Malta: In Pursuit of Digital Trust (ISACA Malta Chapter Biennial Conference '23)

Page 1

25th May 2023, Radisson Blu, St Julians conference.isaca.org.mt 20 23 ISACA Malta Chapter's Biennial Conference MALTA: IN PURSUIT OF DIGITAL TRUST info@isaca.org.mt
M
I N M E N U
A

MALTA: IN PURSUIT OF DIGITAL TRUST

WWelcome to the Malta: In Pursuit of Digital Trust Conference!

Dear esteemed guests, speakers, and attendees,

We are delighted to welcome you to the Malta: In Pursuit of Digital Trust Conference, this year's ISACA Malta Chapter Biennial Conference, taking place on our beautiful island.

As the world continues to embrace digital technologies, trust remains a critical component in ensuring successful connections, transactions, and communications

Today, our conference will bring together experts, industry leaders, and enthusiasts from around the globe to explore the ever-evolving landscape of digital trust. Our goal is to foster meaningful discussions, share innovative ideas, and engage in collaborative efforts to promote a secure and trustworthy digital environment.

The conference will feature insightful keynote speeches and an engaging panel discussion covering a wide range of topics, including cybersecurity, data privacy, digital identity and more. We are confident that you will find these sessions both inspiring and educational.

In addition to the enriching conference program, we encourage you to take advantage of the networking opportunities with like-minded professionals and to explore the rich culture and beauty of Malta Let this experience leave a lasting impression on you, both personally and professionally

Once again, we extend our warmest welcome to all attendees and wish you an unforgettable and productive time at the Malta: In Pursuit of Digital Trust Conference.

Sincerely, ISACA Malta Chapter

E L C O M E N O T E

P R O G R A M M E

PANEL DISCUSSION

THE EVOLUTION OF THE DIGITAL TRUST PROFESSIONAL IN MALTA

COFFEE BREAK & NETWORKING 15:45

Featuring various experts from the local industry

16:15

SESSION 5

ISACA IN 2023 AND BEYOND, ENABLING PROFESSIONALS AND ORGANISATIONS THROUGH DIGITAL TRUST

CONCLUDING NOTES 17:15

Join the conversation on sli.do #isacamt23 REGISTRATIONS / NETWORKING 08:30
INTRODUCTION 09:00
Giannella Borg CISA CISM CRISC ISACA Malta Chapter President
1 THE DIGITAL TRUST ECOSYSTEM (R)EVOLUTION 09:15 COFFEE BREAK & NETWORKING 11:15 LUNCH 12:45
Rolf VON ROESSING Past Global Vice Chair, Past International Vice President, ISACA Board of Directors
SESSION
TheKonTikiRestaurant
14:45
Gustavo FREGA ISACA European Regional Success Manager Keith Cutajar CISA ISACA Malta Chapter Vice President

E

V

Champion Sponsor

S P O N S O R S

N T M A P

E

The Digital Trust Ecosystem (R)Evolution

Rolf von Roessing

Digital Trust - a leading new paradigm for the 21st Century Digital Trust has become a leading new paradigm for the 21st Century, encompassing a wide variety of professional disciplines and becoming a vital end-to-end question for many actors in the digital space. The presentation will address the game changers that come with this development, and introduce the ISACA Digital Trust Ecosystem and Framework as an innovative approach. The experimental e-publication of the DTEF will be briefly demonstrated in real time

LEARNING OBJECTIVES:

Understand digital trust in its economic, societal and technical aspects

Learn about the challenges in measuring and objectively controlling digital trust levels

Acquire knowledge about the ISACA approach towards digital trust

Gain an initial understanding of the ISACA Digital Trust Ecosystem and Framework (DTEF)

Rolf von Roessing, CISA, CISM, CGEIT, CDPSE, CISSP, CABCF, FBCI

Past Global Vice Chair, Past International Vice President, ISACA Board of Directors

Rolf von Roessing is a partner and CEO at FORFA Consulting AG, an international consultancy firm specialising in GRC, security and related disciplines. He brings 30 years of experience in governance, risk management and compliance; security and business continuity; and crisis management in a range of sectors, including banking and finance, insurance, wholesale and retail, automotive, and healthcare

He has also been teaching as a senior lecturer in M. Sc. courses at DonauUniversität Krems since 2005 and is a member of the Academic Council for M. Sc. Management and IT, M. Sc. Information Security Management, and M. Sc. Cybersecurity.

Since 2021, Rolf has been lead developer within the core team developing the ISACA Digital Trust Ecosystem and Framework (DTEF)

Holistic Risk Management in Support of Digital Trust

Allan Boardman

Digital trust is essential in all relationships that evolve in an organisation’s digital ecosystem. This includes the ability of people, organisations, processes, and technology working together to create and maintain a trusted environment Contracted third parties and supply chains comprise an important and integral part of this environment.

