Nominated Position: PRESIDENT (ONE CANDIDATE) Name : Bryan Wong Membership number : 200752 Number of years served on the Board of Directors : 12 years Number of years as an ISACA Member : 16 years

Bryan is an ISACA member for 16 years and has served on the Malaysia Chapter’s Board of Director for the past 12 terms. He is the current President for 2018/19. During his tenure, he has also served in various positions, namely, Vice President, Secretary, Treasurer, Webmaster & Admin Director, Communications & Publicity Director, Event Director, etc. and has supported and coordinated the chapter’s activities. He was instrumental for the past Chapter’s website gold awards.

Bryan has over 20 years of working experience with good background in Information Security, Audit & Compliance, and Business Continuity Management. He is a Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), and Certified Business Continuity Professional (CBCP).

Nominated Position: VICE PRESIDENT (ONE CANDIDATE) Name : Goh Ser Yoong Membership number : 604907 Number of years served on the Board of Directors : 6 years Number of years as an ISACA Member : 11 years Ser Yoong has served on Chapter’s Board of Directors since 2013 and is currently the Chapter Vice President. Having been an active member of the Chapter for more than a decade, he has contributed in organising numerous chapter events such as Cybersecurity, IT Assurance and Governance (CIAG) conferences, evening/breakfast talks as well as workshops. In addition, he has also chaired the chapter’s SIG 1 for 2 years which currently focuses on cybersecurity and cloud computing security.

Ser Yoong is currently the Chief Information Officer (CIO) of Jewel Paymentech, a financial risk technology company providing intelligent and automated risk solutions to help banks, merchants and payment facilitators conduct merchant due diligence and manage transaction fraud risks using predictive analytics as well as automated solutions for large merchants such as marketplaces in identifying illegal and counterfeit goods as part of their KYC process.

Prior to that, Ser Yoong has held positions in AirAsia, Standard Chartered, British American Tobacco and PwC with a strong focus on being a SME on fraud, cybersecurity, as well as information security risk and compliance. He is certified as a CISA, CISM, CGEIT and CISSP.

Nominated Position: SECRETARY (ONE CANDIDATE) Name : Alan Yau Ti Dun Membership number : 783569 Number of years served on the Board of Directors : 4 years Number of years as an ISACA Member : 7 years

Alan is currently holding a senior role as Chief Technical Officer at a Cybersecurity Consultancy and Security Operation Center organisation and has over 19 years of experience in Information Security, Governance and Controls. He has extensive experience in leading engagements and serving clients in the area of Information Security.

This includes Next Generation Security Operation Center, Information Technology Cybersecurity Infrastructure Review, Penetration Testing, IT Audit, ISO27001 Implementation, ISO27001:2013 Transition, Swift Assessment Review, Security Incident Management and Response, Managed Security Services, Business Continuity Planning, Secure Email and other areas.

He is a regular speaker at conferences with topics ranging from technical to governance. He is also ISACA Accredited Trainer, CSXF Trainer, PECB Certified Trainer and Certified Mile2 Instructor and have conducted

1

specific training sessions which include Mile2 Certified Training, ISACA Boot Camp, Cybersecurity Fundamental Training and Security Awareness Training.

He possess a number of professional certifications – CISA, CISM, CGEIT, CRISC, CISSP,CCSK,ISO 27001 Lead Auditor, COBIT Foundation and ITIL Foundation.

Nominated Position: TREASURER (ONE CANDIDATE) Name : Lee Chin Hon Membership number : 113205 Number of years served on the Board of Directors : 13 years Number of years as an ISACA Member : 19 years

Chin Hon is currently a Vice President in one of the financial institutions in Malaysia. Chin Hon was previously a Senior Manager for the Centre of Excellence for one of the airlines in Malaysia.

Chin Hon has around 18 years working experiences in providing IT Audit services in professional firms and extensive experience working in the corporate world. Chin Hon previous experiences as an IT Auditor and his current experience in the corporate world has enabled Chin Hon to share with the participants the best approach the IT auditor should take to value-add for their clients. Chin Hon has been the frequent trainer for CISA Review class and has been a speaker in previous IT Governance, Assurance and Security Conference. Chin Hon is a Certified Auditor and Chartered Accountant of for both Malaysia and New Zealand.

Nominated Position: DIRECTOR (SEVEN CANDIDATES) Name : Adrian Foo Siok Ming Membership number : 213187 Number of years served on the Board of Directors : 3 years Number of years as an ISACA Member : 15 years

Adrian is an ISACA member since 2004 and he has helped facilitating CISA Review Classes for more than 12 years. He is also an active member of the Chapter’s SIG1 Virtualisation, Mobile and Cybersecurity where he has conducted workshops including tailored workshops for regulators and master classes for ISACA Malaysia Chapter. He also participated in various ISACA Malaysia events and was involved in organising the Chapter’s 30th Anniversary Celebration Dinners. Adrian is currently attached with Malaysia's largest financial services group and holds CISA, CISM and CRISC.

Name : Anthony Tai Yu Kun Membership number : 370654 Number of years served on the Board of Directors : 4 years Number of years as an ISACA Member : 14 years

Anthony is an Partner attached to Deloitte Asia Pacific’s Risk Advisory division. Anthony leads the Operational Risk, Assurance and Cyber Risk service lines in Deloitte Malaysia. He has over 19 years’ experience in professional services and, in particular, risk consulting and assurance. Anthony specialises in internal, IT and cyber security assessments and reviews, corporate governance and business processes reviews, and large scale programme and project risk management.

Anthony serves as Deloitte Malaysia’s Financial Services Industry (‘FSI’) Leader. His role includes providing leadership and oversight over all FSI work provided by Deloitte Malaysia’s various functions and service lines.

Anthony has served on ISACA Malaysia’s Board of Directors since 2014.

Anthony holds a Bachelor of Business (Finance and Accounting) from University of Technology, Sydney. He also is a Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP),

2

Certified Practicing Accountant (CPA Australia), Chartered Accountant (CA) and ISO/IEC 27001:2005 Provisional Auditor.

Name : Elissa Cher Geik Theng Membership number : 337856 Number of years served on the Board of Directors : 9 years Number of years as an ISACA Member : 12 years

Elissa Cher has over 20 years of IT working experiences in the Financial Institution industry. Her areas of expertise involves IT Governance, Information Security, IT Risk Management, IT Compliance and Controls, IT Auditing, Computer Operations, Disaster Recovery and Business Continuity Management.

Elissa Cher has joined the ISACA Board of Director since 2010, she has initiated and lead SheLeadsTech in Malaysia in 2018. She is the Chairperson for ISACA Malaysia SIG3 on Governance of Enterprise IT since 2015, she has served in various ISACA Chapter Director positions. Elissa has been actively involved in organising and coordinating Chapter events and activities. She is also a trainer for CISA & CISM Boot Camps.

Elissa possess a number of professional certifications – CISA, CISM, CGEIT, CRISC, CISSP, CFE, CCSK, BCCE, CCNA, IRCA ISO 27001 Auditor, COBIT Foundation and ITIL Foundation.

Name : Jasmine Goh Membership number : 368339 Number of years served on the Board of Directors : 3 years Number of years as an ISACA Member : 9 years

Jasmine is currently the Head of IT Security for a large GLC organisation. Prior to this, she was the Head of IT Security for a large financial institution. She has over 16 years of practical experience in IT Security, Risk Management, Governance and Compliance.

She also earned various industry security certifications, including the Certified Information Security Manager (CISM), Certified in Risk and Information System Controls (CRISC), Certified CISO and ISO/IEC 27001 Lead Auditor.

Name : Woon Tai Yong Membership number : 1000643 Number of years served on the Board of Directors : 1 year Number of years as an ISACA Member : 3 years

Woon has more than 20 years’ experience in IT and experienced in managing critical IT environment in one of the financial company. He has experience in leading the ISO27001 or Information Security Management System (ISMS) implementation. He was heading IT Security and Process Management for past 6 years and IT Standards and Process Management for past 1 year. Prior to this, he was the Head of IT Process Management and System Support and Maintenance for critical systems. Woon has 3 certifications under his belt: Certified Information Security Manager (CISM), ISO27001 Lead Auditor and ITIL fundamental.

Name : Lam Wai Kin Membership number : 634031 Number of years served on the Board of Directors : 0 Number of years as an ISACA Member : 7 years

Wai Kin joined Ernst & Young (EY) Malaysia in 2007. He has worked on more than 500 IT Audit engagements during his 11 years with the firm. In 2012, in addition to his IT audit responsibilities, he also started working on advisory projects related to process and performance improvement.

Currently, Wai Kin is the service line lead for Cybersecurity Governance, Risk and Compliance (Cyber GRC) in KPMG Malaysia in a team of 11 team members.

3

He is an Advanced Competent Communicator Toastmaster and has been a casual and professional emcee in several events.

Name : Sia Chin Hoe Membership number : 991684 Number of years served on the Board of Directors : 0 Number of years as an ISACA Member : 3 years

Chin Hoe is currently a Partner in the Audit division and Information Risk Management division of KPMG in Malaysia. He is an approved company auditor in Malaysia and has more than 18 years of experience in financial and IT Audit. He is a qualified CISA and lead the IT Audit practice for KPMG in Malaysia.

He is active in public speaking and forums for Malaysian Institution of Accountants ("MIA"), local and international colleges and universities.

4