Kathleen M.

Kathleen M. Email and Phone Number

President @ My Virtual CISO
Florida, United States
Kathleen M.'s Location
Greater Tampa Bay Area, United States, United States
About Kathleen M.

Executive leader and influential information security practitioner with over 15 years of success in information security, audit, risk, governance, and accounting roles. Expert in mitigating risk and meeting the highest standards in security across industries, including Healthcare, Education, Government, and Banking. Experienced CISO and Executive Security Advisor for publicly traded, private equity, start-ups, not-for-profit, and governmental entities.Firm believer that Information Security, as a division of the company, can be a powerful partner to Operations and Sales. As a collaborative C-Suite Executive, I have worked closely with executive peers and Boards of Directors to ensure information security strategies support rapid enterprise growth while keeping business and customer data safe. Respected international speaker and panelist for webinars, seminars, and conferences, delivering presentations on diverse topics related to presenting to the board, cyber-security, data protection, risk, and IT governance, social engineering, ethics, incident response, and more. Specialties: Board Presentations, Strategic Planning, Information Security Awareness, Cybersecurity, Risk Assessment & Mitigation, Risk-Based Security & Data Protection Programs, Information Security Governance, Social Engineering, High-Performance Team, Enterprise Training, Coaching & Development. 📧 To learn more about my career history, please connect with me via LinkedIn.

Kathleen M.'s Current Company Details
My Virtual CISO

My Virtual Ciso

View
President
Florida, United States
Kathleen M. Work Experience Details
  • My Virtual Ciso
    President
    My Virtual Ciso
    Florida, United States
  • Forma Health
    Advisor
    Forma Health Mar 2024 - Present
    Forma Health | Connecting to patients in a whole new way | Building a whole new way for physicians and researchers to connect with patients and capture events in their everyday lives.
  • Mycaregorithm
    Chief Information Security Officer | Chief Information Officer
    Mycaregorithm Oct 2023 - Present
    Watchung, New Jersey, Us
    MyCareGorithm was created with the singular purpose of developing the tools to transform the consultation encounter between a cancer patient and a cancer specialist. Our intent is to replace the status quo with a multimedia, educational, impactful, personalized, and visually impressive experience. Our goal is for the patient and their caregivers to emerge with the knowledge and confidence that they understand their cancer journey and are on the path to their best possible outcome…….and, for the cancer specialist and their institutions to provide a differentiating experience for their patients.
  • My Virtual Ciso
    President
    My Virtual Ciso May 2023 - Present
  • Cancer Treatment Centers Of America
    Chief Information Security Officer
    Cancer Treatment Centers Of America Nov 2021 - Mar 2023
    Boca Raton, Fl, Us
    Strategic CISO hired for the acquisition of CTCA by COH. Implemented a ransomware prevention, detection, and remediation program. Measured and reduced mean time to detect and mean time to respond to security events. Led CTCA through its first external risk assessment, internal, and external penetration tests. Developed a two year strategic plan to remediate findings and closed 21 % in four months. Replaced and updated legacy security solutions. Introduced automation strategically to drive operational efficiency. Built a highly skilled and experienced information security team that reduced repeat work orders by addressing root causes, increased the number of work order requests, and reduced time to closure. Involved in the architecture design of the integration of the two systems.
  • Healthmap Solutions
    Chief Information Security Officer / Ciso
    Healthmap Solutions Feb 2019 - Sep 2021
    Tampa, Fl, Us
    Executive leader for the creation and implementation of systems and data security strategies to ensure compliance and data integrity during a period of rapid growth. Manage internal and third-party contractor teams and administer a multi-million department budget. Partner with C-suite peers to ensure the security infrastructure is in alignment with operations.◉ Contributed strategic insight and enterprise project leadership foundational to transition from a small organization to a medium organization with 750% growth in the past two years. ◉ Directed internal assessments and implemented key processes and procedures to obtain and maintain HITRUST certification for Privacy and Security. ◉ Developed and launched a social engineering and phishing prevention program and a security incident response program that includes 24 x 7 x 365 monitoring and alerts, ◉ Revamped the configuration and vulnerability management program based on the Center for Internet Security (CIS) standards.
  • Abacode Cybersecurity & Compliance
    Vciso | Fractional Ciso
    Abacode Cybersecurity & Compliance Sep 2018 - Aug 2019
    Tampa, Florida, Us
    Provided consulting and advisory services to companies needing virtual or fractal CISO and CSO services. Specialized in security program development, FedRamp, PCI, SOC 2, and HITRUST gap assessments in cloud environments including AWS. Guide firms in information security strategy and execution while firms search for a new or replacement CISO, CISO's who are new to their positions and need time to focus on building relationships and developing their program, or CISO's taking a vacation or other leave.Select Engagements: ◉ Directed a project for a Healthcare company to implement and provide evidence that the required security controls were in place for the HITRUST interim assessment. ◉ Consulted for an eDiscovery company to assess readiness for Federal Information Security Management Act (FISMA) compliance and identify requirements to be sponsored for the Federal Risk and Authorization Management Program (FedRAMP). ◉ Partnered with a healthcare company to make critical changes to qualify for HITRUST certification. Identified gaps and led rapid remediation in policies and procedures resulting in passing certification.
  • Eminere Group
    Vciso | Consultant
    Eminere Group Sep 2017 - Aug 2019
    Tampa, Florida, Us
    Consulting and advisory services to companies needing virtual or fractal CISO and CSO services, primarily Healthcare, Third-Party Administrator (TPA), Higher Education, and Financial Services clients. Designed audits and risk assessments, interviewed clients, conducted assessments, and presented gap-analysis reports to enhance corporate security and secure key security certifications. ◉ Consulted with new Chief Information Security Officers in designing their information security programs and partnered with Chief Audit Executives (CAEs) in preparing successful board reports and presentations.◉ Conducted an Information Security Risk assessment and a CISO consulting engagement for a publicly-traded financial services and insurance company. ◉ Keynote Speaker representing the Eminere Group on Governance, Risk, Security, and Compliance topics at Healthcare, Higher Education, Compliance, Audit, and Information Security conferences.
  • Wageworks
    Vp And Chief Information Security Officer
    Wageworks Oct 2016 - Sep 2017
    San Mateo, Ca, Us
    Spearheaded the redesign of the information security program with a security focus based on the CIS Top 20, NIST 800-53, and PCI DSS. Delivered presentations to the Board of Directors. ◉ Led a 10-person security department serving 54,000 clients and over 30 applications. ◉ Developed a prioritized Plan of Action and Milestones (POA&M) to document progress on all security and privacy commitments made to company’s largest client, the Federal Office of Personnel Management.
  • Adventist Health
    Director Of Information Security | Corporate Information Security Officer
    Adventist Health Feb 2014 - Oct 2016
    Roseville, Ca, Us
    Recruited to optimize the information security program across the enterprise. Mentored and trained a team that exceeded performance standards across Information Security Architecture and Operations, Security Awareness and Training, Computer Incident Response, Information Security Risk, Meaningful Use, and PCI Gap Assessment, Vendor Management, Application Assessments, and coordination of IT portion of Financial Audits.◉ Deployed a new vulnerability management system that replaced a network of broken reports, and defended against viruses that attacked many healthcare systems. ◉ Created and launched a security awareness program about social engineering and phishing. ◉ Implemented access controls and email protocols that successfully thwarted a significant ransomware attack.
  • Healthplan Services
    Ciso
    Healthplan Services Oct 2011 - Jan 2014
    Tampa, Florida, Us
    Created and implemented the company’s first-ever Information Security Program to secure all systems and data. Directed a team of 20 Analysts, Auditors, Engineers, and Developers and held executive accountability for Information Security, IT Audit, Business Continuity/Disaster Recovery, and Access Management for a portfolio of clients, including Humana, Cigna, and Florida Blue.◉ Partnered with Legal Compliance to develop and update policy, procedures, rules, reporting requirements, and processes to heighten security across the enterprise◉ Ensured compliance with key security frameworks and regulations, including ISO:27001, NIST, FIPS, PCI DSS, HIPAA, SSAE16 SOC2, HITECH, HITRUST, and OWASP. ◉ Managed the IT disaster recovery function involving annual full recovery tests. Conducted the first tabletop disaster recovery exercise, which reduced the costs and increased the success of testing.
  • Isaca
    Chair Of The 2011-12 Cgeit Certification Committee
    Isaca Jul 2010 - Jun 2012
    Schaumburg, Illinois, Us
    Identify and support activities required to build and maintain the CGEIT Certification program.Responsbilities include:• Oversee the CGEIT exam and item development process,• Approve continuing professional education requirements.• Ensure the ongoing quality and adequacy of the CGEIT exam and question item pool.• Establish CGEIT exam testing approach and item pool targets.• Recommend activities required to increase awareness of the CGEIT certification and its acceptance within the professional and business community to the appropriate staff liaison so it can be properly communicated.• Recommend to the Guidance and Practices Committee topics to be included for future research and continuing education.• Establish goals and performance measures that support criteria established by the Credentialing Board.• Participate with the Guidance and Practices Committee in the periodic analyses to determine the current job practice including tasks and knowledge statements for the CGEIT credential.• Facilitate the oversight responsibilities of the respective oversight board.
  • Tampa International Airport
    Ciso, Information Security Manager
    Tampa International Airport Mar 2005 - Oct 2011
     Performs complex computer security duties in the strategic planning, development and maintenance of computer systems security policies and standards using the CoBit framework and ISO standards.  Reviews annual Strategic Automation Plan to ensure security requirements are included.  Reviews department Request for Proposals to ensure that security features are included.  Plans, schedules and performs information security risk assessments and internal audits of automation systems.  Monitor compliance with security polices and standards.  Develop and deliver the computer systems security awareness program.  Project management for the planning, purchasing, implementing, and use of the security infrastructure.
  • Vigilar
    Instructor/Consultant
    Vigilar Dec 2008 - Dec 2008
    Sterling, Va, Us
    Instructor for CISA bootcamp review.
  • Technical Answer Group, Inc.
    Consultant
    Technical Answer Group, Inc. 2004 - 2004
    Information security consultant. Reviewed, recommended and assisted in implementing modifications to network to strengthen security. Developed business continuity plan. Represented firm at training seminars hosted by the Corporation.
  • City Of St Petersburg
    Senior Information Technology Auditor
    City Of St Petersburg 1999 - 2004
    Saint Petersburg, Fl, Us
    Part of an Oracle Implementation Team. Performed financial and operational audits. Developed audit programs and evaluated internal controls. Performed analytical and substantive testing on a mixed Novell and Microsoft NT/2000 Network. Reviewed IT functionality, controls and security. Documented audit results and conveyed to management. Assisted external auditors with year-end audit tasks. Performed network security audit to CoBit standards. Identified weakness in e-mail security and anti-virus software usage, assisted in implementation of e-mail solution and recommended risk based anti-virus solution. Drafted various City policies and RFP for firewall audit. Participated on the security awareness team. Assisted in the production of an Internet use training video.
  • Pinellas County Schools
    Dir Internal Audit & Property Records (Chief Audit Executive)
    Pinellas County Schools 1991 - 1999
    Us
    At the 23rd largest school district in the US and 7th largest in Florida developed new Board Policy to bring the District in compliance with Florida Statute and State Board of Education Rule. Developed the District's first audit program including using AICPA materiality threshold. Computerized the Auditing Department. Established training program for auditors. Revamped the audit reports to make them a management tool. Established a uniform chart of accounts for one hundred thirty seven schools. Obtained funding to convert schools to a NT based system and fixed asset database to a Y2K system.

Kathleen M. Skills

Information Security Management Information Security Security Cisa Business Continuity Computer Security Disaster Recovery Information Technology Cism Network Security Management Governance Pci Dss Cissp It Audit Program Management Risk Management Cobit Firewalls Security Management Data Security Risk Assessment Internal Audit Security Audits Security Awareness It Management Vulnerability Assessment Security Policy Enterprise Risk Management Sarbanes Oxley Act Penetration Testing Business Continuity Planning Application Security Auditing Hipaa Iso 27001 Vulnerability Management Encryption Accounting Information Security Governance Data Privacy Payment Industry Security Architecture Design Computer Forensics Policy Information Assurance It Risk Management Security+ Sarbanes Oxley Sas70

Kathleen M. Education Details

  • Altierus Career College
    Altierus Career College
    Business
  • Saint Joseph'S College
    Saint Joseph'S College
    Accounting

Frequently Asked Questions about Kathleen M.

What company does Kathleen M. work for?

Kathleen M. works for My Virtual Ciso

What is Kathleen M.'s role at the current company?

Kathleen M.'s current role is President.

What is Kathleen M.'s email address?

Kathleen M.'s email address is ka****@****hoo.com

What is Kathleen M.'s direct phone number?

Kathleen M.'s direct phone number is +162645*****

What schools did Kathleen M. attend?

Kathleen M. attended Altierus Career College, Saint Joseph's College.

What are some of Kathleen M.'s interests?

Kathleen M. has interest in Science And Technology.

What skills is Kathleen M. known for?

Kathleen M. has skills like Information Security Management, Information Security, Security, Cisa, Business Continuity, Computer Security, Disaster Recovery, Information Technology, Cism, Network Security, Management, Governance.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.