Proposed ISACA Board Nominees and Volunteers for 2013-2014 Executive Officers Name Proposed Position Previous Position Company Edward Pereira Imad Jebara Wyn Wang Marleen Mavrow Edwin Yau Programs Director - Planning Membership Director Secretary n/a President Lululemon Athletica Inc. KPMG BCLC Maranda Consulting Deloitte President Vice President (Acting) Treasurer Secretary Immediate Past President Directors / Committee Members Name Proposed Position Karen Kwok + Imad Jebara+ Rob Behrouzian+ + Michael Leung Chester Tai Kevin Teo Kin Kwan Elson Kung Emily Chee Farzin Ismail Stanley Chang Simon Chu Medy Dytuco Golnaz Elahi Biying He Denise Ho Victor Huang Jitendra Juthani Moe Kia Chris Kwan Justin Malczewski + Previous Position Company Communications Director Webmaster Membership Director Communications Director Webmaster Telus Membership Director KPMG Certification Director Certification Director Research Director / Immediate Past President Treasurer Programs Director - Logistics Communications Director Newsletter Marketing Director Director at Large Vice President (vacant – mat. leave) n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a n/a PHSA Research Director ++ TBD TBD++ TBD++ ++ TBD TBD++ TBD++ ++ TBD TBD++ TBD++ TBD++ TBD++ TBD++ TBD++ TBD++ TBD++ TBD++ TBD++ Coast Capital Savings Deloitte Ernst & Young Coast Capital Savings HSBC KPMG Deloitte FICOM BC Lululemon Athletica Inc. FDD Financial Group Deloitte KPMG Ernst & Young Deloitte PwC BC Hydro Deloitte Websense Existing board members who expressed interest in continuing to serve in their current roles were nominated to the same role for 2013-2014 Other non-executive roles will be determined by the incoming President at the start of the new term. ++ Nomination Committee Michael Leung (Chair) Erik Berg Erica Pretorius Michael Pretorius Kees Jansen Mila Mihajlovic Doug Steele Sr. Mgr., Information Security at Coast Capital Savings Partner at KPMG Senior Manager at Deloitte Principal at Breakwater Accounting Advisors LLP Manager, Risk & Business Improvement at BC Hydro Former Risk Management Program Manager at ICBC Partner at Grant Thornton President for 2011-2012 President for 2010-2011 President for 2009-2010 President for 2007-2008 President for 2006-2007 President for 2005-2006 President for 2004-2005 1 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed Executive Officers Edward Pereira, CGA, CISM, CISA, CRISC, PMP, B.Com (UBC) Profile: Edward's 20-plus year career comprises both finance & accounting and IT. A 10-year stint in airline management at Canadian Airlines included roles in financial planning & analysis, Internal Audit, operational accounting, financial systems migration projects, and software application development. Edward then founded MeetUP.com, a hotel block management web application for planners of large meetings and conventions. MeetUP.com was eventually sold to Event411, Inc. of Marina del Rey, California in 2000. During this time, Edward also participated in an Industry Canada/RBC Canada pilot project promoting secure e-commerce in 1998. Edward revisited an Internal Audit career at Intrawest before being tapped to build out a new IT security function. Edward led the implementation of technologies, policies, and processes at Intrawest, as well as the SOX and PCI compliance programs during his nearly 7 year-tenure as the Director, IT Security & Audit. In 2012, Edward took on another start-up security leadership role, this time at lululemon athletica, and was responsible for lululemon attaining its PCI compliance certificate earlier this year. Edward has served 2 years as Director on the Board of the Vancouver Chapter of the ISACA (Information Systems Audit and Control Association), and also serves on the board of a local youth soccer club. Most recently, Ed also served on the Governing Body of the 2013 CISO Executive Summit in Vancouver. Imad Jebara, CA•CISA, CPA (California), MBA, CRISC Profile: Imad is a Senior Manager in KPMG’s Risk and Compliance Advisory services practice in Vancouver. He has over 11 years of experience, with over six year of public practice experience, including experience applying risk management frameworks and techniques; identifying and evaluating operational, financial and compliance risks and controls; documenting and analyzing business environments and processes; service organization audits (SOC 1 (previously known as SAS 70, CICA s5970)) and analyzing financial and operational information. He has served as the Marketing Director in the ISACA board for the fiscal year 2011/2012. He holds the following designations: • Chartered Accountant (CA) • Masters of Business Administration with emphasis on Finance (MBA) • Masters in Management Information Systems (MMIS) • Bachelor of Arts in Accounting with a minor in Business Administration • Institute of Management Accountants, Certified Financial Manager (CFM) and Certified Management Accountant (CMA) • Certified Public Accountant (CPA) – California • Certified Information Systems Auditor (CISA) • Certified in Risk and Information Systems Control (CRISC) • Security + Professional • Network+ Professional He has served as the marketing director and membership director on the board. 