSA is delighted to host a &#8220;Summer Networking Event&#8221; designed to provide their membership with an environment in which to share their experiences and discuss best practices for protecting their organizations. The event is complimentary for NYMISSA members. The event is open to members of sister organizations such as OWASP, ISACA, etc for a nominal fee. Attendees will have a chance to network with professionals in cross disciplines such as audit and privacy.</p>
<p>The networking event will feature a keynote address by the world renowned security expert and author, Ira Winkler, President of the Internet Security Advisory Group.</p>
<p>While overlooking beautiful Central Park, you can enjoy refreshments, explore some of the latest technologies and solutions offered by NY Metro ISSA Sponsors, and network with your colleagues. Attendees will also have an opportunity to win prizes offered by the event sponsors at the conclusion of the event.</p>
<p><a href="http://guest.cvent.com/i.aspx?5S%2cM3%2c4f20a68d-fce6-426f-af3e-91a7679bb8da">CLICK HERE</a> for event details, agenda and registration.</p>
<p>Presentation: <a href="http://www.nymissa.org/wp-content/uploads/2010/08/Russian-Chinese-Espionage.ppt">Russian-Chinese Espionage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.nymissa.org/2010/07/13/summer-networking-event-with-ira-winkler/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Plugging the Dam with Data Loss Prevention</title>
		<link>http://www.nymissa.org/2010/05/28/plugging-the-dam-with-data-loss-prevention/</link>
		<comments>http://www.nymissa.org/2010/05/28/plugging-the-dam-with-data-loss-prevention/#comments</comments>
		<pubDate>Fri, 28 May 2010 09:49:05 +0000</pubDate>
		<dc:creator>ibryski</dc:creator>
				<category><![CDATA[Event Calendar]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.nymissa.org/?p=537</guid>
		<description><![CDATA[[ June 30, 2010; 2:00 pm to 5:00 pm. ] A recent poll by the Ponemon Institute placed the average cost of a Data Breach at $6.75 million amongst reported incidents while close to 50% of companies that did deploy a DLP solution to counter the financial, regulatory and reputational risk, expressed a desire to replace their solution within a year of purchase according to [...]]]></description>
			<content:encoded><![CDATA[<p>A recent poll by the Ponemon Institute placed the average cost of a Data Breach at $6.75 million amongst reported incidents while close to 50% of companies that did deploy a DLP solution to counter the financial, regulatory and reputational risk, expressed a desire to replace their solution within a year of purchase according to CIO magazine.</p>
<p>Recognizing the risks and identifying a technology are only at the beginning of the curve when dealing with data loss prevention. In this interactive session we will discuss essential components of a successful DLP strategy including development of business requirements, data classification, compliance to regulatory standards with particular attention to the Massachusetts Data Breach law, phases of deployment and avoiding common pitfalls experienced by CSO’s, practitioners and business leaders alike.</p>
<p><strong>Presenters</strong></p>
<ol>
<li>Ron Baklarz, CISO at Amtrak</li>
<li> Don Garvey, CISO at  Chubb Insurance</li>
<li>Jay Leek, Manager Corporate IT Security Services at  Nokia</li>
<li>Paul Roberts, Senior Analyst, The 451 Group</li>
<li> Paul Rogers, IT  Security Manager, Philadelphia Insurance Co.</li>
</ol>
<ul>
<li><strong>Venue:</strong> PriceWaterhouseCoopers, 300 Madison Ave,  NY,  NY</li>
</ul>
<ul>
<li><strong>Dress Code:</strong> Business Casual</li>
</ul>
<p><a href="http://guest.cvent.com/EVENTS/Info/Summary.aspx?e=2167757b-caf8-4386-bfb9-c369414be05e"><strong>CLICK HERE</strong></a> for registration and full details.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.nymissa.org/2010/05/28/plugging-the-dam-with-data-loss-prevention/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tricks of the Trade: Web Application Security</title>
		<link>http://www.nymissa.org/2010/04/23/tricks-of-the-trade-web-application-security-2/</link>
		<comments>http://www.nymissa.org/2010/04/23/tricks-of-the-trade-web-application-security-2/#comments</comments>
		<pubDate>Sat, 24 Apr 2010 01:47:47 +0000</pubDate>
		<dc:creator>grigoleite</dc:creator>
				<category><![CDATA[Event Calendar]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.nymissa.org/?p=519</guid>
		<description><![CDATA[[ May 27, 2010; 2:00 pm to 5:00 pm. ] SQL injection, buffer overflows, cross-site scripting...You have heard about these types of attacks before. In this session, you will learn and practice finding and exploiting vulnerabilities in a sample web application that closely resembles those containing your personal information, credit card numbers and even medical history.

