Johnny Hernandez

Johnny Hernandez Email and Phone Number

Sr Information Security Officer @ Truist | CRISC CGEIT CDPSE C | CISO @ Truist
About Johnny Hernandez

With over 25 years of global IT and business experience and 12+ years of advisory experience with Fortune 100 companies, I have a proven track record of leading and delivering successful cybersecurity projects and programs in various domains and industries. I have also founded and run my own cybersecurity consulting firm, Janus Security Consulting LLC, where I address the needs of enterprise clientele, assessing, creating, and refreshing their cybersecurity programs and policies. My mission is to help businesses achieve optimal security and resilience in the face of evolving cyber threats and challenges.

Johnny Hernandez's Current Company Details
Truist

Truist

View
Sr Information Security Officer @ Truist | CRISC CGEIT CDPSE C | CISO
Johnny Hernandez Work Experience Details
  • Truist
    Vp, Sr Information Security Officer Crisc Cgeit C|Ciso Cdpse Cpisa/M
    Truist May 2021 - Present
    Charlotte, North Carolina, Us
    Addressed enterprise efforts throughout the merger of Suntrust and BBT and the creation of Truist. Focused on card services and associated applications and governance efforts. Ambassador between our risk partners and lines of business.
  • Janus Security Consulting Llc
    Owner/Founder Cybersecurity, Risk, Governance Sme Crisc Cgeit C|Ciso Cpisa/M
    Janus Security Consulting Llc Nov 2011 - Present
    Addressing projects for enterprise clientele, assessing, creating, and refreshing Information Security, Risk Management, and Governance Programs. Leveraging over 25 years of global IT and business experience and twelve-plus years of advisory experience with Fortune 100 companies. Progressive leadership responsibilities in consulting, professional services, and corporate strategy activities. Proven track record leading global cross-functional teams emphasizing large-scale enterprise initiatives in strategic and tactical areas for projects/programs with budget responsibilities.- Cybersecurity Program Assessment, Revision- Policy Assessment, Revision- Business Resilience Management- Governance and Risk Management Reviews
  • Mcafee
    Regional Solution Architect Crisc Cgeit C|Ciso Cdpse Cpisa/M
    Mcafee Oct 2019 - Apr 2021
    San Jose, California, Us
    A C-Level Ambassador and advocate in a position requiring a thorough understanding of McAfee products and solutions and addressing clients with Risk Management, Governance, and Cybersecurity guidance for business/IT programs, products, and operations and designing, planning, and implementing enterprise cybersecurity programs. Ensure an appropriate balancing of risk and business objectives for enterprise clients. Assess and advise businesses on prioritizing cybersecurity practices that meet legal, statutory, and regulatory requirements—providing technical and business advice for creating and maintaining an environment that safeguards the confidentiality and integrity of data, information, and intellectual property organization while assuring its availability.
  • Optiv Inc
    Senior Security Consultant
    Optiv Inc Sep 2018 - Jul 2019
    Denver, Colorado, Us
    Addressing projects for enterprise clientele, assessing, creating, and refreshing Cybersecurity, Risk Management, and Governance Programs. Leveraging over 25 years of global IT and business experience and twelve-plus years of advisory experience with Fortune 100 companies.
  • American Express Global Business Travel
    Director Of Cybersecurity - Programs And Initiatives Crisc Cgeit C|Ciso Cpisa/M
    American Express Global Business Travel Sep 2016 - Aug 2018
    New York, Ny, Us
    Responsible for multi-faceted senior security functions whose objective is to ensure the integrity and security of GBT’s information and data. Providing expertise and leadership in planning, organizing and conducting specific information security functions in order to ensure the overall security of GBT. Core competencies and focus addressing Managed Security Services and Oversight, Security Project Management Leadership, Cross Tower liaison efforts. Enterprise PCI Program Lead.PCI Responsibilities include, but are not limited to: - Strategic and Operational leadership in support of the global PCI Program- Tracking PCI Program specific metrics and revenue, and identifying where efficiencies can be gained along with cost reduction measures. - Decision maker on interpretation, scope, and compensating controls - PCI subject matter expert (SME) in PCI Program meetings and conferences. Internal and External facing. Mentor to clients and GBT employees as well as to internal business teams- Training and guidance for GBT employees and client personnel on the PCI DSS, any changes to the PCI DSS, and the impact thereof. Creating recommendations and implementing new methods, techniques and/or procedures to evolve and develop the PCI Program- Creating, implementing, and enforcing engagement methodologies for all PCI Program related services- Oversee all PCI Program projects to ensure successful completion and client satisfaction- Providing thought leadership and expertise in the development of new services and improving existing services, PCI related
  • Expert Global Solutions
    Security Design Architect Crisc Cgeit C|Ciso Cpisa/M
    Expert Global Solutions Apr 2015 - Sep 2016
    Addressing and assisting with both internal and customer driven Cybersecurity, Risk Management and Governance initiatives. Designing, planning, and implementing enterprise cybersecurity program efforts. Ensure an appropriate balancing of risk and business objectives for both the enterprise and our clients. Assess and advise businesses on how to prioritize cybersecurity practices that meet legal, statutory and regulatory requirements. Providing technical and business advice for creating and maintaining an environment that safeguards the confidentiality, integrity of data, information and intellectual property of an organization, while assuring its availability.
