Upcoming Tulsa Meetings:

Date:
August 26, 2010

Time:
Registration - 11:15am, Meeting - 11:30am-1:00pm

Cost:
$20 for members, $25 for non-members

Venue:
Philbrook Museum of Art
2727 Rockford Road
Tulsa, OK 74114

Topic: The Cloud Computing Train has Left the Station. Is Your Technology Risk Management Program on Board?

This presentation will look at the implications on IT risk management programs as a result of the rapidly evolving landscape of Cloud Computing and its adoption within organizations. We will look at some practical steps that can be taken to manage potential risks, and share some “lessons learned.” These can assist you in creating a risk aware culture and provide management the information they need to make informed decisions.

Cloud Computing isn’t necessarily more or less secure than your current environment. But with any new technology approach, new risks and new opportunities are created. You will need to adjust your traditional approach to IT Security controls, but can only do this by understanding the risk profile of each and every cloud computing instance. Assuring that a risk analysis process is part of the cloud computing engagement is the litmus test as to whether you're on board the Cloud Computing train or sitting at the station.

Speaker: Paul Tucker, CISSP, CISA, ITIL V3
Information Security Manager, Williams Information Technology (Williams Co.)

Paul Tucker is a Manager of Information Security for Williams Co. in Tulsa, Oklahoma. He has been with Williams for over 12 years. He manages an information security group that handles a wide variety of information security issues, concerns, and problems including regulatory security compliance, Identity Management, computer forensics, information protection, and security risk assessments based upon ISO 27005.

Paul is also the current President of the Tulsa, Oklahoma ISSA association which provides educational forums, publications and peer interaction opportunities that enhance the knowledge, skill and professional growth of its members.

Paul has previously instructed network security classes at Oklahoma State University (OSU) and also serves on the OSU Institute of Technology’s advisory board. Paul received his Bachelors of Business Administration from Northeastern State University (NSU).

Williams Co., through its subsidiaries, primarily finds, produces, gathers, processes and transports natural gas. Williams' gas wells, pipelines and midstream facilities are concentrated in the Northwest, Rocky Mountains, Gulf Coast and Eastern Seaboard.

Register here to attend the meeting.

Previous Meetings:

June 2010 IT Audit Implications of Carbon Accounting
Brian Yarbrough, PricewaterhouseCoopers LLP
April 2010 Common Compromises: How Modern Companies Get Hacked
Nathan Keltner, Security Consultant
February 2010 Application Security
Clint Pollock, Veracode
December 2009 Security Vulnerabilities and IT Security
Dr. John Hale, Director of the Institute for Information Security, University of Tulsa
October 2009 Business Service Management using ITIL
Jared DeShields, Williams
August 2009 Business Continuity and Disaster Recovery
Mahlon Pitt, President, Titan
June 2009 The Role of Digital Data in Legal Proceedings
Gavin Manes, Ph.D.
Avansic
April 2009 Password Vaulting
Gene Scheckel, CISA, Richard Leonard, CISSP, CISA, and Glenn Davis
ConocoPhillips
February 2009 Hackers and Hacking
Rodney Kocot
K3DES and Systems Control and Security Incorporated
December 2008 Moving into the 21st Century
Steve Burrage
October 2008 OSI Model
Ben Davies
August 2008 Data Security
Alex Pezold
June 2008 Oracle Database Controls and Security
Grant Thornton LLP
April 2008 Web Application Penetration Testing
Jerald Dawkins, Ph.d
February 2008 Vitual Machine Ware
Eric Vogelpohl, PWC Manager
December 2007 Mayor Kathy Taylor
October 2007 Unix Security and Control
Tim Fawcett, PWC Manager
April 2007 Forum on Sarbanes Oxley
February 2007 Forum on Disaster Recovery
Sandy Comish, Williams Inc., Jack Campbell, Magellan, LLP., Steve Bourke, Level 3
Dec 2006 Joint Forum on Leadership
with IIA, Tulsa Chapter Oklahoma Society of CPAs, Financial Executives International, Institute of Management Accountants, American Society of Woman CPAs, Oklahoma Business Ethics Consortium, and Association of Certified Fraud Examinars

Willis Allen
President of Gilbreath's® Practical Solutions For Success
November 2006 Members Appreciation Night
Tulsa ISACA Chapter Members enjoyed a members only night at the Polo Grill, one of Tulsa's finest wine and dine restaurants.
Oct 2006 Joint Forum with ISSA - SCADA Security
Rick Belisle
Director for the X-Force Professional Security Services Southeast Region

Dr. Gavin W. Manes
President of Oklahoma Digital Forensics Professionals, Inc. (OKDFP) and a Research Assistant Professor of Computer Science

Dr. Mauricio Papa
Assistant Professor of Computer Science at the University of Tulsa
August 2006 Computer Forensics
Dr. Gavin W. Manes
President of Oklahoma Digital Forensics Professionals, Inc. (OKDFP) and a Research Assistant Professor of Computer Science
June 2006 Securing Wireless Networks
Dr. Jerald Dawkins
President of Digital Enteprise Security Associates (DESA) and a Research Associate at the University of Tulsa, Digital Enteprise Security Associates (DESA)
April 2006 Active Directory
Mr. Eric Vogelpool
Principle Microsoft-technologies consultant with Williams Companies.
February 2006 TU Cybercore
Dr. John Hale
Director Associate Professor of Computer Science, CIS
December 2005 Joint Meeting with IIA on Fraud
Mr. Irving Faught
Administrator of the Oklahoma Securities Commission.
October 2005 Current State of Credit Card Control Requirements
Ray Seefeldt
Consulting Director, RSM McGladrey, Inc.
August 2005 Sarbanes-Oxley IT Audit Testing - Internal vs. External Auditing
June 2005 Chapter Planning Meeting
Dec 2004 Stopping Corporate Fraud: Will Sarbanes-Oxley Help?
John Russell
Director, Fellers Snider Blankenship Bailey & Tippins, PC
Sep 2004 Computer Crimes
Sgt. Tim C. Stadler
Cybercrime Unit, Tulsa Police Department
May 2004 Sarbanes Oxley IT Audit Process
Mar 2004 Security Roundtable Discussion
Jan 2004 Wireless Networking Security
Donald L. Pipkin, CISSP, CISM
Halting the Hacker, LLC
Nov 2003 Active Directory
John Sivinski
CITGO Petroleum Corporation
Sep 2003 Internet Firewalls:
These Days We Just Can't Live Without Them

Rick Link, CISA, CISSP
Jefferson Wells International
Jul 2003 Sarbanes-Oxley 404:
How and to What Extent Does I.T. Fit In?