Please bring a laptop and LAN cable to this event [...]]]></description>
			<content:encoded><![CDATA[<p>SQL injection, buffer overflows, cross-site scripting&#8230;You have heard about these types of attacks before. In this session, you will learn and practice finding and exploiting vulnerabilities in a sample web application that closely resembles those containing your personal information, credit card numbers and even medical history.</p>
<p>Please bring a laptop and LAN cable to this event to fully benefit from the material that will be presented. If you do not have a laptop, you can still benefit by sharing with another member, or following along on the big screen.</p>
<ul>
<li><strong>Venue:</strong> PriceWaterhouseCoopers, 300 Madison Ave, NY,  NY</li>
</ul>
<ul>
<li><strong>Dress Code:</strong> Business Casual</li>
</ul>
<p>Registration and full details at <a href="http://guest.cvent.com/EVENTS/Info/Summary.aspx?e=f1707482-d496-4011-b4cb-0e9e212012d7">cvent</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.nymissa.org/2010/04/23/tricks-of-the-trade-web-application-security-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Shifts in the CISO&#8217;s Domain – Authenticity, Admissibility and the Future of Forensics</title>
		<link>http://www.nymissa.org/2010/01/13/shifts-in-the-cisos-domain-%e2%80%93-authenticity-admissibility-and-the-future-of-forensics/</link>
		<comments>http://www.nymissa.org/2010/01/13/shifts-in-the-cisos-domain-%e2%80%93-authenticity-admissibility-and-the-future-of-forensics/#comments</comments>
		<pubDate>Thu, 14 Jan 2010 02:51:37 +0000</pubDate>
		<dc:creator>grigoleite</dc:creator>
				<category><![CDATA[Event Calendar]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.nymissa.org/?p=392</guid>
		<description><![CDATA[[ February 17, 2010; 2:00 pm to 5:00 pm. ] What is changing in how Forensics and eDiscovery is managed? If all data is mutable, how do you know what is authentic? Are CISO's taking control of search, recovery and discovery of enterprise information so to assure defensibility? What changes in technology and what legal and regulatory implications that are making this happen?

The first session will cover emerging technologies, legal, [...]]]></description>
			<content:encoded><![CDATA[<p>What is changing in how Forensics and eDiscovery is managed? If all data is mutable, how do you know what is authentic? Are CISO&#8217;s taking control of search, recovery and discovery of enterprise information so to assure defensibility? What changes in technology and what legal and regulatory implications that are making this happen?</p>
<p>The first session will cover emerging technologies, legal, and regulatory issues and reducing spending on legal risks.</p>
<p>In the second session we will learn how to proactively use corporate data and integrate information to thwart attacks and mitigate business risks.</p>
<p>The final session will deal with tools, processes and software used to perform forensics and e-discovery, related developments in the legal and regulatory environment and why organizations have information risk and control on the top of the list.</p>
<ul>
<li><strong>Venue:</strong> Credit Suisse, 11 Madison Avenue(corner 24th Street ) New  York, NY</li>
</ul>
<ul>
<li><strong>Dress Code:</strong> Business Casual</li>
</ul>
<p>Registration and full details at <a title="cvent" href="http://guest.cvent.com/EVENTS/Info/Summary.aspx?e=ebb91e0a-b1a9-48a6-9967-5551c671d0fa">cvent</a>.</p>
<p><strong>Update:</strong> Here are the presentations from this event:</p>
<ul>
<li><a href="http://www.nymissa.org/wp-content/uploads/2010/02/Cataphora-ISSA-100217vF.ppt">Converting Data Into Meaningful Information</a></li>
<li><a href="http://www.nymissa.org/wp-content/uploads/2010/02/February-Forensics.ppt">Discovering Unexpected ROI for Emerging Technologies</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.nymissa.org/2010/01/13/shifts-in-the-cisos-domain-%e2%80%93-authenticity-admissibility-and-the-future-of-forensics/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Resilience and Availability</title>
		<link>http://www.nymissa.org/2009/11/27/resilience-and-availability/</link>
		<comments>http://www.nymissa.org/2009/11/27/resilience-and-availability/#comments</comments>
		<pubDate>Fri, 27 Nov 2009 15:52:41 +0000</pubDate>
		<dc:creator>grigoleite</dc:creator>
				<category><![CDATA[Event Calendar]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.nymissa.org/?p=380</guid>
		<description><![CDATA[[ January 13, 2010; 2:00 pm to 5:00 pm. ] These are two of the most important words in the Business Continuity language. They both get a lot of “lip service” but how do our Plans actually stack up in real life?

