Mandy Andress

Mandy Andress Email and Phone Number

CISO | Investor | Board Member | Advancing the Future of Innovation in Cybersecurity @ Elastic
Mandy Andress's Location
Austin, Texas, United States, United States
Mandy Andress's Contact Details

Mandy Andress personal email

n/a
About Mandy Andress

𝐌𝐚𝐧𝐝𝐲 𝐀𝐧𝐝𝐫𝐞𝐬𝐬 is a global cybersecurity leader with a distinguished career spanning over two decades. In her current role as Chief Information Security Officer at Elastic, Mandy has led the charge in fortifying the company's security posture, leveraging her expertise to safeguard the organization's information, technology, and people. Mandy's leadership in the industry extends beyond her role as CISO. She is an invaluable member of several advisory boards and networks, solidifying her reputation as a sought-after authority in the industry for presentations at major conferences such as BlackHat and Networld + Interop. Mandy's current engagements include her role on the Board of Experts at Glilot Capital Partners, where she supports seed and early-stage funding, offers growth advice, and identifies partnerships within the portfolio. She also serves as an Advisory Board Member at Team8, contributing her insights to drive innovation in the field. Additionally, Mandy lends her expertise to Hetz Ventures as an Advisor, helping to shape the strategic direction of the Hetz Executive Network. Her deep involvement in the cybersecurity landscape is further underscored by her positions as an Investor at SVCI and as a Venture Advisor at YL Ventures. Mandy's commitment to education is evident through her role as an Adjunct Faculty member at the University of Massachusetts Amherst. She is also a published author, with her book Surviving Security having two editions and used at multiple universities around the world as the textbook for foundation information security courses.Mandy's career includes a 13-year tenure at MassMutual, where she ascended to the role of Information Security Officer. Her contributions were far-reaching, from spearheading a multi-year, $50M strategic investment initiative to enhance security capabilities, to overseeing the global Cyber Intelligence Unit, which provided round-the-clock security monitoring and incident response. Mandy's early career includes roles at CSO and ISO organizations such as Evant, Prevada, and TiVo, where she designed and implemented a comprehensive security infrastructure and governance program. She played a pivotal role in defining security policies, managing IT compliance, and acting as a security subject matter expert. Mandy has a JD from Western New England University, a Master’s in Management Information Systems from Texas A&M University, and a BBA in Accounting from Texas A&M University. Mandy is a CISSP, CPA, and member of the Texas Bar.

Mandy Andress's Current Company Details
Elastic

Elastic

View
CISO | Investor | Board Member | Advancing the Future of Innovation in Cybersecurity
Mandy Andress Work Experience Details
  • Elastic
    Ciso
    Elastic May 2018 - Present
    San Francisco, California, Us
  • Cyberfuture
    Alliance Partner
    Cyberfuture Jun 2024 - Present
  • Merlin Ventures
    Merlin Advisory Council
    Merlin Ventures Dec 2023 - Present
  • Prompt Security
    Investor / Advisor
    Prompt Security Sep 2023 - Present
    New York City, New York, Us
  • Glilot Capital Partners
    Board Of Experts
    Glilot Capital Partners Aug 2023 - Present
    Herzliya Pituach, Il
    * Support the seed and early stage funding of Glilot Partners.* Work with leadership and advise on growth potential for the fund.* Assist with identifying partnerships for the portfolio.* Provide expertise in cyber security market trends.
  • Team8
    Villager
    Team8 Jul 2023 - Present
    Tel Aviv, Il
  • Hetz Ventures
    Advisor - Hetz Executive Network
    Hetz Ventures Jun 2022 - Present
    Tel Aviv, Israel, Il
  • Svci - Silicon Valley Ciso Investments
    Investor
    Svci - Silicon Valley Ciso Investments Nov 2021 - Present
    San Francisco, California, Us
  • Yl Ventures
    Venture Advisor
    Yl Ventures Dec 2018 - Present
    Mill Valley, Ca, Us
  • University Of Massachusetts Amherst
    Adjunct Faculty
    University Of Massachusetts Amherst Jun 2016 - Jun 2018
    Information Risk Management faculty for College of Information and Computer Sciences. Taught a course on risk management based on FAIR (Factor Analysis of Information Risk).
  • Massmutual
    Information Security Officer
    Massmutual Jan 2012 - May 2018
    • Defined and executed multi-year, $50M strategic investment initiative to implement contemporary security capabilities including secure Agile development, global security operations, proactive threat intelligence, NAC, and behavior-based analytics, reducing security event detection time by 98%.• Managed global Cyber Intelligence Unit providing 24x7 security monitoring, intelligence, and incident response capabilities.• Accountable for defining and implementing enterprise information risk and security strategy, including cloud-based (AWS) digital SaaS business.• Reported information risk posture to IT and Business Unit management, Chief Risk Officer, Chief Compliance Officer, Corporate Audit and Board of Directors. • Championed and implemented FAIR approach to quantify information risk exposure and most effectively allocate resources for highest impact mitigation efforts. • Chief Compliance Officer for Technology, leading compliance activities for GLBA, HIPAA, GDPR, NY DFS, OCC, SOC2, etc.
  • Massmutual
    Head Of Information Risk Management
    Massmutual Jan 2009 - Jan 2012
    • Transformed local, technology-focused information security group to global, business-focused information risk management group.• Defined, communicated, and implemented standardized information risk process framework to consistently identify, analyze, prioritize, and report information risks.• Assessed, analyzed, reported, and mitigated information risks for third party engagements, applications, infrastructure, and operations, following industry standard IT control set.
  • Massmutual
    Head Of Information Security Engineering And Assurance
    Massmutual Apr 2005 - Jan 2009
    • Accountable for Security Infrastructure, Security Consulting, Security Assurance, and Identity Management Deployment teams.• Managed $20 million department budget.• Developed and maintained enterprise security strategy to support corporate strategies and drive implementation of industry best practices.• Instrumental in managing 100% department growth over two years.• Assisted with development of MassMutual Corporate Security Policies, following ISO 27001/27002 and NIST.• Implemented #1 award-winning risk assessment and security information management system that included a 97% cost reduction.
  • Tivo
    Information Security Officer
    Tivo Sep 2001 - Apr 2005
    San Jose, California, Us
    • Designed and implemented comprehensive corporate security infrastructure and governance program from the ground up, including security policies, vulnerability management, security awareness, network security, wireless security, host security, remote access, incident response, and controls management.• Responsible for Sarbanes-Oxley IT compliance and Board of Directors presentations.• Served as company security subject matter expert on the Architecture team, assisting with the secure development of TiVo products and services in addition to internal IT corporate infrastructure projects.
  • Evant
    Chief Security Officer
    Evant 2000 - 2001
    Us
    • Defined, implemented, and maintained comprehensive security program and security infrastructure for web-based supply chain management application service provider. • Created and implemented comprehensive security policies, security awareness program, and incident response procedures.• Participated in product design and management as security SME to ensure secure development of Evant products and services.
  • Privada
    Information Security Officer
    Privada Feb 2000 - Jun 2000
    • Defined, implemented, and maintained complete security program and security infrastructure for start-up privacy application service provider.• Participated in product design as security SME to ensure encryption/key management best practices were securely implemented.
  • Ernst & Young
    Senior Consultant
    Ernst & Young Apr 1999 - Feb 2000
    London, Gb
    • Enabled clients to provide secure transaction processing and strong authentication methods (PKI) for Internet, Financial Services, and International clients. • Performed penetration tests, WebTrust reviews, and process verification for e-commerce sites. • Managed and implemented technology solution lab. Managed vendor relationships.
  • Deloitte
    Enterprise Risk Services Consultant
    Deloitte Jan 1997 - Apr 1999

Mandy Andress Skills

Risk Management Vendor Management Strategy Information Security Leadership Security It Strategy Management Consulting Cloud Security Information Security Management Security Information And Event Management Six Sigma Computer Security Network Security Program Management Information Technology It Management Business Analysis Business Process Improvement Cloud Computing Project Management

Mandy Andress Education Details

  • Mays Business School - Texas A&M University
    Mays Business School - Texas A&M University
    Mis
  • Western New England University School Of Law
    Western New England University School Of Law
    Jd
  • Mays Business School - Texas A&M University
    Mays Business School - Texas A&M University
    Accounting

Frequently Asked Questions about Mandy Andress

What company does Mandy Andress work for?

Mandy Andress works for Elastic

What is Mandy Andress's role at the current company?

Mandy Andress's current role is CISO | Investor | Board Member | Advancing the Future of Innovation in Cybersecurity.

What is Mandy Andress's email address?

Mandy Andress's email address is ma****@****ivo.com

What schools did Mandy Andress attend?

Mandy Andress attended Mays Business School - Texas A&m University, Western New England University School Of Law, Mays Business School - Texas A&m University.

What skills is Mandy Andress known for?

Mandy Andress has skills like Risk Management, Vendor Management, Strategy, Information Security, Leadership, Security, It Strategy, Management, Consulting, Cloud Security, Information Security Management, Security Information And Event Management.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.