Lori Crooks, Cissp, Cisa, Cism personal email
- Valid
Lori Crooks, Cissp, Cisa, Cism phone numbers
As CEO of Cadra, Lori Crooks leads a specialized consultancy focused on federal compliance and security frameworks, particularly FedRAMP and NIST standards. Under her leadership, Cadra has successfully guided organizations through complex security certification processes, including DoD contractors implementing NIST 800-171 compliance programs and companies seeking FedRAMP authorization. Her team specializes in developing comprehensive System Security Plans, conducting thorough gap assessments, and establishing robust Governance, Risk and Compliance programs.Drawing from her extensive background as a Managing Consultant at A-lign Security and her leadership roles at LexisNexis and Cox Communications, Lori brings over two decades of expertise in security frameworks including ISO27001, FISMA, PCI, and HIPAA. Her unique perspective as a former internal auditor for Equifax and the State of Georgia enables her to bridge the gap between compliance requirements and practical implementation.Through Cadra, Lori has built a core team of technical writers and security specialists who excel in preparing organizations for various security audits, including SOC Type 1 and Type 2 assessments. Her collaborative approach to compliance and security has helped numerous organizations successfully navigate federal security requirements while building sustainable security programs.
-
PropelexDecatur, Ga, Us -
Founder/CeoCadra Jun 2016 - Present• Led comprehensive FedRAMP documentation initiatives, including the development of System Security Plans and associated compliance frameworks. Conducted in-depth client walkthroughs to identify and remediate potential compliance gaps prior to 3PAO assessments.• Established strategic partnerships with leading AICPA firms to facilitate the successful completion of SOC Type 1 and Type 2 audits, ensuring client compliance with industry standards.• Developed and scaled a high-performing core team specializing in technical documentation, security gap analysis, risk assessments, and audit preparation for SOC and NIST frameworks.• Architected and implemented a comprehensive Governance, Risk, and Compliance Program aligned with NIST 800-53 and 800-171 standards for Department of Defense contractors.• Spearheaded the development and implementation of enterprise-wide Information Security Policies and procedural frameworks to ensure regulatory compliance and risk mitigation.• Directed organization-wide DFARS/NIST 800-171 compliance assessments across multiple sites and operational hubs, ensuring consistent security posture.• Orchestrated collaboration between Project Management Office and Infrastructure & Operations teams to streamline audit evidence collection and develop actionable Plans of Actions and Milestones (POA&Ms).• Led systematic evaluation of control evidence against NIST 800-171 requirements, ensuring comprehensive compliance coverage.• Designed and implemented standardized System Security Plan (SSP) Template for NIST 800-171, establishing scalable documentation framework for future implementations.• Successfully guided DoD contractor through initial SSP development and implementation, establishing foundation for ongoing compliance.• Conducted comprehensive annual risk assessments for DoD contractors, identifying and prioritizing security improvements to maintain compliance status. -
Senior ConsultantPropelex Apr 2023 - PresentEncinitas, California, Us• Conducted Gap and Risk Assessments against security standards such as NIST 800-53, HIPAA, CIS 18 for compliance.• Provided vCISO services to a Transit Company, ensuring robust cybersecurity measures were in place.• Successfully implemented a GRC tool for the Security Team at a client, enhancing efficiency and security measures.• Developed necessary policies and procedures to strengthen the client's security posture and meet compliance requirements -
Managing ConsultantA-Lign May 2013 - Jun 2016Tampa, Florida, Us* Managed teams to conduct security and assurance assessments, including but not limited to PCI, FISMA, FedRAMP, Penetration Tests, HIPAA, ISO 27001, SOC1 and SOC2. * Created and conducted encryption, FISMA and PCI training programs for the entire company * Developed internal policies and procedures to guide personnel in conducting assessments* Project managed the audit and assessment process which included scheduling personnel and travel based on the budgets, sending information request lists, overseeing testing and providing reports to the client in a timely manner. Total client revenue for 2015 was over $2 million* Center of Excellence lead for PCI, FISMA and FedRAMP* Developed internal templates for the FISMA Security Assessment Plan, testing lead sheets and Security Assessment Report* Performed Quality Assessment reviews on all reports prior to delivery to clients* Mentored a team of individuals throughout the year * Provided individual training to team members throughout the year to improve their audit and assessment technical skills* Conducted interviews of potential candidates to assist in the growth of the company -
Independent ConsultantConsultant 2012 - May 2013♦ Perform SOX testing as an internal auditor♦ Complete SSAE16 Type 1 and 2 audits♦ Work with company to perform GAP analysis♦ Document the company's control framework♦ Write policies and procedures to align with control framework♦ Respond to customer questionnaires for company
-
Senior Information Security AnalystCox Communications 2011 - 2011Atlanta, Ga, Us♦ Performed gap analysis between current policies and ISO27001♦ Assisted with the exception process by approving or denying requests♦ Worked with the team on PCI presentation for upper management♦ Re-wrote information security policies and procedures to include all the relevant requirements -
Security Compliance ManagerLexisnexis 2008 - 2011New York City, Ny, Us -
Security Compliance ManagerLexisnexis Sep 2005 - 2011New York City, Ny, Us -
It AuditorEquifax Mar 2004 - Sep 2005Atlanta, Ga, Us -
Information Systems AuditorState Of Georgia Nov 2002 - Mar 2004Us -
Financial AuditorState Of Georgia Jun 2001 - Nov 2002Us
Lori Crooks, Cissp, Cisa, Cism Skills
Lori Crooks, Cissp, Cisa, Cism Education Details
-
Georgia State University - J. Mack Robinson College Of BusinessInformation Systems Security And Assurance -
Presbyterian CollegeAccounting Concentration
Frequently Asked Questions about Lori Crooks, Cissp, Cisa, Cism
What company does Lori Crooks, Cissp, Cisa, Cism work for?
Lori Crooks, Cissp, Cisa, Cism works for Propelex
What is Lori Crooks, Cissp, Cisa, Cism's role at the current company?
Lori Crooks, Cissp, Cisa, Cism's current role is CEO of Cadra.
What is Lori Crooks, Cissp, Cisa, Cism's email address?
Lori Crooks, Cissp, Cisa, Cism's email address is lb****@****ail.com
What is Lori Crooks, Cissp, Cisa, Cism's direct phone number?
Lori Crooks, Cissp, Cisa, Cism's direct phone number is +167859*****
What schools did Lori Crooks, Cissp, Cisa, Cism attend?
Lori Crooks, Cissp, Cisa, Cism attended Georgia State University - J. Mack Robinson College Of Business, Presbyterian College.
What skills is Lori Crooks, Cissp, Cisa, Cism known for?
Lori Crooks, Cissp, Cisa, Cism has skills like Information Security Management, Pci Dss, Information Security, Iso 27001, Security, Sarbanes Oxley, Auditing, Disaster Recovery, Information Technology, It Strategy, Sarbanes Oxley Act, Governance.
Who are Lori Crooks, Cissp, Cisa, Cism's colleagues?
Lori Crooks, Cissp, Cisa, Cism's colleagues are Idrees Darbar, Niel Goetz, Zahra Ammar, Mellissa Hayes, Momna Zia.
Free Chrome Extension
Find emails, phones & company data instantly
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial