Hong Kong Computer Society       

Information Security Special Interest Group (ISSIG)
IT Security Career Talk

¡@

Date: 16 May 2001 (Wednesday evening)
Time: 6:30 pm - 8:00pm (register at 6:00 pm)
Venue: CountryTECH Seminar Room, Rm 1503, 15/F., Top Glory Tower
262 Gloucester Road, Causeway Bay, Hong Kong (MTR exit C)
Language: English or Cantonese

===============================================================

According to some recent surveys in US and Hong Kong, safeguarding corporate data is a key technology initiative. More than half (60%) of the executives polled said they had increased their IT security investment in the past six months. Today¡¦s business networks are "open" business platforms driven by e-business growth due to the expansion of mobile workforce and remote offices; increased in external traffic running across corporate LANS to collaborate with customers, business partners and vendors; and growth of "always on" broadband access at home and at internet café. As a result, the demand for security specialists to deploy and manage firewalls, VPNS, IDS, PKI, anti-virus software, physical security, file encryption, access control and other security measures to protect information assets has far outpaced the supply.

The talk covers information on IT security career and guidelines to get certification from two hot security & audit professional certification bodies in the world. Topics such as "Why we need a system security pro?"; "What is the job specification of a security pro?"; "Could we hire a hacker?" and "Why it is so difficult to find an experienced security employee in HK?" will be discussed.

"Perhaps the most important elements in successful careers in the security field are a commitment to lifelong learning and an interdisciplinary, wide-ranging curiosity. Security is an interesting field because it can benefit from so many different disciplines, including not only technical fields but also aspects of the human side of security." - Courtesy of M. E. Kabay, PhD, CISSP.

Presentations are ready to download:
Topic-A: An Overview of Developing a Profession in IT Security (25 min.)

It will cover 4 main areas: Technological competence of IT security;
Employer expectation in the I.T. market; IT salary trend; Job
opportunities & career prospect of IT security technologies.

Speaker: Mr. George Lam, CountryTECH, is Recruitment
Consulting Manager of CountryTECH specializing in middle
to high end executive search in the TELCO territory including
telecom equipment manufacturers & service vendors, carriers
and SI (system integrator) with solid and profound experience
more than 2 years.  His proven track record and career
achievements gained in giant I.T. enterprises including CSL
and Hongkong Telecom in the past not only enhances his
professionalism of I.T. recruitment & career consulting, but
also an in-depth understanding of the I.T. development.
Topic-B: Certified Information System Security Professional
(CISSP)
(25 min.)

It is important to seek for those examination on programs that are recognized as serving as evidence of your ability. The CISSP certification is one of them. It was first developed to held identify professionals who had the knowledge base, ethics and commitment to manage information systems security for government to manage information systems security for government and industry. Today there are more than 4,000 holders of this certification, and the demand for professionals who are CISSP is skyrocketing...

Speaker: Mr. Chester Soong, CISSP Instructor, Chairman of HKISPA, started his own ISP outfit, Global Inforamtion Networks Ltd., back in 1994. The company focuses on providing leading edge internet connectivity and security consulting services. Befoire starting his own company, he was working for Citibank N/A as a Project Officer. He graduated from California State University, Fullerton with double majors in Information Systems and Finance. He was certified to be CISSP in 1997, and has been helping to promote the certification locally ever since. With his years of service in the internet and computer security business, he is very active in the industry. He is a frequent speaker of various regional conferences and exhibitions on the topics of e-commerce and information security. He is also holding public positions in many organizations from the industry and government committees, including: Chairman, Hong Kong Internet Service Provider Association; Council Member, Hong Kong Information Technology Federation and the Member of the Steering Committee of Hong Kong CERT; Member, Advisory committee to Hon. Mr. Sin Chung Kai, Legislative Counilor and CISSP Instructor in CISSP certification exam review course.

Topic-C:
Certified Information Systems Auditor (CISA) (25 min.)

The CISA Designation is awarded by the Information Systems
Audit and Control Association, Inc. ("Association") to those
individuals with an interest in information systems auditing,
control and security that have met the certification requirements
laid down by the Association.

Speaker: Mr. Vincent Chan, CISA Coordinator of ISACA,
Ernst & Young, is the Principal in charge of Ernst & Young
¡¦
s Information Systems Assurance & Advisory Services (ISAAS)
division where he leads a team of information systems audit &
security professionals in the delivery of world-class IT Risk
Management (ITRM) and Security & Technology Services
(STS) to wide variety of organizations. Mr. Chan is currently
a Director of the Information Systems Audit & Control
Association (ISACA) Hong Kong Chapter, and has been
responsible as Certified Information Systems Auditor (CISA)
Coordinator for the past two years. He also serves as a
Member of the WebTrust Committee and the Information
Technology Committee of the Hong Kong Society of Accountants.
Topic-D: Q & A (15 min.) with all guest speakers

¡@

¡@

¡@