  • Csc
    Principal Consultant Crisc Cgeit C|Ciso Cpisa/M
    Csc Nov 2012 - Mar 2015
    Global, Us
    Project Lead assisting clients with risk management and cybersecurity guidance for business/IT programs, products and operations. Designing, planning, and implementing enterprise cybersecurity programs. Ensure an appropriate balancing of risk and business objectives for enterprise clients. Assess and advise businesses on how to prioritize cybersecurity practices that meet legal, statutory and regulatory requirements. Providing technical and business advice for creating and maintaining an environment that safeguards the confidentiality, integrity of data, information and intellectual property of an organization, while assuring its availability.
  • Primelending, Plainscapital Company
    Director Of Information Security
    Primelending, Plainscapital Company Jun 2010 - Oct 2011
    Dallas, Texas, Us
    The top security executive in the company. Reporting directly to a senior functional executive (CIO) who in turn reports to the CEO and President of the company. Overseeing and coordinating security efforts across the company, including information technology, human resources, communications, legal, facilities management and other groups. Identify protection goals, objectives and metrics consistent with corporate strategic plan. Direct reports including Security Analysts and Documentation Specialists. Oversee incident response planning and Risk Management.
  • Dell Perot Systems
    Information Security Consultant/Sme Cgeit, Cpism/A
    Dell Perot Systems Aug 2007 - Jun 2010
    Round Rock, Texas, Us
    Information Security Subject Matter Expert assigned to lead and manage major Security projects. The information security consultant provides technical and business advice for creating and maintaining an environment that safeguards the confidentiality, integrity of data, information and intellectual property of an organization, while assuring its availability. Working in collaboration with committees and work groups within an organization, the consultant serves as resource officer for the development and improvement of the company’s information security systems. The consultant ensures adequate control measures are included in all internally developed applications, as well as in those applications developed by third parties for the organization. As a representative of the Information Security Department, the consultant is also expected to gain the support of staff members and ensure conformity of all information security policies, guidelines, standards and procedures (major corporations can have several internal information security consultants each having a specialization, such as electronic trade, or incident management). Skills applied and used to address both internal and external clients.
  • Dell Perot Systems
    Information Security Manager
    Dell Perot Systems May 2006 - Aug 2007
    Round Rock, Texas, Us
    Client Security Manager for the Triad Hospitals, Inc. (NYSE:TRI) account, a $1.2 billion healthcare information technology initiative. Responsible for delivering security expertise and consulting capabilities and oversight from a security stand point for other IT towers within Perot Systems. Focused on the Triad Hospitals account primarily and applying like kind capabilities to several other Perot Systems accounts.
  • Pepsi
    Sr. It Security Unix Engineer
    Pepsi Sep 2005 - May 2006
    Purchase, New York, Us
    Security Consulting work focusing on a global UNIX Security and Standardization. Establishing proof of concept for new Security Authorization and Authentication system. Team Lead on roll out and Proof of Concept. Lead in the deployment phase of the Security UNIX Toolsets.
  • Xtria
    Director Of Technology Infrastructure
    Xtria 2004 - 2005
    Us
    Security expert providing Managed Service clients with security expertise in regulatory compliance, policy and procedure creation, augmentation and review. Expertise focused on Sarbanes-Oxley and HIPAA client requirements. Core business revolving around the deployment of PACS systems within hospital,laboratory and clinical environments.
  • Sabre Holdings
    Security Consultant
    Sabre Holdings 2004 - 2004
    Southlake, Texas, Us
    Applying Security expertise in the network design, system hardening, deployment and documentation of a SNORT IDS solution for Sabre Holding’s Travelocity.
  • Savvis Communications
    Security Account Manager/Systems Integration Specialist
    Savvis Communications 2003 - 2004
    Monroe, La, Us
    Security expert responsible for Professional Security Services provided to SAVVIS hosted clients and consulting engagements. Managing and responsible for full environmental security scans, security assessments and implementations, audits and policy. Major clients to include American Airlines.
  • Global Healthnet
    Director Of Network Operations
    Global Healthnet 2002 - 2003
    Director responsible for Security, Network Design and HIPAA Compliancy Management. Environment including an E-Commerce presence and EDI core line of business.
  • Bank Of America
    Assistant Vice President, Information Security
    Bank Of America Jan 1999 - Dec 2001
    Charlotte, Nc, Us
    Responsible for Internet and Firewall technology initiatives and projects, shared hosting service delivery frameworks, Information security architecture, business process analysis and automation, product review and management.
  • Marine Corps Recruiting
    Corporal - Covering Force 24Th Meu
    Marine Corps Recruiting Mar 1991 - Mar 1995
    Washington, Dc, Us
    Exited active duty as a Corporal and Team Lead with Covering Force, 24th Marine Expeditionary Force. - Naval Security Group, Guantanamo Bay, Cuba -Marine Corps Mountain Warfare Training Center, Mountain Survival - Winter-II MEF/SOTG - Maritime Special Purpose Force (MSPF) -II MEF/SOTG - Training Exercises Urban Environment (TRUE)-II MEF/SOTG - Maritime Interdiction Operations (MIO) -II MEF/SOTG - Gas & Oil Platform (GOPLAT)-II MEF/SOTG - Security Element

Johnny Hernandez Skills

Information Security Security Disaster Recovery Virtualization Business Continuity Pci Dss Information Security Management Governance Risk Assessment Risk Management Itil Information Assurance Information Technology Cissp Security Architecture Design Auditing Iso 27001 Integration Vulnerability Assessment Enterprise Software Application Security Hipaa Security Audits Penetration Testing It Audit Computer Security Network Security Vulnerability Management Identity Management Ids Network Security Implementation Business Analysis Cisa Incident Management Data Security Snort Sarbanes Oxley Act Privacy Law Outsourcing Program Management Security Awareness Enterprise Architecture Information Security Policy Sox Computer Forensics Encryption Web Application Security Cobit Firewalls Ips

Johnny Hernandez Education Details

  • The University Of Texas At Austin
    The University Of Texas At Austin
    Computer Science

Frequently Asked Questions about Johnny Hernandez

What company does Johnny Hernandez work for?

Johnny Hernandez works for Truist

What is Johnny Hernandez's role at the current company?

Johnny Hernandez's current role is Sr Information Security Officer @ Truist | CRISC CGEIT CDPSE C | CISO.

What is Johnny Hernandez's email address?

Johnny Hernandez's email address is jo****@****ail.com

What is Johnny Hernandez's direct phone number?

Johnny Hernandez's direct phone number is +181773*****

What schools did Johnny Hernandez attend?

Johnny Hernandez attended The University Of Texas At Austin.

What are some of Johnny Hernandez's interests?

Johnny Hernandez has interest in Adventure Racing, Marathons, Triathlons.

What skills is Johnny Hernandez known for?

Johnny Hernandez has skills like Information Security, Security, Disaster Recovery, Virtualization, Business Continuity, Pci Dss, Information Security Management, Governance, Risk Assessment, Risk Management, Itil, Information Assurance.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.