𪢠Mark Szewczul, Ms Cissp Email & Phone Number
Who is 𪢠Mark Szewczul, Ms Cissp? Overview
A concise factual answer block for searchers comparing this professional profile.
𪢠Mark Szewczul, Ms Cissp is listed as Director - Enterprise Product Security at JPMorganChase, a with 213060 employees, based in Dallas-Fort Worth Metroplex, United States. AeroLeads shows a matched LinkedIn profile for 𪢠Mark Szewczul, Ms Cissp.
𪢠Mark Szewczul, Ms Cissp previously worked as Product Security Consultant at Undisclosed and vCISO Services, AI & Quantum Application Research at Allthingsquantum. 𪢠Mark Szewczul, Ms Cissp holds Msee, Information Science & Systems from Texas A&M University.
Email format at JPMorganChase
This section adds company-level context without repeating 𪢠Mark Szewczul, Ms Cissp's masked contact details.
Review company-level records connected to 𪢠Mark Szewczul, Ms Cissp before choosing the right outreach path.
About 𪢠Mark Szewczul, Ms Cissp
Over two decades of leadership experience (5 years in management) across diverse domains, including:⢠Pentesting: Probed systems, uncovering vulnerabilities and fortifying defenses.⢠Open-Source Software: Commitment to open-source principles drives innovation and collaboration.⢠Secure-SDLC: Ensuring security at every stage of software development.⢠SBOM Provenance: Tracking software components for transparency and risk mitigation.⢠Infrastructure, Cloud, and API Security: Safeguarding digital landscapes against threats.⢠Customer Security & Privacy: Prioritize aligning internal strategies with customer needs.⢠Risk Management: Navigating the ever-evolving threat landscape.A multi-faceted approach:⢠Innovation-Driven: Seek novel solutions that enhance revenue while optimizing costs.⢠Results-Oriented: My track record speaks of achievements rooted in diligence and determination.⢠Team Building: Foster collaborative environments where excellence thrives.⢠Quick Learner: Adapting swiftly to emerging technologies and industry shifts.⢠CISM Aspirant: Currently preparing for the Certified Information Security Manager (CISM) exam.
𪢠Mark Szewczul, Ms Cissp's current company
Company context helps verify the profile and gives searchers a useful next step.
𪢠Mark Szewczul, Ms Cissp work experience
A career timeline built from the work history available for this profile.
Vciso Services, Ai & Quantum Application Research
Current⢠12th NTX ISSA Cybersecurity Conference: âThreat Detection in Boundaryless Environmentsâ panel 9/6/2024.⢠CISO XC Conference: âStaying Compliant in Cloud Security with AIâ panel 4/25/2024.⢠CISO XC Conference: âModernizing InfoSec: Staying in compliance with cloud & data securityâ panel 11/21/2023.⢠Hexcon23: âSecuring the Future: The Intersection of Security and AIâ panel 11/20/2023.⢠11th NTX ISSA Cybersecurity Conference: âPractical Tips for Career Advancementâ panel 11/15/2023.⢠Mastering 5G Network Design, Implementation, and Operations
Appsec Principal Lead
⢠Developed and led the application security strategy and program across the organization.⢠Worked closely with development teams to integrate security practices into the SDLC, including threat modeling, secure coding practices, security testing, validation and vulnerability management.⢠Led security assessments, code reviews, and penetration testing efforts to identify and mitigate security vulnerabilities in applications.⢠Developed and maintained security policies, standards, and guidelines related to application security.⢠Drove the selection and implementation of application security tools and technologies.⢠Directed the implementation and maintenance of security controls to safeguard sensitive information and company assets.⢠Communicated security risks and strategies to stakeholders, including executive leadership, in a clear and effective manner.
Security Center Of Excellence Lead
⢠Leveraged MITRE frameworks and Cyber Threat Intelligence (CTI) to compile Attack/Adversary Playbook for Red/Blue Team operations for Product Security & Incident Response Teams (PSIRT).⢠Ensured that Nokiaâs portfolio is compliant with customer and regulatory security requirements.⢠Established the wide governance on product security for Nokia systems, with one focus on API security.⢠Serviced security requirements and security regulations for Telecom, Enterprise, and Government markets.⢠Evolved the vulnerability management platform âVAMSâ for the Nokia product portfolio which allows the Nokia product lines to identify vulnerabilities in the product and ensures fast fixes/disclosure to customers.⢠Identified and evangelized best practices for product security both externally and internally to Nokia and ensured that they are adopted as appropriate.⢠Developed the ASTaR (Advanced Security Testing and Research) End-to-End lab in Dallas for security testing with a focus on 5G solutions to prioritize test scenarios and execution in cooperation with the Business Groups, with results delivery.
