Michael Barnes

Michael Barnes Email and Phone Number

VP, Information Security (CISO) @ Axiom Bank, N.A.
Hoschton, GA, US
Michael Barnes's Location
Hoschton, Georgia, United States, United States
Michael Barnes's Contact Details
About Michael Barnes

With 30+ years of IT and security experience, using a strategic and customer-focused leadership style, I have successfully designed and implemented multiple complex global security programs and architectures, aligning business objectives with security capabilities to achieve effective and efficient security programs. By collaborating across business units, I have been able to grasp key elements of business processes and articulate risks in order to design sustainable security solutions and meet competing priorities.My extensive industry and cybersecurity experience include establishing security strategies, defining policies and procedures, designing security architectures, and implementing and operating a wide range of security capabilities across a diverse set of organizations. My security knowledge covers working with event monitoring, endpoint protection, incident response, business continuity, disaster recovery, encryption, data loss prevention, vulnerability scanning, penetration testing, cloud-based architectures, virtual environments, network and infrastructure protection, security awareness, and vendor risk management. I have led security, privacy, and compliance initiatives related to International Standards Organization for Information Security (ISO 27001), General Data Privacy Regulation (GDPR), Health Insurance Portability and Accountability Act (HIPAA), Payment Card Industry Data Security Standards (PCI-DSS), SWIFT Customer Security Controls Framework (CSCF), National Institute of Standards and Technologies (NIST), National Nuclear Security Agency (NNSA), Nuclear Regulatory Commission (NRC), and Service Organization Controls (SOC 1 and 2, Types 1 and 2).

Michael Barnes's Current Company Details
Axiom Bank, N.A.

Axiom Bank, N.A.

