John Soares

John Soares Email and Phone Number

Sr. Director Information Security | BISO | Author | CISM | CISA | CISSP | Implements Global IT, Risk, and Security Programs by Establishing Vision and Leading from the Front @ Capital One
mclean, virginia, united states
John Soares's Location
Washington DC-Baltimore Area, United States
About John Soares

With over 20+ years of experience in information technology, security, and risk, I help bridge business strategy with technological solutions for both internal business units as well external clients. My expertise in building specialized teams, program management, and senior-level collaboration, enable me to easily communicate requirements and strategic vision, advise on innovative solutions, and solve complex business challenges using a center-of-excellence approach and fostering a culture of accountability, trust, and continuous improvement among my staff and stakeholders.As the Senior Director of Information Security at FIS, I collaborated with C-Suite executives and global business units to set technical direction, strategy, and security solutions for over 200 lines of business across the financial services company. I led a cross-functional international 75-member team of security engineers, project managers, and security liaisons to implement controls, mitigate risk issues, and remediate vulnerabilities across on-prem and multi-cloud architecture, achieving significant improvements in time to resolution and compliance. ACCOMPLISHMENTS:▪ Program Management: Established Centers of Excellence strategies in all corporate segments for vulnerability remediation, hardening configurations, and issue management; increased remediation of past dues by 30%+ and server configuration by 50%.▪ Vulnerability Mitigation/Cross-functional Collaboration: Led Security Liaisons team by collaborating with cross-functional teams; mitigated late critical and high-security vulnerabilities across 215 lines of business; shortened time to remediation by 90%+ for critical vulnerabilities, exceeding the initial goal of 80%.▪ Regulatory Compliance/Portfolio Expansion: Added Merchant business lines to PCI management scope, increasing portfolio by 32%; achieved PCI certification for 66 independent lines of business.Contact me at jsoares4b@gmail.com for opportunities.

John Soares's Current Company Details
Capital One

Capital One

View
Sr. Director Information Security | BISO | Author | CISM | CISA | CISSP | Implements Global IT, Risk, and Security Programs by Establishing Vision and Leading from the Front
mclean, virginia, united states
Website:
capitalone.com
Employees:
55043
John Soares Work Experience Details
  • Capital One
    Senior Manager Cyber Technical Iso
    Capital One Jun 2024 - Present
    Virginia, United States
  • Interchecks
    Security Architect Consultant
    Interchecks Jul 2023 - Jun 2024
    Virginia, United States
    • Enhancing Security Preparedness: Collaborated seamlessly across cross-functional teams to enhance the organization's security preparedness, elevating it from NIST Tier 2 to Tier 4. Led efforts to implement advanced security measures and practices, ensuring a robust defense against evolving cyber threats.• Establishing Robust Risk Control Practices: Successfully established and standardized repeatable risk control practices while proactively addressing identified security gaps. Advised senior management on risk assessments, threat analysis, and effective mitigation procedures, contributing to a more resilient security posture.• Advanced Threat Monitoring and Mitigation: Employed cutting-edge tools and services, including Tennable for comprehensive external/internal scans, SNYK for thorough static code review, AWS Security Hub for real-time Configuration Drift detection, and DataDog for continuous security posture monitoring. This proactive approach allowed for the early identification and swift mitigation of threats and vulnerabilities, minimizing potential risks to the organization.
  • Fis
    Senior Director Of Information Security, Corporate
    Fis Apr 2022 - Jun 2023
    Jacksonville, Florida, United States
    Collaborated with CIO, CISO, and CRO for strategy, progress, and board report communications. Set technical vision, direction, and security solutions for teams comprising 10 Liaisons and 75 Security Admins based internationally. Focused teams on continuous process improvement while building on the Center of Excellence strategy to tackle regulatory compliance with the risk management division.• Led security engineering teams to implement controls and mitigate late vulnerabilities across 215 lines of business for on-prem and multi-cloud architecture; shortened time to remediation by 90%+, exceeding the initial goal of 80%.• Directed an enterprise-wide program to identify and document plans to replace end-of-life frameworks; replaced 240K instances, remediating >3 million vulnerabilities.• Added Merchant business lines to PCI management scope, increasing portfolio by 32%; achieved PCI certification for 66 independent lines of business; supported audits including FBA, SOX, and PCI.• Established Centers of Excellence strategy across the enterprise for proactive management of vulnerabilities, endpoints, and configuration; improved remediation of late issues by 30%+ and server configuration standards by 50%.• Participated on the executive committee to evaluate synergies with audit teams and risk-based vulnerability scoring; resulting in corporate savings of $3.7 million.
  • Fis
    Director Of Information Security, Retail Payments Division
    Fis Jan 2018 - Apr 2022
    Jacksonville, Florida, United States
    The key leader who built highly specialized teams through talent acquisition and resourcing to address compliance issues across the business division. Supported key clients and internal teams with technical guidance, and the execution of strategic plans to accomplish risk management goals. Accountable for the security and compliance requirements for multiple lines of business and grew the concept over three distinct divisions covering multiple financial payment platforms for Banking, and Wealth.• Formed staff strategy for managing application/network-based vulnerabilities, endpoint compliance, audit risk issues, and disaster recovery oversight; grew a small team of 6 into 75 comprising managers, admins, and security liaisons to oversee 97 business lines within Banking Solutions and Wealth Divisions. Risk Composite Compliance score from 56% to 87%.• Created a team to orchestrate remediation of OS drift configurations for the Banking Solutions Division; raised compliance for OS configurations by 275%.• Established centralized teams to patch Java and Middleware frameworks using Ansible and BigFix for automation; patching efficiencies grew by 400% across 8,200 systems, freeing up admin resources.
  • Fis
    Information Technology Security Manager, Retail Payments Division
    Fis Apr 2011 - Apr 2018
    Jacksonville, Florida, United States
    Recruited to assemble a team who were passionate about making the company secure and helping regain business PCI compliance. The team covered security and risk management issues by addressing asset inventory, Access Reviews, Endpoint Control Installation (Malware, SIEM, and FIM), static application code scans, dynamic application scans, and network scans.• Trained and built a knowledgeable staff of 5 to implement risk controls and work with business partners to remediate application and system vulnerabilities within 2 months.• Created a sustainability program that raised the line of business risk compliance from 43% to 92% within 6 months.• Led coordination and presentation of evidence to QSA and FBA to regain PCI compliance within 8 months.
  • Fis
    Director Of Infrastructure And Architecture
    Fis Jan 1999 - Apr 2011
    Jacksonville, Florida, United States
    Collaborated with senior leadership, major banking and financial institutions, and cross-functional teams as a subject matter expert, product manager, and technical advisor during the development of existing products. Key solution provider for emerging technologies setting the vision for application code, systems, distributed computing architecture, and device configuration based on client interactions.• Client-facing technology leader who designed and implemented robust, company-wide web services architecture; built SaaS for financial payments space; generated 465 million transactions in 2011, representing 413 clients and $58 billion in prepaid card activity; consulted for both pre-sales contracts and post-sales account support.• Management of technology initiatives and regulatory compliance; rescued federal disaster relationship by implementing custom reporting model; resolved $600k audit finding and rescued client contract.• Reduced Just-In-Time activations and concurrent transaction processing time from seconds to milliseconds, securing gift card contracts for large commercial real estate trust; resulted in 98.3% performance gain and >$300 million in annual transactions.
  • American Express
    Lead Programmer
    American Express 1998 - 1999
    Plantation, Florida, United States
    ▪ Innovation: Led team of seven programmers and consultants charged with developing, writing, implementing, and testing case automation. Facilitated cutting edge proto-typing and design methodology projects to create n-tier Asynchronous Business Applications. ▪ Performance: Promoted three times within one year- from consultant to developer, to a final position as Lead Programmer. ▪ Performance: Recipient of numerous merit awards for superior job performance.
  • Allied Health Group
    Development Team Lead
    Allied Health Group 1997 - 1998
    Miramar, Florida, United States
    Hired to lead database migration project from MUMPS to Oracle 8.0 environment. Managed 14 direct reports comprised of 6 full-time programmers, 3 data operators, and 5 consultants. Scope of responsibility included installation and configuration of Oracle 8 Enterprise for NT. Designed programs to transfer files from NT to AIX environments, and data manipulation programs automated through Active-X Components, Macros, and Modules using VB 5.0 and MS Access 7.0. Managed additional Active-X projects utilizing third party components to automate Telnet login sessions and run various MUMPS and UNIX scripts. Selected Accomplishments:▪ Developed MIS organizational structure resulting in increased productivity and staff development. ▪ Created executable software program written in VB 5.0 adopted as first client distributable product.▪ Engineered first automated system crossing the Windows/AIX platform barrier reducing manual task time by 35 hours per developer.

John Soares Education Details

Frequently Asked Questions about John Soares

What company does John Soares work for?

John Soares works for Capital One

What is John Soares's role at the current company?

John Soares's current role is Sr. Director Information Security | BISO | Author | CISM | CISA | CISSP | Implements Global IT, Risk, and Security Programs by Establishing Vision and Leading from the Front.

What schools did John Soares attend?

John Soares attended Cornell University, University Of Miami - School Of Business, University Of Miami School Of Architecture.

Who are John Soares's colleagues?

John Soares's colleagues are Tim Perkins, Carl Liu, Sherry Kelly, Robert Strath, Guzman Rolando, Douglas Brooks, Syed Mahmood.

Not the John Soares you were looking for?

  • John Soares

    Chief Financial Officer At Thomas Swan Sign Co., Inc.
    San Mateo, Ca
    4
    comcast.net, prestonpipelines.com, thomasswan.com, thomasswan.com

    3 +151023XXXXX

  • John Soares

    Project Manager At Forcum Mackey Construction Inc
    Ivanhoe, Ca
    4
    yahoo.com, forcummackey.com, forcummackey.com, forcummackey.com

    2 +155990XXXXX

  • John Soares

    Coventry, Ri
    4
    inscogroup.com, herffjones.com, advanced.com, yahoo.com
  • John Soares

    Pricing And Product Development Actuary - Health Insurance, Disability Insurance
    Philadelphia, Pa
    2
    ohionational.com, comcast.net

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.