Andy Soodek, Cipp-E, Cissp, Cism, Mba Email and Phone Number
Andy Soodek, Cipp-E, Cissp, Cism, Mba work email
- Valid
- Valid
- Valid
- Valid
- Valid
- Valid
Andy Soodek, Cipp-E, Cissp, Cism, Mba personal email
- Valid
- Valid
Andy Soodek, Cipp-E, Cissp, Cism, Mba phone numbers
My professional mission is to help organizations use and protect OUR personal data responsibly. I am primarily a privacy program and data governance architect, which means: - I collaborate with stakeholders to assess legal and regulatory privacy and security obligations and to identify privacy management gaps and risks. - I align privacy program strategies and tactics to commonly accepted privacy risk management frameworks (NIST, Nymity, GAPP) - I draft and maintain privacy and security policies, standards, processes, plans, training, 3rd party risk management tools, and IT controls - to meet the varied requirements of GDPR, CPRA, CDPA, PIPEDA, LGPD, GLBA, etc. - I facilitate senior-level governance committees, who maintain accountability for security and privacy. - I design process-based solutions to close the program gaps and meet ongoing compliance obligations (CPRA, CDPA, Post-Schrems II, Standard Contractual Clauses). - I oversee strategic implementation projects, inclusive of process and technology changes, training and awareness. CIPP/E, CISSP, CISM, MBA and ITIL Practitioner (Former PMP)Specialties: Data Privacy Regulations (GDPR, CCPA/CPRA, PCI DSS, HIPAA, GLBA), Privacy Management Frameworks (NIST, GAPP), Information Security standards (NIST, ISO 2700x, COBIT), Risk Management, Data Governance, Project & Portfolio Management, Security & Privacy Awareness Training, Incident Response and Disaster Recovery Planning.Industries: Financial Services, Healthcare, Retail, Social Media, Technology, Government Contracting, Consumer Packaged Goods
-
Managing Principal, Data Security And PrivacyCapcoEvanston, Il, Us -
Managing Principal, Data Security & PrivacyCapco Oct 2021 - PresentLondon, Uk, Gb -
Senior Manager, Privacy & Security ConsultingProtiviti Apr 2019 - Oct 2021Menlo Park, California, UsWorked with clients to assess their privacy and compliance risks and to define strategic and tactical privacy initiatives that will help meet the varied requirements of GDPR, CPRA, CDPA, PIPEDA, LGPD, HIPAA, GLBA, etc. -
President/FounderSecure Compliance Solutions Llc Aug 2015 - Apr 2019Hillside, Il, UsSecure Compliance Solutions is the trusted security advisor for Chicagoland’s small-to-mediumbusinesses. We offer a variety of services that promote a strengthened security posture and a culture of compliance. Our solutions include: risk advisory services, strategic cybersecurity planning, security and privacy awareness, regulatory guidance, penetration testing, and managed security services. We tailor our engagements and solutions to align with your cultural needs and business objectives; not the other way around. We keep your appetite for risk, budget constraints, and timeline in mind to define strategy and operational tactics that maximize your return on investment. At SCS, we champion a Strategy of Readiness and Resilience. Our core services:• Interim External CISO and CISO Advisory Services• Information Security Strategy – Road Map, Architecture and Streamlined Program Development and Governance, Risk and Control Implementation• NIST CSF and 800 series, FISMA, ISO 2700x, COBIT, HIPAA, PCI DSS and GDPR compliance – we know how to get you compliant• Cybersecurity Risk and Privacy Impact Assessments• Policy, Standards, Plan and Procedure documentation• Self-assessments and preparation for 3rd party and client audits • Security and Privacy Awareness Training curriculum and delivery• Innovative and cost effective technical solutions to protect your information assets:• Penetration Testing• Access Control in line with organizational risk• Identity and Authentication – including multi-factor authentication• Firewalls, IDS/IPS, Network and Systems Monitoring• FIPS-compliant encryption and PKI solutions • Data Center Planning, Design and Implementation • Managed Security Service Provider -
It Security Compliance ConsultantNorc At The University Of Chicago Feb 2015 - Aug 2015Chicago, Il, Us -
Chief Information Officer / Chief Information Security OfficerEnterprise Recovery Systems, Inc. Dec 2009 - Sep 2014Woodridge, Il, UsProcess and governance-driven IT and Information Security Executive. Directed and aligned enterprise programs with security compliance and risk mitigation initiatives critical to achieving revenue cycle goals, while protecting ERS’ information assets and technologies, in a highly regulated environment. • Chaired ERS’ Information Security Task Force; responsible for oversight of security program and the handling of security-related incidents.• Authored and continuously maintained system security plans, policies, risk assessments, processes and IT Governance controls to ensure adherence to NIST 800-53, PCI-DSS, TCPA and other data privacy and regulatory standards.• Facilitated 3rd party assessor, QSA and client security audits; Designed ERS’ audit tools & conducted vendor/partner security assessments. Managed programs to remediate findings and maintain optimal security. Served as the security SME for all client RFPs and information requests. • Developed and delivered semi-annual, company-wide Security Awareness Training. • Led application development and infrastructure initiatives to automate workflows, enable analytical decisions, and minimize security vulnerabilities and threats.• Implemented a regulatory compliance management framework and designed enabling governance processes to support ethical operations and successful CFPB examination results. • Executed the vendor management process: contract negotiation, performance monitoring and ongoing assurance of compliance to laws and security controls.• Drove all Business Continuity / Disaster Recovery efforts; Author of contingency, recovery & continuity plans; Managed alternate site relationships and coordinated DR testing; Conducted BC/DR training. • Directed activities related to facility infrastructure and security controls • Facilitated annual business growth from $13M to $92M with a 35% EBITDA in just five years. Controlled annual $4M budget and led 40-person organization. -
Consultant / Senior Project ManagerJohn Drake & Associates Sep 2009 - Dec 2009Lombard, Il, UsManaged a call center migration project, including all facilities planning, vendor coordination, IT infrastructure and systems integration.Currently managing an IT process assessment and IT strategy development project to improve overall service in support of significant forecasted growth for a collections company, based on IT Service Management and Project & Portfolio Management best practices. Implementing initial processes... Change Management, Portfolio Management and Incident Management. Defining IT roles and responsibilities as well as performance management practices and key operational metrics. -
Manager, Ppm PracticeFive9 Technologies May 2008 - Mar 2009Chicago, Il, UsResponsible for development and delivery of Project and Portfolio Management (PPM) solutions for this IT Service Management consulting firm. Created and managed all PPM intellectual property, including process guidebooks, marketing materials, whitepapers, training materials and templates for use in PPM and governance related work. • Formulated strategy for converged IT Service Portfolio Management, integrating PPM, ITIL, ITAM and outsourcing best practices• Led & participated in client engagements to implement Project and Portfolio Management & IT Service Management• Published whitepaper on PPM Tools assessment, selection and implementation in PMI’s Virtual Library -
Consultant / Project ManagerNuveen Investments Jan 2008 - Apr 2008New York, Ny, UsLed a Clarity PPM implementation and associated process development for the new Nuveen PMO. -
Senior Project ManagerHealth Care Service Corporation Aug 2006 - Jan 2008Chicago, Il, UsManaged 200+ internal, 3rd party and offshore Associates across three cross-functional enterprise software delivery project teams; responsible for $12M in software development and regulatory compliance program budgets. -
Project ManagerAc Nielsen 2004 - 2006New York, Ny, UsDesigned and executed PMO standards, procedures, and metrics; implementing Clarity project and portfolio management (PPM) software; drove project management and SDLC process adherence; led Sarbanes Oxley compliance efforts in IT/Systems; implemented standard IT governance systems and reporting infrastructure; managed outsourcing transition program. -
Senior ManagerRcn 2000 - 2002Princeton, Nj, UsManaged projects, programs and organizational changes; monitored operational activities; developed metrics, policies and processes; created training materials and facilitated training; wrote long and short tem departmental budgets. -
Director Of Information SystemsVencom Group 1995 - 1998Directed IT program and knowledge management, systems and infrastructure development, process design, research support, vendor selection and negotiation.
Andy Soodek, Cipp-E, Cissp, Cism, Mba Skills
Andy Soodek, Cipp-E, Cissp, Cism, Mba Education Details
-
Georgetown University Mcdonough School Of BusinessOperations -
Dominican UniversityLibrary & Information Science -
University Of MinnesotaHumanities
Frequently Asked Questions about Andy Soodek, Cipp-E, Cissp, Cism, Mba
What company does Andy Soodek, Cipp-E, Cissp, Cism, Mba work for?
Andy Soodek, Cipp-E, Cissp, Cism, Mba works for Capco
What is Andy Soodek, Cipp-E, Cissp, Cism, Mba's role at the current company?
Andy Soodek, Cipp-E, Cissp, Cism, Mba's current role is Managing Principal, Data Security and Privacy.
What is Andy Soodek, Cipp-E, Cissp, Cism, Mba's email address?
Andy Soodek, Cipp-E, Cissp, Cism, Mba's email address is an****@****ast.net
What is Andy Soodek, Cipp-E, Cissp, Cism, Mba's direct phone number?
Andy Soodek, Cipp-E, Cissp, Cism, Mba's direct phone number is +177331*****
What schools did Andy Soodek, Cipp-E, Cissp, Cism, Mba attend?
Andy Soodek, Cipp-E, Cissp, Cism, Mba attended Georgetown University Mcdonough School Of Business, Dominican University, University Of Minnesota.
What are some of Andy Soodek, Cipp-E, Cissp, Cism, Mba's interests?
Andy Soodek, Cipp-E, Cissp, Cism, Mba has interest in Animal Welfare, Arts And Culture.
What skills is Andy Soodek, Cipp-E, Cissp, Cism, Mba known for?
Andy Soodek, Cipp-E, Cissp, Cism, Mba has skills like Program Management, Pmo, Vendor Management, Management, Leadership, It Strategy, Sdlc, Process Improvement, Project Portfolio Management, Integration, Governance, Information Security Management.
Who are Andy Soodek, Cipp-E, Cissp, Cism, Mba's colleagues?
Andy Soodek, Cipp-E, Cissp, Cism, Mba's colleagues are Calum Hogg, Gary Winsall, Pattanayu Phlangpalee, Rafael Scolari Maciel, Manjunath.v Manjupujary8, Jack Sanchez, Binod Singha.
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial