Andy Soodek, Cipp-E, Cissp, Cism, Mba

Andy Soodek, Cipp-E, Cissp, Cism, Mba Email and Phone Number

Managing Principal, Data Security and Privacy @ Capco
Evanston, IL, US
Andy Soodek, Cipp-E, Cissp, Cism, Mba's Location
Evanston, Illinois, United States, United States
Andy Soodek, Cipp-E, Cissp, Cism, Mba's Contact Details

Andy Soodek, Cipp-E, Cissp, Cism, Mba personal email

Andy Soodek, Cipp-E, Cissp, Cism, Mba phone numbers

About Andy Soodek, Cipp-E, Cissp, Cism, Mba

My professional mission is to help organizations use and protect OUR personal data responsibly. I am primarily a privacy program and data governance architect, which means: - I collaborate with stakeholders to assess legal and regulatory privacy and security obligations and to identify privacy management gaps and risks. - I align privacy program strategies and tactics to commonly accepted privacy risk management frameworks (NIST, Nymity, GAPP) - I draft and maintain privacy and security policies, standards, processes, plans, training, 3rd party risk management tools, and IT controls - to meet the varied requirements of GDPR, CPRA, CDPA, PIPEDA, LGPD, GLBA, etc. - I facilitate senior-level governance committees, who maintain accountability for security and privacy. - I design process-based solutions to close the program gaps and meet ongoing compliance obligations (CPRA, CDPA, Post-Schrems II, Standard Contractual Clauses). - I oversee strategic implementation projects, inclusive of process and technology changes, training and awareness. CIPP/E, CISSP, CISM, MBA and ITIL Practitioner (Former PMP)Specialties: Data Privacy Regulations (GDPR, CCPA/CPRA, PCI DSS, HIPAA, GLBA), Privacy Management Frameworks (NIST, GAPP), Information Security standards (NIST, ISO 2700x, COBIT), Risk Management, Data Governance, Project & Portfolio Management, Security & Privacy Awareness Training, Incident Response and Disaster Recovery Planning.Industries: Financial Services, Healthcare, Retail, Social Media, Technology, Government Contracting, Consumer Packaged Goods

Andy Soodek, Cipp-E, Cissp, Cism, Mba's Current Company Details
Capco

Capco

View
Managing Principal, Data Security and Privacy
Evanston, IL, US
Website:
capco.com
Employees:
7656
Andy Soodek, Cipp-E, Cissp, Cism, Mba Work Experience Details
  • Capco
    Managing Principal, Data Security And Privacy
    Capco
    Evanston, Il, Us
  • Capco
    Managing Principal, Data Security & Privacy
    Capco Oct 2021 - Present
    London, Uk, Gb
  • Protiviti
    Senior Manager, Privacy & Security Consulting
    Protiviti Apr 2019 - Oct 2021
    Menlo Park, California, Us
    Worked with clients to assess their privacy and compliance risks and to define strategic and tactical privacy initiatives that will help meet the varied requirements of GDPR, CPRA, CDPA, PIPEDA, LGPD, HIPAA, GLBA, etc.
  • Secure Compliance Solutions Llc
    President/Founder
    Secure Compliance Solutions Llc Aug 2015 - Apr 2019
    Hillside, Il, Us
    Secure Compliance Solutions is the trusted security advisor for Chicagoland’s small-to-mediumbusinesses. We offer a variety of services that promote a strengthened security posture and a culture of compliance. Our solutions include: risk advisory services, strategic cybersecurity planning, security and privacy awareness, regulatory guidance, penetration testing, and managed security services. We tailor our engagements and solutions to align with your cultural needs and business objectives; not the other way around. We keep your appetite for risk, budget constraints, and timeline in mind to define strategy and operational tactics that maximize your return on investment. At SCS, we champion a Strategy of Readiness and Resilience. Our core services:• Interim External CISO and CISO Advisory Services• Information Security Strategy – Road Map, Architecture and Streamlined Program Development and Governance, Risk and Control Implementation• NIST CSF and 800 series, FISMA, ISO 2700x, COBIT, HIPAA, PCI DSS and GDPR compliance – we know how to get you compliant• Cybersecurity Risk and Privacy Impact Assessments• Policy, Standards, Plan and Procedure documentation• Self-assessments and preparation for 3rd party and client audits • Security and Privacy Awareness Training curriculum and delivery• Innovative and cost effective technical solutions to protect your information assets:• Penetration Testing• Access Control in line with organizational risk• Identity and Authentication – including multi-factor authentication• Firewalls, IDS/IPS, Network and Systems Monitoring• FIPS-compliant encryption and PKI solutions • Data Center Planning, Design and Implementation • Managed Security Service Provider
  • Norc At The University Of Chicago
    It Security Compliance Consultant
    Norc At The University Of Chicago Feb 2015 - Aug 2015
    Chicago, Il, Us
  • Enterprise Recovery Systems, Inc.
    Chief Information Officer / Chief Information Security Officer
    Enterprise Recovery Systems, Inc. Dec 2009 - Sep 2014
    Woodridge, Il, Us
    Process and governance-driven IT and Information Security Executive. Directed and aligned enterprise programs with security compliance and risk mitigation initiatives critical to achieving revenue cycle goals, while protecting ERS’ information assets and technologies, in a highly regulated environment. • Chaired ERS’ Information Security Task Force; responsible for oversight of security program and the handling of security-related incidents.• Authored and continuously maintained system security plans, policies, risk assessments, processes and IT Governance controls to ensure adherence to NIST 800-53, PCI-DSS, TCPA and other data privacy and regulatory standards.• Facilitated 3rd party assessor, QSA and client security audits; Designed ERS’ audit tools & conducted vendor/partner security assessments. Managed programs to remediate findings and maintain optimal security. Served as the security SME for all client RFPs and information requests. • Developed and delivered semi-annual, company-wide Security Awareness Training. • Led application development and infrastructure initiatives to automate workflows, enable analytical decisions, and minimize security vulnerabilities and threats.• Implemented a regulatory compliance management framework and designed enabling governance processes to support ethical operations and successful CFPB examination results. • Executed the vendor management process: contract negotiation, performance monitoring and ongoing assurance of compliance to laws and security controls.• Drove all Business Continuity / Disaster Recovery efforts; Author of contingency, recovery & continuity plans; Managed alternate site relationships and coordinated DR testing; Conducted BC/DR training. • Directed activities related to facility infrastructure and security controls • Facilitated annual business growth from $13M to $92M with a 35% EBITDA in just five years. Controlled annual $4M budget and led 40-person organization.
  • John Drake & Associates
    Consultant / Senior Project Manager
    John Drake & Associates Sep 2009 - Dec 2009
    Lombard, Il, Us
    Managed a call center migration project, including all facilities planning, vendor coordination, IT infrastructure and systems integration.Currently managing an IT process assessment and IT strategy development project to improve overall service in support of significant forecasted growth for a collections company, based on IT Service Management and Project & Portfolio Management best practices. Implementing initial processes... Change Management, Portfolio Management and Incident Management. Defining IT roles and responsibilities as well as performance management practices and key operational metrics.
  • Five9 Technologies
    Manager, Ppm Practice
    Five9 Technologies May 2008 - Mar 2009
    Chicago, Il, Us
    Responsible for development and delivery of Project and Portfolio Management (PPM) solutions for this IT Service Management consulting firm. Created and managed all PPM intellectual property, including process guidebooks, marketing materials, whitepapers, training materials and templates for use in PPM and governance related work. • Formulated strategy for converged IT Service Portfolio Management, integrating PPM, ITIL, ITAM and outsourcing best practices• Led & participated in client engagements to implement Project and Portfolio Management & IT Service Management• Published whitepaper on PPM Tools assessment, selection and implementation in PMI’s Virtual Library
  • Nuveen Investments
    Consultant / Project Manager
    Nuveen Investments Jan 2008 - Apr 2008
    New York, Ny, Us
    Led a Clarity PPM implementation and associated process development for the new Nuveen PMO.
  • Health Care Service Corporation
    Senior Project Manager
    Health Care Service Corporation Aug 2006 - Jan 2008
    Chicago, Il, Us
    Managed 200+ internal, 3rd party and offshore Associates across three cross-functional enterprise software delivery project teams; responsible for $12M in software development and regulatory compliance program budgets.
  • Ac Nielsen
    Project Manager
    Ac Nielsen 2004 - 2006
    New York, Ny, Us
    Designed and executed PMO standards, procedures, and metrics; implementing Clarity project and portfolio management (PPM) software; drove project management and SDLC process adherence; led Sarbanes Oxley compliance efforts in IT/Systems; implemented standard IT governance systems and reporting infrastructure; managed outsourcing transition program.
  • Rcn
    Senior Manager
    Rcn 2000 - 2002
    Princeton, Nj, Us
    Managed projects, programs and organizational changes; monitored operational activities; developed metrics, policies and processes; created training materials and facilitated training; wrote long and short tem departmental budgets.
  • Vencom Group
    Director Of Information Systems
    Vencom Group 1995 - 1998
    Directed IT program and knowledge management, systems and infrastructure development, process design, research support, vendor selection and negotiation.

Andy Soodek, Cipp-E, Cissp, Cism, Mba Skills

Program Management Pmo Vendor Management Management Leadership It Strategy Sdlc Process Improvement Project Portfolio Management Integration Governance Information Security Management It Security Policies And Procedures Consulting Strategy Information Technology Project Management Enterprise Software Strategic Planning Outsourcing Change Management Itil Business Analysis Nist 800 53

Andy Soodek, Cipp-E, Cissp, Cism, Mba Education Details

  • Georgetown University Mcdonough School Of Business
    Georgetown University Mcdonough School Of Business
    Operations
  • Dominican University
    Dominican University
    Library & Information Science
  • University Of Minnesota
    University Of Minnesota
    Humanities

Frequently Asked Questions about Andy Soodek, Cipp-E, Cissp, Cism, Mba

What company does Andy Soodek, Cipp-E, Cissp, Cism, Mba work for?

Andy Soodek, Cipp-E, Cissp, Cism, Mba works for Capco

What is Andy Soodek, Cipp-E, Cissp, Cism, Mba's role at the current company?

Andy Soodek, Cipp-E, Cissp, Cism, Mba's current role is Managing Principal, Data Security and Privacy.

What is Andy Soodek, Cipp-E, Cissp, Cism, Mba's email address?

Andy Soodek, Cipp-E, Cissp, Cism, Mba's email address is an****@****ast.net

What is Andy Soodek, Cipp-E, Cissp, Cism, Mba's direct phone number?

Andy Soodek, Cipp-E, Cissp, Cism, Mba's direct phone number is +177331*****

What schools did Andy Soodek, Cipp-E, Cissp, Cism, Mba attend?

Andy Soodek, Cipp-E, Cissp, Cism, Mba attended Georgetown University Mcdonough School Of Business, Dominican University, University Of Minnesota.

What are some of Andy Soodek, Cipp-E, Cissp, Cism, Mba's interests?

Andy Soodek, Cipp-E, Cissp, Cism, Mba has interest in Animal Welfare, Arts And Culture.

What skills is Andy Soodek, Cipp-E, Cissp, Cism, Mba known for?

Andy Soodek, Cipp-E, Cissp, Cism, Mba has skills like Program Management, Pmo, Vendor Management, Management, Leadership, It Strategy, Sdlc, Process Improvement, Project Portfolio Management, Integration, Governance, Information Security Management.

Who are Andy Soodek, Cipp-E, Cissp, Cism, Mba's colleagues?

Andy Soodek, Cipp-E, Cissp, Cism, Mba's colleagues are Calum Hogg, Gary Winsall, Pattanayu Phlangpalee, Rafael Scolari Maciel, Manjunath.v Manjupujary8, Jack Sanchez, Binod Singha.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.