Recorded Event
23 June '09 - 8:00am PDT / 11:00am EDT / 4:00pm BST

Harmonizing Security and Compliance

BrightTALK is delighted to be powering this online event hosted by ISACA. Join us to hear the live presentations and submit real-time questions to the speakers. All presentations are being recorded so you can download the on-demand archive as well (check out the recorded events tab). This conference series will now be run using Flash. Please make sure you have the latest version of Flash installed. Make sure you click the 'confirm attendance' button once you have registered or logged in on the ISACA e-Symposium site.

3
7 Recorded Webcasts


Program
23 June '09 - 8:00am PDT / 11:00am EDT / 4:00pm BST
Opening Remarks - Moderator


Download Podcast Download Podcast

Jeffrey Ritter
Jeffrey Ritter
Founder, CEO
Waters Edge Consulting

23 June '09 - 8:05am PDT / 11:05am EDT / 4:05pm BST
Data Protection Regulation: From Passive to Proactive

The session will examine how state regulators, Massachusetts being the prime example, are shifting their approach of protecting personal information from reactive to proactive. We will examine how these regulations require "data holders" to adopt specific preventative measures, rather than merely notifying victims of a breach after the event has occurred.


John Moynihan
John Moynihan
President
Minuteman Governance

23 June '09 - 8:50am PDT / 11:50am EDT / 4:50pm BST
Risks in a Federated World: Web 2.0 Security Threats and Risks

Many companies and organizations are beginning to investigate leveraging Rich Internet Application technologies Federation based Architectures and Web 2.0 Strategies. This session will help identify the key challenges and risks that need to be addressed as part of any Web 2.0 adoption and implementation. Topics covered will include: Identity Federation, Data Federation and Syndication, SOA, and Mashups. The session will cover issues being raised by implementers, auditors and security practitioners as well as some of tactics being used to meet the challenges. The session will provide details and some demonstrations for the current and emerging threats and attacks in the Web 2.0 arena.


Steve Orrin
Steve Orrin
Director of Security Solutions
Intel Corporation

23 June '09 - 9:35am PDT / 12:35pm EDT / 5:35pm BST
SSL and Compliance. It’s Not Just for e-Commerce Sites

A wide range of enterprises can use EV SSL best practices and technologies to remain compliant across a host of regulations that are not limited to PCI. Today's presentation will focus on PCI requirements, business recommendations, how EV SSL works and what benefits are derived from EV SSL.


Ryan White
Ryan White
Product Marketing Manager for SSL
VeriSign

23 June '09 - 10:20am PDT / 1:20pm EDT / 6:20pm BST
Encryption for Compliance: Challenges and Solutions

Cryptography can be frustratingly complex and abstract, but promises important benefits for enterprises looking to comply with the increasing number of regulations that mandate protection of personal data. In this talk, we'll look at the unique compliance benefits offered by cryptography, and examine three potential problem areas that need to be addressed by any practical encryption system. Key rotation, authentication integration, and data recovery strategies are critical to the implementation of cryptographic data protection systems that will work with, as opposed to against, business practices and policies.


Terence Spies
Terence Spies
Chief Technology Officer
Voltage Security, Inc.

23 June '09 - 11:05am PDT / 2:05pm EDT / 7:05pm BST
Closing Remarks by Laureen Kaczmarek


Download Podcast Download Podcast

Laureen Kaczmarek
Laureen Kaczmarek
Manager, Distance Learning
ISACA

23 June '09
CPE Quiz

This e-Symposium qualifies for 3 CPE points. To obtain CPE credit, members must download and listen to all event presentations and successfully complete a CPE quiz. To access the quiz, click the CPE button at the top of this page or click the Play button below.