View
VP, Information Security (CISO)
Hoschton, GA, US
Michael Barnes Work Experience Details
  • Axiom Bank, N.A.
    Vp, Information Security (Ciso)
    Axiom Bank, N.A.
    Hoschton, Ga, Us
  • Avenue Security
    Director Risk & Compliance
    Avenue Security Oct 2024 - Present
    Avenue Security helps our technology start-up clients demonstrate a robust cybersecurity program to their customers, enhancing trust and credibility in their services.We provide cybersecurity strategic plans, assessments, audit readiness support, and ongoing management of cybersecurity governance, risk, and compliance programs and will implement and manage cost-effective cybersecurity solutions through our vCISO services. Frameworks supported include SOC 2, NIST CSF, CIS, ISO 27001, PCI, HIPAA, NYDFS, GDPR, CCPA, and more.
  • Kudelski Security
    Information Security Strategy, Risk, & Compliance Practice Director
    Kudelski Security Nov 2021 - Oct 2024
    Cheseaux, Ch
    Kudelski Security is a cybersecurity consulting company dedicated to solving complex problems with innovative solutions. As the information security strategy, risk, & compliance practice director, I lead our delivery teams to support our clients by understanding client problems, delivering effective solutions, & developing our consultants. Using my 25+ yrs of experience, across banking, consumer products, healthcare, manufacturing, oil & gas, & insurance industries, I help clients define security strategies, policies, operating models, architectures, & resource & cost estimates & implement governance structures, steering committees, procedures, technologies, & services. As a security consultant, I have developed & tailored numerous risk mitigation & control enhancement plans used to address IT, cybersecurity, & privacy program & architecture gaps for some of the world’s largest & most complex organizations, leading to actionable design & implementation plans. My work includes addressing compliance frameworks for global clients, subject to more than 145 regulations (e.g., OSFI, FFIEC, SEC, FRB, NYSDFS, FISMA, RBI, HKMA) & international industry standards (e.g., NIST CSF, NIST 800-53, ISO 27001/2, COBIT 5, PCI-DSS, HIPAA, NERC, NRC, NNSA).My background & experience allows me to lead business case development, cost estimating, resource planning, & project reporting for the implementation of global security solutions addressing information classification, asset management, data protection, encryption, vulnerability management, security event monitoring, incident response, patch management, change management, anti-malware, file integrity, endpoint forensics, web filtering, intrusion detection, data loss prevention, security awareness, vendor risk management. disaster recovery, & business continuity capabilities.
  • Career Highlights
    Security Advisor
    Career Highlights Jan 2000 - Nov 2021
    During my 20+ career, I tackled new & interesting projects filled with complex challenges & amazing companies- $600M+ security investment project, led security architecture subject matter experts & performed cost estimating, resource planning, & project reporting across 39 simultaneous projects covering 76 security services - Digital transformation project for a global media company, delivered Zero Trust strategy, architecture, & roadmap that incorporated legacy assets with MS Azure & AWS environments- Remediation project for a US company that, had failed their financial controls audit 3 yrs in a row, was unable to provide a “clean” PCI report, & was written up in the hacker magazine 2600 on how to compromise their POS system; within 9 months, I led the organization to a successful financial controls audit, clean PCI ROC, & POS vulnerability remediation- Built security & privacy program from “ground up”, defining IT security operating model, resource planning, & cost estimating for the implementation of steering committee, policies, operating model, procedures, technologies, & capabilities for a 12,000-employee organization with offices in more than 90 countries - Led IT & security implementation & operations of a nuclear facility used to convert weaponized nuclear material into nuclear fuel, meeting NNSA & NRC requirements - Led the creation of a consolidated compliance framework covering 145 financial industry regulations (e.g., OSFI, FFIEC, SEC, FRB, NYSDFS, FISMA, RBI, HKMA) from 9 countries & aligned to industry standards (e.g., NIST CSF, NIST 800-53, ISO 27001/2, COBIT 5, PCI-DSS)- Led a team of highly skilled ISSO responsible for conducting security assessments based on the NIST RMF, resulting in the ongoing A&A of 250+ applications- Led the transition & operation of SOC for a U.S. cabinet-level executive branch department, replacing 12 of 13 analysts & adjusting service hours from 8 hrs/day x 5 days/wk to 24 hrs/day x 7 days/wk
  • Zermount, Inc.
    Sr. Project & Portfolio Manager
    Zermount, Inc. Jul 2020 - Oct 2021
    Arlington, Virginia, Us
    Zermount is a professional services organization that provides cybersecurity services to US Government Agencies.I served as the program manger for multiple cybersecurity programs and as the senior IT security advisor to the CISO and D-CISO on security authorization and accreditation (A&A), risk and vulnerability management, operations, and problem solving activities
  • Deloitte & Touche Llp
    Senior Manager, Cyber Risk
    Deloitte & Touche Llp May 2016 - Jun 2020
    Conducted security program, privacy program, and regulatory and compliance framework assessments for some of the world’s largest and most complex organizations, leading to design and implementation plans for risk reduction and operational enhancements As part of a $600+ million security investment, led security architecture design reviews; influencing and approving infrastructure security architectures across 39 simultaneous projects that implemented or enhanced 76 security services for a global professional services organization Conducted CISO transition labs helping clients formulate strategic individual and organizational action plans addressing time, talent, relationships, and personal legacies by refining priorities, evaluating team skillsets, and assessing stakeholder support
  • Macy'S
    Information Security Delivery Manager
    Macy'S Apr 2013 - Jan 2016
    New York, Ny, Us
    Managed the security architecture team of engineers, responsible for conducting infrastructure security risk assessments, network segmentation and remote access control designs, and technology implementations, including the deployment of 1,600 firewalls in 3 months to 800+ stores and the implementation of web application firewalls for a top 100 e-commerce website hosted in a hybrid cloud environment.Performed risk reviews, covering all new technology implementations as part of the risk assessment process, approving solution architectures and implementation plans, and managing a team of security architects and engineers.
  • Mantech (Dhhs)
    It Security Operations Center Manager
    Mantech (Dhhs) Aug 2011 - Jan 2013
    Responsible for the hiring, training, and operations of the Security Operations Center (SOC) team within the Computer Security Incident Response Center (CSIRC)Developed and transformed the Security Operations Center (SOC) team of analysts through hiring, training, and day-to-day operationsTransitioned the incident response capabilities from an 8x5 (eight hours per day, five days a week) operation to 24x7 operation, increasing the detection and response capabilities for the agency
  • Shaw Areva Mox Services, Llc (Doe)
    It Operations Manager
    Shaw Areva Mox Services, Llc (Doe) Jun 2010 - Aug 2011
    Responsible for IT systems design, implementation, and day-to-day operations Managed the IT team and responsible for adhering to National Nuclear Security Agency (NNSA), Nuclear Regulatory Commission (NRC), and National Institute of Standards and Technology (NIST) compliance requirements
  • Tbc Corporation
    Director, Information Security (Ciso)
    Tbc Corporation Jun 2009 - Jan 2010
    Palm Beach Gardens, Fl, Us
    Established the IT security strategy, team structure, and day-to-day operations Responsible for the design and implementation of the security program, including the enhancements that enabled compliance with Payment Card Industry data security standard (PCI-DSS) requirements, and passing the Japanese Financial Instruments and Exchange Act “JSOX” compliance audit
  • Bcd Travel
    Sr. Director, Global Information Protection & Security (Ciso)
    Bcd Travel Jun 1999 - Jan 2009
    Utrecht, Nl
    Built the security and privacy program from the “ground up,” established a steering committee of C-level executives, documented policies and procedures, defined an operating model, and selected security services. This position led the Global Information Protection program and interfaced with internal and external clients and functioned in an executive capacity, representing information protection, security, privacy, and risk. Established, implemented, and directed the strategic long term goals and objectives of the department. Accountable for financial and personnel performance. Responsible for vendor relationships and negotiations. Provided direction to internal customers regarding information protection expectations of legislation, standards, and best practices. Reviewed and approved contract provisions related to information protection. Responded to client inquiries regarding the methods used to safeguard the data they entrust to BCD Travel necessary to provide travel-related services.Prepared and presented investment business cases and led the design and implementation of information classification, asset management, data encryption, vulnerability management, security event monitoring, incident response, patch management, change management, anti-malware, file integrity, endpoint forensics, web filtering, intrusion detection, data loss prevention, security awareness, disaster recovery, and business continuity capabilitiesDefined and assessed data center security requirements for facilities in the US, Germany, China, and the UKHired and mentored a globally diverse team located across Europe, India, Asia Pacific, and North America
  • Ashrae
    It Manager
    Ashrae Jun 1998 - Jun 1999
    Peachtree Corners, Ga, Us
  • Usmcr
    Sergeant
    Usmcr Aug 1987 - Aug 1995
    Washington, Dc, Us