Our first speaker will discuss how you critically examine your plan for “Black Swans”, those incompletely addressed aspects of your plan which can cause [...]]]></description>
			<content:encoded><![CDATA[<p>These are two of the most important words in the Business Continuity language. They both get a lot of “lip service” but how do our Plans actually stack up in real life?</p>
<p>Our first speaker will discuss how you critically examine your plan for “Black Swans”, those incompletely addressed aspects of your plan which can cause your recovery activities to grind to a complete stop. Our second speaker will deal with the potential of using Cloud Computing technologies as vehicles to cost-effectively support both resilience and availability by utilizing an increasingly popular IT business solution.</p>
<p><strong>UPDATED (01/21/2010):</strong> Download the presentations for the sessions mentioned above:</p>
<ul>
<li><a href="http://www.nymissa.org/wp-content/uploads/2009/11/NYMISSA_Pres-Hunting_the_Black_Swans.zip">NYMISSA Presentation: Hunting Black Swans (01/13/2010)</a></li>
<li><a href="http://www.nymissa.org/wp-content/uploads/2009/11/NYMISSA_Pres-cloud_recovery.zip">NYMISSA Presentation: Cloud Recovery (01/13/2010)</a></li>
</ul>
<p>The session will conclude with an interactive panel discussion on the saga of the H1N1 virus. This panel will attempt to determine whether H1N1 has been a real threat or if it’s just yesterday’s old news. Our panel of BCP consultants will discuss what they have seen (or not seen) at client engagements in terms of preparation for a possible outbreak. We will also call on members of the audience to share their corporate and personal experiences with the group.</p>
<ul>
<li><strong>Venue:</strong> KPMG, 345 Park Avenue (corner 51st  Street), New York, NY</li>
<li><strong>Dress Code:</strong> Business Casual</li>
</ul>
<p>Registration and full details are now available at <a title="cvent" href="http://guest.cvent.com/i.aspx?1Q%2cM3%2c93b225e2-f9c5-4ad5-8674-26607cbf5bb5">cvent</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.nymissa.org/2009/11/27/resilience-and-availability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Convergence, Compliance and Cost Savings</title>
		<link>http://www.nymissa.org/2009/10/10/convergence-compliance-and-cost-savings/</link>
		<comments>http://www.nymissa.org/2009/10/10/convergence-compliance-and-cost-savings/#comments</comments>
		<pubDate>Sat, 10 Oct 2009 20:56:52 +0000</pubDate>
		<dc:creator>grigoleite</dc:creator>
				<category><![CDATA[Event Calendar]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.nymissa.org/?p=356</guid>
		<description><![CDATA[[ November 12, 2009; 1:00 pm to 7:00 pm. ] Bob West, CEO and Founder of Echelon One, will deliver a keynote address about managing risk and aligning business and technology strategies. The keynote will be followed by presentations from NY Metro ISSA sponsors. Topics will include: Emerging Threats and Best Practices, A Consolidated and Virtualized Network Security Infrastructure, How Malware Is Getting Down to [...]]]></description>
			<content:encoded><![CDATA[<p>Bob West, CEO and Founder of Echelon One, will deliver a keynote address about managing risk and aligning business and technology strategies. The keynote will be followed by presentations from NY Metro ISSA sponsors. Topics will include: <em><strong>Emerging Threats and Best Practices</strong></em>, <em><strong>A Consolidated and Virtualized Network Security Infrastructure</strong></em>, <em><strong>How Malware Is Getting Down to Business</strong></em> and <em><strong>Tales from the Compliance Edge</strong></em>.</p>
<p>After the presentations, please join us at our networking reception where you can meet other<strong> NYMISSA</strong> members and sponsors, share stories and enjoy the food &amp; drinks.</p>
<ul>
<li><strong>Venue:</strong> Bank of NY Mellon, 101 Barclay Street, New York, NY</li>
<li><strong>Dress Code:</strong> Business Casual</li>
</ul>
<p>Registration and full details are now available at <a title="cvent" href="https://guest.cvent.com/EVENTS/Register/IdentityConfirmation.aspx?e=068e710a-1885-4def-91f3-8fda8ece84ed">cvent</a></p>
<p>Session Details:</p>
<p><strong>Session 1:  Keynote Address: Convergence and The Road Ahead</strong></p>
<p>For organizations to effectively manage risks on enterprise level, security must be aligned with business and technology strategy. Security programs have always had human resource, compliance, legal and audit issues to take into account. All types of risk need to be understood and communicated effectively between security and the rest of the organization. In this session Bob West, CEO of Echelon One will discuss how organizations can create effective governance structures, engage the rest of the organization, manage risks consistently, and drive savings into the organization.</p>
