Luis Toledo

Luis Toledo Email and Phone Number

Lead Cyber Security Consultant @ Financial Services Company
Charlotte, NC, US
Luis Toledo's Location
Charlotte Metro, United States, United States
Luis Toledo's Contact Details

Luis Toledo work email

Luis Toledo personal email

About Luis Toledo

Experienced information security professional with deep expertise in information security due diligence, both for assessing trusted service providers and M&A activities. I've built third party assessment programs for Fortune 100 companies and over the years have led hundreds of security assessments of both internal and external information risk management programs.Keywords:IT governance, third party vendor risk management, due diligence, mergers and acquisitions, divestitures, information security risk assessment, network security, business continuity planning, disaster recovery planning, business process redesign and analysis, technology change management, data security, program development, cloud security, international

Luis Toledo's Current Company Details
Financial Services Company

Financial Services Company

View
Lead Cyber Security Consultant
Charlotte, NC, US
Employees:
10
Luis Toledo Work Experience Details
  • Financial Services Company
    Lead Cyber Security Consultant
    Financial Services Company
    Charlotte, Nc, Us
  • Klaviyo
    Lead Security Engineer
    Klaviyo Apr 2023 - Present
    Boston, Massachusetts, Us
    Serves a team of analysts and engineers that work with partner teams to identify, contextualize, and measure cybersecurity risks to better inform their decision making and priorities. Responsibilities include: - leading our vulnerability management program through influence backed by high quality data and analysis- identifying high risk attack paths and engaging system owners to take timely action- consulting with developers on proposed design changes that impact our threat models- mentoring our team of world class engineers and analysts
  • Doordash
    Senior Security Engineer, Governance Risk And Compliance
    Doordash Sep 2021 - Mar 2023
    San Francisco, California, Us
    Responsible for earning the trust of enterprise clients by developing the client-facing elements of the company’s information security program and representing Information Security during negotiations with prospective enterprise merchant clients and strategic partner engagements. Responsible for managing SOC2 Type II attestation, and rationalizing the company's modern cloud native engineering and security practices for our enterprise clients in various stages of digital transformation or cloud adoption.
  • Wells Fargo
    Vice President, Cybersecurity Risk Manager For M&A And Third Party Risk
    Wells Fargo Oct 2016 - Sep 2021
    San Francisco, California, Us
    Leads enterprise information security teams involved in complex projects driven by corporate actions including divestitures, mergers, acquisitions, and strategic investments. Advises business leaders and program managers to ensure that operational risks are understood and minimized while meeting the project's objectives. Works with corporate and external counsel to negotiate contract terms with regarding data security and privacy representations and warranties. Serves as primary decision maker for information security risk acceptance and policy exceptions from initial due diligence through integration.Separately, serves as primary point of coordination between the bank's cyber threat management team and the third party risk organization. Advising on the development of the bank's third party incident response program and developing capabilities to monitor the posture of the bank's extended attack surface.
  • Lowe'S Companies, Inc.
    Information Security Manager - Allied, International And Third Party Risk
    Lowe'S Companies, Inc. Jul 2014 - Jun 2016
    Mooresville, Nc, Us
    My team works with current and potential vendors, international operations and allied partners to assess their technology risks and develop strategies to meet internal and industry standards as well as external requirements such as PCI-DSS, SOX, GLBA, etc. We empower confident decision making from IT and business leaders by providing insights into the technical risks implicit in proposed third party relationships and potential mergers and acquisitions.Accomplishments:- Designed and implemented a formal third party risk assessment program that balances business objectives with their inherent risks and aligned to common standards such as ISO 27001, NIST 800-53, and the BITS Shared Assessments framework.- Developed program for assessing and improving the information security programs at domestic and international subsidiaries in China, Mexico, Canada and India.Relevant buzzwords include: third party vendor risk assessments, mergers and acquisitions, assurance
  • Fidelity Investments
    Principal Information Security Consultant - Team Lead
    Fidelity Investments Aug 2007 - Jul 2014
    Boston, Ma, Us
    At Fidelity I led a fantastic team of experienced information security practitioners. Our primary responsibility was to work alongside our business partners and internal software development teams to ensure that the systems they built met the security requirements of Fidelity's Information Security program. This required deep knowledge of application security principles, agile and waterfall software development practices and security architecture best practices.Our best accomplishments include:- Building the company's formal program for evaluating the security posture of trusted service providers.- Standing up a formal process to respond to the many requests from our institutional clients to assess our security program.- Defined the security requirements for several key development efforts, such as: - Fidelity's first international trading platform - Prime Brokerage platform, focused on the hedge fund industry - WealthCentral, the redesign of Fidelity's platform used by Registered Independent Advisors - Streetscape, Fidelity's platform and APIs utilized by Broker-Dealer organizations - The integration of WealthCentral with Fidelity.com to provide a secure account holder experience
  • Ibm, Global Technology Services
    Senior Consultant, Business Continuity And Information Security
    Ibm, Global Technology Services Jan 2007 - Jun 2007
    Armonk, New York, Ny, Us
    At IBM, I worked with clients to improve their disaster recovery strategies and participated in several disaster recovery tests. I also helped to develop the initial Governance, Risk and Compliance consulting practice for the Global Technology Services organization.
  • First Nlc Financial Services
    Information Security Manager
    First Nlc Financial Services Oct 2005 - Apr 2006
    Us
    I started working for FirstNLC as a (Protiviti) consultant and they hired me on to complete the development of their Information Security and disaster recovery programs in preparation for their initial Sarbanes-Oxley 404 audit following their acquisition by FBR Group.
  • Protiviti, Inc.
    Senior Technology Risk Consultant
    Protiviti, Inc. May 2005 - Oct 2005
    Menlo Park, California, Us
    As a senior consultant with Protiviti, I helped customers that were new to the information systems audit process prepare for their first required external audits by conducting very thorough internal audits and advising them on building information governance and security programs. Typically these were newly public or recently acquired companies that needed to comply with section 404 of the Sarbanes-Oxley Act.Keywords: SOX 404, First year SOX, Internal Audit

Luis Toledo Skills

Disaster Recovery Governance Business Continuity Planning Business Continuity Cisa Cism Cissp Supplier Risk Management Contract Negotiation Risk Assessment Software Development Life Cycle It Audit Information Security Security Information Security Management Network Security Sarbanes Oxley Act Vendor Management Data Center Risk Management It Management Visio Itil Computer Security Sdlc

Luis Toledo Education Details

  • Florida International University - College Of Business
    Florida International University - College Of Business
    International Business
  • Florida International University
    Florida International University
    Political Science

Frequently Asked Questions about Luis Toledo

What company does Luis Toledo work for?

Luis Toledo works for Financial Services Company

What is Luis Toledo's role at the current company?

Luis Toledo's current role is Lead Cyber Security Consultant.

What is Luis Toledo's email address?

Luis Toledo's email address is la****@****ail.com

What schools did Luis Toledo attend?

Luis Toledo attended Florida International University - College Of Business, Florida International University.

What skills is Luis Toledo known for?

Luis Toledo has skills like Disaster Recovery, Governance, Business Continuity Planning, Business Continuity, Cisa, Cism, Cissp, Supplier Risk Management, Contract Negotiation, Risk Assessment, Software Development Life Cycle, It Audit.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.