Connie K.

Connie K. Email and Phone Number

Security Engineer, Assurance @ ZeroFox
Connie K.'s Location
Fort Worth, Texas, United States, United States
Connie K.'s Contact Details
About Connie K.

Skilled in solving complex business problems for IT Security / IT Risk Management and Compliance.Accomplished in building an Information Security foundation using a no-nonsense practical approach to achieving repeatable, sustainable Security and IT Risk programs. Exceptional results in working with business owners to design effective internal controls as well as effective remediation plans. Strong support of external audit and attesting to internal controls, offering a reputation in achieving compliance with minimal impact and cost. Apply metrics and scorecards to measure effectiveness and tune controls to achieve continuous improvement.Specialties: IT Governance, vCISO Advisory, IT Audit, GRC, IT Risk Management, AICPA / SSAE 18 / SOC! / SOC2 ISO 27001 Lead Auditor ISMS Certification PCI -Payment Card Industry - PCI 4.0 Readiness Assessment / Gap Analysis Advanced SOX and PCI Compliance / Compliance Program Development.IT Security programs such as forensics, Privacy, Incident Response (CIRT), Security Awareness,, Broad understanding of IT Risks, Controls and Risk Management. Control Automation

Connie K.'s Current Company Details
ZeroFox

Zerofox

View
Security Engineer, Assurance
Connie K. Work Experience Details
  • Zerofox
    Security Engineer, Assurance
    Zerofox Oct 2023 - Present
    Baltimore, Md, Us
    Providing Security Assurance for ZEROFOX Clients
  • Texas Organic Research Center
    Texas Organic Research Center
    Texas Organic Research Center Sep 2023 - Present
    Texas Land Management
  • Offgrid | Ontech
    Offgrid | Ontech
    Offgrid | Ontech Feb 2022 - Present
  • Ntt Data Services
    Senior Security & Compliance Advisor | It Compliance Program Manager
    Ntt Data Services Nov 2018 - Aug 2023
    Plano, Texas, Us
    Senior Security & Compliance Advisor | IT Compliance Program Manager | GRC Systems Analyst
  • Consulting Private
    Iso27001 / Sox/ Soc-2 / Pci Compliance Consultant
    Consulting Private Jul 2018 - Oct 2018
    Independent consultant for Information Security Management/certified ISO27001 Lead Auditor. Well skilled in SOX, PCI, Sarbanes Oxley (SOX IT), Privacy, AICPA SOC-2, ISO 27001, and General IT Controls. Work with teams to ensure controls and procedures are documented, repeatable and manage non-conformities and risks. . Key strengths are process and control design, control effectiveness evaluation, gap and root cause analysis, and remediation of compliance non-conformities. Implementation of GRC process and tools using Thompson Reuters Paisley, Metric Stream, Archer and Service Now.
  • Pci Security Standards Council
    Quality Analyst - Assessor Quality
    Pci Security Standards Council Mar 2018 - Jul 2018
    Wakefield, Ma, Us
    Perform quality review under the ISO 9001 QMS framework.
  • Sirius Xm Connected Vehicle Services
    Senior Information Security Analyst
    Sirius Xm Connected Vehicle Services Sep 2013 - Mar 2018
    SOC 2, SOX and PCI internal controls and risk assessment, process and control design to ensure operating effectiveness. Conduct reviews of process and controls, manage remediation milestones and timelines across all lines of business. Provide internal consulting on risks and controls and development of security processes. Standards include SOX, ISO27001, AICPA SOC 2, PCI DSS 3.2. Support SiriusXM enterprise risk and security compliance goals for both internal, external customers and partners
  • Bt
    Audit And Compliance Manager
    Bt Sep 2012 - Sep 2013
    London, Gb
    British Telecom AmericaCompliance and Controls Improvement 08/2012 - presentInternal controls assessment and remediation for SOX Finance, PCI, Anti-Corruption and Bribery and Consumer Goods Contract Operations. Conduct audits of process and controls for Finance and IT. Administered quarterly internal controls certifications for BT Americas finance. Managed all internal and external audit Issues for BT Americas. Standards include Sarbanes Oxley, ISO27001, ISO9001 and COBIT. Managed audit findings remediation, control owner certification and quarterly attestations.
  • Research In Motion
    Corporate Security & Compliance Analyst
    Research In Motion Jan 2011 - Sep 2012
    Waterloo, Ontario, Ca
    Lead ISO 27001 auditor for critical RIM and Blackberry™ systems and business processes. Determine audit scope, conduct entrance and exit presentations and manage remediation of findings Partner with RIM Business units to remediate non-conformities and reduce risks. Strive for continuous improvement in Information Security Compliance programs, improving internal control effectiveness. ISO27001, SOX, and BSI Audit support. Primary responsibility is to conduct internal compliance audits, security risk assessments and remediation of control gaps. Served as the owner of Archer findings management for all of Corporate Security. Led the NFC Blackberry "Wallet" project to successful certification for mobile payment authorizationReceived the CIO "Achieve Now" award for exemplary work on C-TPAT (Customs Trade Partnership Against Terrorism) certification.
  • Brink'S, Inc.
    Senior Security Analyst
    Brink'S, Inc. Apr 2008 - Jan 2011
    Coppell, Texas, Us
    Senior IT Security and Compliance Analyst 04/2008 – 01/2011Manage IT compliance and IT risk management for Brink’s US as the primary interface with Ernst & Young financial audit teams. Responsible for IT Audit, Sarbanes Oxley program management, and IT Security policies that support internal and external compliance requirements. Primary responsibility was for management of external audit and remediation of control gaps. Internal Controls testing for financial and PCI systems, network and IT security services. Additional duties include IT risk assessments and oversight for issues remediation discovered through security assessments and audits. Produced and presented the first annual SOX Workshops for IT key control owners, CIO and CFO. Possess strong technical knowledge of IT Security and technology controls based on COSO, ISO27001 and COBIT standards. Well versed in security and audit tools such as ACL, Quest Change Auditor, LogAdmin, Log Logic, Varonis ESM, Quest Security Manager, NetIQ. Systems Tools, AD Manager. Manage remediation milestones and timelines for compliance issues
  • D. R. Horton
    Compliance Analyst
    D. R. Horton Mar 2006 - Apr 2008
    Responsible for management of IT audit compliance for Sarbanes Oxley Section 404 for Mortgage and Construction, and for analysis and design of underlying business processes for financially significant IT controls. Key job requirements:• Primary interface with Ernst & Young financial audit teams for mid year and fiscal year end audits on all IT General Controls / SOX 404 controls • Control design (TOD) and control effectiveness (TOE) testing and remediation• Exception and remediation reporting to senior management • Audit program development and work paper maintenance• Oversight of internal IT compliance and risk management activities• Policy and procedure ownership: policy gap analysis, policy and procedure development
  • American Airlines
    Security Engineer
    American Airlines 1989 - 2005
    Dallas-Fort Worth, Texas, Us
    Information Security Engineer responsible for Security Compliance for PCI and Sarbanes Oxley as required by Internal Audit / Internal Controls. Administered Security Awareness Program, Co-Chair of the AA Privacy Council under the direction of the Chief Privacy Officer. Developed / insourced the Forensics capabilities in support of eDiscovery and Corporate Security as well as managed Incident Response for IT Security, working closely with AA Legal an HR management.Designed the AA Security AAdvocate program to build a matrix security team across key cross functional teams. Received the CIO award for innovation - 2004

Connie K. Skills

Leadership Grc Risk Register Computer Forensics Information Security Consulting It Compliance Pci Payment Card Industry Compliance Payments Security Operations It Audit Enterprise Risk Management It Risk Management Data Privacy Mobile Payments Physical Security Data Analysis Security Compliance Security Architecture Design Itgc Control Design Process Improvement Standards Compliance External Audits Vulnerability Management Risk Analysis Risk Assessment Business Continuity Sarbanes Oxley Corporate Security Internal Controls Security Awareness Disaster Recovery Rsa Archer Information Security Management Security Audits Remediation Iso 27001 Business Process Improvement Payment Card Industry Data Security Standard Sarbanes Oxley Act Governance Aicpa Soc Ii It Governance Project Management Security And Compliance Program Management Security Ssae 16 Sas70 Iso 27001 Compliance Organization Skills Nist 800 53 It Controls

Connie K. Education Details

  • Uta
    Uta
    Computer Systems Analysis

Frequently Asked Questions about Connie K.

What company does Connie K. work for?

Connie K. works for Zerofox

What is Connie K.'s role at the current company?

Connie K.'s current role is Security Engineer, Assurance.

What is Connie K.'s email address?

Connie K.'s email address is co****@****ata.com

What schools did Connie K. attend?

Connie K. attended Uta.

What skills is Connie K. known for?

Connie K. has skills like Leadership, Grc, Risk Register, Computer Forensics, Information Security, Consulting, It Compliance, Pci Payment Card Industry Compliance, Payments, Security Operations, It Audit, Enterprise Risk Management.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.