Karen C. Email & Phone Number
Who is Karen C.? Overview
A concise factual answer block for searchers comparing this professional profile.
Karen C. is listed as Head of Cyber Governance and Risk Management at FIS, a with 3378 employees, based in New York, United States. AeroLeads shows a matched LinkedIn profile for Karen C..
Karen C. previously worked as Head of Cyber Policy and Technology Governance & Risk Management at Fis and Advisor (CISO-in-Residence) at Ballistic Ventures. Karen C. holds Master Of Science - Ms, Management Information Systems, General from Indiana University - Kelley School Of Business.
Email format at FIS
This section adds company-level context without repeating Karen C.'s masked contact details.
Review company-level records connected to Karen C. before choosing the right outreach path.
About Karen C.
I find joy in helping people and organizations achieve their goals. My 18+ years of information security experience spans advisory, consulting, delivery and operations.Balancing enterprise goals, security and risk, and building trusted relationships are critical to empowering the business, safeguarding organizations and their customers, and meeting regulatory and compliance objectives. My success in the field is defined by taking a strategic and pragmatic approach to information security, creating consensus, fostering collaboration, and delivering impactful results. I excel at developing authentic connections, and effectively communicating complex ideas to non-technical stakeholders, senior executives and the Board so that they make informed decisions. I am also bullish about professional development and mentorship, being a strong advocate for DE&I, and creating a culture where people feel appreciated, included, and supported.At FIS, I lead cyber governance, policy and risk management, reporting to the CISO. My remit also includes global security education and awareness, cyber policies, technology and software governance, IT asset management, central patching, end-of-life, metrics and reporting, and the global Business Information Security Officer (BISO) function.Recently, I have been delving into the dynamic world of venture capital and startups. My advisory roles at Alpha Level and as CISO-in-Residence (CIR) with Ballistic Ventures allow me to be at the forefront of tackling the most complex challenges facing cybersecurity today. In my prior role at EY, I worked closely with Fortune 500 CIOs and CISOs to transform their information security programs, mature people, process and technology capabilities, and build risk-aware organizational cultures. I developed security strategies and roadmaps, established cyber programs from the ground-up (spin-offs), delivered managed services (e.g., SOC), enhanced incident response and crisis management programs, and implemented multi-year initiatives across, but not limited to, cloud security, data protection, security awareness, third party and cyber risk management.New challenges and opportunities for growth energize me, bringing out my inner sisu. “Sisu” (see-soo), a Finnish word, translates to strength of will, stoic determination, courage, tenacity and grit, and reflects “an action-oriented mindset.” If you are interested in chatting about information security, risk management, startups, venture capital, or sisu, I look forward to connecting with you.
Karen C.'s current company
Company context helps verify the profile and gives searchers a useful next step.
Karen C. work experience
A career timeline built from the work history available for this profile.
Head Of Cyber Policy And Technology Governance & Risk Management
I am responsible for transforming the cyber governance and cyber risk management program, making sure our policies address emerging threats and technologies, and maturing our global security awareness and education program. I lead our global Business Information Security Officer (BISO) function which is critical to building strong, two-way relationships with the business focused on driving accountability and awareness, communicating threats and risks, promoting security best practices, and ensuring compliance with FIS policies and requirements. My responsibilities also include central patching, IT asset management, technology and software/SaaS governance, end-of-life, and leading a team of ~200 onshore and offshore resources. I also work closely with the CISO on strategic security initiatives and Board and executive reporting.
Advisor (Ciso-In-Residence)
As an Advisor (CISO-in-Residence) with the Ballistic Ventures teams, I provide support to the founders of Ballistic's portfolio companies by sharing industry insights and a practitioner's point-of-view, providing feedback on product and marketing strategies, and making connections/bringing visibility to the portfolio companies. Any activity, opinion or post made in the capacity of the Advisor (CISO-in-Residence) role does not reflect the opinion of FIS, and does not constitute a personal endorsement.
Startup Advisor
Alpha Level is an AI powered solution that aims to detect and remove false positives in the SOC by up to 90%, reducing alert fatigue and noise, and allowing analysts to focus on the alerts and evidence that matter. Alpha Level is pre-seed.
