Jeff Lowder

Jeff Lowder Email and Phone Number

Cyber Risk Quantification (CRQ) | InfoSec GRC | CISO | CPO | Air Force Veteran. I AM NOT A SALES LEAD TO BE HARVESTED. I blacklist unsolicited contacts from sales, account execs, business development, etc. @ Smartsheet
Jeff Lowder's Location
Greater Seattle Area, United States, United States
Jeff Lowder's Contact Details

Jeff Lowder personal email

Jeff Lowder phone numbers

About Jeff Lowder

Continuous learner with a passion for innovation in security risk management to drive bottom-line business contributions (optimize security investments, avoid losses from security incidents, improve customer retention, enhance business decision-making, reduce corporate liability). Inspiring leader and articulate communicator. Exceptional levels of integrity, work ethic, and drive to achieve.Specialties: * Information Risk Management* GRC Architecture * IT Compliance Management (ISO 27001, NIST SP 800-53, GDPR, SOX, PCI, FCC CPNI, EU DPD, HIPAA/HITECH, HITRUST, FISMA, FedRAMP, IAB/MRC, UCF)* IT Assurance* IT Governance & Best Practices* Information Privacy & Online Safety* IT Audit* Security Tools, Processes, and Policies* Security Incident Response Programs* Global Portfolio, Program, and Project Management* Business Continuity & Disaster Recovery Plans* Data Analysis* Business Intelligence

Jeff Lowder's Current Company Details
Smartsheet

Smartsheet

View
Cyber Risk Quantification (CRQ) | InfoSec GRC | CISO | CPO | Air Force Veteran. I AM NOT A SALES LEAD TO BE HARVESTED. I blacklist unsolicited contacts from sales, account execs, business development, etc.
Jeff Lowder Work Experience Details
  • Smartsheet
    Director, Information Security Governance, Risk, And Compliance
    Smartsheet Jul 2024 - Present
    Bellevue, Wa, Us
  • Tanium
    Manager, Governance, Risk, And Compliance
    Tanium Aug 2023 - Jul 2024
    Kirkland, Wa, Us
  • Career Break
    Professional Development
    Career Break Feb 2023 - Aug 2023
    Resume focus on finishing the "Guide to the Information Risk Management Body of Knowledge" (IRMBOK Guide) for the Society of Information Risk Analysts (www.societyinforisk.org).
  • Crowdstrike
    Director, Engineering - Federal Security
    Crowdstrike Apr 2020 - Feb 2023
    Remote, Us
  • Rei
    Director, Information Security Governance, Risk, And Compliance (Grc)
    Rei Mar 2019 - 2020
    Seattle, Us
    Owned security and privacy for all stores, online properties, and guided adventures. Directed team of 8 information security and privacy specialists with authority for cybersecurity, privacy, and compliance. Managed a capital/expense budget of $3M+. Coordinate IS-GRC across corporate IT, retail, loss prevention, legal, ERM, and Internal Audit.
  • Microsoft
    Principal Program Manager (Director), Compliance Automation
    Microsoft May 2018 - Mar 2019
    Redmond, Washington, Us
    Tasked with leading the Governance, Risk Management, Compliance, and Continuity (GRCC) group’s effort to automate manual tasks involving business continuity management, security governance, risk management, and compliance across all of Microsoft.
  • Openmarket
    Director, Global Information Security And Privacy
    Openmarket Jun 2011 - May 2018
    Owned security and privacy for online services. Tasked with establishing an Information Security Management System (ISMS) for OpenMarket’s Software-as-a-Service (SaaS) platform, consisting of 88 services, which must comply with 9,817 citations in 254 authority documents, linked to 484 controls, and implemented by 6,913 control activities, based upon industry standards like ISO 27001, NIST SP 800-53, PCI DSS, and the EU General Data Protection Regulation (GDPR). Develop security policies and procedures; oversee compliance monitoring and improvement initiatives. Perform security risk assessments as internal auditor. Championed information security awareness enterprise wide.
  • Society Of Information Risk Analysts
    Research Director
    Society Of Information Risk Analysts Mar 2014 - Mar 2017
    Editor and lead author of SIRA's Information Risk Management Body of Knowledge (IRMBOK). Have already written 40,000 words. Once complete, the book will likely be 60,000-80,000 words long.
  • Society Of Information Risk Analysts
    President
    Society Of Information Risk Analysts Dec 2011 - Mar 2014
    The Society of Information Risk Analysts (SIRA) is dedicated to continually improving the practice of information risk analysis. We endeavor to do this by supporting the collaborative efforts of our members through research, knowledge sharing and member-driven education. Our membership is rapidly growing, from 150 in October 2011 to 470 in October 2012.
  • Jeff Lowder
    Independent Consultant
    Jeff Lowder Aug 2010 - Jun 2011
    Deliver CISO-for-hire, information security, compliance, privacy, risk management, and online safety services.Client Industries: Healthcare, software, retail, online (MMOG), and non-profit.
  • Disney Interactive Media Group
    Director, Information Security
    Disney Interactive Media Group Jun 2008 - Feb 2010
    Anaheim, Us
    Worked with TWDC CISO to redesign security policies and standards. Founder and Co-Chair of TWDC's IT Compliance Board; responsible for the overall strategy for enterprise-wide IT compliance program management and audit support. Regulatory scope includes SOX 404, PCI DSS, EU Data Protection Directive, U.S.-EU Safe Harbor Framework, FACTA, Japanese Personal Information Law, Interactive Advertising Bureau (IAB)/ Media Ratings Council (MRC).
  • The Walt Disney Company
    Director, Information Security
    The Walt Disney Company Jun 2008 - Feb 2010
    Burbank, Ca, Us
  • The Walt Disney Company
    Director, Information Security And Risk Management
    The Walt Disney Company Jul 2004 - Jun 2008
    Burbank, Ca, Us
    Brought on board to design and lead the technology security risk management program for The Walt Disney Company’s (TWDC's) Internet properties including category leaders Disney.com, ESPN.com, ABCNews.com, and ABC.com, which together represent the 12th largest Web property overall. Chair of TWDC’s Media Technology Board Security working group; responsible for overall strategy for the security of TWDC’s digital media assets. Defined risk management roadmap and strategy and evangelized to first-ever Executive Security Steering Council. Led effort to manage compliance with the Payment Card Industry (PCI) Data Security Standard. Coordinate security incident response team and document incident response procedures. Helped lead a task force to manage technical recruiting process. Span of control includes 12 security and privacy risk management professionals.
  • United Online, Inc.
    Sr. Security Architect
    United Online, Inc. Jun 2002 - Jun 2004
    Woodland Hills, Ca, Us
    Led global information security department for nation’s 3rd largest dial-up Internet Service Provider, with more than 5.3M subscribers and annual revenues exceeding $339M. Managed security of over 1200 production machines. Established and coordinated the security Incident Response Team. Conducted periodic security audits of information systems, including firewalls, routers, switches, load balancers, Free BSD, Red Hat Linux, Solaris, Oracle, and Apache. Coordinated strategy to protect dial-up users from the latest Windows security vulnerabilities, including worms, viruses, and Trojans. Implemented formal security patch management process, ensured the latest security vulnerabilities were evaluated and addressed in a timely and cost-effective manner. Developed and implemented security architecture for e-commerce consumer billing system with millions of credit card numbers; no known security breaches during my tenure. Span of control included 4 full-time security professionals.
  • Elemica
    Director, Security And Privacy
    Elemica Mar 2001 - Jun 2002
    Atlanta, Ga, Us
    Reporting directly to the SVP/CTO, responsible for the protection of a global B2B exchange/hub serving the chemical industry. Built the Information Security Program from scratch. Executed an Incident Response Program. Implemented audit strategy to meet assurance requirements of clients (chemical companies). Developed Incident Response Procedure, trained employees, handled "real" incidents, worked with law enforcement. Span of control included a staff of up to 6 full-time security professionals (both employees and consultants).
  • Pricewaterhousecoopers
    Sr. Associate
    Pricewaterhousecoopers Aug 1999 - Mar 2001
    Gb
    Provided IT security consulting and auditing services to Fortune 500 clients in the Energy and Financial Services industries. Assisted clients with the implementation of security tools, including firewalls and intrusion detection systems (both host- and network-based). Conducted vulnerability assessments and information security risk analyses. Conducted numerous audits and security reviews of firewalls and Unix machines. Developed and taught course materials for security courses.
  • United States Air Force
    Director, Network Security, Us Air Force Academy (Usafa)
    United States Air Force 1995 - 1999
    Randolph Afb, Tx, Us
    Initially started at USAFA as a systems administrator, but transitioned into the Director, Network Security role, where I was responsible for protection of $32M academic network, consisting of 14,500 devices in over 111 physical locations, supporting 8,400 users. Worked with Special Assistant US Attorney to prepare for prosecution of computer crime; testified as expert witness for US Government in federal criminal trial. Span of control included 5 network security specialists as director of Network Security office and 65 personnel as Deputy Chief, Network Control Center.

