
| 19 - 22 Jul 2009 | ISACA® International Conference in Los Angeles More details and to register |
28 Jul 2009 | PCI Compliance: A Holistic Approach, an ISACA® international e symposium live and online at 4pm. Earn 3 CPE hours. More details and to register If you are unable to attend view archived e symposia and earn CPE hours by visiting www.isaca.org/webcasts |
| 9 - 11 Nov 2009 | ISACA® International Information Security and Risk Management Conference in Amsterdam More details and to register |




In this difficult economy, professionals rely on their association memberships for valuable benefits more than ever. As part of its response to the global economy, ISACA®, a nonprofit association serving more than 86,000 IT governance professionals worldwide, has launched five new member services to help members succeed in challenging times:
These features are available for members in a new section of the ISACA® web site called Stay Competitive—Stand Out, which can be accessed at www.isaca.org/standout.
“ISACA® knows that today’s volatile economic climate places tremendous demands on enterprises and the individuals they employ. For that reason, the association is offering these added benefits to help members and their organizations gain the competitive advantage they need to survive—and thrive,” said Lynn Lawton, international president of ISACA®.
Additional information on ISACA® membership and member benefits, including discounts on ISACA® certification exams and conferences, is available at www.isaca.org/membership.
Beginning in April 2009, ISACA’s e-Learning Campus offers EuroCACSSM Online. This new addition to the e-Learning Campus provides an opportunity to earn valuable CPEs while enjoying the flexibility and cost-saving benefits provided through online learning.
EuroCACSSM Online offers prominent sessions recorded from the EuroCACS conference held in Germany on 15-18 March of this year. Participants can earn 1.5 CPEs by purchasing and completing each of the online sessions. Discounted pricing is available exclusively to ISACA® members. For more information or to register, visit www.isaca.org/elearning.
ISACA® has updated the following 10 key IT audit/assurance programs:
All 10 programs are available as free downloads for ISACA® members at www.isaca.org/assurance. Nonmembers can purchase electronic copies from the ISACA® Bookstore www.isaca.org/bookstore for US $45 each. Additional audit programs are currently being updated and will be released later this year.
The updated programs are based on ISACA’s IT Assurance Framework (ITAFTM), available as a free download at www.isaca.org/itaf. ITAFTM, providing a single source from which IT audit and assurance professionals can seek guidance, research policies and procedures, obtain audit and assurance programs, and develop effective reports.
IT Governance Institute (ITGI®), in conjunction with the UK Office of Government Commerce (OGC), has released Aligning COBIT® 4.1, ITIL V3 and ISO/IEC 27002 for Business Benefit, a complimentary guide on how to use these frameworks and standards together for maximum governance and value.
The publication is available as a free download at www.isaca.org/cobitmappings.
To help companies bridge the divide between information security and business objectives, ISACA has entered a license agreement with the University of Southern California’s Marshall School of Business to develop a business model for information security.
The model will be based on the Systemic Security Management framework developed by the Institute for Critical Information Infrastructure Protection (ICIIP), which was formed by the Marshall School of Business.
“The Systemic Security Management framework recognizes that security is not just a technology problem,” said Charles P. Meister, executive director of the ICIIP. “Traditionally, frameworks for looking at security have considered people (employees), process (controls that are in place to ensure security) and technology. This model is unique in that it adds the concepts of an organization’s design and strategy.”
"We have high expectations for the agreement with the Marshall School of Business,” said Kent Anderson, member of ISACA’s Security Management Committee. “The Systemic Security Management model is a valuable approach to making the link between security activities and business priorities more transparent. ISACA looks forward to creating practical materials based on the model that will be useful to information security managers and information systems auditors around the world.”
ISACA will issue two deliverables based on the model in the next six months:
an executive guide and a practitioner guide to the business model for information security.
“The work we have accomplished thus far on the model will provide fertile ground for the additional research that lies ahead,” said Meister. “Partnering with ISACA will help the model have a profound impact on the global information security industry because of the association’s reach.”
