Newsletter Banner           

President's Letter for November 2017

Hello everyone,

I hope that everyone is happy and well, and preparing for the upcoming holiday season. It is an exciting time at SC Midlands ISACA, membership is on the rise and there are some great upcoming events on the horizon. ISACA International has rolled out the CSX platform for both corporate and individual training, so if you have not looked into it yet, please visit for some details.

Also, the SC State Audit Conference is right around the corner (11/15 – 11/17). It is a great way to both learn and to network with peers. .  Register Here!

We are always looking for volunteers! If you are interested at becoming more involved with the chapter and helping us set the direction for 2018, please contact any member of the board for details.


Marc Punzirudu, SC Midlands ISACA Chapter President

In This Issue

        The Chapter is 328 members STRONG! 
           New Members            
           Rito-Anthony Brisbane
           Luis Cintron
           David Fitch
           Tracey Hughes
           Charles Johnson
           Leonard Larkin
           Karen May
           James Mellis
           Coleman Schupp
           Barry Smith                                        
           Kevin Smith 
         Mr. Vinod Brahmapuram, CISM
          Daniel Brodie, CISA
          Jason Moschner


Upcoming Chapter Training

“Is Your Enterprise Compromise Ready?" December 1, 2017 - Last class of the year! 

  • Keynote by Ted Wolff, ISACA International Board of Directors

  • Partnering for Effective Incident Response/Privacy Breach Response by Kathy Fithen, SecureWorks

  • How to Leverage Table Top Exercises to Improve Your Incident Response, by David Buckley, SecureWorks

  • Dark Web 101:  What every Security Professional Should Know, by Jonathan Daly, IntSights

  • Including Security in the SDLC, by Tom Scott, SC Cyber, and SC Midlands Chapter of ISACA Board of Directors

 For more information and to register: See Here

Save The Date:

  • January 12, 2018 - Service Organization Control (SOC) Reports Discussion and Review

  • February 6 - 7, 2018 - The Guide to CyberSecurity Risks in Risks in Business Applications, two days, presented by Ken Cutler

  • March 21, 2018 - The BlindSpot Zone Workshop, co-hosted with the IIA, SCSAA, ACFE and ISIACA, to be held at the State Museum, social to follow

  • April, TBD, 2018 - Frameworks and Requirements for working with the Federal Government


Affiliated Professional Members - Attend SC Midlands ISACA training for just $50 - $70 more than ISACA members!  Scan your up to date professional organization membership card and send to  Once received, you will be added to the Affiliated Professional Group and receive a personal invite with your discounted pricing to class.  Do this before you register for the class! 

Cvent Email Invites: 
On January 1, 2017, Cvent no longer supports Microsoft’s Internet Explorer versions 9 (IE9) and 10 (IE10) browsers for both users and those accessing our events, surveys, email campaigns. For the best experience possible, we recommend upgrading to a supported browser such as:
Google Chrome
Mozilla Firefox
Microsoft Internet Explorer

If you currently use IE9 or IE10, you should upgrade to version 11 or switch to a different browser as soon as possible. You will still be able to access Cvent with IE9 and IE10 but Cvent is no longer designing or developing new features optimized for it. 

Other Chapter News


  BlueCross BlueShield of South Carolina
Location:  Columbia, SC
Job Type:  Full-time with benefits

Information Systems Auditor II

Position Summary:  Conduct information systems audits including disaster recovery plans and draft written reports upon completion.  Completes risk assessments, reviews controls and risk mitigation, and documents the risks, controls and assist external auditors as necessary.

Minimum Requirements:  Bachelor's degree in accounting, computer science, or other job-related field, plus three years of information systems auditing experience (one year programming and/or system analysis may substitute 1 year auditing experience). Knowledge of information system auditing standards and generally accepted accounting principles. Ability to identify risks and evaluate internal controls in an information systems environment. Knowledge of disaster recovery planning objectives, methods, and concepts. Ability to communicate effectively both verbally and in written form. Strong interpersonal skills and the ability to work professionally with persons at all levels. Ability to handle sensitive matters on a confidential basis. Ability to persuade, negotiate or influence. Excellent analytical or critical thinking and problem solving capabilities. Knowledge of Microsoft Windows, Word, Excel, mainframe systems, and standard office equipment.

How to Apply:  Individuals should apply online here  or visit Select “Careers” at the bottom of the page.

Please note: Due to the volume of resumes received, only candidates selected for further consideration will be contacted. BlueCross BlueShield of South Carolina is an Equal Opportunity Employer.



ISACA actively promotes research that results in the development of products that IT governance, control, assurance, risk and security professionals can use to add value to their enterprises. ISACA research also informs information technology management and users about IS controls and the critical role they play in their organizations.

Go to for more information 

Recent Research Deliverables 






Techno Security & Mobile Forensics Investigations Conference 2015

ISACA Calendar of Events & Deadlines

15-16 Nov 2017 Webinar: Cybersecurity for Auditors

30 Nov 2017 Understanding Risk—ISACA Virtual Summit

5 Dec 2017 Webinar: Design Better Security, How to Use “Attack Path Mapping” to Prescribe Your Security Controls

4-7 Dec 2017 Training Week: IT Assurance, Security, Governance and Risk; Scottsdale AZ

12 Dec 2017 Webinar: Threat Intelligence is Vital to Data Protection and Malware Mitigation




For more information go to: 


 Interesting Articles

10 ways you’re failing at IT audits

Source: CIO

IT audits can feel like a grim nuisance, but great value awaits those who heed these common mistakes that inevitably lead to an IT audit disaster.

Read the complete story here:

What is a fileless attack? How hackers invade systems without installing software.

Chris Dimitriadis, ICT Solutions Manager at Office Line SA

Cyber criminals don't need to place malware on your system to get in. Fileless or zero-footprint attacks use legitimate applications or even the operating system.





Cybersecurity Nexus

The Nexus
contains original Cybersecurity Nexus (CSX) content and curated cybersecurity articles from around the web.
Visit The Nexus subscription page of the ISACA web site to subscribe now.

 “Follow” ISACA's Cybersecurity Nexus page to stay up to date on all things cybersecurity: 


Social Media




Certification Updates

Congratulations to our Newly Certified:

Mr. James Michael Mellis, CISM, October 9, 2017

Mr. Olalekan A. Awolaru, CISA, CRISC, October 31, 2017
Mr. James A. Manning, CISA, CRISC, September 26, 2017

Congratulations to the following 2017 Exam Passers:

2017 August-September CISM Exam
Mr. James Michael Mellis, CISM

2017 August-September CRISC Exam
Mr. Olalekan A. Awolaru, CISA,CRISC

The transition to
Computer-Based Testing (CBT) in 2017 for ISACA’s CISA, CRISC, CISM and CGEIT certifications is complete. Exam registration is available at

Exams will be offered in 2017 at PSI testing locations worldwide during three, eight-week testing windows. The third window will be 1 November-31 December. Additional information can be found in the ISACA Exam Candidate Information Guide.                                                                                                                                                         

Visit the ISACA Bookstore for certification exam prep materials.




We look forward to seeing you at our next event!

Techno Security & Mobile Forensics Investigations Conference 2015

Visit SC Midlands Chapter of ISACA at to find out more about our upcoming educational events!  Click on Events at the top of the page, and then hit the Monthly Training tab to review our events.


Social Media




Twitter:  @scmidlandsisaca

Cvent - Web-based Software Solutions