<p><strong>Session 2:  Emerging Threats and Security Best Practices</strong><br />
Josh Shaul, VP Product Development, Application Security Inc.</p>
<p>The presentation will highlight several issues related to database threats and more specifically database security, risk and compliance.  Attendees will learn how hackers and their approaches have changed in the past decade, how they continue to evolve, and how they are impacting the landscape with regard to threats to data. The session draws on several recent sources of research to illustrate how attackers are targeting data at a rate the industry has never before seen, how organizations are impacted, and how they are reacting. Attendees will then be introduced to the database security, risk and compliance lifecycle and advised of best practices that allow organizations to pragmatically secure sensitive data and ground compliance initiatives where the data lives – in the database.<br />
The session will conclude with Database Security 101 &#8211; easily achievable first steps that can significantly improve an organizations database security posture.</p>
<p><strong>Session 3:  Achieving the Promise: A Consolidated and Virtualized Network Security Infrastructure </strong><br />
<span style="font-size: x-small"><span style="color: black"></span></span>Sanjay Raja, Senior Product Line Manager, Crossbeam Systems Inc.</p>
<p>More than ever, IT budgets are stretched thin. IT staff are pressured to cut costs, reduce management complexity and save resources, all while facing an increasingly sophisticated threat landscape. The rise of integrated security platforms and virtualization solutions has been a major step forward in addressing some of these problems, but many of these solutions still fail to perform effectively within an integrated multi-application security infrastructure. This presentation will highlight the core obstacles to achieving a consolidated, virtualized security infrastructure, as well as the options available to help network managers simplify delivery of security services, while still meeting their needs for performance, scalability and reliability.</p>
<p><strong>Sesson 4:  Corporate IT Security: How Malware is Getting Down to Business</strong><br />
Roel Schouwenberg, Senior Anti-Virus Researcher, Kaspersky Lab, Americas</p>
<p>It’s not news that the IT security threat landscape is getting worse by the day.  In 2008 alone, the Kaspersky antivirus lab saw an 8x increase in malware.  Today’s malware imposes significant business risks due to the highly organized nature of attacks – applications, websites and social networks are all subject to attacks and vulnerabilities.  Today’s hackers are highly organized professionals with vast networks who are able to precisely target a specific division as part of a bigger enterprise to ensure the attack remains stealthy.  In fact, these attacks are so stealthy that a corporate target may not even realize his/her machine has been compromised for days, weeks or months.  During this presentation, Roel Schouwenberg, Senior Anti-Virus Researcher at Kaspersky Lab Americas, will examine what this means for the corporate environment and what organizations need to pay attention to in order to stay on top of these threats and evaluate their security approaches.</p>
<p><strong>Sesson 5:  Tales from the Compliance Edge</strong><br />
Matthew R. Alderman, Director of Strategic Alliances at Qualys</p>
<p>Many organizations are tasked with meeting not one but multiple regulatory IT compliance concerns and, in effort to meet myriad complex requirements, have attempted to streamline and automate IT compliance and information security activities.  As a result of this industry trend, many IT security vendors are promoting use of their solutions as IT compliance tools for automating IT compliance processes. With the merging of IT security and IT compliance topics in software solutions, several organizations have been impacted by selecting solutions that were not applicable to their requirements. This presentation is a discussion of observations from the IT security consultant point of view and provides real world information collected from actual IT security and compliance software implementation engagements that can help enable organizations avoid mishaps that have occurred, how to evaluate the pros and cons of different approaches, and understand what best practices can be leveraged to promote success for IT security and compliance initiatives.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.nymissa.org/2009/10/10/convergence-compliance-and-cost-savings/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cloudy Skies? Cloud Computing defined and explored</title>