Michael Barnes Skills

Information Security Disaster Recovery Cism Security Iso 27001 Cissp Risk Assessment Pci Dss It Strategy Network Security Servers Active Directory Information Technology Information Security Management It Operations Leadership Computer Security Infrastructure Data Privacy Windows Server Management Cloud Computing Program Management Payment Card Industry Data Security Standard Expert Advisor Consulting

Michael Barnes Education Details

  • American Intercontinental University
    American Intercontinental University
    It
  • Sans
    Sans

Frequently Asked Questions about Michael Barnes

What company does Michael Barnes work for?

Michael Barnes works for Axiom Bank, N.a.

What is Michael Barnes's role at the current company?

Michael Barnes's current role is VP, Information Security (CISO).

What is Michael Barnes's email address?

Michael Barnes's email address is ba****@****ail.com

What is Michael Barnes's direct phone number?

Michael Barnes's direct phone number is +167840*****

What schools did Michael Barnes attend?

Michael Barnes attended American Intercontinental University, Sans.

What are some of Michael Barnes's interests?

Michael Barnes has interest in Football, Exercise, Sweepstakes, Home Improvement, Reading, Sports, Golf, Hockey, Watching Hockey, Home Decoration.

What skills is Michael Barnes known for?

Michael Barnes has skills like Information Security, Disaster Recovery, Cism, Security, Iso 27001, Cissp, Risk Assessment, Pci Dss, It Strategy, Network Security, Servers, Active Directory.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.