North America CACS 2012 

Browse All of Our Events »
ISACA conferences offer unprecedented networking opportunities.

Be the first to learn about COBIT 5!

NACACS is the first conference following the COBIT 5 launch in April 2012. Join COBIT 5 experts for interactive sessions. Topics include:

●  Introduction Into COBIT 5: The New Evolution of COBIT
●  Comparing COBIT 4.1 and COBIT 5

Learn more about the business benefits of COBIT 5!

Ken Vander Wal

International President:
Join Me at North America CACS
Play

Knowledge Center  Join North America CACS speakers, Derek Duval, Todd Fitzgerald, Phil Flora, Nelson Gibbs and Sean Scranton in ISACA’s Knowledge Center where they are discussing their session topics. 

NACACS Workshop and Conference Registration is Open. Please register on site at the Loews Royal Pacific Resort at Universal Orlando in the Pacifica Ballroom Foyer. If you have questions, please contact the Conference Department at conference@isaca.org or +1.847.660.5585.


What's In It For You?

Customized learning experience. Choose the sessions that matter most to you and your enterprise.

World-class networking. Interact face-to-face with colleagues in an environment ideal for unparalleled knowledge sharing.

Update your knowledge. Broaden your understanding of new research and projects being developed across the globe.

Sharpen your skills. Expand your expertise. Earn valuable CPEs.


What's In It For Your Organization?

Exceptional value for training dollars. Receive from every session full documentation that can be shared with colleagues at the office.

Exclusive access to industry experts. Tried and tested solutions to problems facing your organization from those who have been in your role before. Discover what works and doesn’t work from experienced and successful professionals.

Interact with leading vendors. All your organization’s vendors in one place at the InfoExchange. Get answers directly from vendors. Discover new products that will decrease the expense to your organization and increase the return.

Learn about ISACA's Exhibitor and Sponsorship Opportunities


Venue

Stay in the heart of the conference action at a discounted hotel price. To guarantee pricing, please make your reservations as soon as possible, as our hotel block may sell out before the cut-off date. To make reservations, contact the hotel directly.

Loews Royal Pacific Resort at Universal Orlando®
Room Rates:  USD $179 Single/Double ($25 each additional occupant)
* Rates based on availability.
Guest Room Rate Cut-off:  20 April 2012
Phone:  +1.407.503.3000 (Ask for Reservations Department)
Web:  www.loewshotels.com (Group Code: GP25U1)

44 Hours
Earn up to 44 CPE Hours!

Download the North America CACS Mobile App!

NACACS Mobile AppStay connected at this year's North America CACS Conference with your smart phone or other mobile device!  With this new feature you can build your own conference schedule, view session highlights, track session locations, take notes, and obtain information about the Orlando area.

To access this application you may use the Quick Response (QR) code, or you may obtain it by going to the following link:   www.tripbuilder.com/nacacs2012apps


Don't Miss Out!

North America Computer Audit, Control and Security (CACS) is a quality professional development opportunity.

  • Join your colleagues
  • Expand your networking opportunities
  • Build a stronger IT community.
  • Increase your member and vendor contacts
  • Interact with speakers who provide insight on IT audit and related topics.

Return to the office motivated to positively contribute to your enterprises’ success and immediately apply what you learned.

TwitterFollow @ISACANews on Twitter and get the latest updates about ISACA's North America CACS with the hash tag #NACACS.


Download the North America CACS brochure!

  Brochure (1.3M)

  Program Outline 
(84K)

Program Information


 View Program Sessions and Workshops by Schedule

  North America CACS Brochure (1.3M)

  Program Outline (84K)


COBIT 5 is Here!

Two sessions are offered during North America CACS: 

Monday, 7 May, 5:15PM – 6:15PM
Introduction to COBIT 5

Building on more than 15 years of practice in IT, risk, security and assurance communities, COBIT 5 is a “business framework for the governance and management of enterprise IT.” COBIT 5 empowers executives to make better business decisions regarding their information and technology assets.

A "top down" framework, COBIT 5 is principle-based, powered by enablers. It separates governance and management, and delivers a powerful implementation guide to direct the practitioner in ensuring value from their IT-enabled business investments. This session discusses the critical aspects of COBIT 5, what is available and allows time for your questions.

