Rick Andersen

Rick Andersen Email and Phone Number

Associate CISO and HIPAA Security Officer @ University of Delaware
Philadelphia, PA, US
Rick Andersen's Location
Greater Philadelphia, United States, United States
About Rick Andersen

Cyber Security, Compliance, Risk, and Audit LeaderCore Competencies Include:● Cyber Security ● IT Governance, Risk, and Compliance● Incident Response Preparedness● HIPAA Security and Privacy ● Internal Audit/IT Audit● SOX 404 Compliance ● IT General and Application Controls● SAP Audit and Security ● Business Continuity and Disaster Recovery● FDA Validation and Compliance ● Data Analytics

Rick Andersen's Current Company Details
University of Delaware

University Of Delaware

View
Associate CISO and HIPAA Security Officer
Philadelphia, PA, US
Rick Andersen Work Experience Details
  • University Of Delaware
    Associate Ciso And Hipaa Security Officer
    University Of Delaware
    Philadelphia, Pa, Us
  • University Of Delaware
    Associate Ciso/Hipaa Security Officer
    University Of Delaware Mar 2020 - Present
    Newark, De, Us
    Cyber security leader for the healthcare components of the University of Delaware, providing strategic direction and oversight, and setting priorities to ensure HIPAA compliance related to administrative, physical, and technical safeguards for Protected Health Information.
  • Capital One
    Senior It Security Consultant
    Capital One Apr 2016 - Mar 2020
    Mclean, Va, Us
    Delivered security and risk management oversight and strategy for Capital One. Focused on “shifting left” risk assessment activities to identify and remediate potential issues sooner, especially related to application development and third-party services, and to ensure alignment with operational processes. Key accomplishments included:• Helped to drive the secure migration from on premise computing to cloud-based (primarily Amazon AWS) resulting in greater operational flexibility and lower costs• Delivered security and risk management oversight for the $9 billion GE Healthcare acquisition; among other achievements, coordinated the implementation of secure access capabilities from within Capital One to external web-based file-sharing services which greatly facilitated the acquisition of millions of dollars of new business while ensuring sensitive company data remained secure• Established and maintained the “Information Security Office” for the Capital One Cyber organization (CISO and over 700 cybersecurity professionals); as a key risk adviser, developed processes to report risk metrics to senior leadership which helped drive better decisions related to cybersecurity strategy and operations• As part of the 2nd line of defense, collaborated with 1st and 3rd lines to ensure security activities were aligned with company standards and provided evidence of operation, which improved audit efficiency and effectiveness
  • Jamaica Hospital
    Chief Hipaa Security Officer
    Jamaica Hospital Dec 2014 - Feb 2016
    Jamaica, Ny, Us
    Established the HIPAA Security function for the $2 billion MediSys Health Network. Key accomplishments included:• Implemented technology and processes to monitor access to protected health information (PHI) which avoided hundreds of thousands of dollars of potential fines and penalties for non-compliance with this HIPAA requirement• Developed and implemented cybersecurity and incident response capabilities to address HIPAA requirements, including the initial “table-top” incident response exercise with executive leadership (CEO, CFO, etc.)• Led hospital department heads in identifying, reviewing, and centralizing 3rd party “business associate agreements” (BAAs) – identified and added over 150 BAAs and were able to monitor their compliance• Ensured performance of quarterly risk assessments related to the HIPAA Security Rule and “Meaningful Use” requirements, which helped to secure over $2 million in federal and state funding
  • Del Monte Fresh Produce Company
    Director, Global It Compliance And Security
    Del Monte Fresh Produce Company Jul 2013 - Nov 2014
    Coral Gables, Florida, Us
    Established and directed a global team of nine professionals to manage IT governance, compliance and security, including the critical areas of change management, project management office, and disaster recovery: • At the direction of the CFO, established a global, risk-based IT compliance and security team from what had been independent, regional IT functions – which increased collaboration by over 50%.• Implemented continuous control monitoring of key IT control processes which helped to avoid external audit fee increases of over 10%.• Implemented a corporate security program based on established security frameworks and best practices, and focused on achieving maturity related to the “20 Critical Security Controls for Effective Cyber Defense”.• Streamlined the Change Management process and reduced the average number of open change orders by 60% and the average age by 33%.• Implemented a global, IT project management tool to facilitate oversight and consistency in project execution.• Reduced overall IT costs by 15% during first year at Del Monte.
  • It Audit, Compliance And Security
    It Consultant
    It Audit, Compliance And Security Nov 2011 - Jul 2013
    Delivered IT consulting services to assist clients in assessing and strengthening their IT control environment. These services included:* IT Security Assessments (ISO 27001/27002, HIPAA)* IT Privacy Assessments (HIPAA and GLBA)* IT Governance Reviews (COBIT)* IT Risk assessments (ISO 31000, NIST SP 800-37)* IT Process Reviews (Change Management, Logical Access, SDLC, and Incident Response* Sarbanes-Oxley Related IT Audit Activities
  • Ace Insurance
    Vice President, Global It Compliance
    Ace Insurance Aug 2009 - Oct 2011
    Ch
    • Directed Global IT Compliance for this multinational, fast-growing insurance company; reported within the Global CIO’s organization to coordinate a worldwide team of twelve IT Compliance professionals. • Streamlined the IT Compliance Program, reducing controls tested by 33%; the IT Control Framework encompassed a complex and diverse, primarily outsourced, IT control environment.• Developed metrics to measure and track global IT Compliance activities and IT Audit recommendation status, and presented monthly to IT executive leadership, which significantly reduced delays in the remediation of audit findings.
  • Endo Pharmaceuticals
    Director Of It Compliance And Security
    Endo Pharmaceuticals Aug 2005 - Jul 2009
    Malvern, Pa, Us
    • Reported to the CIO/Senior Vice President of Information Management with a primary focus on compliance with pharmaceutical industry regulations and Sarbanes-Oxley requirements. Responsible for IT compliance, IT security, GxP/FDA compliance, change management, disaster recovery, and records management.• Built the IT Security and Compliance function from one person to a team of six professionals.• Developed and maintained an “IT Control Framework” to provide structure and process around the identification and mitigation of risk in the organization.
  • Ernst And Young
    Sr. Manager
    Ernst And Young Mar 2004 - Jul 2005
    London, Gb
    * Managed teams to provide IT audit services to clients - both internal (co-sourcing/out-sourcing) and external audit services* Performed SAS70 engagements for clients* Responsible for client relationship management and employee and practice development
  • Deloitte And Touche
    Sr. Manager
    Deloitte And Touche 1998 - 2004
    Worldwide, Oo
    * Led teams to perform risk-based design, build, and test of controls for SAP and other ERP engagements with Deloitte Consulting* Managed teams to provide IT audit services to clients - both internal (co-sourcing/out-sourcing) and external audit services* Responsible for client relationship management and employee and practice development
  • Black And Decker
    Sr. Manager Global It Audit
    Black And Decker 1997 - 1998
    Towson, Md, Us
    * Directed the global IT Audit team in accomplishing the annual IT audit plan - team members resided in Europe, Latin America, and Asia* Provided Internal Audit oversight for SAP implementation and Y2K preparations

