CISA®

Certified Information Systems Auditor.

 

 

CISA course Jan-May 2008

We are pleased to offer the opportunity for prospective auditors to follow a course of study to lead for the CISA® examination of June 2008, here in Malta. CISA® is the leading certification for IT Auditors administered by the Information Systems Audit & Control Association (ISACA).

The course will cover the listed content areas, lectured by Maltese professional lecturers in the field. The duration of the course is of 5 months, spread over sessions of two hours each, every Monday and Wednesday starting 14th January 2008 until 28th May 2008, between 6:00pm and 8:00pm at ExecuTrain training centre in Hamrun/Guardamangia.

A two day intensive preparation programme will follow the evening sessions. This two day programme will be conducted by Dr Derek Oliver an internationally renowned IS audit expert.

The cost of the course is of Lm610 (EUR 1420) (Excluding VAT). This cost includes the course material published by ISACA and a two full-day intensive preparation course conducted by Dr Derek Oliver.

Registration Form

Download from here.


The CISA® Exam


The CISA® examination is offered each year in June and consists of 200 multiple-choice questions, administered during a four hour session. The purpose of the examination is to test a candidate’s knowledge, evaluation and application of IS audit principles and practices and technical content areas. These areas and their definitions are as listed below:

Process-based Area

The IS Audit Process (about 10% of final mark) —Provide IS audit services in accordance with IS audit standards, guidelines, and best practices to assist the organization in ensuring that its information technology and business systems are protected and controlled.

Content Areas


IT Governance (about 15 % of final mark) — To provide assurance that the organization has the structure, policies, accountability, mechanisms, and monitoring practices in place to achieve the requirements of corporate governance of IT

Systems and Infrastructure Lifecycle (about 16% of final mark)— To provide assurance that the management practices for the development/acquisition, testing, implementation, maintenance, and disposal of systems and infrastructure will meet the organization’s objectives.

IT Service Delivery and Support (about 14% of final mark)— To provide assurance that the IT service management practices will ensure the delivery of the level of services required to meet the organization’s objectives.

Protection of Information Assets (about 31% of final mark)— To provide assurance that the security architecture (policies, standards, procedures, and controls) ensures the confidentiality, integrity, and availability of information assets.

Business Continuity and Disaster Recovery (about 14% of final mark)— To provide assurance that in the event of a disruption the business continuity and disaster recovery processes will ensure the timely resumption of IT services while minimizing the business impact.

Further Information

For further information, please phone on 21 235 451, fax on 21 232 630, email infodesk@executrain.com.mt

Registration must reach ExecuTrain by November 30th, 2006. size=2 width="100%" align=center>

Course Director Profile

Derek J. Oliver is an Information Audit & Security specialist with over 20 years experience and is qualified as a Certified Information Systems Auditor (CISA), a Certified Information Security Manager (CISM) a Certified Fraud Examiner (CFE), a Fellow of the British Computer Society (FBCS) and a Chartered IT Professional (CITP). His background in computer programming is represented by Fellowship of the Institution of Analysts & Programmers (FIAP). In 1996, he was admitted a Freeman of the City of London.

Following a Master of Science (MSc) degree in Information Technology, awarded for his work on disaster recovery and business continuity planning, he received a Doctorate (PhD) from the Americus University of Washington, DC, for research into the various elements of executive policies contributing to information security management.

He is internationally regarded as an expert in Information Security and British Standard BS7799, now ISO17799 (Information Security Management Guidelines) and is a regular presenter at many international conferences and training courses from Oslo to Cape Town by way of Orlando and Canberra on a variety information security, fraud and audit topics.

Derek worked for 15 years with H.M. Customs & Excise, ending up as a Higher Executive Officer conducting audit and security reviews of Excise applications at businesses all over the UK. During this period, he also designed, wrote and presented a series of training courses in computer auditing in a variety of Customs environments. He then became the Principle Auditor and Head of the UK internal audit team of the First Data Corporation of Omaha, USA, the world’s largest processor of credit and debit card transactions.

He left First Data in 1995 to respond to the challenge of information systems audit and security consultancy. Since then he has conducted both high level and in-depth audit and security reviews across the information processing spectrum and for a variety of clients from multi-national corporations to NHS Hospitals.


The Faculty

Mr Anthony Formosa

Anthony Formosa is presently employed with Bank Of Valletta plc. His current position is Audit Manager, IT. He has been employed with BOV for 20 years. He has 10 years IT Audit experience with 5 years as Manager of the IT Audit function. Anthony Formosa is a Certified Information Systems Auditor since 1997. He is actively involved in the ISACA Local chapter since its inception and currently holds the office of the Secretary of the Malta Chapter.

Anthony has been lecturing for CISA at St Martins since 2004. He has also given a number of presentations locally on IT Audit related subjects.

 

Mr Kenneth Ciantar

Mr. Kenneth Ciantar is currently the IT Security and Q.A. Manager at APS Bank Ltd. Mr. Ciantar is a Certified Information Systems Auditor since 2004. He is actively involved in the ISACA Local Chapter and currently holds the position of the CISA/CISM coordinator of the Malta Chapter. Kenneth brings with him a number of years experience and academic background on IT Security and Network Infrastructures.

 

Mr Herbert Zarb

Mr. Zarb heads the IT security department of Bank of Valletta. Mr. Zarb brings with him a number of years experience and academic background, coming from an important financial institution to be shared with the student audience preparing for the CISA qualification.

Mr Josef Manuseto

 

 

Mr Alan Alden

Mr. Alden joined the bank in September 1979 where he spent the first 10 years at various branches. In 1988 he got involved with the computerisation project and became system administrator and also lectured at the Bank's training centre in the evenings. In 1990 he joined the Internal Audit dept and in 1993 became an IT auditor, becoming Head of the IT Audit section in 1995. In 1997 he obtained my CISA certification. He introduced the BS7799 idea at BOV and also was instrumental in the appointment of an information security officer. He was also heavily involved in the Y2K project. In February 2000 he left the bank and after a few months joined Deloitte & Touche where he set up the Enterprise Risk Services (ERS) section, which is heavily involved in Internal Audits, IT Audits, Information security consultancy, on-line gaming reviews and consultancy and data protection. Mr Alden is the president of the ISACA Malta chapter and is currently representing the local chapter in two technical committees at the Malta Standards Authority. JHe is married to Karen and have two boys and a girl. In his spare time he plays table-tennis, watches football and does some farming.