Loading Events

« All Events

IT Audit in Civilian and DoD Environments

February 14 @ 8:00 am - 4:30 pm EST

GWDC Member - $105, Other ISACA Member - $135, Non-ISACA Member: $150


The ISACA Greater Washington, D.C. chapter IT audit events attract the best and brightest with its content-rich and thought-provoking sessions that delve into some of the biggest challenges facing IT audit and security professionals. The ISACA Greater Washington, D.C. chapter IT audit event attracts the best and brightest with its content-rich and thought-provoking sessions that delve into some of the biggest challenges facing IT audit and security professionals. The conference will include dynamic, timely topics that help you address challenges and learn innovative solutions within the IT audit arena. Speakers will cover information security, risk management utilizing frameworks like NIST Cybersecurity, RMF and FISMA to protect information, operations and assets against natural or man-made threats. IT audit both in civilian and DOD environments will be discussed, as well as upcoming changes to the way Federal agencies, implement IT systems, communicate cyber threats, manage resources, lower operational costs, expand and protect access, and manage evolving cyber threats.


1. Guard Rails for the Digital Revolution - Theresa "Terry" Grafenstine

In an increasingly interconnected world, organizations that don’t innovate and broaden their technology footprint are at risk of losing market share. Internal audit has a critical role to play in acting as the “guard rails” for their organizations, but to truly add value, they must find a balance between providing assurance while supporting the new operational innovations. In this session, Ms. Grafenstine will discuss how emerging technologies, like robotic process automation and artificial intelligence, will drive the future of internal auditing, provide an overview of cyber trends and classic breach tactics, and offer strategies of how to communicate these and other cyber risks to the board and c-suite.

2. Title TBD

3. Title TBD

4. Title TBD

5. IT Controls are Not Auditors - Laura Smith

Laura Smith will walk through some of her experiences working with control owners both in government and corporate organizations. She will discuss how, as an IT Auditor, she has evaporated the myth that CobIT, NIST, PCI, A-123 or insert framework flavor, is not only for the audit, but for Auditors too! That’s why it’s called a management control.

6. Title TBD


Who should attend?

  • Any professional in the Information Security / Assurance industry, including IT auditors, IT consultants, and general IT professionals with exposure to or looking to get exposure to cybersecurity initiatives.
  • Anyone that is already or anyone interested in getting involved with the ISACA CSX program.

AGENDA - Provided when the conference is finalized.




Managing Director, Risk and Financial Advisory, Deloitte

Terry is a leader in the international cybersecurity audit profession.  She has over twenty-five years in executive leadership; leading change; developing high performing teams; managing innovation; and bringing strategic foresight to leaders at highest levels of public trust.  Terry is currently a Managing Director in Deloitte’s Risk and Financial Advisory practice where she delivers IT audit, risk, and governance advisory services to senior leaders in both the government and commercial sectors. Prior to joining Deloitte, Terry served for eight years as the Inspector General of the U.S. House of Representatives, where she designed, managed, and delivered audit and investigative services, including a comprehensive cyber assurance program.  Through her leadership roles as ISACA’s Global Chair, as a member of the AICPA board of directors, and as a founding member of the IIA’s American Center for Government Auditing, Terry has helped to advance the information technology, governance, internal auditing, and accounting professions and speaks globally on cyber security, internal auditing, leadership, and risk.  She has received numerous awards and accolades, including FedScoop’s “Golden Gov Federal Executive of the Year,” the Greater Washington DC Society of CPAs “Government CPA Leader of the Year”, the NY Metropolitan ISACA Chapter’s “Joseph J Wasserman Cyber and Governance Leader of the Year,” and ISACAs “Common Body of Knowledge” and “Best International Conference Speaker of the Year” awards. 

image1 (1)

Anne Marie Zettlemoyer

Vice President, Security Engineering

Anne Marie Zettlemoyer is a cyber strategist with over 19 years of experience in 8 industries. Sitting at the intersection of business, security, and analytics, Anne Marie has served as a trusted advisor for Fortune 500 companies, government agencies, law enforcement, security vendors, and think tanks. She is a Vice President of Security Engineering at Mastercard, a member of the Board of Directors for SSH Security,  a visiting National Security Institute Fellow at GMU’s Scalia Law School, and has held a number of strategic and technical security leadership roles including the Head of Security Architecture, Engineering, and Solutions at Freddie Mac, Director of the Cyber Think Tank at Capital One, Director of Business Analytics at FireEye, and Special Advisor for the Director of the US Secret Service. In addition to CISSP and CeH certifications, Anne Marie holds an MBA from the University of Michigan-Ann Arbor as well as undergraduate degrees in both Accounting and Finance.

Speaker #3 - TBD

Title TBD



Speaker #4 - TBD

Title - TBD

Bio - TBD


Laura Smith

Cybersecurity SME, The Ambit Group, LLC

Ms Smith is a Cybersecurity Subject Matter Expert for The Ambit Group, LLC. She has been in system development since punch-cards and green-bar paper. Having been involved in the creation of corporate and government systems through technical documentation, user and integration testing, configuration and change management, and business process and requirements, when she says she understands management controls her experience backs her up. Ms Smith is a GOLD Certified Information Systems Auditor (CISA), was in the inaugural accreditation class to be Certified in the Governance of Enterprise IT (CGEIT), and also is a Certified Internal Auditor (CIA). Additionally, she is in the process of obtaining the Certified Information Privacy Profession (CIPP) accreditation. Ms. Smith is a graduate of Oklahoma City University and is a native Texan.

LinkedIn - https://www.linkedin.com/in/laura-smith-8733695/


Speaker #6 - TBD

Title - TBD

Bio - TBD


Special Instructions

ISACA Members from Other Chapters: You will need to bring your ISACA Membership Card to the event to verify your ISACA Membership.

Presentations: Conference presentations will be included in the registrants' final event-related email message containing the CPE certificate and evaluation survey when permission is received from the presenter and their organization. In some cases, permission is not received.

Requests for Assistance: If you require assistance for an audio, visual, or other disability, please contact the Programs Director to discuss your needs, as soon as possible.  We need as much advance notice as possible to determine whether requests can be accommodated. Thank You.

If your organization is interested in being an event sponsor, please take a look at the five (5) various event sponsorship packages and click this sponsorship link to become a sponsor.


Earn up to 7 Continuing Professional Education (CPE) credits in the area of Specialized Knowledge. The ISACA® GWDC is registered with the National Association of State Boards of Accountancy (NASBA) as a sponsor of continuing professional education on the National Registry of CPE Sponsors. State boards of accountancy have final authority on the acceptance of individual courses for CPE credit. Complaints regarding registered sponsors may be submitted to the National Registry of CPE Sponsors through its website: http://www.learningmarket.org.

CPE Distribution and Evaluation Survey

CPE's will be distributed via e-mail along with the event evaluation survey up to seven (7) business days after the completion of the event. Attendees must be present the full day to receive full CPE credit.

CPE-Related Details

  • Prerequisites and Advance Preparation: N/A
  • Program Knowledge Level: N/A
  • Delivery Method: Live in person event



February 14
8:00 am - 4:30 pm
GWDC Member - $105, Other ISACA Member - $135, Non-ISACA Member: $150
Event Category:
Event Tags:
, , , , , , ,


Holiday Inn Rosslyn @ Key Bridge
1900 North Fort Myer Drive
Arlington, VA 22209 United States
+ Google Map
Please do not contact the venue directly regarding this event.