Rick Andersen Skills

It Audit Information Security Information Technology Disaster Recovery Governance Security Sarbanes Oxley Act Risk Management Business Continuity Compliance Risk Assessment Erp Management It Compliance It Risk Management Pmo Change Management Sox 404 Sas70 Sap Testing Sarbanes Oxley Sox 404 Compliance It General And Application Controls Sap Audit And Security Business Continuity And Disaster Recovery Fda Validation And Compliance Data Analytics It Security

Rick Andersen Education Details

  • Brigham Young University
    Brigham Young University
    Finance
  • Arizona State University
    Arizona State University
    General

Frequently Asked Questions about Rick Andersen

What company does Rick Andersen work for?

Rick Andersen works for University Of Delaware

What is Rick Andersen's role at the current company?

Rick Andersen's current role is Associate CISO and HIPAA Security Officer.

What is Rick Andersen's email address?

Rick Andersen's email address is an****@****ndo.com

What is Rick Andersen's direct phone number?

Rick Andersen's direct phone number is +130552*****

What schools did Rick Andersen attend?

Rick Andersen attended Brigham Young University, Arizona State University.

What skills is Rick Andersen known for?

Rick Andersen has skills like It Audit, Information Security, Information Technology, Disaster Recovery, Governance, Security, Sarbanes Oxley Act, Risk Management, Business Continuity, Compliance, Risk Assessment, Erp.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.