Partner/Principal/Information Security Executive/Cyber Leader - Cybersecurity Consulting
During my most recent role at EY, I served as a Principal and Information Security Executive, leading transformative information security initiatives that elevated the security posture of numerous multi-billion-dollar organizations. I collaborated closely with CISOs and security leaders to develop and enhance information security programs, focusing on strong foundational security capabilities that can scale and mature, as well as innovative solutions that address emerging threats. My expertise in evaluating risk, communicating impact, and securing investment approvals was instrumental in driving strategic initiatives, including but not limited to data protection, cloud, software and product security, automation, and Identity and Access Management (IAM). I transformed information security programs, elevating program maturity by >60% in 18 months, and established and ran a managed SOC, overseeing cyber threat intelligence, digital risk protection, threat hunting, detection, and incident response. I played a key role in establishing information security organizations at two spin-offs, defining organization structure, outlining capabilities, determining budget, and developing metrics.
Staff, Senior, Manager And Senior Manager - Cybersecurity Consulting
I played a pivotal role in Ernst & Young's cybersecurity consulting practice, serving in various capacities from Staff to Senior Manager. I conducted numerous NIST-CSF and EY proprietary risk assessments for clients across industries, focusing on automotive, consumer products, manufacturing, media, advertising, health, and life sciences. My expertise also extended to delivering regulatory and compliance-based risk assessments (HIPAA, SOX, SOC 2, PCI, GDPR, CPRA), as well as industry framework readiness evaluations, such as ISO-27001. My contributions to talent development through on-campus and experienced hire recruiting highlighted my commitment to shaping the future of cybersecurity leadership. I also co-architected and developed EY’s Cyber Program Assessment (CPA) framework, a foundational tool for client risk assessments (>100/year), based on industry-standard security frameworks, directed a global Tiger Team in infrastructure and application recovery from a large, worldwide cybersecurity attack, and assessed and enhanced the third-party security program for one of the largest global food and beverage companies.
Colleagues at FIS
Other employees you can reach at valuelink.co.uk. View company contacts for 3378 employees →
Sajid Ahmad
Colleague at FisDelhi, India
View →
SG
Stephanie Gardenhire
Colleague at FisMillville, New Jersey, United States
View →
VM
Venugopalreddy Mote
Colleague at FisChattanooga, Tennessee, United States
View →
SH
Sujith Haridas
Colleague at FisTamil Nadu, India
View →
SM
Sireesha Maddina
Colleague at FisNellore, Andhra Pradesh, India
View →
SK
Saurabh Katiyar
Colleague at FisKanpur, Uttar Pradesh, India
View →
RD
Rishabh Datta
Colleague at FisDelhi, India
View →
LD
Laura Davidson
Colleague at FisGreater Milwaukee, United States
View →
MC
Meeta Chhiba
Colleague at FisGreater Toronto Area, Canada
View →
AB
Andy Beck
Colleague at FisNuremberg, Bavaria, Germany
View →
Karen C. education
Master Of Science - Ms, Management Information Systems, General
Harvard Leadership Program, Purpose-Driven Leadership
Bachelor Of Science, Management In Information Systems
Frequently asked questions about Karen C.
Quick answers generated from the profile data available on this page.
What company does Karen C. work for?
Karen C. works for FIS.
What is Karen C.'s role at FIS?
Karen C. is listed as Head of Cyber Governance and Risk Management at FIS.
Where is Karen C. based?
Karen C. is based in New York, United States while working with FIS.
What companies has Karen C. worked for?
Karen C. has worked for Fis, Ballistic Ventures, Alpha Level, and Ey.
Who are Karen C.'s colleagues at FIS?
Karen C.'s colleagues at FIS include Sajid Ahmad, Stephanie Gardenhire, Venugopalreddy Mote, Sujith Haridas, and Sireesha Maddina.
How can I contact Karen C.?
You can use AeroLeads to view verified contact signals for Karen C. at FIS, including work email, phone, and LinkedIn data when available.
What schools did Karen C. attend?
Karen C. holds Master Of Science - Ms, Management Information Systems, General from Indiana University - Kelley School Of Business.
Search by job title, company, industry, location, and seniority. Export verified B2B contact data when you need it.
Start free trialCheck these profiles if this is not the Karen C. you were looking for.
View similar profiles