Posted: December 11th, 2009
TOPIC:
Database and Vulnerability Management

WHEN:
Friday, January 22nd 2010
11:30 – 12:00 Networking
12:00 – 1:00 Speaker
WHERE:
Waterfront Plaza (Directions)
10 Floor east tower
321 W Main Street
Louisville, KY
SPEAKER(s):
Mark R. Trinidad, Application Security, Inc.
Mark R. Trinidad is a Product Manager at Application Security, Inc. He is responsible for the direction of AppDetectivePro, all scanning technology, and the vulnerability knowledgebase for all products.
Over the years, Mark has established trusted partnerships with IT auditors and security professionals, working with them to understand how database audit and security controls fit into audit and compliance frameworks. He has spoken at various ISSA, ISACA, and OWASP chapters around the country, is a frequent DefCon attendee, and an active committee member of the ISACA and ISSA New York Metro chapters.
Mark holds a BS in MIS and Marketing from Drexel University.
Posted: November 9th, 2009
TOPIC:
Solving Problems That Don’t Exist
Building better security practices
WHEN:
Friday, November 20th 2009
11:30 – 12:00 Networking
12:00 – 1:00 Speaker
WHERE:
Waterfront Plaza (Directions)
10 Floor east tower
321 W Main Street
Louisville, KY
COST: $5 (Pizza will be served) – RSVP Closed
SPEAKER: Rafal M. Los, Solutions Specialist (
HP)

ABOUT:
In today’s enterprise, Web Application Security has come front and center for security managers as well as the business. The reason many well-funded, well-backed programs fail is because they miss the fundamental rule of problem solving – understand the problem. The secret to success is simple – understand your business context and build a program around that.
How can you develop an actionable, business-risk driven program for your enterprise? Understanding your role within the business is key, followed by successful identification of a cornerstone upon which to base the program. Evaluating data value, application visibility and business exposure one step at-a-time, and assigning real, measurable risk are the necessary steps to making sure your program is well-grounded in business value. Participants will be given a strong foundation to succeed, so they don’t end up solving problems the business doesn’t have.
Posted: October 5th, 2009
TOPIC:
Enterprise Vulnerability Management
This presentation will be conducted by nCircle, an industry leader in EVM, and will touch on how to setup and manage a successful enterprise vulnerability management process.
WHEN:
Thursday, October 29th 2009
11:30 – 12:00 Networking
12:00 – 1:00 Speaker
WHERE:
Council on Mental Retardation, Inc.
1151 S. 4th Street (map)
Louisville, KY 40203
http://councilonmr.org
(502) 582-1995
Parking is available across the street in the old Winn-Dixie lot.
COST: FREE (courtesy of nCircle) – 1 Hour of CPE
Please RSVP to meetings@isacaky.org before October 27, 2009 at 5pm.
Please include your selection of sandwich from Jimmy Johns listed below:
#1 PEPE®
Real applewood smoked ham and provolone cheese garnished with lettuce, tomato, and mayo.
#2 BIG JOHN®
Medium rare shaved roast beef, topped with yummy mayo, lettuce, and tomato.
#3 TOTALLY TUNA®
Fresh housemade tuna, mixed with celery, onions, and our tasty sauce, then topped with alfalfa sprouts, cucumber, lettuce, and tomato. (My tuna rocks!)
#4 TURKEY TOM®
Fresh sliced turkey breast, topped with lettuce, tomato, alfalfa sprouts, and mayo. (The original)
#5 VITO®
The original Italian sub with genoa salami, provolone, capicola, onion, lettuce, tomato & a real tasty Italian vinaigrette. (Hot peppers by request)
#6 VEGETARIAN
Layers of provolone cheese separated by real avocado spread, alfalfa sprouts, sliced cucumber, lettuce, tomato, and mayo. (Truly a gourmet sub not for vegetarians only..peace dude!)
(Note: All lunches will be box lunches and will include a bag of chips + cookie)
SPEAKER: (
nCircle)
Mark Wood, VP Product Management and Strategy
Mark Wood is responsible for product management for the Configuration Compliance Manager business. He has more than 21 years of technology marketing experience, with significant expertise in product management, marketing and new product market strategies. Prior to joining nCircle, Mark was vice president of product management and marketing for Cambia Security, the leader in agentless configuration compliance that was acquired by nCircle in May, 2007. At Cambia, Mark directed product strategy, product marketing and marketing initiatives.
ABOUT COMPANY:
nCircle has a proven track record of innovation in security and compliance auditing. nCircle was the first to deliver a complete vulnerability and risk management system, moving the market beyond simple penetration tests and enabling enterprise customers to focus on security processes rather than simply one-time vulnerability assessments. nCircle has built on that expertise, uniquely delivering a fully integrated, best-in-class agentless product line for auditing the entire information technology stack across a global network.
nCircle is the only provider of a true appliance-based solution, minimizing cost and complexity in enterprise deployment and management, while providing virtually unlimited scalability. nCircle is the only vulnerability and risk management system to be Common Criteria certified at EAL level 3. This is a comprehensive third party certification recognized in 23 countries on the strength of the security processes in the company and the processes around creating and delivering products.
nCircle currently holds five U.S. patents and has another four patents pending. nCircle is the only vendor with a 24-hour SLA for critical Microsoft vulnerabilities, ensuring that within 24 hours of the announcement of the advisory by Microsoft, nCircle will provide a check with which they can test their systems for the vulnerability. nCircle supports this guarantee with the largest and most productive Vulnerability and Exposure Research Team (nCircle VERT) in the industry.
nCircle is the leading provider of automated security and compliance auditing solutions. More than 4,000 enterprises, government agencies and service providers around the world rely on nCircle’s proactive solutions to manage and reduce security risk and achieve compliance on their networks. nCircle has won numerous awards for growth, innovation, customer satisfaction and technology leadership. nCircle is headquartered in San Francisco, CA, with regional offices throughout the United States and in London and Toronto.