2 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed Executive Officers Wyn Wang, CIA, CISA, CPA (NH) Profile: Wyn is a member of the Internal Audit team at BCLC whose main focus is on project assurance. Wyn has nine years of professional service experience delivering Internal Audit, Compliance and Risk Management services for business processes as well as various aspects of information technology (“IT”). Her clients have ranged from smaller and mid-size organizations to large multi-national companies that operate in complex environments. Some of Wyn’s projects include: Providing assurance on large system implementations in the organization Led and managed IT network security audit for a provincial crown corporation including planning, execution and reporting. Successfully ensured delivering of agreed upon results on time and on budget. IT risk assessment for a local transportation client assessing risks and controls associated with IT processes. IT process testing and documentation for a leading Canadian Payment Processing company as part of a Sarbanes Oxley and Statutory Audit engagement. Provide Sarbanes Oxley assistance in the area of IT and construction management for mining clients. Marleen Mavrow Profile: Marleen Mavrow is a project management and IT Governance professional with more than 20 years of planning and management success with global technology companies. Marleen’s past work experience includes Rogers Wireless and Glenayre Technologies, where she designed transmitter site placement for paging networks within North America, as well as Europe, Asia, and the Middle East. Marleen then transitioned to Project Management at CDC Software (formerly Pivotal Software), successfully implementing Pivotal’s software at customer sites throughout North America as well as the UK. While at CDC, Marleen began taking on more Operations and Governance roles. This experience brought her to Absolute Software, where she successfully implemented an ISMS framework, which was certified to the ISO 27001 standard. In 2011, Marleen started Maranda Consulting, allowing her to focus on IT Governance, Audit, and Project Management. In addition, she is continuing her education and has passed her CISM exam. Marleen has worked on boards in other areas of her life, acting as Secretary for the West Vancouver Montessori School 2007 – 2008, Secretary for the Parent Advisory Council at Gleneagles Elementary 2009 – 2010, and Board Member for the Gleneagles Community Center Advisory Board 2011 - 2012. Outside of work, Marleen enjoys boating with her family in local waters and exploring the local mountains (either on skis in winter or hiking on trails in summer). Marleen brings to each role a highly engaging and collaborative style. She is well recognized for her operational efficiency, attention to detail, and commitment to project completion. 3 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed Executive Officers Edwin Yau, CA, CISA, CIA, PMP Profile: Edwin Yau is a Manager in Deloitte’s Enterprise Risk Services practice in Vancouver. He has over seven years of experience providing risk advisory and assurance services to clients across a range of industries, including public sector, health care, financial services, telecommunications, and consumer business. His areas of focus include service organization control (SOC 1) reporting, certification of internal controls over financial reporting and reviews of risks and controls over IT transformation projects. During his career with Deloitte, Edwin has been seconded on a four month term to South Australia primarily serving public sector clients in the region. Edwin served on the ISACA Vancouver Chapter board as President during the 2012/13 term. In past years, he has also served on the Vancouver board in the roles of Vice President, Treasurer and Secretary. Edwin is a Certified Information Systems Auditor (CISA) and has been a member of the ISACA Vancouver Chapter since 2005. 4 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed Directors (Existing Board Members) Karen Kwok, CISA, CRISC Profile: Karen is an IT Internal Auditor at TELUS Communications Inc. She is a Certified Information Systems Auditor (CISA) and Certified in Risk and Information Systems Control (CRISC) and has been a member of ISACA Vancouver Chapter since 2004. Karen has over 9 years of internal and external IT advisory and assurance experience performing financial and IT audit, regulatory compliance, financial operations improvement and project management excellence. Her experience includes IT and business process and controls assessment, risk rationalization, information security assessments, project risk management, data centre review and fraud investigations. Karen has thorough knowledge of IT audit principles and general IT controls and frameworks such as COBIT and ITIL. She also has strong experience in data analytics and data conversion review. Prior to joining TELUS, Karen was a Manager in the IT Advisory Services in the Vancouver office of Ernst & Young. Karen has served on the Board of the ISACA Vancouver Chapter in various roles for the past 4 years. Rob Behrouzian, B.Eng, CISM, CRISC, CISA, CIPP/IT Profile: Rob has been in the IT industry for more than 15 years and has worked in variety of IT roles such as IT assurance manager, IT audit manager, internal/external assurance/compliance practitioner, IT operation team lead, systems engineer, consultant, technical trainer, and unified messaging engineer. Highly experienced professional with knowledge in GRC, Information Technology, Information Security and Information Privacy fields. Rob is currently serving as a member of Board of Directors at CERA (Communities for Embracing Restorative Actions) Society. CERA's mission is to enhance the quality of justice in the communities through restorative measures that attempt to repair the harm caused by crime, resolve conflict, and restore balance in relationships. Restorative justice is a non-adversarial, non-retributive approach to justice that emphasizes healing in victims, meaningful accountability of offenders, and the involvement of citizens in creating healthier and safer communities. PROFESSIONAL QUALIFICATIONS Bachelor of Science, Computer Engineering CISM, Certified Information Systems Manager CISA, Certified Information Systems Auditor CRISC, Certified in Risk Information Systems Control CIPP/IT, Certified Information Privacy Professional CRMA, Certification in Risk Management Assurance 5 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed Directors (Existing Board Members) Michael Leung, CRISC, CGEIT, CISM, CISA, CISSP-ISSMP, C|CISO Profile: Michael Leung is an information security risk, governance, and management professional with over 20 years of overall IT experience. He has a diverse background and experience in enterprise level information security, operational risk, enterprise architecture, IT services, systems development life cycle, e-commerce, core business systems - with a traditional engineering discipline and focus on the business. Background and experience include managing, developing and implementing information security programs and strategies; security threat and risk assessments, security assurance services, and security incident management. Michael currently leads the information security function at Coast Capital Savings, Canada’s largest credit union by membership with 504,000 members, total assets under administration of $14.6 billion and 50 branches in the Metro Vancouver, Fraser Valley, and Vancouver Island regions of British Columbia. Michael serves on ISACA® International’s External Advocacy Committee (EAC), charged with identifying and supporting the activities required to build, develop, maintain, and leverage new external relationships that best help ISACA® reach its strategic objectives. As the Immediate Past President of the ISACA® Vancouver Chapter, he provided advice and guidance to the new President and Chapter board, as well as chaired the Nomination Committee. As President, he was responsible for the oversight and direction of chapter operations in promoting the practices and the development of professionals in IT risk, governance of enterprise IT, information security management, and IT assurance within the local business and academic community, the chapter membership (about 400), and with future members. Michael has been serving on the local chapter board since 2006. Michael also co-chairs the governing body of the Vancouver CISO Executive Summit and serves on the Canadian Security Executive Forum (CSEF), which provides a unique platform and hub for senior professionals within the security, resilience, public safety, defence, intelligence and law enforcement domains within the larger Canadian Security Partners’ Forum Network (CSPF). He has received industry certifications such as; CRISC®, CGEIT®, CISM®, CISA®, CISSP®-ISSMP®, C|CISO and actively participates in the local, national, and international information security, IT governance and risk community. 6 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed Volunteers (Existing Board Members) Chester Tai Profile: Chester has gained invaluable experience as the Treasurer of ISACA Vancouver during the past two years, and would like to continue contributing to the organization. In his day job, Chester works as a Consultant in the Enterprise Risk Services group at Deloitte in Vancouver. He specializes in the areas of Information Technology Audit, Business Process Reviews, and Service Organization Control Reporting. He has been involved in services provided to clients in the public sector, financial institutions, mining companies, and cloud service providers. In his spare time, Chester enjoys learning about how the brain works, cycling, and snowboarding down Whistler. Kevin Teo, CISA Profile A Manager in the Advisory Services practice of Ernst & Young LLP, Kevin is focused on providing professional services pertaining to baseline security testing and advisory, IT General Control and Application Control reviews for various SOX, financial audit and SOC engagements. He is a Certified Information Systems Auditor. His representative engagement experience includes, but is not limited to data analytics through the use of ACL and SAS, e-voting system reviews, security restructuring and remediation and the auditing of SAP, Oracle, AS400, SQL Server, Windows, as well as RACF, ACF-2 and Top Secret Mainframes. Kevin brings a diverse array of IT auditing and consulting experience from his work in Chicago, New York and Vancouver, and also has a year of academic teaching experience as the Accounting Information Systems teaching assistant at the University of Wisconsin-Madison, teaching subjects covering database design, process flow-charting, the systems development lifecycle, as well as IT General Controls. Prior to relocating to North America, Kevin was a competitive swimmer who represented his native country (Singapore) at various international events such as the Asian, ASEAN and Asia-Pacific games, winning medals at many of these events. In his spare-time, he still enjoys an invigorating game of water-polo in the summer and snowboarding in the winter. Kevin has also served two and a half years in the Singapore Army and was trained at the School of Infantry Specialists as a Combat Engineer. He has earned Formation Colors Awards for his service and commitment to his unit and country and looks forward to applying his experience in serving the ISACA Vancouver Chapter. 7 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed Volunteers (Existing Board Members) Kin Kwan, CISA, CISSP, GCIH, GPEN Profile: Kin has over 12 years of IT experience in various roles including Windows and Unix administration, Database administration and IT security and governance. He currently works as a Senior Technical Advisor, Information Security at Coast Capital Savings. Before joining Coast Capital Savings, he worked at ICBC leading the PCI compliance initiative and revamping their security policies and standards. Kin also held a position as the head of IT security and risk management for a private company located in Gastown and held systems administration and corporate security roles for a large online gambling company for several years. Throughout his IT career, Kin has obtained various vendor certifications: VMware (VCP), Sun Micro Systems (SCSA) and Microsoft (MCSE). Kin also has IT security certifications including CISSP, CISA, GCIH and GPEN and is currently working toward SABSA. He likes to keep up to date on the latest news and trends by attending security conferences such as Defcon in Las Vegas and West Coast Security Forum in Vancouver. Outside of work, Kin enjoys travelling, especially going on road trips with his family and friends. He also enjoys playing and watching hockey but spends most of his time with his two young sons and a very active golden retriever name 'Kowa'. Kin also volunteers at various local charity events such as Variety Club Charity for Kids. Elson Kung, CISA, PMP Profile: A senior manager, information risk security governance, Elson Kung manages information risk on behalf of HSBC's global businesses and global functions in Canada. In the banking and IT industries for 16 years, his work has spanned sales and service, business analysis, project management, as well as governance, risk management, and compliance (GRC). He has hands-on and leadership experience in information risk control design and monitoring, Basel 2 data maintenance, operational risk self-assessment, SOX testing coordination, and presentation in large meetings. Elson is a CISA, Project Management Professional (PMP) and is ITIL Foundation-certified. He is a past area governor and club president at Toastmasters. In 2012/2013, Elson served on the ISACA Vancouver Chapter board as Marketing Director. He would be thrilled to continue serving ISACA members in the coming term. 8 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed Volunteers (Existing Board Members) Emily Chee, CISA, B.Com (Hons.) Profile: Emily Chee is a Senior Consultant in KPMG’s Risk Consulting – Advisory, Forensic Services practice. Her experience includes: performing data analytics, identifying IT application controls, testing of general IT controls and application controls, assessing risk impact, delivering related documentation, and providing recommendations for improvement areas. Emily specializes in various data analytics and investigative tools such as IDEA, ACL, Summation, and Relativity. Having a background in accounting and management information systems, Emily has had the opportunity to work with various ERP systems (SAP, JD Edwards, Oracle, Hyperion, and PeopleSoft) and a variety of operating systems. She also has experience dealing with complex business and IT environments. Prior to joining KPMG in September 2010, Emily held junior positions in day-to-day business operations for the insurance, financial, retail, and distribution industries. Farzin Ismail, B.Com., CIA, CISA, CRISC Profile Farzin Ismail leads Deloitte’s Data Risk practice for Western Canada. She has over 13 years of experience in delivering business and information technology (IT) risk management services to large, global public companies in Canada and the US. The majority of her time has been spent on leading the design, implementation and review of risk and control frameworks of a number of large-scale business and IT transformation programs in complex, highgrowth companies. Her more recent focus has been in assisting organizations to improve the reliability and performance of their data through the development and implementation of data governance and stewardship programs. She has worked in various industries including public sector, technology, consumer business and financial services. Farzin holds a Bachelor of Commerce and is both a Certified Internal Auditor (CIA) and Certified Information Systems Auditor (CISA). 9 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed New Volunteers Stanley Chang, BSc, MBA, CIA, CISA, FCCA (UK), CGA Profile: Stanley is a Director, Information Management at the Financial Institutions Commission, Ministry of Finance. He has more than ten years of professional experience in accounting, regulatory reporting and information technology risk assessments within the banking and financial services industry. Stanley is also a Certified General Accountant (CGA), Certified Internal Auditor (CIA), and Fellow of Chartered Certified Accountant (FCCA) of United Kingdom. He has a lengthy history of serving not just his CGA profession, but his community as well. He has been volunteering in some form or another for more than a decade, at the local Food Bank, local charity organizations, Vancouver 2010 Olympics or CGA Chapter Board. Currently, Stanley serves as a member of the CGA-BC’s Board of Governor. Stanley would like to bring his passion and commitment to serving the ISACA members and being part of the leading information systems professional association. Simon Chu, CA, CISA, CPA (DE) Profile: Simon Chu is a Chartered Accountant and a Certified Information Systems Auditor with over 5 years of IT audit experience (for financial statement audits and SOX certification purposes), with diverse experience in public practice, government, and retail industries. He has worked with PriceWaterhouseCoopers, LLP and KPMG, LLP as a Senior IT Assurance Consultant, and is now a Senior Internal Audit Analyst with lululemon athletica. During 2012, he was the Security and Controls lead for a major ERP implementation project at my current company. Simon has a strong interest in IT governance and internal controls, especially as relates to his current role as an internal audit analyst, and believes that ISACA would be a great organization to enable him to network with leading IT security and controls specialists. This would also enable him to share his experiences and thoughts with industry peers. 10 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed New Volunteers Medy Dytuco, CGA Profile: A seasoned accountant, Medy Dytuco, CGA (also known by her “proper name” Magdalena), has a solid background in finance, risk management, auditing, and systems automation. Although her roots are in BC, she also lived in Calgary and Toronto. Between these three cities, she spent most of her career in the Airline and Energy industry working for companies that include WestJet, Canadian Airlines, Wardair, Enbridge, TransCanada (Pipelines), Sunesis Consulting and Sunera Consulting. In the fall of 2011, after 16 years in Calgary, she decided to yield to the call of family, friends and warmer weather and returned home to Vancouver to take over her father’s Insurance business. Today, she still works part-time as an internal controls consultant but spends most of her time as a (Life and Health) Insurance and Investments broker. Through all these years, Medy has also continually been involved in her professional community as a board volunteer for ISACA Calgary, CGA Vancouver Chapter, CGA-BC Conference Committee and most recently the CGA TriCities/RidgeMeadows Chapter where she serves as the PD Registration Chair. Golnaz Elahi, PhD Profile: Golnaz is a consultant in the Deloitte’s Enterprise Risk Services based in Vancouver. Golnaz’s focus is on IT security, and in particular, ethical hacking and security assessment. She joined Deloitte in 2012 and became a member of ISACA in April 2013 to meet peers in industry and widen her professional network. Prior working at Deloitte, her experience as a business analyst in the technology sector includes business requirements analysis, information system design and modeling. Golnaz obtained her PhD degree in computer science at the University of Toronto in 2011, and in her studies focused on security requirements engineering and decision analysis in the context of information security. During her PhD studies (2007-2011), Golnaz developed a strong network with academic professionals in information security area. In her PhD studies, she attended several research conferences and workshops, and visited research institutes and universities around the world. She has served as a volunteer in the most prestigious conferences such Requirements Engineering conference, and she served as the event and research presentation organizer in the software engineering lab at the department of computer science at University of Toronto. 11 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed New Volunteers Biying He, CISA, PMP Profile: Biying He is a Senior Consultant in KPMG’s Risk and Advisory Services practice in Vancouver, Canada. She has over 10 years of experience, including experience applying risk management frameworks and techniques in IT audits and project assurance engagements, and also experience in Accounting, Oracle ERP implementation and support, Project Management, Operations Management, and Identity and Access Management. She has international experience working in US, UK and other European countries. Biying has Project Management Professional (PMP) and Certified Information Systems Auditor (CISA) designations. Prior joining KPMG, she was a Client & Partnership Manager in Skyworth TTG (based in Shenzhen China), a global professional service provider specializing in Identity and Access Management. She promoted the CISA certification throughout the company and took initiatives to take the exam, organized exam registration and encouraged her colleagues to look into knowledge provided by ISACA. Within 2 years, they had 12 CISA certification holders, and it became a good-to-have certification for people who join the firm. Denise Ho Profile: Denise Ho is an IT Risk and Assurance Staff in the Advisory Services practice of Ernst & Young LLP. She was graduated from the Sauder School of Business at the University of British Columbia in May 2012, with Bachelor's degree in Finance and Management Information System/ Business Technology Management. She is currently pursuing the CISA certification. Having only been in the firm for 8 months, Denise has enjoyed the number of opportunities given to her that helped her grow internally within the office. She looks forward to having external opportunities that would allow her to be exposed to other experiences that would expand her knowledge. Prior to working at EY, Denise was working as a part time customer service representative at TD Canada Trust. She was responsible for dealing with large amount of cash and cheques, receiving and disbursing funds on a regular basis. She was always ready to report to her manager at the end of the day to discuss any issues that she had encountered. 12 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed New Volunteers Victor Huang, CIA Profile: Victor has a significant amount of past experience volunteering in leadership roles for professional organizations such as CA School of Business’ Student Advisory Council where he served as a council member representing the CA students of BC and Alberta providing input and advising on the CA academic program. Victor also served as the Treasurer on the Institute of Internal Auditor’s (IIA) Calgary Chapter Board of Governors where he managed an annual budget of approximately $30K and performed financial reporting for the Chapter. Victor also has experience assisting with the hosting of professional development sessions and member events which helped the IIA Calgary Chapter maintain the Platinum Chapter status for 2012. Victor is currently a CISA candidate and successfully completed the CISA exam in 2011. Victor is a Certified Internal Auditor and is currently articling to obtain his Chartered Accountant designation. Victor is currently working within the Audit group at Deloitte Vancouver specializing in the mining industry and he previously worked in the Enterprise Risk Services group at Deloitte Calgary serving clients in the oil and gas industry. Prior to Deloitte, Victor also articled at KPMG Vancouver. Jitendra Juthani, CISA, CRISC Profile: Jitendra Juthani is an experienced Manager in Risk and Controls Consulting practice of PwC based in Vancouver, B.C. Jitendra has fourteen years of experience in management and technology advisory services; specifically, IT general controls, internal controls, Third Party Assurance (ISAE 3402, SSAE 16, CSAE 3416), technology strategy and systems planning, software selection and procurement, requirements analysis, IT organizational assessment and design, change management, project management, and IT assessments across diverse industries. 13 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed New Volunteers Moe Kia, PMP, CISSP Profile: Moe Kia is an IT Security professional with 13 years of experience in various IT roles spanning IT Security/Risk Management, Project/Program Management and technical roles. He is currently working as the IT Security Advisor in BC Hydro’s Integrated Security group, where since July 2010, he is responsible for managing the organization’s Enterprise Security Policies and Policy Framework, and works in an advisory capacity as the IT liaison managing the technology requirements supporting physical security systems. He is also involved as a Subject Matter Expert within the organization’s Critical Infrastructure (NERC CIP) Regulatory Compliance team and supports SCADA and Operations Technology teams with their Enterprise Cyber Security technology requirements. From 2007 thru 2010, Moe worked at the BC Transmission Corporation (merged with BC Hydro since July 2010) undertaking roles such as IT Security Capital Program Management, and management of non-security enterprise IT Projects such as B2B Portals, Application and Information Management Roadmaps, and Industrial/Corporate IT integration initiatives. Prior to his Electric Utility experience, Moe worked as Customer Support and IT Professional Services Manager at Ontira Communications, a company delivering IT solutions to the Public Transit industy (2004-2007) and in various technical and technical sales support roles at McKesson Medical Imaging Group (2000-2004) Moe is active as a member in local Project Management, Engineering and IT Security Interest Groups, and has undertaken volunteer roles as an organizer of professional conferences and education seminars for organizations such as IEEE Canada and the Society of PM Professionals of Greater Vancouver. Outside of his professional interests, Moe enjoys travelling, acting, reading, sports and fitness activities. Chris Kwan Profile: Chris has been the President of the local Board at the Canadian Liver Foundation (BC/Yukon Region) for the past 2 years and the Treasurer for 1 year prior to that. Over the past year, he has gained valuable experience as an IT auditor and is looking for new opportunities to be more involved within an association that is tied to his line of work. During the day, he works at Deloitte within the Enterprise Risk Services group. Chris is involved with corporate data analytics implementation, information governance, IT service auditor audit reports, environmental sustainability reporting and with financial audits. He has written and passed both the CA UFE and the CISA examination. Chris has also completed a Masters in Professional Accounting and has a Bachelor in Science. In his spare time, Chris enjoys hanging out with his friends, photography, rock climbing and skiing. 14 Proposed ISACA Board Nominees and Volunteers for 2013-2014 Bio’s of Proposed New Volunteers Justin Malczewski Profile: Having held senior sales and business development roles with a number of technology start-ups as well as Canada’s leading telecommunications providers including TELUS and Bell, Mr. Malczewski is a 27 year veteran of the technology industry in BC. More recently, a realization of how sophisticated cybercriminals, hactivists and rogue nations have become and the risks their efforts to wage war, disrupt society and erode value in cyberspace pose, have led him to pursue a more focused career in the area of IT security. Mr. Malczewski is currently the Sr. Enterprise Account Manager, Western Canada for Websense Inc., a leading web, email and data security solutions provider based in San Diego, CA. Prior to Websense, Justin made his first serious foray into the security industry with Fortinet, a leading manufacturer of next-generation firewall technology where he held the position of Enterprise Account Manager, BC. Justin is keenly interested in working within and outside of the security and privacy communities to foster a collaborative environment amongst like-minded professionals. He believes strongly that with access to the right resources, education and experience, an opportunity exists for Western Canadian security and privacy professionals to demonstrate leadership on a global scale. It’s exciting to work collaboratively with industry peers, partners and customers to solve security problems and minimize organizational risk. Justin is a BC native and lover of the outdoors. He has four children and lives in the South Surrey / White Rock area with his wife Dawn. 15