Three certification videos (one each for CISA, CISM and CGEIT) have been produced by ISACA® international for those who would like more information on these certifications. These can be viewed at www.isaca.org/certification.
The e-Learning Campus is designed to deliver a variety of self-paced online learning courses to IS and IT professionals. The initial campus offering is the CISA Online Review Course.
The CISA Online Review Course offers several unique learning opportunities including:
Best of all ISACA members enjoy discounted pricing!
A distinctive feature to the course is the inclusion of an IS audit expert who provides important IS audit information and advice throughout the course. A choice of six modules is available, covering the scope of information systems audit and review activity.
Course Modules:
Module 1 - The IS Audit Process
Module 2 - CISA's Role in IT Governance
Module 3 - CISA's Role in Systems and Infrastructure Life Cycle Management
Module 4 - CISA's Role in IT Service Delivery and Support
Module 5 - CISA's Role in Protection of Information Assets
Module 6 - CISA's Role in Business Continuity and Disaster Recovery
Modules can be purchased separately or all six at a bundled price savings. Additional courses will be added to the e-Learning Campus over the next few months.
Register today!
To view a course demo, register for the CISA Online Review Course, or for more information, visit
http://www.isaca.org/elearningcampus or contact us..




You should have received the updated password for the restricted areas of the website. If you did not then please contact the Chapter secretary
We hope those who attended the training day found this fruitful and had an enjoyable day. We would appreciate your comments, good or bad, to ensure we keep improving the service.
Congratulations to the following who, having passed the CISA® exam, have recently achieved CISA® certification. Please note that this does not represent a complete list of all individuals who were successful in achieving CISA® certification in Scotland in 2009.
| Kieron Alsop | Ernst & Young LLP | |
| Colin Chisholm | The Royal Bank of Scotland | |
| Grant Hazel Granger | S&N UK (Heineken) | |
| Ann Marie Keoghan | Standard Life | |
| Steven Lamb | Scottish Power | |
| Ben Sklaroff | Standard Life |
Congratulations to the following who, having passed the CISM® exam, have now achieved CISM® certification. Please note that this does not necessarily represent a complete list of all individuals who were successful in achieving CISM® certification in Scotland in 2009.
| Steve Byrne | HBoS plc | |
| Cathie Connell | Atmel | |
| Mark Ferguson | Honeywell | |
| Brian Fitzgibbon | Aberdeen City Council | |
| Steven Lamb | Scottish Power |
| 1. Mark Howarth | The Royal Bank of Scotland |
| 2. Ove Hansen | Cisco |
| 3. Colin Chisholm | The Royal Bank of Scotland |
The committee extends its congratulations to all who passed the CISM® exam in December. We are aware of eight Scottish Chapter members who passed the exam then. Please note that this does not necessarily represent a complete list of all individuals who were successful in passing the CISM® exam in Scotland. Top scorers for the Chapter are
| 1. Edward Stansfield | Audit Scotland |
| 2. Mark Ferguson | Honeywell |
| 3. Brian Fitzgibbon | Aberdeen City Council |
To obtain a 10% discount on the advertised rate simply email or phone Tony McPartlan quoting your ISACA membership number. Tony's contact details are at the foot of the event calendar for January and February.
The slides are now available for the December evening meeting
The Committee has agreed to sponsor member evening presentations during the months when we have not booked an outside speaker. Presentation can be as short as 15 minutes (but longer is OK too). The committee can group these sessions together if required. The idea is that members can volunteer to share training or practical experiences which will benefit fellow members and at the same time earn CPE credits.
Please contact Charlie Meehan, our Treasurer who has agreed to co-ordinate this initiative.
New link added to site which includes information and resources for the audit of IBM i series (AS400).
If there is any other facility or service that you would like the Chapter to offer please do not hesitate to contact any member of the committee and we will try our best to make it happen.
Please ensure that the email address you have supplied on the main ISACA® website is valid. Otherwise you will miss out on mailings from both the chapter and international HQ.
You can renew your membership online by following the link at the top of the membership page. On this page you will also find links into other relevant areas of the ISACA® international site.