María Luisa Redondo Velázquez

María Luisa Redondo Velázquez Email and Phone Number

Global Chief Information Security Officer @ TK Elevator
Madrid, ES
María Luisa Redondo Velázquez's Location
Madrid, Community of Madrid, Spain, Spain
About María Luisa Redondo Velázquez

• Ingeniero Superior en Informática por la Universidad del ICAI (Pontificia de Comillas). Leader en IT y Ciberseguridad. Miembro del Comité de Dirección Ejecutivo.Especialidades: • Seguridad en Operaciones (TIPs - Threat Intelligence, Análisis de Malware, Análisis forense de Seguridad), mitigación de fraude, Estrategia de Ciberseguridad, Criptografía, Arquitectura y Diseño de Soluciones, Infraestructuras y Servicios en el Cloud (Amazon Web Services y Microsoft), PCI/DSS, LOPD, SGSI, CMMI, CobiT, Common Criteria, Gobierno de IT, Continuidad de negocio, , esteganografía, análisis de seguridad en procesos de negocio, análisis de procesos estratégicos. Seguridad en BBDD, Seguridad SAP, Reingeniería de roles en SAP, SAP Governance Risk and Compliance, Seguridad en SOA, calidad del software, SSDLC. • ERP (SAP): Módulo SAP Human Capital Management (PA,PY,PD,OM), interfaces e Integración de Sistemas (BAPIs, IDocs, Servicios SOA), SAP FI, SAP SD, SAP Basis, Netweaver. • Dirección y Gestión de proyectos tecnológicos y venta orientada a servicios estratégicos de seguridad informática y productos o herramientas / Soluciones de Seguridad. Certificaciones: • Certificación CISSP (2016).• Certificación SAP GRC Access Control 10.0 (2014).• Certificación Information Security Foundation based on ISO/IEC 27002 (2010).• Certificación ITIL Foundations V3 (2010).• Certificación CISM (2012).• Auditoría de Sistemas de Gestión de la Seguridad de la Información según ISO 27001 reconocido por el International Register of Certificated Auditors (IRCA). ISO 27001 Lead Auditor (2011).• Certificación CISCO CCNA (2010).• Microsoft MS-500 (2021) - Microsoft 365 Security Administration / AZ - 500 - Microsoft Azure Security (2022). Otras:• Netskope certified Cloud Associate (CASB - Cloud App Security). • Splunk Administration, Power user.• Mitre Engenuity certifications. Threat intelligence, SOC assessments, Threat Hunting, Adversary Emulations, Purple Team. Cursos y másters: • Gestión de Proyectos. PMP (2011).• SAP GRC Access Control y Process Control. Impartido por KPMG Italia (2011).• Master en Seguridad y Auditoría Informática por la Universidad Politécnica de Madrid (2010-2011).• Máster Executive en Inglés Profesional (2015-2016). • Master en Threat Intelligence (2019-2020) por la Universidad Fco. de Vitoria. • A complete practical approach to malware analysis and memory forensics (Black Hat 2021).• Master en Análisis de malware, reversing y bug hunting por la Universidad de Murcia (2022-2023).• Security Blue Team Level 1, Level 2 (2022-2023).

María Luisa Redondo Velázquez's Current Company Details
TK Elevator

Tk Elevator

View
Global Chief Information Security Officer
Madrid, ES
Website:
tkelevator.com
Employees:
23479
María Luisa Redondo Velázquez Work Experience Details
  • Tk Elevator
    Global Chief Information Security Officer
    Tk Elevator
    Madrid, Es
  • The Ciso Society
    Member
    The Ciso Society Jan 2024 - Present
    The CISO Society is a private community of CiSOs collaborating on everything from security strategy, industry challenges, project roadmaps, technology partners, talent acquisition, leadership and investments
  • Horse
    Chief Information Security Officer (Ciso)
    Horse Nov 2023 - Present
    Alcobendas, Community Of Madrid, Es
    Accountable for the cybersecurity strategy and policies for HORSE, in line with HORSE strategy and regulations. In charge of defining, driving and promoting the relevant level of cybersecurity, striking the right balance with business challenges. Strategic Point of Contact for the CIO of HORSE and the Heads of IS/IT Departments. The scope of work also includes all geographical HORSE perimeter. Member of IT Committee. Main responsibilities are:1. Cybersecurity Strategy• Define and execute HORSE Cybersecurity Strategy with focus on:• Management of the cybersecurity organization and resources• Compliance with applicable regulations• Sustainability of cybersecurity• Relationships and interactions with internal partners inside the JV (Geely, Aramco)• Relationships and interactions with the mother company Renault Group• Specific relevant strategy to secure the production in HORSE plants (8 sites in 7 countries).2. Cybersecurity Programs and Projects Management• Ensure the cybersecurity strategy and roadmap implementation3. Cybersecurity Ambassador• Guide and train the HORSE organization in cybersecurity• Take on the role of active ambassador for cybersecurity within HORSE organization4. Cybersecurity Team Management• Build an efficient Cybersecurity team in line with HORSE strategy• Develop team skills and knowledge and encourage participation in internal and external cybersecurity communities• Build trust and works with peers to improve overall effectiveness and avoid silos • Encourage original ideas and innovation• Report regularly to stakeholders and play an advisory role5. Cybersecurity IT Budget and Vendor Management• Accountable for HORSE Cybersecurity RUN (recurring) and BUILD (project) budgets• Manage Cybersecurity budget in alignment with HORSE strategy• Approve purchases of technological equipment and software and establish partnership with IT providers
  • Devo
    Security Operations Director
    Devo Jul 2022 - Nov 2023
    Boston, Massachusetts, Us
    Main responsibilities:• Lead daily operations of the Security Operations Center including managing relationship with managed SOC service providers. • Develop a roadmap and a programme to develop and grow the unit including the on-boarding of new platforms, identifying automation opportunities, and development of service level agreements• Improve the ruleset, playbooks and reduction of false positives• Report to leadership the performance of the SOC through the establishment of KPIs including operational and risk-based metrics. • Coordinate, analyze, and escalate security incidents in partnership with vendors, business units, customers and partners.• Investigate malware artifacts in response to incidents, coordinate network scans to cover the perimeter and internal networks and assist with coordination and provide input into incident management plan activities. • Lead the remediation, vulnerability and patch management across the the enterprise.
  • Jti (Japan Tobacco International)
    Technical Security Center Senior Lead
    Jti (Japan Tobacco International) Aug 2018 - Jul 2022
    Geneva, Ch
    Manage the services provided by the Technical Security Centre team (four headcounts) across the three pillars of application, system and network security in addition to the cross functional security assessment and cloud security roles, with the core objective of ensuring consistency and quality of the overall activities provided by the team. These services are delivered globally across the company dealing with IT stake holders at both Global IT and Local/Market IT. The objectives are to manage the analysis and assessment requests and provide security guidance for both new and currently existing infrastructure, projects and systems and to ensure that company security standards are consistently maintained and applied globally. The scope includes solutions delivered both internally and externally. The incumbent is also responsible for managing the budget for security technologies provided globally by the Technical Security Centre team as a whole, for example anti-malware and internet defences. Main responsibilities:• Manage the security assessments for both currently existing and new infrastructure, projects and systems to mitigate security risks due to insecure implementations. This is conducted as part of the standard change management process by means of providing security guidance and playing an advisory and quality control role towards the global and local technical teams for implementing security best practices for new solutions. • Ensure the robustness of JTI systems/solutions internet perimeter defences in line with the risk level of the business. • Provide a cost-effective set of perimeter defences driven by the technical information security strategy and business requirements. • Support the Security Operations Centre team in analysis, evaluation and response to security incidents including but not limited to: Internal/external attacks, malware attacks, fraudulent emails and internal issues
  • Accenture
    Security Lead - Accenture España
    Accenture Mar 2017 - Aug 2018
    Dublin 2, Ie
    Main responsibilities:• Planning and managing diagnosis and assessment activities and defining high-level program/action plans.• Identifying opportunities to drive more value from an organization’s IT strategy through technology strategies in targeted areas, including technology infrastructure and technology architecture.• Ensuring technology requirements will allow modeling and address performance and security.• Ensuring high level design supports a robust technology solution, taking into account the user requirements, technical requirements, etc. • Planning and managing technology design activities.• Troubleshooting and performance tuning of security products/solutions.
  • Ey
    Security Lead - It Risk And Assurance - Fso (Financial Services)
    Ey May 2016 - Feb 2017
    London, Gb
    Main responsibilities:• Design of electronic banking services in Cloud for bank industry companies.• Review of security infrastructure of Iaas / Paas according to privacy requirements in Spain / UK.• Pre-Sales and Project Management of Information Security Developments / Implementations / Audits.
  • Pwc
    Security Lead - It Risk Assurance Services
    Pwc Feb 2012 - May 2016
    Gb
    Main responsibilities:• Risk Management and monitoring demands sparked by the growing use of social media, cloud and smart-device technologies.• Data security and privacy compliance regarding personal data (medical records). • Big Data audit management and audit analytics. • SAP GRC implementation supports and Re-Design of security infraestructure and role management process design. • Software Asset Management Processes and methodology design.• Fraud Analysis regarding Insurance Business Processes / Fraud methodology designs for insurances companies. • Identity Management and Criptograhy projects: implementation of digital signature to several business processes in insurance companies and development of Identity Management Framework in several countries for insurances companies. Maintenance of Oracle Identity Manager and Oracle Identity Analytics. • Business Continuity Plan Audits for Market Unit / Business Unit for insurances companies.• Security Plan / Information Security Strategy for insurance companies considering Return of Investments. • Medical devices security audits in insurance companies. • Implementation of SIEM tools and big data benchmarking analysis. • Risk Model Definition and Data classification for finance companies and insurance companies.
  • Kpmg Advisory
    It Associate. Performance & Technology Advisory Services (Management Consulting)
    Kpmg Advisory May 2011 - Feb 2012
    London, Gb
    Main responsibilities:• Project management. Risk Assurance Services projects and SAP HCM Rollouts:• Telefónica SAP Global HCM Rollout for several countries (LATAM, SPAIN, EUROPE).• Risk Analysis for Telefónica SAP Roadmap defined. • Definition of Governance Model to manage projects for Project Management Office.
  • Emt
    Sap Hcm Solution Architect / Project Manager
    Emt Oct 2005 - May 2011
    Madrid, Madrid, Es
    Main responsibilities: • SAP Data Processes using SAP PI Integration, SAP HR Info types, Personnel Administration Dynamic Actions and IMG Customizing. • Modification of SAP HR Payroll rules, functions and operations for SAP Spanish Payroll Schema. • Payroll Data, Organizational Management and Personnel Administration Customizing.• Archive Link (Content Server) and Document Finder Tool Administration.• Design and Development of an application for Material Management using Web Services and • Abap proxies. • Design and Implementation of Contingency Management System connected to internal mailings (SAP • Business Workplace), SMS Systems and Log Management Systems. • Personnel Qualifications and Organizational Management developments and customizing. • Identity Management and Structure Profiles customizing within SAP HR / FI / SD components. Project Management of the following SAP HR Components:• Training and Event Management (PE),• Personnel Recruiting (ER),• Development Plans (DP),• Qualifications and Requirements (QR),• Career and Succession Planning (SP) - Talent Management,• Personal Evaluation (PE),• Environment, Health and Safety (EHS).
  • Computer Science Corporation
    Sap Solution Architect (Sap Fi, Hcm, Sd) / Project Manager
    Computer Science Corporation Dec 2004 - Oct 2005
    Global, Us
    Main responsibilities:• Development, Planning, Design and Integration tasks on HR SAP Personnel Cost Planning.• Customer Data Management Interface Development for Customer Contracts.• Customer Purchase Orders Management (SAP MM) and SAP MM System Migration.• Application Maintenance / Database Tuning for Logistics and Sales Distribution SAP System (SAP SD/LO).• Quality assurance and Database Benchmarking, Modification of Intermediate Documents (IDocs) for Electronic Data Interchange. • Application Performance Analysis, SAP Queries and data analytics.
  • Northgatearinso
    Consultor Sap
    Northgatearinso Jun 2003 - Dec 2004
    London, England, Gb
    Main responsibilities:• Development and management of Barclays Bank SAP Enterprise Employee Portal with the following functionalities: • Personnel Data & Work Schedule Management. • Employees Promotions and Career Planning.• Fringe Benefits Management. • Authorization and Identity Management.

María Luisa Redondo Velázquez Skills

Procesos De Negocio Iso 27001 Sap Itil V.3 It Audit Information Security Risk Management Project Management Strategic Planning Sap Hcm Management Consulting Cism Isms Management Pmo Services Business Continuity Planning Sap R/3 Product Development It Governance Web Development Risk Compliance Quality Management Process Management Software Asset Management Personal Data Protection Project Rollouts Sap Netweaver Sap Security Administration Sap Grc Access Control Business Process Re Engineering Enterprise Risk Management Siem Hadoop R Programming Data Analytics Cissp

María Luisa Redondo Velázquez Education Details

  • Massachusetts Institute Of Technology
    Massachusetts Institute Of Technology
    New Digital Tecnologies
  • Universidad De Murcia
    Universidad De Murcia
    Seguridad Informática Y De Sistemas
  • Universidad Francisco De Vitoria
    Universidad Francisco De Vitoria
    Ciberinteligencia
  • Ie Business School
    Ie Business School
    Liderazgo Empresarial
  • Linux Foundations
    Linux Foundations
    Cloud Computing
  • Microsoft Academy
    Microsoft Academy
    Data Science
  • Security Sentinel
    Security Sentinel
    Certificado Profesional De Hacking Ético
  • Universidad Rey Juan Carlos
    Universidad Rey Juan Carlos
    Seguridad Informática Y De Sistemas
  • Universidad Rey Juan Carlos
    Universidad Rey Juan Carlos
    Técnicas De Análisis De Datos Y Big Data
  • Vs
    Vs
    Inglés Ejecutivo De Negocio
  • Universidad Politécnica De Madrid
    Universidad Politécnica De Madrid
    Postgrados
  • Universidad Pontificia Comillas
    Universidad Pontificia Comillas
    Ciencias De La Computación - Ingeniería Superior En Informática

Frequently Asked Questions about María Luisa Redondo Velázquez

What company does María Luisa Redondo Velázquez work for?

María Luisa Redondo Velázquez works for Tk Elevator

What is María Luisa Redondo Velázquez's role at the current company?

María Luisa Redondo Velázquez's current role is Global Chief Information Security Officer.

What schools did María Luisa Redondo Velázquez attend?

María Luisa Redondo Velázquez attended Massachusetts Institute Of Technology, Universidad De Murcia, Universidad Francisco De Vitoria, Ie Business School, Linux Foundations, Microsoft Academy, Security Sentinel, Universidad Rey Juan Carlos, Universidad Rey Juan Carlos, Vs, Universidad Politécnica De Madrid, Universidad Pontificia Comillas.

What are some of María Luisa Redondo Velázquez's interests?

María Luisa Redondo Velázquez has interest in Viajes, Gobernanza De Ti, Economía, Sap, Big Data, Fotografía, Auditoría Ti, Consultoría Ti, Pmo, Estrategia De It.

What skills is María Luisa Redondo Velázquez known for?

María Luisa Redondo Velázquez has skills like Procesos De Negocio, Iso 27001, Sap, Itil V.3, It Audit, Information Security, Risk Management, Project Management, Strategic Planning, Sap Hcm, Management Consulting, Cism.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.