		<link>http://www.nymissa.org/2009/08/28/cloudy-skies-cloud-computing-defined-and-explored/</link>
		<comments>http://www.nymissa.org/2009/08/28/cloudy-skies-cloud-computing-defined-and-explored/#comments</comments>
		<pubDate>Fri, 28 Aug 2009 23:56:05 +0000</pubDate>
		<dc:creator>grigoleite</dc:creator>
				<category><![CDATA[Event Calendar]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.nymissa.org/?p=343</guid>
		<description><![CDATA[[ October 20, 2009; 2:00 pm to 5:00 pm. ] The Cloud Security Alliance will define Cloud Computing and explore the different flavors from Infrastructure-as-a-Service to Software-as-a-Service. This will be followed by an experts panel discussing legal &#38; regulatory issues, cloud interoperability &#38; application portability, cloud storage &#38; management and approaches to implementation of cloud.

	Venue: KPMG - 51st and Park Avenue, New York, NY
	Dress Code: [...]]]></description>
			<content:encoded><![CDATA[<p><span style="background: transparent none repeat scroll 0% 0%;cursor: pointer">The Cloud</span> Security Alliance will define Cloud Computing and explore the different flavors from Infrastructure-as-a-Service to Software-as-a-Service. This will be followed by an experts panel discussing legal &amp; regulatory issues, cloud interoperability &amp; application portability, cloud storage &amp; management and approaches to implementation of cloud.</p>
<ul>
<li><strong>Venue:</strong> KPMG &#8211; 51st and <span style="background: transparent none repeat scroll 0% 0%;cursor: pointer">Park Avenue</span>, <span style="background: transparent none repeat scroll 0% 0%;cursor: pointer">New York, NY</span></li>
<li><strong>Dress Code:</strong> Business Casual</li>
</ul>
<p>Registration and full details are now available at <a title="cvent.com" href="http://"></a><a href="http://guest.cvent.com/EVENTS/Info/Summary.aspx?e=90309dda-ab3b-4f9e-b7bb-d15bb02df7cd" target="_blank">cvent.com</a></p>
<p>Session Details:</p>
<p><strong>Session 1: Cloud Security Alliance-Defining Cloud Computing</strong></p>
<p>Dov Yoran will provide an introduction to the Cloud Security Alliance and updates to current research activities.</p>
<p>James Tiller will provide a framework for the day by defining cloud computing, its attributes and commonly existing models (SaaS, PaaS, and IaaS).</p>
<p><strong>Session 2:</strong> <strong>Panel I Discussion – Cloud: Legal &amp; Regulatory issues</strong></p>
<p>Data security, integrity, identity management, access controls, and eDiscovery are regulatory challenges that must continue to be addressed in a cloud environment.  Federal and state laws concerning the integrity and permanence of both personal and corporate financial data are quite strict. Potential cloud users with sensitive IP, personal information or international data must confront compliance hurdles before considering such offerings. How does one manage and contractually transfer these risks? Our panel will discuss both the familiar and lesser-known regulatory obligations that Cloud users must consider before leveraging the cloud.  Take away from this session practical pointers on managing legal risk as your CIO and CFO press for movement toward the Cloud.</p>
<p><strong>Session 3: </strong><strong>Panel II Discussion – Approaches to implementing cloud solutions</strong></p>
<p>Learn from leading industry executives and enterprise security decision makers on their perspective to implementing cloud computing solutions.  What steps have they taken to protect their organization&#8217;s data and infrastructure?  How have they prioritized which cloud services to take advantage of?  What are some of their success stories and lessons learned?  Learn this and more during the upcoming ISSA session on cloud computing.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.nymissa.org/2009/08/28/cloudy-skies-cloud-computing-defined-and-explored/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>June 10, 2009: Security and SMB&#8217;s</title>
		<link>http://www.nymissa.org/2009/05/13/save-that-date-june-10-2009/</link>
		<comments>http://www.nymissa.org/2009/05/13/save-that-date-june-10-2009/#comments</comments>
		<pubDate>Thu, 14 May 2009 01:08:47 +0000</pubDate>
		<dc:creator>grigoleite</dc:creator>
				<category><![CDATA[Event Calendar]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://nymissa.org/?p=326</guid>
		<description><![CDATA[[ June 10, 2009; 2:00 pm to 5:00 pm. ] Security and SMB’s
Small community banks in NYC face many of the same security challenges as the big banks. The small budgets and understaffed teams that deal with compliance and security make the challenges more difficult.

