The Information Systems Security Association Fort Worth-Cowtown chapter meetings are held on the third Wednesday of the month from 11:30 - 1:00. Lunch will be provided by Terremark. This meeting will be held Wednesday, July 16, 2008.
LOCATION: DeVry University
301 W. Commerce Street
Fort Worth, TX 76102
Phone: (817)810-9114
Not sure which room the meeting will be held in, just ask at the front desk. Parking is up to you, there is a parking garage, lots and meters.
JULY TOPIC: Virtualization and Security
Presenation Outline:
- What v12n is and isn’t
- Virtual security hype
- Virtual IDS is different, really!
- Worse than useless: the liabilities of overconfidence
- Truly new issues
- Nightmares: breakouts, blue pills, resource hogging
- Sweet dreams: Forensics, VMsafe
- Compliance impact
- New best practices
- Conclusion
Speaker Bio:
Mario D. Santana, CISSP, CISA, GCWN, GREM
Curriculum Vitae
Mario joined the Secure Information Services group at Terremark Worldwide, Inc. in January 2006. He consults with Terremark clients on topics of security, technology, and risk management, and develops related consultancy product offerings. Formerly, Mr. Santana founded an identity management technology company, consulted for SteelCloud, Inc., and worked in IT for over 20 years.
Mr. Santana has worked with numerous Fortune 1000 organizations worldwide, including financial, health-care and educational institutions, airport security and airlines, retail conglomerates, and technology and legal firms. He has led and managed engagements around security and risk management concerns such as corporate governance, forensics and electronic discovery, intellectual property fraud, insider incidents, and penetration testing and auditing networks, systems and applications. In addition, Mr. Santana speaks and teaches regularly about the technology and business of security, as a guest lecturer at FIU, an ISACA instructor, a GIAC mentor, and elsewhere.
Recent Professional Experience:
Mario led the incident response team when a national financial institution was the victim of system compromise and subsequent internet identity theft fraud. The forensic evidence led to an investigation that spanned three continents and numerous intermediaries, concluding in containment, system recovery, root cause determination, and eradication of the breach.
During a comprehensive insider threat assessment for a major provider of airport security, Mario found fundamental issues of corporate governance and inter-departmental cooperation, after a full forensic investigation of suspected bad actors verified good faith and an excellent work ethic.
A large car rental company was suffering system outages and severe monetary losses during an extended denial of service attack. Using a variety of techniques, especially digital forensics and reverse-engineering, Mario was able to pinpoint the root cause of the weakness, and lead a team in the design and implementation of immediate work-around to bring the systems online while the database vendor developed a patch.
Education and Certifications:
B.S. Business Administration, Colorado Technical University
Certified Information Systems Security Professional (CISSP)
Certified Information Systems Auditor (CISA)
GIAC Certifications (GCWN and GREM)
Professional Affiliations:
SANS GIAC Advisory Board
Information Systems Audit and Control Association (ISACA)
South Florida Information Systems Security Association (ISSA)
FBI InfraGard
Miami Electronic Crimes Task Force
When Rick started this chapter, he hoped to have members, non-vendors members, do some of the presentations to the group. You don't have to do an hour long presentation, we could have multiple speakers on various security topics in one meeting. If you have a topic you would like to hear or present for any meetings this year, please send an email with the details.
Please share this information with others who may be interested. There is no charge to attend our meetings.