<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Central VA ISSA</title>
	<atom:link href="http://centva.issa.org/feed/" rel="self" type="application/rss+xml" />
	<link>http://centva.issa.org</link>
	<description></description>
	<lastBuildDate>Sun, 13 May 2012 04:56:11 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>Central-VA-ISSA-May-2012-Meeting</title>
		<link>http://centva.issa.org/central-va-issa-may-2012-meeting/</link>
		<comments>http://centva.issa.org/central-va-issa-may-2012-meeting/#comments</comments>
		<pubDate>Thu, 26 Apr 2012 20:31:41 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Meetings]]></category>

		<guid isPermaLink="false">http://centva.issa.org/?p=247</guid>
		<description><![CDATA[Title: Mobile Device Risk Assessment With the consumerization of IT, organizations everywhere are feeling the pressure to incorporate a broader spectrum of mobile devices into the corporate environment.  Meanwhile, the threat environment for mobile devices is unique and changing, and security capabilities are lagging behind mobile functionality.  In order to successfully incorporate a broader variety <a href='http://centva.issa.org/central-va-issa-may-2012-meeting/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p><strong>Title: </strong>Mobile Device Risk Assessment</p>
<p>With the consumerization of IT, organizations everywhere are feeling the pressure to incorporate a broader spectrum of mobile devices into the corporate environment.  Meanwhile, the threat environment for mobile devices is unique and changing, and security capabilities are lagging behind mobile functionality.  In order to successfully incorporate a broader variety of mobile devices into the corporate environment, organizations must thoroughly assess the risks and develop a risk mitigation plan.</p>
<p>This session will review available risk assessment models, unique considerations when conducting a risk assessment for mobile devices, as well as a case study of a recent mobile device risk assessment.</p>
<p><strong>Speaker:</strong><br />
David Frei is a member of the Capital One IS Audit team, serving as Digital and Information Security Specialist.  David brings 10 years of experience from KPMG providing security advisory, IT attestation, and external audit services to various clients in Financial Services, Insurance, Consumer Products, Healthcare, Energy/Mining, Telecommunications, Federal, and Local Governments. His certifications include: Certified Information Systems Security Professional (CISSP) and Certified Information Privacy Professional (CIPP).</p>
<p>David has strong information security/digital experiences that include assessing mobile devices and applications, consulting on information governance frameworks, performing sensitive data flow analyses, assessing security and privacy controls to prevent and detect data loss across the information lifecycle, developing and evaluating Information Security Management Systems and third-party vendor risk assessment programs, performing vulnerability assessments, and managing IT and business process components of internal controls readiness and attestation projects.</p>
]]></content:encoded>
			<wfw:commentRss>http://centva.issa.org/central-va-issa-may-2012-meeting/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Central-va-ISSA-Feb-2012-Meeting</title>
		<link>http://centva.issa.org/central-va-issa-feb-2012-meeting/</link>
		<comments>http://centva.issa.org/central-va-issa-feb-2012-meeting/#comments</comments>
		<pubDate>Wed, 21 Mar 2012 16:48:44 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://centva.issa.org/?p=243</guid>
		<description><![CDATA[Title: Malware Response: Tools of the Trade This talk will cover the common tools used by hackers to create Advanced Persistent Threats, and, the tools today&#8217;s security professional should be familiar with to combat these attacks.]]></description>
			<content:encoded><![CDATA[<p>Title: Malware Response: Tools of the Trade</p>
<p>This talk will cover the common tools used by hackers to create Advanced Persistent Threats, and, the<br />
tools today&#8217;s security professional should be familiar with to combat these attacks.</p>
]]></content:encoded>
			<wfw:commentRss>http://centva.issa.org/central-va-issa-feb-2012-meeting/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Central-VA-ISSA-April-2012-Meeting</title>
		<link>http://centva.issa.org/central-va-issa-april-2012-meeting/</link>
		<comments>http://centva.issa.org/central-va-issa-april-2012-meeting/#comments</comments>
		<pubDate>Mon, 19 Mar 2012 00:43:52 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://centva.issa.org/?p=226</guid>
		<description><![CDATA[Title:  Practical Android Security Speaker: Jack Mannino, CEO of nVisium Security &#160; Building secure Android applications can be achieved with a mix of common sense, leveraging platform security features, and following secure development best practices. This presentation will focus on security &#8220;quick wins&#8221; during development and will cover techniques that can reduce the overall attack <a href='http://centva.issa.org/central-va-issa-april-2012-meeting/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p><strong>Title:  </strong>Practical Android Security</p>
<p><strong>Speaker: </strong><span>Jack <span>Mannino</span>, </span>CEO<span> of <span>nVisium</span> Security</span></p>
<p>&nbsp;</p>
<p>Building secure Android applications can be achieved with a mix of common sense, leveraging platform security features, and following secure development best practices. This presentation will focus on security &#8220;quick wins&#8221; during development and will cover techniques that can reduce the overall attack surface within Android applications.</p>
<p>&nbsp;</p>
<p><span>The OWASP <span>GoatDroid</span> and OWASP <span>MobiSec</span> tools will be used throughout the </span>presentation to demonstrate issues encountered in the real world. We will cover the attack surface for Android and highlight the most prevalent security flaws found within production applications.</p>
<p>&nbsp;</p>
<p>Jack Mannino is the CEO of nVisium Security, an application security firm located within the Washington DC area. At nVisium, he helps to ensure that large corporations, government agencies, and software startups have the tools they need to build and maintain successful application security initiatives. He is an active Android security researcher, and has a keen interest in identifying security issues and trends on a large scale. Jack is the leader and founder of the OWASP Mobile Security Project. He also serves as a board member on the OWASP Northern Virginia chapter. Jack is also the lead developer for the OWASP GoatDroid Project, which is a collection of vulnerable Android applications used for training and education.</p>
]]></content:encoded>
			<wfw:commentRss>http://centva.issa.org/central-va-issa-april-2012-meeting/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Central VA ISSA-March 2012 Meeting</title>
		<link>http://centva.issa.org/central-va-issa-march-2012-meeting/</link>
		<comments>http://centva.issa.org/central-va-issa-march-2012-meeting/#comments</comments>
		<pubDate>Mon, 12 Mar 2012 02:18:59 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://centva.issa.org/?p=211</guid>
		<description><![CDATA[Title:  GE&#8217;s Information Security Technology Center (ISTC) in Glen Allen Speaker: Deneen DeFiore, GE, Site Leader for ISTC Deneen will present an overview of the GE Information Security Technology Center (ITSC) including: GE&#8217;s information protection philosophy and drivers The services the ITSC provides GE business units The range of personnel and skills employed Why GE <a href='http://centva.issa.org/central-va-issa-march-2012-meeting/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p><strong>Title:  </strong>GE&#8217;s Information Security Technology Center (ISTC) in Glen Allen</p>
<p><strong>Speaker: Deneen DeFiore</strong>, GE, Site Leader for ISTC</p>
<p>Deneen will present an overview of the GE Information Security Technology Center (ITSC) including:</p>
<ul>
<li>GE&#8217;s information protection philosophy and drivers</li>
<li>The services the ITSC provides GE business units</li>
<li>The range of personnel and skills employed</li>
<li>Why GE selected Glen Allen Virginia as the location for the ITSC</li>
<li>Questions and Answers</li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://centva.issa.org/central-va-issa-march-2012-meeting/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Central-VA-ISSA-Jan-2012-Meeting</title>
		<link>http://centva.issa.org/central-va-issa-jan-2012-meeting/</link>
		<comments>http://centva.issa.org/central-va-issa-jan-2012-meeting/#comments</comments>
		<pubDate>Fri, 23 Dec 2011 00:18:53 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Meetings]]></category>

		<guid isPermaLink="false">http://centva.issa.org/?p=37</guid>
		<description><![CDATA[Title: &#8220;Transforming Security from an Operational to a Strategic Role&#8221; It is a given that the most important requirement of a successful security program is executive support, ideally executive respect.  Koos Lodewijkx, IBM IT Security strategist, will describe how he and his team use a &#8220;10 Essential Security Practices&#8221; model to create a transformational security <a href='http://centva.issa.org/central-va-issa-jan-2012-meeting/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p><strong>Title:</strong> &#8220;Transforming Security from an Operational to a Strategic Role&#8221;</p>
<p>It is a given that the most important requirement of a successful security program is executive support, ideally executive respect.  Koos Lodewijkx, IBM IT Security strategist, will describe how he and his team use a &#8220;10 Essential Security Practices&#8221; model to create a transformational security program that supports IBM&#8217;s IT Risk Program objectives.  You will leave Koos&#8217; presentation with an understanding of this security program framework developed by security thought leaders and embraced by IBM&#8217;s business leadership team.</p>
<p>&nbsp;</p>
<p><strong>Speaker:</strong> Koos Lodewijkx leads the IT Risk Strategy &amp; Policy team in IBM, responsible for driving the technical architecture for IT Security across IBM world-wide, and developing and managing the IT Security and Business Continuity / Disaster Recovery policies and standards.</p>
<p>Previously, he held the role of Lead Strategist for the IBM Security Solutions division.  Koos has been working in IT Security for well over a decade.</p>
]]></content:encoded>
			<wfw:commentRss>http://centva.issa.org/central-va-issa-jan-2012-meeting/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