In an article on Bankinfosecurity.com, Linda McGlasson writes that small banks are targeted by attackers. She profiles Dennis Weiskircher, IT Manager [...]]]></description>
			<content:encoded><![CDATA[<h3>Security and SMB’s</h3>
<p>Small community banks in NYC face many of the same security challenges as the big banks. The small budgets and understaffed teams that deal with compliance and security make the challenges more difficult.</p>
<p>In an article on Bankinfosecurity.com, Linda McGlasson writes that small banks are targeted by attackers. She profiles Dennis Weiskircher, IT Manager and Security Officer at Citizens Bank. &#8220;I find it surprising how many smaller banks are being targeted by criminals,&#8221; Dennis says. &#8220;I think they&#8217;ve realized that the big banks have the budget to fight online crimes, and so they&#8217;ve come down the food chain to hit the smaller banks that have fewer staff to fight these things.&#8221;</p>
<p>This discussion will bring some insight on managing IT, Compliance and Security at community banks and the daily challenges they face.</p>
<p>The event will be held at the offices of Deloitte &amp; Touche at 1633 Broadway; registration is now open at <a href="http://guest.cvent.com/i.aspx?5S,M3,18b639b2-e196-424a-9b27-d3bbb39ba308" target="_blank">cvent.com</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.nymissa.org/2009/05/13/save-that-date-june-10-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>May Mixup: Topical Security Issues</title>
		<link>http://www.nymissa.org/2009/04/29/may-chapter-event/</link>
		<comments>http://www.nymissa.org/2009/04/29/may-chapter-event/#comments</comments>
		<pubDate>Wed, 29 Apr 2009 22:58:45 +0000</pubDate>
		<dc:creator>grigoleite</dc:creator>
				<category><![CDATA[Event Calendar]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://nymissa.org/?p=315</guid>
		<description><![CDATA[[ May 13, 2009; 2:00 pm to 5:30 pm. ] Security has many shades and flavors.  There is not one solution to support all of an organization’s security needs. The May Mix-up session addresses a number of different topics that are relevant to ISSA members.  The session will be highly interactive, will span the range from technical to risk management discussions and will be informative [...]]]></description>
			<content:encoded><![CDATA[<p>Security has many shades and flavors.  There is not one solution to support all of an organization’s security needs. The May Mix-up session addresses a number of different topics that are relevant to ISSA members.  The session will be highly interactive, will span the range from technical to risk management discussions and will be informative as always.</p>
<p>The event will be held at PricewaterhouseCoopers, 300 Madison Avenue (at 42nd Street), by the DEC Area by the cafeteria.  Full event details and registration information are now available at <a href="  	 http://guest.cvent.com/i.aspx?5S,M3,cb4c2b9a-8903-4aba-bb6f-cd330df733a5" target="_self">cvent. com</a>.<a href="http://guest.cvent.com/i.aspx?5S,M3,dd97acda-d713-4032-ac24-6000c07461a8" target="_blank"> </a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.nymissa.org/2009/04/29/may-chapter-event/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