Against this background, it is essential that risks are managed holistically to ensure that the organisation sustains its investment in its digital assets and effectively manages cybersecurity risks across its digital ecosystem This session will explore the key considerations for managing cybersecurity risks in support of digital trust, including coverage of thirdparty services and supply chains.

ISC, CDPSE, CISSP, is a seasoned business advisor and accredited trainer focusing on information and technology governance, assurance, risk management, security, and data protection. He is a regular speaker at conferences across the globe and runs audit, risk and security related courses and workshops A Chartered Accountant, he began his career with Deloitte in Cape Town and has 40+ years’ experience including at GSK, AXA, Morgan Stanley, JPMorgan, Goldman Sachs, KPMG, PwC, Marks and Spencer and London Stock Exchange.

He currently serves as a co-opted member of the Audit and Risk Committee at the London Metropolitan University. He has recently rotated off ISACA’s CGEIT Certification Working Group and currently serves on the CDPSE Certification Working Group. He has served as an ISACA International Vice President and member of ISACA’s International Board of Directors 2011-14, Chair of ISACA’s Credentialing and Career Management Board and member of its Strategic Advisory Council, also 2011-14. He has served on and chaired ISACA International's CISM Certification Committee and served on its Credentialing Board and Leadership Development Committee. He served on ISACA International's Audit and Risk Committee from 2014-18 and as Chair 2014-15. He is a past president of ISACA London Chapter (2004-06) and has served on the British Computer Society's Information Risk Management and Audit committee.

He received the ISACA Chair’s Award in 2014, the Eugene M. Frank Award in 2019 and was included in ISACA’s 2018 and 2019 “Top-Rated Speakers” lists. He is a 2023 inductee in ISACA’s Hall of Fame

E V E N T M A P S P O N S O R S

What Can Ethics Teach Us About Emerging Technologies?

Pablo Ballarin Usieto

What can ethics teach us about emerging technologies, and is it possible to address ethical issues in the same way we handle cybersecurity matters?

Ethical systems delineate the moral values and codes of conduct within societies and social groups, and they can be applied to various human domains, such as politics or business. In the 1970s, ethics began to be applied to healthcare, medicine, biological research, biotechnology, and environmental issues

rns related to organ donation and transplantation, genetic research, assisted dying, and environmental matters amidst a global social crisis and the revelation of various malpractices in medical policies (eugenics, animal testing). There arose a need to contemplate the right course of action for biological research, public health, social work, and environmental issues Bioethics not only introduced new ethical theories but also established ethics committees and bioethicists in hospitals to help navigate dilemmas and contradictions.

q y g g

Presently, emerging technologies are also introducing new risks associated with various forms of bias, lack of transparency, addiction, information bubbles, social manipulation, and threats to democracies, as witnessed in elections worldwide As a result, ethical frameworks tailored to AI and other emerging technologies have been developed in recent years: these frameworks transform ethical theories into actionable steps that can be employed in the creation of responsible technologies.

What are the key principles of these frameworks? How can we implement them? What types of competencies are required?

Pablo Ballarin is an independent cybersecurity consultant who assists companies across various industries in defining and implementing their cybersecurity strategies to establish trust. Frequently, trust also necessitates managing risks associated with emerging technologies, such as lack of transparency, loss of human autonomy, bias, and safety Therefore, his advisory services encompass responsible AI as well

Pablo is the founder of Balusian, a professor, speaker, board member of ISACA Valencia, member of the ISACA Emerging Trends Working Group, and coordinator of the Centre for Industrial Cybersecurity (CCI) in Spain

Digital Trust – as good as our Digital Governance?

Like Rome, trust cannot be built in a day, yet we need our products and services to be trustworthy from Day 1. What can we, as creators and providers of digital infrastructure, do to create and embed trust? What about the customer experience?

Digital Trust is dependent on having the right governance in place to make sure digital trust is fostered, and that means having the people and skills in place to embed that governance

o play in creating and applying the governance actions necessary for trust. And yes, technical actions are a part of this but soft skills play an even bigger part. And no, it is not a compliance exercise that we carry out just for regulatory purposes. Governance is a key corporate driver to achieving digital trust and we all have a part to play to foster trust in digital assets, data, transactions and outcomes.

Sue Milton is a governance specialist, covering both the corporate and the IT aspects, to support organisations achieve strategic and operational effectiveness She works with both the public and commercial sectors globally Her key message is that we totally rely on IT, so let’s understand how best to benefit from its opportunities without causing harm.

Sue is a past president of the ISACA London Chapter. She is now a SheLeadsTech ambassador and part of OneinTech promoting diversity and inclusion, and a member of the UK’s 2023 UK Advocacy Task Force engaging with UK policy issues that impact our profession

S il

ISACA in 2023 and beyond, enabling professionals and organisations through Digital Trust

Gustavo Frega

Gustavo Frega will explore the role of ISACA in empowering professionals and organisations with Digital Trust in the future. During his presentation, he will delve into the findings of the ISACA 2023 State of Digital Trust report, examining how Digital Trust Contributes to career growth and enables organisations to stand out and drive innovation in Europe.

Gustavo Frega is the Europe Regional Success Manager for ISACA, focused on developing key relationships with ISACA Chapters (Regional Volunteers Associations), Governments and Public Entities and Academic Institutions.

Experienced in International Business Development, Sales, Marketing and Training with over 20 years of experience within Telco, IT and Cybersecurity. Gustavo has led teams in the EMEA region focused on developing relationships with governments, academia and has also created successful channel models. He has been responsible for the Cybersecurity strategy of different organisations getting involved from product conception to GTM with special focus on achieving results

E

V

N T M A P

S P O N S O R S

E

Panel Discussion: The Evolution of the Digital Trust Professional in Malta

Panel Moderator

BrianZarbAdami

Twenty-eight years senior management experience in the ICT industry, currently Chief Executive Officer at CyberSift; a firm specialised in the design and development of information security software. Previously Vice President of Software as a Service at Aurea Software a global business employing three thousand people worldwide

Brian holds a B Pharm (Hons ) degree from the University of Malta, is a CISA certified Information Systems Auditor, SCRUM Master, as well as a PRINCE2 Project Manager Certified in RPA – Robotic Process Automation using systems that help organizations automate their business processes. He has extensive Plc experience and is a keen advocate of business transformation with a proven track record

Panelist

Finian Massa is a Strategic Marketing Manager at ICT Solutions, where he plays a role in the organisation's product development and go-to-market communication With a deep understanding of the Maltese cybersecurity landscape, he meets the local market's needs by designing managed services that align with industry standards and comply with relevant regulations

elist

d Kelleher is a seasoned communicator with over 15 years of experience ing with tech and security companies An editor and writer by profession, d merges his passion for writing with technology, writing for B2B ences and educating businesses on the importance of security. David has ed on educational campaigns that have helped companies build trust with customers and establish themselves as thought leaders in their stries Prior to joining BMIT Technologies, he worked for Altaro (now netsecurity), AAT Research and GFI

David Kelleher FinianMassa

Panelist

Security Governance Manager within the Information Security & Governance Department at MITA. In my role, amongst others I’m responsible for setting up security policies / procedures, managing risks, ensuring compliance against established standards and promoting security awareness I read a MSc in Business Information Systems Management from Middlesex University and CISA certified

Ivan is a Senior Manager at PwC Malta within the Digital and IT assurance team He has over 19 years of experience delivering and leading informa systems security projects and IT assurance-related engagements He curr leads a team of IT auditors to support clients primarily in the fina services, gaming and hospitality industries.

As a Certified Information Systems Auditor, Ivan has led a number of IT a engagements covering change management, computer operations security aspects (IT General Controls) He also led engagements requirin specialist skills to meet regulatory requirements set by the MGA and MDIA

Ivan was also seconded to PwC in London and was involved in an IT assur project at a global assurance company and in a third-party assur engagement at a world-leading financial services company He is a Cert Internal auditor, a member of the MIA digital committee and has bee member of ISACA since 2007

Panelist

Matthew Busuttil’s passion and expertise lies in cybersecurity, with a particular focus in cryptography and information security As the Head of Infrastructure and Security at the Malta Gaming Authority, his main responsibility is that of safeguarding the Authority’s information systems and steering the organisation in the right direction when it comes to most technological matters

IvanGrech

C O N F E R E N C E M A P

V E N T M A P

E
STAGE
EMERGENCY EXIT SEATING SPACE SEATING SPACE ENTRANCE / REGISTRATIONS RESERVED AREA CoffeeArea CoffeeArea Restrooms

MALTA: IN PURSUIT OF DIGITAL TRUST ISACA

ISACA is a global non-profit organisation that provides best practices, frameworks, certifications, and education for professionals in the fields of information systems, cybersecurity, audit, risk management, data privacy and governance. ISACA has grown significantly over the years and now boasts more than 150,000 members in over 180 countries, including Malta.

ISACA Malta Chapter

The ISACA Malta Chapter, established in 2005, supports and serves over 250 member professionals in Malta who work in the fields of information systems, cybersecurity, audit, risk management, data privacy and governance.

The chapter aims to promote the ISACA certifications, provide continuing education opportunities, and foster networking and collaboration among professionals in the region.

Become an ISACA Member Today!

Becoming an ISACA member offers a wealth of benefits, including access to extensive knowledge resources for professional development, discounts on industry-leading certifications, and opportunities for continuing professional education. Members can also participate in networking events with fellow professionals, and contribute to shaping industry standards through involvement in ISACA's global initiatives

If we've piqued your interest, we invite you to explore our Linktree, where you can stay connected with us on social media and discover more about the benefits of an ISACA membership.

/isaca.mt
A B O U T I S A C A

State of Digital Trust

European Report Highlights

DIGITALTRUST

Digitaltrustisthefoundationofmodernbusinessrelationships especially astransactionsincreasinglyrequiresensitiveinformationtobeshared online Tosucceedandleadinthedigitalenvironment,enterprisesmust ensuresafe,reliableandtrustworthyonlineinteractions

ISACAsurveyedmorethan370professionalsinEuropewhohold assurance,governance,risk,securityorprivacyrolestolearnhow enterprisesareapproachingdigitaltrust Seekeyfindingsbelow andaccessfivetakeawaysonhowtoadvancedigitaltrustinthe freesurveyreportatwww.isaca.org/state-of-digital-trust

ETHICS AND INTEGRITY

saydigitaltrustisimportant toorganizations

saydigitaltrustwillbeevenmore importantfiveyearsfromnow

Fewerprivacybreaches

Fewercybersecurityincidents

Strongercustomerloyalty

24%

AVAILABILITY TRANSPARENCY AND HONESTY RESILIENCY

Whileseniorexecutiveshaveultimateresponsibility,eachof theserolesiscriticaltodigitaltrust Thiscreatesopportunitiesfor professionalgrowthandleadershipindigitalstrategy

Arehighlyfamiliar withtheterm "digitaltrust," indicatinganeed formoreguidance

54% 51% 49% 53% 42%

69% ONLY

8 76

45 63

% % HowEnterprisesCanImproveDigitalTrust Assignresponsibilityandtrainemployees:

Donothaveasenior staffrolededicated todigitaltrust,but willlikelyhaveone withinfiveyears

% % % %

Agree that digital trust is very or extremely important to DIGITAL TRANSFORMATION Say having a DIGITAL TRUST FRAMEWORK is very or extremely important

Reviewinternal trust-related practices

MEASURE: 85%saythatorganizations achievingahighdigitaltrustscore fromindependentassessmentswill bemoresuccessful

% benchmarkagainst similarenterprises

%usecustomer/clientresearch suchassurveysandfocusgroups

digital trust sayitisveryor extremelyimportant tomeasuredigital trustpractices,but only19%doit

Offer digital trust training to staff

Saydigitaltrustisvery orextremelyrelevant totheirjobrole 65%

Professionalsrelyonassociationssuchas ISACA to enhance their knowledge in digitaltrustandaddvalue,includingto:

Staycurrentwithindustrytrends

Berecognisedasathoughtleader

Positivereputation Higherrevenues 0 10 20 30 40 PRIORITIZE, PLAN AND COLLABORATE: PRIORITIZE 50 60 70 28 26 % % % % 77% 64% 55% 46% 34 29 33 27

Accesstoolsandresources Earnrecognisedcredentials

85% 82% 70% TopRolesinDigitalTrust 68% 55% 54% DigitalTrustIs EssentialinEurope Security IT strategy/ governance Information technology Audit Privacy Riskand compliance
EUROPEAN EDITION
OF DIGITAL TRUST
KEY COMPONENTS
STATEOF
2022
98 86 QUALITY
SECURITY AND PRIVACY BenefitsofDigitalTrust DigitalTrustCareerDevelopment
Strongly agree that there is SUFFICIENT COLLABORATION among digital trust fields in their organization
61% Morereliabledatafordecisions
Fasterinnovation

Your Pursuit of Digital Trust doesn't stop here...

Have we piqued your interest on...

What exactly is digital trust?

What are the top benefits of digital trust?

What are the consequences of a lack of digital trust?

What are the top obstacles to attaining higher levels of digital trust?

Who is ultimately responsible for digital trust?

How are organisations measuring digital trust?

How does my organisation compare to companies around the world. Read on...

ISACA: Digital Trust Landing Page. Click here.

Download the State of Digital Trust 2023 Report. Click here.

Blog: Taking Digital Trust from a Lofty Goal to a Measurable Reality. Click here.

Blog: Digital Trust: Focus on the Forest Rather than the Trees. Click here.

Show your support for the pursuit of digital trust— download and share our social media card. Click here.

Thank you!

Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.