Michael Sontag Email and Phone Number
Michael Sontag work email
- Valid
Michael Sontag personal email
- Valid
- Valid
Michael Sontag phone numbers
US Air Force Veteran and Big 4 Alum with 20 years experience driving continuous improvement in the security capabilities catalog and its associated Governance, Risk, Compliance (GRC). Industries include: finance, healthcare, government, retail, transportation, and technology industries. I love to design a strategy, and then roll up my sleeves and get the hard work done, driving Lean improvements to organization security across people, process, and technology.I’ve got a strong track record of leading Information Security teams to develop strategy, establish clear portfolio/program/project inertia, associated governance, create cross-functional relationships with the business, implement security controls, identify opportunities to meet compliance, formulate a metrics reporting capability to executives, and manage/track enterprise risks. Additionally, I’ve got experience in a vast array of experience in governance implementation, framework assessment; compliance, leveraging GRC tools, internal auditing, risk management, and project/budget management. My core competencies include (but are not limited to): Information Security Governance Risk and Compliance (GRC) Program Design and Management, Program Management, Cybersecurity Policy Standards and Procedures, Security Controls Creation and Testing, Information Security Framework Assessment Audit and Program Maturity, Privacy Compliance and Impact Assessment, Operating Model Design, Security Metrics, Reporting, Data-driven Analysis, Risk Assessment and Management, Budget Management, Training, and Awareness, Leading TeamsIn addition, I also attribute the following skills to my success:Microsoft Office Suite (Word, Excel, PowerPoint), MS SharePoint, MS Project, Smartsheets,Google Suite (Google Docs, Sheets, Slides), ServiceNow, RSA Archer, NIST CSF, NIST 800-53,NIST 800-171, NIST CMMC, NIST RMF, ISO 27001, CIS Controls, GDPR, CCPA, FISMA, PCI-DSS, HIPAA Security Rule, FFIEC, Big 4 Consulting
-
Director Information Technology SecurityCoserv Oct 2023 - PresentCorinth, Texas, Us -
Senior Manager, Cybersecurity Portfolio ManagerInfoedge Llc Feb 2023 - Oct 2023Lewes, De, Us- Managed Cybersecurity portfolio (CapEx $10M, 9 projects) during startup, ensured compliance with SDLC gates, evaluated projected budget for accuracy, and secured IT leadership alignment- Held strategic 5-year plan leadership conference to finalize Cybersecurity priorities, collaboratively define the implementation roadmap, and incorporate planned efforts into a $50M capital budget- Drove continuous improvement: identified key portfolio activities, created operational processes, templates, and accelerators to clarify roles/responsibilities and improve SDLC process competencies - Mapped capital efforts into a single cohesive Cybersecurity catalog to support prioritization and ongoing program enhancement, and remove cyber from a silo using cross-functional communications - Created an initial metrics database to improve visibility to program performance and effectiveness in reducing risk, and identified reporting opportunities to improve support by the business -
Senior Manager Information SecurityPwc Feb 2016 - Dec 2022- Identified cybersecurity functional areas, defined KPI/KRI, configured analysis workflows, created reporting dashboards/reports, and briefed C-Suite on security risks and opportunities- Assessed security controls compliance using key security frameworks across 14 organizations, used best practices across the industry to identify control gaps- Implemented security enhancements, ensuring alignment to a 3-year strategic roadmap- Consolidated security policies to ensure compliance with enterprise IAM standards, NIST CSF, ISO 27002, and PCI-DSS; constructed Information Security program CONOPs- Managed a 10-person team in IS governance program effort to update 33 standards- Defined vulnerability remediation action plan requirements to minimize business impacts while driving reductions in enterprise vulnerabilities- Managed GDPR compliance projects, authored policies and procedures covering Data Protection and Privacy Impact Assessments to drive internal and vendor compliance - Identified tools with redundant security functions (per NIST CSF) across the business, summarized the cost-benefit of options and provided recommendations to reduce CapEx- Designed program governance and operating model (current and target), and detailed an implementation roadmap focused on improving alignment to current security best practices based on the enterprise risk posture- Designed risk scoring methodology, and developed program Plans of Action and Milestones (POAM) to define & drive risk mitigation- Led cross-organizational workshops through a business impact analysis to formalize critical asset lists, define recovery objectives, and ensure global IT infrastructure resiliency - Identified 19k critical enterprise vulnerabilities, and drove fix actions across 800 business systems using a 1-year phased strategy to reduce business risks
-
Director Information SecurityUnited States Air Force Aug 2001 - May 2015Randolph Afb, Tx, Us- Identified areas for investment and submitted business case justifications for 2-year $1.5M program OpEx budget; tracked actual spending against forecasts- Justified program strategic plans for a $3.6B acquisition in order to test, evaluate and assess the readiness of system effectiveness and suitability- Executed emergency response to 159 security alarms; ensured 50 nuclear warheads worth $3.3B controlled in compliance with nuclear weapons safety rules- Authored and implemented information security program policy for Schriever AFB, CO, and oversaw program execution and compliance auditing- Created and maintained Enterprise Security program plan for 29 global business units, including issuing policy governing data protection & compliance through inspections - Managed a 9-person team employing multi-disciplinary professional methods testing & evaluating (T&E) compliance with quality engineering practices and standards - Led Six Sigma process improvement to cut supplies requisition process by 75%- Assessed $3.9B DOD acquisition for operational readiness using 375-item metrics scorecard; issued a report to senior military officials and 1 Presidential appointee- As a certified military instructor, developed lesson plans, managed training records & OJT requirements, and prepared 156 people for promotion review (98% pass rate)
Michael Sontag Skills
Michael Sontag Education Details
-
Touro University InternationalEmergency And Disaster Management -
National Defense UniversityMilitary Information Operations/Joint Information Operations -
Squadron Officer SchoolWeapons System Implementation. -
Yeshiva UniversityBiology -
Valley TorahHigh School Degree -
Phoenix Hebrew Academy -
Syracuse UniversityInformation Technology Project Management
Frequently Asked Questions about Michael Sontag
What company does Michael Sontag work for?
Michael Sontag works for Coserv
What is Michael Sontag's role at the current company?
Michael Sontag's current role is Director of Information Security | CISSP | USAF Veteran.
What is Michael Sontag's email address?
Michael Sontag's email address is sa****@****hoo.com
What is Michael Sontag's direct phone number?
Michael Sontag's direct phone number is +171935*****
What schools did Michael Sontag attend?
Michael Sontag attended Touro University International, National Defense University, Squadron Officer School, Yeshiva University, Valley Torah, Phoenix Hebrew Academy, Syracuse University.
What are some of Michael Sontag's interests?
Michael Sontag has interest in Photograph, Kids, Electronics, Traveling, Sewing, Politics, Home Improvement, Education, Reading, Crafts.
What skills is Michael Sontag known for?
Michael Sontag has skills like Emergency Management, Satellite Communications, Operations, Green Belt, Opsec, Disaster Preparedness, Icbm Operations, Top Secret, Deployment, Acquisitions, Field Testing, Test Director.
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial