A Senior Auditor in the Healthcare Services industry with 10 years of experience, I have garnered critical skills in Data Analysis, Risk Assessment, Patch Verification, and GAP Analysis. My penchant for critical thinking, problem solving, and continuous learning coupled with my aptitude for managing compliance, have been cultivated through years of pragmatic problem-solving and program evaluation. I take pride in having led an interview team to collect data for a multiple myeloma research study, upholding highest standards of ethical practices, detail orientation, and adherence to HIPAA confidentiality guidelines. Presently seeking to transition into a Cybersecurity GRC role as my long-term goal, where I can leverage my extensive auditing and compliance skills. I am deeply committed to bridging the gap between technical and non-technical environments through effective communication, all the while contributing to effective cybersecurity governance and risk management strategies. A goal-driven professional, I am eager to further my professional growth in a dynamic and challenging environment.
Confidential
-
Cyber Security ConsultantConfidential Apr 2023 - Present• Led Cybersecurity Project Teams: Managed a team of cybersecurity consultants through the end-to-end lifecycle of complex projects, overseeing planning, resource allocation, execution, and final delivery. Developed detailed project plans, tracked progress, and mitigated risks to ensure timely, successful outcomes.• Conducted PCI DSS Gap Analysis: Performed a comprehensive gap analysis and scoping assessment for a PCI Level 1 Fortune 500 client, uncovering additional payment channels that expanded the project’s scope. Verified the security of these channels to ensure PCI DSS compliance, preventing potential fines and remediation costs.• Authored & Implemented Information Security Policy: Developed and rolled out an updated Information Security Policy (ISP) aligned with NIST 800-53, ISO, and PCI DSS 4.0 requirements, ensuring ongoing compliance with industry standards and reinforcing the organization’s risk management strategy.• Developed Control Matrix for Compliance: Created and managed a comprehensive control matrix aligning company security policies with NIS2, NIST 800-53 Rev 5, and PCI DSS 4.0. This matrix streamlined compliance efforts, reduced redundancies, and strengthened overall security posture.• Delivered Detailed Audit Assessments: Conducted Attestation of Compliance (AOCs) and Self-Assessment Questionnaires (SAQs), providing clear, actionable assessments that enhanced client satisfaction and strengthened collaborative relationships.
-
Grc AnalystAdvantage Sales And Marketing Jan 2014 - Oct 2022• PCI DSS Compliance Management: Spearheaded PCI DSS compliance initiatives for secure payment card data handling across multiple retail establishments. Implemented controls to ensure regulatory adherence and safeguard sensitive data across all channels.• Audit Execution & Compliance Enhancement: Conducted in-depth audits to assess compliance status, identified key improvement areas, and implemented corrective actions to close gaps and enhance overall security.• Cross-Functional Collaboration & Security Alignment: Collaborated with internal teams and external partners to ensure PCI DSS compliance, strengthening payment data security and establishing a cohesive approach to data protection.• Risk Mitigation Strategy Development: Designed and executed risk mitigation strategies tailored to data handling practices, reducing vulnerabilities and minimizing the risk of data breaches.• Security Awareness Training & Policy Implementation: Delivered PCI DSS compliance training to staff and partners, fostering a culture of security awareness and equipping team members with best practices to maintain ongoing compliance and proactive risk management.
Patrick Lewis Skills
Patrick Lewis Education Details
-
Computer Training SolutionsInternet Marketing -
University Of Illinois At SpringfieldPublic Administration -
Western Illinois University Macomb, IllinoisSociology
Frequently Asked Questions about Patrick Lewis
What company does Patrick Lewis work for?
Patrick Lewis works for Confidential
What is Patrick Lewis's role at the current company?
Patrick Lewis's current role is Cyber Security Specialists are responsible for discovering vulnerabilities and risks in networks, software systems and data centers with vulnerability scans, monitoring network data, ensuring system apps are updated..
What schools did Patrick Lewis attend?
Patrick Lewis attended Computer Training Solutions, University Of Illinois At Springfield, Western Illinois University Macomb, Illinois.
What are some of Patrick Lewis's interests?
Patrick Lewis has interest in Health.
What skills is Patrick Lewis known for?
Patrick Lewis has skills like Sas Programming, Sas Base, Ms Excel Pivot Tables, Microsoft Office, Sql, Visual Basic, Spss, Cobol, Sas, Databases, Analysis, Access.
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial