"Locktivity shows up when I need it, and otherwise stays out of my way". Music to my ears as a founder dedicated to plowing down obstacles and harnessing the superpowers of GRC Security and TPRM leaders. With over 15 years of experience in operations, compliance and cybersecurity, I'm determined to companies build and maintain robust risk and security programs that align with their business objectives and regulatory requirements. I hold the CISM and ISO Lead Implementer certifications, and have expertise in SOC1, SOC2, and ISO 27001 compliance, as well as third party risk, enterprise risk, and cybersecurity management.My passion is to empower people to do the right thing and achieve their goals. I believe in the value of a strong security culture and using security and compliance to build safeguards rather than obstacles. I also believe in the power of transparency and communication, and use tooling and dashboards to centralize risk and vulnerability tracking, and to enable continuous visibility and prioritization of risk reduction. My mission is to help companies and colleagues build policies and practices that enable their ability to focus on their business goals rather than checking boxes and responding to fires.
-
Co-FounderLocktivityCalifornia, United States -
Co-FounderLocktivity Jan 2024 - PresentSan Francisco Bay Area -
Compliance, Risk And Cybersecurity ConsultantCyber Security And Compliance Consulting Sep 2023 - PresentSan Francisco Bay AreaSecurity and compliance are a passion of mine, and I've loved building programs that make my colleagues happy rather than frustrated. I'm a believer in the paved road model- when I can implement compliance requirements and security safeguards in a way that help people get their work done efficiently and safely, it brings me joy. It's with this approach that I help companies achieve SOC1, SOC2, and ISO 27001 compliance, and build third party risk, enterprise risk, and cybersecurity programs that work.
-
Director Of Risk And Compliance/ Head Of InfosecLogik Systems, Inc. Apr 2018 - Aug 2023I believe in the value of a strong security culture and using security and compliance to build safeguards vs. obstacles; and I believe in the power of transparency. Knowledge is power, so empower your team!At Logikcull, I drove embedding security and compliance into the day to day practices of Logikcull's team by maintaining strong cross-team communications, conducting regular and engaging training, and using tooling and dashboards to centralize risk and vulnerability tracking. This enabled continuous visibility and supported prioritization of risk reduction in roadmap and sprint planning.My proudest accomplishments at Logikcull were not the sheer number of improvements made and the maturity of the program we built, but the moments when we could measurably see it's impact. This included the avoidance of impact from third party breaches on more than one occasion and being able to map the reduction in reported vulnerabilities (despite increasing the discovery mechanisms) in direct relationship to the controls we implemented, such as a CSP, monthly patching, and security code training. I loved that when I left this job I was messaged, "I'm going to click on every link I get in protest". The team truly embraced security and that's amazing and warmed my little heart!In partnership with my amazing security, enterprise IT and GRC team, I led the roll out of our:• Security champions program• Accessibility champions program• AI governance steering committee• Bug bounty• RBAC using Okta for centralized access control• DLP solutions• Centralized logging and monitoring with a SIEM solution• Remote working security controls, including enforced MFA, MDM for all laptops, and a zero-trust access platform• Security awareness training program, including HIPAA, global data privacy, security
-
Compliance And Security ConsultantSelf Employed Mar 2016 - Mar 2018Bay Area, CaliforniaCompliance and HR Consulting:SOC II Gap AssessmentsRisk AssessmentsInternal Control design Policy Drafting and Procedure DocumentationHRIS Implementation
-
Business Ops- Hr And ComplianceNvest, Inc. Sep 2014 - Aug 2016In a Jill-of-all-trades fashion I took on an array of projects as needed to keep the day to day business functioning and support the business as we scaled.This included:A studs to move-in 12,000 sq. ft office build out in just a few monthsLeading SOC 2 program implementation, earning SOC 2 Type 2 reports with no exceptionsOwning HR, including implementing an HRIS system and managing payroll and 401(k) managementLeading the development and publishing of company policies and handbooksManaging a 4 year financial audit- when the next year's audit came along, I had the auditor's initial requests filled in 2 hours!
-
AeoAtiv Software - Eventpilot | Scientific Conference & Medical Meeting Apps Mar 2011 - Sep 2014Client Relationship and Implementation ManagementCS Team ManagerBusiness Administration & Partnerships
Rachel C. Education Details
-
Political Science And Government -
Associate Of Arts - Aa
Frequently Asked Questions about Rachel C.
What company does Rachel C. work for?
Rachel C. works for Locktivity
What is Rachel C.'s role at the current company?
Rachel C.'s current role is Co-Founder.
What schools did Rachel C. attend?
Rachel C. attended Sonoma State University, Santa Rosa Junior College.
Not the Rachel C. you were looking for?
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial