Matias Sliafertas

Matias Sliafertas Email and Phone Number

CISO at BASE4 Security - Master in Cybersecurity - CISSP - CISM - CRISC - CCSP - CDPSE - ISO27001 LA&IA - CCISO - ISO22301 IA @ BASE4 Security
Matias Sliafertas's Location
Madrid, Community of Madrid, Spain, Spain
Matias Sliafertas's Contact Details

Matias Sliafertas work email

Matias Sliafertas personal email

About Matias Sliafertas

A professional with over 15 years of experience in the technology, information security, and cybersecurity industry, specializing in risk management, regulatory compliance, and business continuity. I currently lead information security at BASE4 Security, managing both internal security and professional services for various industries. Previously, I served as Executive Director at JPMorgan Chase, spearheading cybersecurity and technology controls initiatives across Latin America and Canada.I have a proven track record of leading multidisciplinary teams, aligning corporate policies with business needs, and ensuring compliance across multiple jurisdictions. Alongside my technical expertise, I am a passionate educator, teaching Information Security Management and Ethical Hacking at esteemed universities. I have also presented research at international conferences, academic congresses, and industry events.With a strong academic background and a broad set of professional certifications, including ISO 27001, ISO 22301, CISSP, CCSP, CRISC, CISM, and CDPSE, I am committed to continuous education and excellence in cybersecurity and information security.Outside of work, I enjoy traveling, playing chess, reading, and learning to play bass guitar. Feel free to connect with me on LinkedIn for networking or collaboration opportunities.

Matias Sliafertas's Current Company Details
BASE4 Security

Base4 Security

View
CISO at BASE4 Security - Master in Cybersecurity - CISSP - CISM - CRISC - CCSP - CDPSE - ISO27001 LA&IA - CCISO - ISO22301 IA
Matias Sliafertas Work Experience Details
  • Base4 Security
    Ciso
    Base4 Security Jun 2023 - Present
    Buenos Aires, Ar
    •Role as CISO:- Information security management: I oversee internal security, including the management of the Information Security Management System (ISMS) and business continuity.- ISMS maintenance: I maintain the ISMS and continuity strategy (BCP) under ISO 27001 and ISO 22301, managing ICT risks and ensuring compliance with regulations and privacy laws in the Americas and Europe.- Supervision of security audits and compliance: I coordinate and supervise internal and external security audits, working with auditors and regulators, and maintaining strong relationships.- Communication with the board: I regularly present to senior management and committees on the state of security and regulatory compliance.- Risk management and compliance: I develop strategies to align security with regulatory requirements and enhance resilience.- Three lines of defense model: I maintain and optimize the three lines of defense model in information security.- Incident response: I oversee the monitoring of vulnerabilities and incidents, leading effective response efforts.•Role as Information Security Manager for professional services:- Security consulting: I lead consulting in ISO 27001, 22301, DORA, NIS2, GDPR, audits, and development of security management systems, articulating policies, standards, and security processes.- Virtual CISO (vCISO): I act as CISO for various companies, leading their security areas and/or strategic projects, aligning cybersecurity initiatives with each organization's specific objectives.- Client and stakeholder relationships: I maintain relationships with clients and stakeholders, ensuring satisfaction and SLA compliance.•Additional responsibilities in corporate governance:- Development of governance strategy: I lead the creation and implementation of the corporate governance strategy, establishing committees to strengthen organizational structure.
  • University Professor
    Professor
    University Professor Aug 2014 - Present
    I am passionate about contributing to the education of future professionals in the field of cybersecurity. Throughout my career, I have had the honor of teaching at several prestigious universities, sharing my knowledge and experience to prepare students for the challenges of the digital world.• UTN (National Technological University of Argentina)Diploma in Information Security | August 2014 – PresentSubjects:- Ethical Hacking- Information Security Management• UNQ (National University of Quilmes)Bachelor's Degree in Computer Science | 2021 – PresentSubject Taught:- Information Security• Ekoparty Hackademy | 2021 – PresentSubjects Taught:- Ethical Hacking Projects & Methodology- Vulnerability Assessment- Asset Security & Risk Management- Technical Writing & Executive Reporting• UB (University of Belgrano)Diploma in Certified Cyber Defense Officer (CCDO) | March 2018 – June 2019Subject Taught:- Threat and Vulnerability Management
  • Jpmorgan Chase & Co.
    Executive Director - Cybersecurity Governance, Risk, Controls & Advisory Lead For Latam&Canada
    Jpmorgan Chase & Co. Mar 2017 - May 2023
    New York, Ny, Us
    In my role as Executive Director, I assumed multiple key responsibilities in the area of cybersecurity and technology controls with regional coverage in Latin America and Canada. I was responsible for leading the CISOs across the region, as well as leading the "Cybersecurity & Technology Controls: GRC" team. Additionally, I served as the CISO for Canada and the CISO for the Global Services Center in Buenos Aires, where I implemented and promoted strategic and regulatory initiatives that strengthened the cybersecurity posture in the region. I also led processes that were created and adopted both regionally and globally.Key responsibilities:- Management of CISOs across the LATAM-Canada region.- Coordination and scaling of cybersecurity projects and solutions, technology controls, and data privacy across the LATAM-Canada region.- Alignment of corporate policies with business needs, ensuring regulatory compliance across the different countries in the region.- Coordination of the regional "Threat Intelligence" area.- Management of relationships with regulators, government agencies, and financial sector associations.Coordination of the regional Regulatory Intelligence area.- Oversight of regulatory technology audits for the region.- Coordination of the team responsible for active cybersecurity and technology control evaluations (Penetration Testing, Red Team, Cyber Exercises, Crisis Simulations).- Leadership of the training and development team for the region.- Implementation of global corporate policies adapted to local regulatory needs.- CISO for the Global Services Center in Buenos Aires.- CISO for Canada.Other corporate responsibilities beyond my primary role:- Lead of the Learning and Career Path workstream for Argentina.- Mentor for technology areas.- Mentor in women in technology programs.
  • Jpmorgan Chase & Co.
    Vice President–Regional Regulatory Manager Lead For Latam&Canada,Cybersecurity & Technology Controls
    Jpmorgan Chase & Co. Oct 2015 - Mar 2017
    New York, Ny, Us
    In this role, I led the coordination of regulatory and governmental requests related to technology, information security, and data privacy across Latin America and Canada. I implemented a global regulatory response process, ensuring consistency and efficiency in communications with regulators.Key Responsibilities:- Coordination of Regulatory Requests (RFI): Managed responses to external audit and regulatory requests, collaborating with technology groups to ensure consistent use of materials and efficient meeting management, optimizing response times.- Regulator Interaction: Served as the primary point of contact for regulators and external auditors, coordinating on-site visits and ensuring effective participation during audits and reviews, strengthening relationships with key authorities.- Project Governance: Supervised and reported on the progress of RFIs, maintaining an issue tracker to document key matters and ensure resolution of problems identified by regulators and audits.- Executive Presentations: Delivered presentations to regional and global committees, providing key insights on regulatory compliance and risk management in LATAM and Canada, facilitating strategic decision-making.- Global Interaction: Collaborated with the global Technology Regulation team to ensure consistency in regulatory processes worldwide, adapting best practices to regional needs.- Alliance Building: Developed relationships with local and regional regulatory authorities, participating in industry groups to influence regulatory policies and practices.- Training and Awareness: Implemented training programs on regulatory topics to ensure stakeholders understood and complied with applicable regulations.
  • Bank Of Tokyo-Mitsubishi Ufj
    Head Of Information Security, Business Continuity & Latin America Liaison
    Bank Of Tokyo-Mitsubishi Ufj May 2011 - Aug 2015
    Chiyoda-Ku, Tokyo, Jp
    - Led information security and business continuity for Argentina, serving as Regional Information Security Coordinator in LATAM (Argentina, Brazil, Chile, Mexico, Peru, Colombia).- Developed and implemented a security strategy aligned with business objectives and local regulations (BCRA, SOX, PCI), improving regulatory compliance.- Managed the information security risk management strategy, planning, executing, and establishing plans that reduced critical risks by 30%.- Presented security reports and updates to executive committees and Senior Management, gaining greater support and facilitating better strategic decision-making.- Developed and implemented cybersecurity incident response plans, enhancing reaction capability and minimizing the impact of incidents.- Coordinated and maintained the Business Continuity Plan (BCP), including Business Impact Analysis (BIA), strengthening resilience.- Led the migration of alternative processing sites, improving business continuity and regulatory compliance.- Collaborated with legal and compliance departments to ensure adherence to local, regional, and data protection and privacy regulations.- Managed and implemented controls, standards, and policies to comply with financial regulators.- Developed and implemented the Awareness Program in LATAM, reducing cybersecurity incidents by over 60%.- Advised on business projects and new technologies, ensuring that security best practices were integrated from the outset.- Conducted and coordinated security audits (BCRA 4609, ISO 27001), ethical hacking tests, and web audits, evaluating and improving the security posture.- Fostered alliances with local financial authorities, promoting collaboration and knowledge sharing.
  • Hp Enterprise Services
    Senior Information Security Analyst - Global Information Security
    Hp Enterprise Services Feb 2010 - May 2011
    Houston, Texas, Us
    - Managed the Information Security team for the Chilean branch, leading offensive security initiatives.- Coordinated cybersecurity projects at local and regional levels in Argentina, Brazil, and Chile, aligning strategies with corporate objectives and industry best practices.- Performed audits and internal controls to ensure compliance with international standards such as SOX, PCI DSS, and ISO 27001 in financial sector companies.- Executed penetration testing and vulnerability assessments for financial institutions in Chile—including Banco de Chile, Redbanc, Transbank, and Nexus—strengthening their cybersecurity posture.- Issued alerts on new vulnerabilities, malware, and security threats, facilitating their effective resolution and minimizing risks.- Provided Information Security training to the LATAM Security Department (Argentina, Chile, Brazil), enhancing the team's skills and knowledge.- Developed security standards and policies for various network and infrastructure technologies, including Microsoft Server, Linux/Unix, and VMware, standardizing practices and elevating the level of security.- Managed and enhanced the security of HP-UX and other Unix systems, implementing hardening policies and continuous monitoring.
  • Ministerio De Planificación Federal
    Information Security Officer
    Ministerio De Planificación Federal Apr 2008 - Mar 2010
    Ciudad Autónoma De Buenos Aires, Buenos Aires, Ar
    - Managed the ministry's information security, working closely with the IT department to ensure the confidentiality, integrity, and availability of government data.- Collaborated with the IT team to implement technical solutions based on open-source software, wireless technologies, and security configurations for critical servers, resulting in a reduction of security incidents.- Coordinated cybersecurity projects, including the administration and strengthening of Data Center security, enhancing the resilience and protection of the infrastructure.- Performed penetration testing (ethical hacking) and vulnerability assessments using tools like Nessus and Metasploit, identifying and mitigating critical risks in the infrastructure and institutional websites.- Developed and maintained information security controls and policies, aligning them with international standards such as ISO 27001 and promoting a culture of continuous improvement.- Evaluated the security of new governmental applications and web developments, providing recommendations that strengthened protection against cyber threats and improved the overall security posture.
  • Siclabs
    Security & It Consultant
    Siclabs May 2008 - May 2009
    Villa Urquiza, Ciudad Autónoma De Buenos Aires, Ar
    - Conducted advanced cybersecurity research, focusing on penetration testing, ethical hacking, and wireless security.- Executed penetration tests and performed vulnerability assessments in companies, including those in the oil and gas industries, enhancing their cybersecurity posture.- Designed and delivered training programs in cybersecurity and IT infrastructure, covering topics such as wireless hacking, network hacking, and administration of GNU/Linux and Microsoft Windows Server systems.
  • Telecom Argentina
    Network Engineer
    Telecom Argentina Oct 2005 - May 2008
    Comuna 1, Ciudad Autónoma De Buenos Aires, Ar
    - Provided technical support for corporate networks, ensuring the optimal functioning and availability of the company's communication systems.- Installed, configured, and maintained Cisco network equipment, including routers and switches, working with protocols such as TCP/IP, OSPF, and BGP.- Diagnosed and resolved connectivity and performance issues in the networks, improving internal customer satisfaction and minimizing downtime.- Collaborated with multidisciplinary teams in the implementation of network solutions that supported business objectives and strategic projects.
  • Backbone Cg
    Independent Cybersecurity Consultant
    Backbone Cg Mar 2005 - May 2008
    - Provided information security consulting services to various companies, specializing in penetration testing, ethical hacking, and vulnerability assessments.- Conducted gap analyses against industry standards such as ISO 27001, identifying risks and proposing corrective actions to ensure compliance with current regulations.- Designed and implemented firewalls and perimeter security solutions, strengthening network protection against external threats and enhancing IT infrastructure security.- Developed and deployed proxy servers, optimizing access control and enhancing security for corporate web browsing.
  • Owner
    "Systems" Computers Feb 2002 - Mar 2005
    - Network desing and configuration. - Server administration ( Linux flavors and Windows Server)

Matias Sliafertas Skills

Information Security Penetration Testing Cissp Cism Linux Information Security Management Iso 27001 Red Hat Linux Vulnerability Assessment Mysql Vulnerability Management Itil Risk Assessment Computer Security Pci Dss Ceh Firewalls Ips Wireless Security Unix Hardening Vpn Ccna Ethical Hacker Eeye Retina Owasp Open Source Microsoft Sql Server Sox Compliancy Project Management Metasploit Nmap Vmware Esx Vmware Infrastructure Qualys Nessus Openvas Php C++ Java Social Engineering External Audit Security+ Web Application Security Assessment Risk Management

Matias Sliafertas Education Details

  • Cci, Centro De Ciberseguridad Industrial-Industrial Cybersecurity
    Cci, Centro De Ciberseguridad Industrial-Industrial Cybersecurity
    Master In Industrial Cybersecurity
  • Ceupe - European Business School
    Ceupe - European Business School
    Master In Cybersecurity (Mcis)
  • Universidad Empresarial 'Siglo 21'​
    Universidad Empresarial 'Siglo 21'​
    Bachelor Of Administration - Ba
  • Universidad Empresarial 'Siglo 21'​
    Universidad Empresarial 'Siglo 21'​
    Tecnico Universitario En Planificacion Gerencial
  • Universidad Tecnológica Nacional (Utn)
    Universidad Tecnológica Nacional (Utn)
    Diplomatura En Seguridad De La Información
  • Mit Professional Education
    Mit Professional Education
    Application And Policy
  • Universidad Abierta Interamericana
    Universidad Abierta Interamericana
    Systems Engineering
  • Universidad Del Salvador
    Universidad Del Salvador
    Information Systems Security
  • Agustiniano
    Agustiniano
    Ciencias Exactas

Frequently Asked Questions about Matias Sliafertas

What company does Matias Sliafertas work for?

Matias Sliafertas works for Base4 Security

What is Matias Sliafertas's role at the current company?

Matias Sliafertas's current role is CISO at BASE4 Security - Master in Cybersecurity - CISSP - CISM - CRISC - CCSP - CDPSE - ISO27001 LA&IA - CCISO - ISO22301 IA.

What is Matias Sliafertas's email address?

Matias Sliafertas's email address is ma****@****ail.com

What schools did Matias Sliafertas attend?

Matias Sliafertas attended Cci, Centro De Ciberseguridad Industrial-Industrial Cybersecurity, Ceupe - European Business School, Universidad Empresarial 'siglo 21'​, Universidad Empresarial 'siglo 21'​, Universidad Tecnológica Nacional (Utn), Mit Professional Education, Universidad Abierta Interamericana, Universidad Del Salvador, Agustiniano.

What skills is Matias Sliafertas known for?

Matias Sliafertas has skills like Information Security, Penetration Testing, Cissp, Cism, Linux, Information Security Management, Iso 27001, Red Hat Linux, Vulnerability Assessment, Mysql, Vulnerability Management, Itil.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.