Certification Committee Consultant: Iot, Ai, Security, Privacy, Safety
As SME on Scheme Committee, was key contributor to the industry's first, vendor agnostic, IoT Practitioner Certification for professionals, IoT Security Practitioner Certification, as well as the Artificial Intelligence Practitioner Certification, all released.https://certnexus.com/certification/
Principal Application Security Architect
⢠Mentored and Directed Security Analysts, Engineers and Architects.⢠Led the Shift-Left strategy with Development and DevOps teams while composing enhanced SDLC Standard.⢠Worked with Development and Operations on enhancing existing security posture of APIs.⢠Designed security solutions that enforce security consistently across internally developed, commercial-off-the-shelf (COTS) and cloud-based applications and platforms (AWS, Azure) leveraging IAM, KMS, VPC.⢠Performed security architecture reviews for secure, private, and compliant production datacenters (PCI, FedRAMP) leveraging Third-Party Risk Management tools (SCA, SAST, DAST, BitSight).⢠Performed various Risk Assessments, Threat Modelling in order to advise for proper tradeoffs with business.⢠Led design reviews with Development and Operations teams.⢠Developed procedures to automate CD-CD pipeline security during code builds, testing and deployments.⢠Collaborated with product and platform teams to maximize DevSecOps automation goals.⢠Worked directly with Security Operations Center (SOC) and Technical Vulnerability Management (TVM).⢠Member of Change Board and Vendor Risk Management for various ISMS procedures towards ISO 27001/27002, NIST CSF.⢠Representative as Infosec Privacy Expert for Legal Department intake towards GRC.
Application Security Architect
⢠Used Application Security tools within LLVM compiler toolchain to obfuscate application code/bitcode within the Secure SDLC.⢠Demonstrated advanced understanding modern security concepts: malware, cryptography, disassembly, reverse engineering and exploitation methodologies.⢠Utilized VMs, Containers, Linux, Python, JavaScript, Java, JSON, XML, Network stacks to demonstrate various POCs, including CI-CD pipelines, eg. Jenkins.⢠Leveraged pentest tools such as Frida, JADX, bytecode-viewer, IDA Pro, Hopper.⢠Provided consistent, proactive, technical leadership and expertise to ensure the success of the implementation and integration.⢠Trained customerâs software architects, developers and security engineers in Arxanâs technology and security best practices.
Principal Vehicle Cybersecurity Architect
⢠Recommended key decision points for technology direction and contributed to comprehensive technical roadmaps for the vehicle ecosystem with the right balance of tradeoffs for security/privacy and customer experience.⢠Converted business requirements into working solutions by creating Secure Application Development and Privacy Policies (PCI, GDPR, CCPA), DevSecOps, Threat Modeling ECUs, Root of Trust/Secure root Purple Team, CI-CD pipelines for any secure vehicle endpoint to backend server workflow for Toyota TMNA and other Toyota Entities (AWS, Azure, Embedded and Mobile focus). ⢠Made recommendations on best-of-breed vendor solutions and tools for mobile, server, embedded and safety using common frameworks (NIST, OWASP, CSA, IEC 61508, ISO 26262, SOTA, PKI, IAM).⢠Evaluated technology with trials and POCs for mobile/server workflow.⢠Worked with development teams on implementation with agile improvements. ⢠Represented Toyota Vehicle Security at SAE J3061 Cybersecurity for Cyber-Physical Vehicle Systems.⢠Represented Toyota Vehicle Security at SAE J3138 for Diagnostic Link Connector Security.
Board Member, Iot Security Program Advisor
The goal of the EC-Council Security of IoT Program is to create a certification toaddress the security aspects of the growing Internet of Things field.
System Solutions Architect
⢠Owned technical portion of the sales cycle, using Burpsuite, Metasploit, FakeAP, MITM attacks, Wireshark.⢠Articulated the value of our Mobile Threat Defense implementing User Behavior Analytics. ⢠Focused on IoT Security applications, research, and new product development for target markets. ⢠Responded to RFPs of prospects from Medical (HIPAA), Financial (PCI), Enterprise and FedRAMP markets. ⢠Delivered tailored Proof of Concept and workshops demonstrating live Device, Network and Application attacks to ensure the technical win. ⢠Stood up SSO instance of PingID IdP using SAML2 for sales engineer usage, as well as customer success.⢠Developed leadership relationships with all stakeholders, including Security Engineers, Architects and C-line executives, as well as Channel Partners.⢠Sought to understand customer pain-points to provide product management/Agile development teams feedback and helped defined new features for roadmaps.⢠Searched for venues where the Zimperium solution selling was conveyed, via social media and conferences. ⢠Focused on ICS/IOT solutions for industrial, automotive, health and telecom/consumer markets, investigating standards, use-cases, sectors, for unique problems that needed better solutions.⢠Focused on Security/Privacy aspects of all architectural designs, including Reliability and Resiliency.