Tuesday, 8 May, 7:15AM – 8:15AM
Comparing COBIT 4.1 and COBIT 5

COBIT 5 integrates Risk IT, Val IT, BMIS and COBIT 4.1 into a single business framework.  This approach facilitates more effective delivery of value to stakeholders from the more appropriate and effective governance and management of enterprise IT assets. COBIT 5 also:

  • Distinguishes between governance and management
  • Is organized around five governance of enterprise IT (GEIT) principles and seven enablers
  • Delivers a new process reference model
  • Covers enterprise activities end-to-end and much more.

This session compares COBIT 4.1 and COBIT 5, and provides information to move forward with COBIT 5.


Sessions by Tracks

For track and session descriptions, please view the conference brochure or the sessions page.


Workshops

Pre-Conference Workshops, 9:00AM-5:00PM daily
2-Day Workshops, Saturday and Sunday, 5-6 May 2012

1-Day Workshop, Saturday, 5 May 2012

1-Day Workshop, Sunday, 6 May 2012

Post-Conference Workshops
1-Day Workshops, Thursday, 10 May 2012, 1:30PM-5:00PM, continuing Friday, 11 May 2012, 8:30AM-12:00PM

Opening Keynote Address

Trends and Technology – Taking the Lead

 

Scott Klososky

Founder and Board Chair
Alkami Technology


Play  View a special invitation from Scott Klososky

As founder of Alkami Technology, Scott has led his team to develop a second-generation online banking platform. In the past, he served as an aide to President Nixon and worked as a turnaround CEO at Critical Technologies, where he rebuilt and restored it to profitability. Scott also founded webcasts.com and Paragraph, Inc. With his vision and ability to see trends in emerging technologies, Scott is a thought leader who helps organizations thrive, leaders prosper and entire industries move forward.

Technology tools and trends powerfully impact how organizations communicate and stay relevant. In this engaging opening Keynote presentation, Scott provides a top-to-bottom tutorial on the best practices for implementing an impactful Social Technology — Social Media, Social Networking and Social Relevance — strategy. It is important to note that this is not a session that teaches best practices for using LinkedIn or Facebook. This is a robust keynote backed by strong explanations of why SocialTech matters, and how it is changing sales, customer service and marketing. Even the smallest improvements in leveraging Social Technology can propel your organization to leapfrog your competitors. Included: online reputation management, crowdsourcing, building rivers of knowledge and becoming industry experts.

Closing Keynote Address


Become a Change Agent—Bringing What you Gained at Conference into Your Organization


Ed Robinson, CPA, CSP

President and CEO
Robinson Performance Group

View webinar led by Robinson: Using a Six Step Process to Influence and Understand Behaviors

A Certified Speaking Professional, Ed is a recognized expert in Practice and Business Growth and has authored four books. His energetic, engaging and entertaining style is a primary reason why Ed’s strategies improve performance. As a result, he helps individuals to manage change and increase revenue regardless of economic obstacles and challenges. A self-described “recovering CPA,” Ed brings his vast experience, proven leadership and practiced motivational style to NACACS 2012. With more than 30 years experience in professional service organizations, Ed provides unique growth strategies, and is sought after for his speaking style and coaching techniques.

We are all challenged by new ways to do business. These challenges can include industry or regulatory changes, as well as colleagues who do not see the need to change. In this closing session, you gain core, universal strategies to flourish and thrive in the ever-changing, constantly shifting information technology industry.  Leave with a renewed commitment to professionalism and productivity as you gain formulas for success, and learn the key attributes of professionalism, personal success and self motivation.

Program Sessions and Workshops


Saturday, 5 May 2012

Time Workshop

9:00AM–5:00PM

WS1 Control and Security of Web Applications
WS2 IT Risk Management
WS4 Performing IT Audits: A Practical Approach


Sunday, 6 May 2012

Time Workshop

9:00AM–5:00PM

WS1 Control and Security of Web Applications (cont.)
WS2 IT Risk Management (cont.)
WS5 Server Virtualization Security and Audit

5:30PM–7:30PM

Welcome Reception


Monday, 7 May 2012

Time Session

8:30AM–9:55AM

Opening Keynote:  Trends and Technology

10:15AM–11:45AM

T1 111 Business Impact of IT Audit Issues
T2 112 What is Virtualization and How Do I Audit It?
T3 113 Automating IT Data Collection and Compliance for GRC Controls
T4 114 Emerging IT Risks Panel Discussion
T5 115 IT Governance Considerations with Mobile Computing
T6 116 New for 2012: Emerging IT Audit Risks
T7 117 Enterprise Risk Management Essentials

1:30PM–3:00PM

T1 121 Developing a Risk-based Audit Plan
T2 122 The Keys to Assessing Risk when Sharing Data with Service Providers
T3 123 Does Your Organization Need a Risk Management Plan for Personally Identifiable Information Data?
T4 124 Emerging IT Risks Roundtable
T5 125 Regulator Hot Topic Panel
T6 126 System Authentication: The New Risk and 7 Steps to Audit and Remediate
T7 127 IT Risk Management Life-cycle and Enabling IT with GRC Technology

3:30PM–5:00PM

T1 121 Developing a Risk-based Audit Plan (cont.)
T2 132 Auditing Mobile Computing/Consumerization of IT
T3 123 Does Your Organization Need a Risk Management Plan for Personally Identifiable Information Data? (cont.)
T4 134 A Lesson for Leaders: How to Attract and Retain Top Personnel in Today’s Economy
T5 135 Trends in Compliance and Regulations Industry Expert
T6 136 Auditing Cloud Computing and Outsourced Operations
T7 137 Reduce IT Risk Through Improved Management and Planning


Tuesday, 8 May 2012

Time Session

8:30AM–10:00AM

T1 211 Data Analytics for IT Governance Controls
T2 212 Auditing Your Unix and Linux Operating Systems
T3 213 Records and Information Management: Understanding the Risks and Operational Challenges
T4 214 Changing the C-Suite Perception of Internal Audit
T5 215 Implementing COBIT Quickstart in a Healthcare Organization
T6 216 In the Crosshairs of Social Engineering Attacks
T7 217 The Opportunity in Risk and Security Trends

10:30AM–12NOON

T1 221 Networking and Building Relationships
T2 222 Microsoft SQL Database Auditing Industry Expert
T3 223 Recent Legal and Technical Trends in Privacy and Data Protection
T4 224 Healthcare Security: Learning from Rigorous Government Security Requirements
T5 225 Data Quality and Data Classification—Comparisons, Efficiencies and Success Factors
T6 226 Secure Coding: Best Practices
T7 227 What Color is Your Information Risk—Today?

1:30PM–3:00PM

T1 231 Auditors Guide to Process Improvement, Innovation and Business Process Management
T2 232 Auditing Oracle ERP
T3 233 Using Encryption Technologies to Protect Data
T4 234 Mobile Device Security, Privacy, and Data Protection
T5 235 eDiscovery: Trends, Leading Practices, Risks, and Controls
T6 236 Reduce Cloud Security and Compliance Risks by Automating Privileged Accounts
T7 237 Security Auditing and Governance for Healthcare Providers

3:30PM–5:00PM

T1 241 Embedding Data Analytics in Your Process and Continuous Fraud Auditing
T2 242 Networking and Telephony Industry Expert
T3 243 Data Breach and Trade Secret Theft: How a Holistic Approach Can Protect Your Assets
T4 244 SAP: Real Time Controls in the SAP Environment
T5 245 Healthcare Privacy and Security Landscape in 2012
T6 246 Social Media Risk and Mitigation Guidance
T7 247 Black Holeistic Disaster Recovery: How to Limit Losses

5:00PM–6:30PM

Solution Center Reception

5:15PM–6:30PM

Spotlight Education Sessions


Wednesday, 9 May 2012

Time Session

8:30AM–10:00AM

T1 311 Career Development for IT Auditors
T2 312 The Risk and Exposure of Today’s Top Web Application Security Risks (OWASP Top 10)
T3 313 Developing and Deploying an Enterprise Strategy for Information Loss Prevention
T4 314 Data Security & Privacy: Can it Be Institutionalized?
T5 315 Certificates – The New Authentication: Risks and Remediation
T6 316 Identify and Eradicate: The Top Security Threats to Banks in 2012
T7 317 Establish and Maintain Information Security Oversight

10:15AM–12:15PM

Spotlight Education Sessions

10:00AM-1:30PM

Solution Center

1:30PM–3:00PM

T1 321 An Integrated Approach to Process-based IT Audit Using Quality and Information Security Management Systems
T2 322 SAP: Segregation of Duties for SAP and Oracle
T3 323 Understanding and Mitigating System, Compliance and Legal Consequences of Cloud Computing
T4 324 Is IT Still Relevant? Communicating Trends and Risks Found in the New Technology Landscape
T5 325 Beyond Compliance: Reduce Operation Risk and Cost While Complying
T6 326 After the Breach
T7 327 SaaS: How to Secure the Services Your Team Provides

3:30PM–5:00PM

T1 331 Design and Deliver Report Presentations that Speak to Your Target Audience and Drive Action
T2 332 ITIL and CMM Assessments for IT Operations
T3 333 Reform Of The European Union Data Protection Framework—A US Perspective
T4 334 Incident Management
T5 335 Review FFIEC Supplemental Guidance on Internet Banking Authentication, Combat Internet Banking Risks
T6 336 How to Conquer the Social Media Landscape: The Vanguard Experience
T7 337 CFO and CIO: Partners or Opponents?

6:00PM–8:00PM

Networking Reception


Thursday, 10 May 2012

Time Session / Workshop

8:30AM–9:45AM

T1 411 Migrating to COBIT 5 for Auditors
T2 412 Tips, Techniques, and Tools for Completing a PCI Self Assessment Questionnaire (SAQ)
T3 413 A New Opportunity for IT Professionals: PS-Prep™ Audit
T4 414 Understanding Your Data Flow: Using Tokenization to Secure Data
T5 415 IT Governance: Myth to Reality
T6 416 Protecting Your Mobile Devices
T7 417 How to Make Enterprise Governance, Risk and Compliance (eGRC) Work for You

10:00AM–11:15AM

T1 421 Auditing the Intangible: Tangible Techniques for Assessing the Internal Control Environment
T2 412 Tips, Techniques, and Tools for Completing a PCI Self Assessment Questionnaire (SAQ) (cont.)
T3 413 A New Opportunity for IT Professionals: PS-Prep™ Audit (cont.)
T4 424 How to Protect Your Network when Social Media Drives Malware Delivery Vehicle
T5 425 Information Warfare: Because Weapons Aren’t Always Made of Steel
T6 426 Wikileaks: Are You the Next Target?
T7 417 How to Make Enterprise Governance, Risk and Compliance (eGRC) Work for You (cont.)

11:30AM–12:30PM

Closing Keynote:  Become a Change Agent—Bringing What You Gained at the Conference

1:30PM–5:00PM

WS6 Cloud Computing Audit and Assurance Issues
WS7 Data Loss Prevention (DLP)


Friday, 11 May 2012

Time Workshop

8:30AM–12NOON

WS6 Cloud Computing Audit and Assurance Issues (cont.)
WS7 Data Loss Prevention (DLP) (cont.)

 

Continuing Professional Education Credits

National Registry of CPE SponsorsTo maintain ISACA certifications, certification holders are required to earn 120 CPE credit hours over a three-year period in accordance with ISACA’s continuing professional education (CPE) policy. Attendees can earn up to 44 CPE credits; 23 by attending the North America CACS Conference and an additional 7 CPE credits for attending each day of optional pre- or postconference workshops. ISACA conferences are Group Live and do not require any advanced preparation.

ISACA is registered with the National Association of State Boards of Accountancy (NASBA) as a sponsor of continuing professional education on the National Registry of CPE Sponsors. State boards of accountancy have final authority on the acceptance of individual courses for CPE credit. Complaints regarding registered sponsors may be submitted to the National Registry of CPE Sponsors through its website:  www.learningmarket.org.

Conference Registration Fees

   
Member US $1750 Non-member US $1950

One-Day Workshop

Member US $550 Non-member US $750
   

Two-Day Workshop

Member US $750 Non-member US $950


Cancellation Deadline


11 April 2012

All fees are quoted in US dollars. The entire registration fee must be received by ISACA before your registration will be considered paid in full.

NACACS Workshop and Conference Registration is Open. Please register on site at the Loews Royal Pacific Resort at Universal Orlando in the Pacifica Ballroom Foyer. If you have questions, please contact the Conference Department at conference@isaca.org or +1.847.660.5585.

Registration

NACACS Workshop and Conference Registration is Open. Please register on site at the Loews Royal Pacific Resort at Universal Orlando in the Pacifica Ballroom Foyer. If you have questions, please contact the Conference Department at conference@isaca.org or +1.847.660.5585.