Jeff Lowder Skills

Information Security Security Cissp Computer Security Pci Dss Risk Management Network Security Business Continuity It Audit Iso 27001 Security Audits Security Policy Information Security Management Data Security Disaster Recovery Enterprise Software Enterprise Architecture Governance Vulnerability Management Privacy Law Information Technology Risk Analysis Firewalls Risk Assessment Information Risk Management Information Assurance Identity Management Mobile Technology Sdlc Internet Security Intrusion Detection Mobile Payments Sms Compliance Management Privacy Online Gaming Grc Personal Data Protection Payment Industry Cisa Computer Forensics Penetration Testing Integration Data Visualization Data Analysis Project Portfolio Management Program Management Business Intelligence Microsoft Power Bi Sql Python Microsoft Sql Server Management Studio Bayesian Networks Bayesian Statistics Bayesian Inference Dax

Jeff Lowder Education Details

  • Seattle Pacific University
    Seattle Pacific University
    Computer Science

Frequently Asked Questions about Jeff Lowder

What company does Jeff Lowder work for?

Jeff Lowder works for Smartsheet

What is Jeff Lowder's role at the current company?

Jeff Lowder's current role is Cyber Risk Quantification (CRQ) | InfoSec GRC | CISO | CPO | Air Force Veteran. I AM NOT A SALES LEAD TO BE HARVESTED. I blacklist unsolicited contacts from sales, account execs, business development, etc..

What is Jeff Lowder's email address?

Jeff Lowder's email address is je****@****ket.com

What is Jeff Lowder's direct phone number?

Jeff Lowder's direct phone number is +1 877-277*****

What schools did Jeff Lowder attend?

Jeff Lowder attended Seattle Pacific University.

What skills is Jeff Lowder known for?

Jeff Lowder has skills like Information Security, Security, Cissp, Computer Security, Pci Dss, Risk Management, Network Security, Business Continuity, It Audit, Iso 27001, Security Audits, Security Policy.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.