Founder & Principal, Governance, Risk And Compliance
CurrentExperienced, highly trained professional providing guidance, advice, and hands-on support on all aspects of cybersecurity, from developing a comprehensive strategy to implementing innovative technologies.Strategic advisor on cybersecurity initiatives and policy development, lead incident response efforts in the event of a breach.Extremely well-versed in business risk management and have a keen understanding of the ever-changing threat landscape.Key areas of expertise and major focus areas:• Cybersecurity Strategy Development: Lead the development of the organization’s cybersecurity strategy, which includes identifying, analyzing, and mitigating potential information security risks.• Policy and Procedure Management: Develop, implement, and update information security policies and procedures, ensuring that guidelines align with industry regulations and the organization’s overall risk tolerance.• Risk Management: Responsible for conducting regular security risk assessments, compliance audits, and managing the implementation of risk mitigation strategies.• Training and Awareness: Ensure all staff are educated about cybersecurity threats, develop and oversee the delivery of a comprehensive information security awareness and training program.• Incident Response: If/when security incidents occur, coordinate the response ensuring quick and effective remediation, and minimizing damage.• Vendor and Partner Management: Evaluate third party service providers for their security practices and ensure the data shared with these external entities is protected.• Regulatory Compliance: Ensure the organization stays in compliance with the ever-changing local, state, national, and international cyber security regulations.• Budget Management: Oversee cybersecurity budgets. • Metrics and Reporting: To help the organization understand its security posture, measure, analyze and report on key security and compliance metrics.