Iot Solutions Architect
⢠Consulted with customers to utilize Silabs solutions in secure all sectors of IoT-to-Cloud (GCP) applications: smart metering, medical devices (FDA), home automation, industrial control, asset management and automotive, with actual working prototypes.⢠Modified actual SW for Ubuntu platforms at 2 large customers on x86 (porting from ARM) utilizing DevOps microservices: JSON, MQTT, MQTTfx to Cloud & MongoDB.⢠Mastered vast knowledge while implementing WiFi, Ethernet, ZigBee, Thread, Bluetooth, sensors and proprietary RF/SDR connections, all with security design elements of bootloaders and operating systems. ⢠Modified source code for interaction with secure Smart Phone apps and cloud service connections to show full IoT to Cloud and back functionality.⢠Encouraged customers to embrace SW troubleshooting and architectural discussions: pentesting (both internal and external), QA Testing (unit testing, corner-case), reviewing definitions of product requirements vs customer expectations vs management expectations, with strong emphasis on security, privacy and safety.
Sr. Sales Engineer - South Central: Tola, Mexico, Brazil & Argentina
⢠Avidly promoted security-by-design M2M solutions (Long Range-LoRa, proprietary RF) at all accounts, generating revenue through enhanced product definition and Design Wins at medical, whitegoods, electric grid, oil & gas, automotive customers and numerous industrial (SCADA, ICS) for IT and OT networks.⢠Pentesting LoRa in field in Brazil, Mexico and Texas to show robustness over various distance/terrain/RF interference, jamming, pentesting, malformed frames, etc.⢠Continually interfaced with customer marketing, presenting secure technical solutions, understanding existing architectures, proposing new architectures that connect to the cloud.⢠Provided in-home lab penetration testing and on-site troubleshooting of secure solutions for customers in territory.
Colleagues at JPMorganChase
Other employees you can reach at jpmorganchase.com. View company contacts for 213060 employees →
Nancy L. Wilson
Colleague at JpmorganchaseNew Port Richey, Florida, United States
View →
AN
Ambica Natamai
Colleague at JpmorganchaseWesterville, Ohio, United States
View →
SP
Sangeetha Pentapati
Colleague at JpmorganchaseHyderabad, Telangana, India
View →
SS
Sagar Sutar
Colleague at JpmorganchaseKalaburagi, Karnataka, India
View →
TT
Tim Tokar
Colleague at JpmorganchaseSalisbury, North Carolina, United States
View →
KJ
Kesha Jackson, Mba
Colleague at JpmorganchaseDallas, Texas, United States
View →
CF
Caroline Fallows
Colleague at JpmorganchaseLondon Area, United Kingdom
View →
NK
Nidhi Kahnani
Colleague at JpmorganchaseBengaluru, Karnataka, India
View →
LA
Leena Alajlani
Colleague at JpmorganchaseRiyadh, Saudi Arabia
View →
TN
Tsuyoshi Nakai
Colleague at JpmorganchaseGreater Tokyo Area, Japan
View →
𪢠Mark Szewczul, Ms Cissp education
Frequently asked questions about 𪢠Mark Szewczul, Ms Cissp
Quick answers generated from the profile data available on this page.
What company does 𪢠Mark Szewczul, Ms Cissp work for?
𪢠Mark Szewczul, Ms Cissp works for JPMorganChase.
What is 𪢠Mark Szewczul, Ms Cissp's role at JPMorganChase?
𪢠Mark Szewczul, Ms Cissp is listed as Director - Enterprise Product Security at JPMorganChase.
Where is 𪢠Mark Szewczul, Ms Cissp based?
𪢠Mark Szewczul, Ms Cissp is based in Dallas-Fort Worth Metroplex, United States while working with JPMorganChase.
What companies has 𪢠Mark Szewczul, Ms Cissp worked for?
𪢠Mark Szewczul, Ms Cissp has worked for Jpmorganchase, Undisclosed, Allthingsquantum, Sunrun, and Nokia.
Who are 𪢠Mark Szewczul, Ms Cissp's colleagues at JPMorganChase?
𪢠Mark Szewczul, Ms Cissp's colleagues at JPMorganChase include Nancy L. Wilson, Ambica Natamai, Sangeetha Pentapati, Sagar Sutar, and Tim Tokar.
How can I contact 𪢠Mark Szewczul, Ms Cissp?
You can use AeroLeads to view verified contact signals for 𪢠Mark Szewczul, Ms Cissp at JPMorganChase, including work email, phone, and LinkedIn data when available.
What schools did 𪢠Mark Szewczul, Ms Cissp attend?
𪢠Mark Szewczul, Ms Cissp holds Msee, Information Science & Systems from Texas A&M University.
Search by job title, company, industry, location, and seniority. Export verified B2B contact data when you need it.
Start free trial