Cancellation Policy

If your plans change and you won’t be able to attend the conference and/or workshop, contact us by phone, fax or email to cancel your registration. All cancellations must be received by 11 April 2012 to receive a refund of registration fees. A cancellation charge of US $100 will be subtracted from conference refunds, and US $50 from workshop refunds. No refunds can be given after 11 April 2012. Attendee substitution is permitted at any time until the conference. If a nonmember is substituting a member, then there will be additional nonmember fees.

NOTE: Registration is contingent upon full payment of the registration fee. To guarantee registration, conference and/or workshop fees must be received by the published deadline. It may take 10 or more business days for a wire transfer or mailed check to reach ISACA, so please plan accordingly. If, for any reason, ISACA must cancel a course or event, liability is limited solely to the registration fees paid. ISACA is not responsible for other expenses incurred, including travel and accommodation fees. Conference materials are not guaranteed to those who register onsite or fail to submit payment prior to the event. For more information regarding administrative policies, please contact the ISACA conference department.
Phone: +1.847.660.5585
Fax: +1.847.253.1443
Email: conference@isaca.org

Your North America CACS registration fee includes:

  • Attendance at the conference sessions of your choice
  • An opportunity to earn up to 44 continuing professional education (CPE) credit hours
  • Complimentary continental breakfast for conference attendees
  • Complimentary lunches
  • Complimentary morning and afternoon refreshment breaks
  • Unlimited entry to the InfoExchange exhibits
  • Invitations to all social and networking events:
    • Welcome Reception
    • Solution Center Reception
    • Networking Reception

Disclaimer

ISACA reserves the right to alter or delete items from the program in the event of unforeseen circumstances. Material has been prepared for the professional development of ISACA members and others in the IT audit, control, security, and governance community. Neither the presenters nor ISACA can warrant that the use of material presented will be adequate to discharge the legal or professional liability of the members in the conduct of their practices. All materials used in the preparation and delivery of presentations on behalf of ISACA are original materials created by the speakers, or otherwise are materials which the speakers have all rights and authority to use and/or reproduce in connection with such presentation and to grant the rights to ISACA as set forth in speaker agreement. Subject to the rights granted in the speaker agreement, all applicable copyrights, trade secrets, and other intellectual property rights in the materials are and remain with the speakers.

Please note: unauthorized recording, in any form, of presentations and workshops is prohibited.


Conference Name Badge

Please wear your name badge at all times during the conference. Your name badge is your ticket into all conference events. Persons not wearing a conference name badge will be denied access into the conference and all affiliated events.

Not a member of ISACA? Join today!

When you register for the conference as a nonmember, the difference between member and nonmember conference fees can be applied towards ISACA membership. This means you can become a member at the international and chapter level for little to no additional cost; it just depends on your local chapter dues. To take advantage of this great offer, click on the "Click here to join now" link in your conference registration shopping cart. For more information about ISACA membership, visit the web site at www.isaca.org/membership or contact the membership department at membership@isaca.org.

NOTE: This offer expires 30 days after completion of the event. Nonmembers pay the nonmember conference fee when registering.


Permission to be Photographed

By attending this event, the registrant grants permission to be photographed during the event. The resultant photographs may be used by ISACA for future promotion of ISACA’s educational events on ISACA’s web site and/or in printed promotional materials, and by attending this event, the registrant consents to any such use. The registrant understands any use of the photographs will be without remuneration. The registrant also waives any right to inspect or approve the aforementioned use of any photographs now or in the future.


Dress

Business casual is appropriate for the North America CACS Conference and all conference events.


Visa

Obtaining a VISA is solely the responsibility of the registrant. Please contact the local government of the host country for details. Once a paid registration is received, a letter of invitation will be provided by ISACA, upon request.

Venue and Accommodations

Loews Royal Pacific Resort at Universal Orlando®
6300 Hollywood Way
Orlando, FL 32819
Phone:  +1.407.503.3000 (Ask for Reservations Department)
Fax:  +1.407.503.3010

Web:  www.loewshotels.com (Group Code: GP25U1)
Reservation Link:  www.loewshotels.com/en/Royal-Pacific-Resort/GroupPages/ISACA

Guest Room Rate:  US $179* Single/Double (US $25 each additional occupant)
* Rates based on availability.
Self Parking:  US $17 per car/per day
Valet Parking: US $24 per car/per day

Guest Room Cut Off Date:  20 April 2012

Room rate includes complementary in-guest room wireless internet.

Special Hotel Information

Special hotel rates are available three days prior to and following the conference, and are subject to availability. To obtain the preferred rate, remember to mention that you are attending ISACA North America CACS Conference. Reservation requests received after the cut-off date will be honored on a space-available basis only. All reservations must be guaranteed with a deposit of one night's room cost.

Individuals are responsible for securing their own deposit at the time reservations are made. ISACA strongly encourages all conference delegates to stay at the host hotel. Staying at the host hotel helps keep the cost of the conference and membership dues down by helping us fulfill our negotiated guest room commitments to the hotel. You will also enjoy the benefits of being onsite for conference activities at a reasonable price.

Location:  Orlando

An Orlando vacation is everything a holiday should be, with a range of accommodations, attractions, dining, shopping and recreation activities to turn an ordinary vacation into an experience of a lifetime.

In Orlando, the world's most amazing theme parks — Universal Studios Florida at Universal Orlando Resort, Magic Kingdom, Epcot, Disney's Hollywood Studios and Disney's Animal Kingdom at Walt Disney World Resort; Islands of Adventure and SeaWorld Orlando, Harry Potter's World — come together with more than 90 other attractions to create one larger-than-life destination, providing more entertainment options than anywhere on earth.

If you would like to discover more about what Orlando, Florida has to offer, please visit www.visitorlando.com.

Transportation

Avis LogoAVIS will be providing discounted car rentals 7 days before and after this event. You can call them directly at +1.800.331.1600, and provide them with ISACA’s Avis Worldwide Discount (AWD) Number J626395. Alternatively, you may make your reservations online utilizing this link which will automatically provide you with our discount.

Keynote Presentations

Opening Keynote Address
Trends and Technology –
Taking the Lead

Scott Klososky

Founder and Board Chair | Alkami Technology

   Opening Keynote Presentation
Play  "Citizen Journalists" from NACACS Keynote presentation by Scott Klososky

View Full Bio

 

 

Closing Keynote Address
Become a Change Agent—Bringing What you Gained
at Conference into Your Organization

Ed Robinson

President and CEO | Robinson Performance Group

View Full Bio

 


 

Presentation Materials


Track 1
Accelerating IT Audit Concepts

Technical and legislative environments require IT audit professionals to know the key to good practice auditing, from how to set up a risk-based audit plan to performing value-added audits, using state of the art tools and methods. This track presents topics essential to IT audit professionals to perform their jobs competently. The sessions are designed to provide concepts, methodologies and techniques to help the participants improve upon their knowledge, expertise and skills.

Download by session

 

 

  Download All Track 1 Presentations


Track 2
Tools and Techniques for IT Audit Programs

The IT audit and assurance professional must have a clear understanding of the underlying business processes and techniques to assess the adequacy of controls within these processes. Through demonstration and discussion of audit programs, this track will help IT audit professionals identify technological risks to the business and operational environments and how to use relevant business analysis as well as IT audit tools and techniques. These hands-on sessions are presented at an intermediate to advanced level. Each session combines process analysis and audit methodology with practical knowledge and examples to clearly illustrate best practices needed by today’s IT audit and assurance professionals.

Download by session

 

 

  Download All Track 2 Presentations


Track 3
Make Your Data Secure

Privacy is a growing concern as limitations seem to collapse when collecting, storing and managing data. This track will explore how the threats to privacy are evolving, how privacy can be protected and how to balance the need to collect and secure information in a fast-paced environment where electronic information is exchanged. Participants will delve into today’s largest privacy threats and how IT professionals can maintain IT related risk at an acceptable level. Sessions will also cover the growing concerns over wireless/mobile communication, fi nancial privacy, medical record confi dentiality, background checks and other sources of searchable internet data.

Download by session

 

 

  Download All Track 3 Presentations


Track 4
What’s Around the Corner?

Enterprises understand that strong relationships between business goals and supporting processes are imperative to sustain organizational success. This track explores the concepts and terminology of issues related to IT governance, IT frameworks and IT risk management. Sessions will include concept discussions of ISACA research deliverables, new models and frameworks. Sessions combine practical business knowledge, examples and best practices to arm IT professionals with the resources and tools they need to navigate today’s complex IT environment.

Download by session

 

 

  Download All Track 4 Presentations


Track 5
Managing IT Governance and Compliance Issues

Both topics provide perspectives on IT issues at the strategic level enabling managers to make well-informed planning and resource decisions. This track covers two related topics:

IT Governance: IT governance encompasses all stakeholders, and internal and external customers, and partners in the decisionmaking process, and subsequent monitoring to ensure risk-return value is delivered to the organization. Enterprise objectives are achieved by evaluating stakeholder needs, setting direction and monitoring performance to ensure risk-return value is delivered to the organization. This track covers governance as it relates to the IT investment portfolio, program management and operational controls for service delivery.

IT Compliance: This topic explores a variety of specific regulations and contractual compliance requirements, and the impact of regulatory compliance and how IT affects the entire organization. Session discussion will include the impact of compliance on controls and specifically the importance of integrating technology objectives into the overall business strategy.

Download by session

 

 

  Download All Track 5 Presentations


Track 6
Top 11!–Top Audit and Security Issues

IT professionals in all business sectors are accountable for due care in handling information. It is now more important than ever for organizations to protect and maximize the value of intellectual property and manage risk. This track identifies today’s top technology risks that are relevant to all IT assurance, risk, security or governance professionals. Sessions will identify the specific nature of these risks and how they impact the organization. Attendees will learn how to effectively evaluate risk and increase business value.

Download by session

 

 

  Download All Track 6 Presentations


Track 7
Managing Risk and Exposure

EThis track provides the knowledge required to help IT professionals advance their arsenal of skills needed to perform more advanced tasks and expand upon their job responsibilities. It will cover a variety of topics including using COBIT and COSO to understand, identify, and assess IT risks, and how to use internal control frameworks to mitigate risks. Sessions provide guidance to help IT professionals translate complex IT related risk scenarios into IT tactics that are relevant to all business units across the organization. Attendees will explore concepts of risk management and how to effectively apply them to make better business decisions and maximize the trust in, and value from, information technology.

Download by session

 

 

  Download All Track 7 Presentations

Research Deliverables

 

COBIT 5—5 Essential Facts

COBIT 5—Framework Overview

Introduction to COBIT 5

Comparing COBIT 4.1 and COBIT 5

Virtualization: Benefits and Challenges (registration required)   Session 112

VMware Server Virtualization Audit/Assurance Program (member only) Session 112

Mobile Computing Security Audit/Assurance Program (member only)  Session 115

Securing Mobile Devices (registration required)  Sessions 115, 234, 416

IT Risk Management Audit Assurance Program (member only)  Sessions 116, 117, 121, 123, 127, 137, 231

Cloud Computing Management Audit/Assurance Program (member only) Session 136

Cloud Computing: Business Benefits with Security, Governance and Assurance Perspectives (registration required)   Sessions 136, 326

Data Analytics — A Practical Approach (registration required)  Sessions 211, 241

UNIX/LINUX Operating System Security Audit/Assurance Program (member only)  Session 212

The Business Model for Information Security (registration required)   Session 217

Web Application Security: Business and Risk Considerations (registration required)  Sessions 226, 312

Electronic Discovery (registration required)  Session 235

Voice-over Internet Protocol (VoIP) Audit/Assurance Program (member only)  Session 242

Social Media: Business Benefits and Security, Governance and Assurance Perspectives (registration required)  Sessions 246, 424

Guiding Principles for Cloud Computing Adoption and Use (registration required)  Session 326

Systems Development and Project Management Audit/Assurance Program (member only)  Session 321

COBIT Mapping: Mapping FFIEC with COBIT 4.1 (member only)   Session 335

Social Media Audit/Assurance Program (member only)  Session 424

The Risk IT Framework (registration required)  Sessions 127, 137

Security, Audit, and Control Features Oracle PeopleSoft (bookstore purchase)  Session 232

Security, Audit and Control Features SAP ERP (bookstore purchase)  Session 244

 

Questions

Contact ISACA's Education/Conference Department:
Tel: +1.847.660.5585
Fax: +1.847.253.1443
conference@isaca.org

Media Inquiries

Contact the ISACA Communications Department:
Tel: +1.847.660.5512 or
+1.847.660.5564
news@isaca.org

Please address Sponsorship questions to: sstringer@isaca.org