David Rimmer

David Rimmer Email and Phone Number

Senior Director, Cyber @ Capital One
David Rimmer's Location
Nottinghamshire, England, United Kingdom, United Kingdom
David Rimmer's Contact Details

David Rimmer work email

David Rimmer personal email

About David Rimmer

I am a board-level security leader, and I lead Cyber teams in the UK and US for Capital One.Having helped to lead the Equifax security team through recovery from one of the largest data breaches on record, I have battle-hardened experience experience covering areas such as breach readiness, crisis management and communication, building a new security programme under intense scrutiny, (re)building trust with large multinational clients and regulators, and the mental health impacts of a major breach experience. I'm passionate about helping companies to prepare for the increasingly realistic worst case scenario, and supporting staff with the huge spike in stress and workload which comes with a large security incident; it can be an isolating, claustrophobic, high pressure environment. It can also be a time in which the wider security industry is a source of additional pressure and blame, rather than support. In such high stress environments, people without the right support will inevitably make mistakes - just when the company can't afford it.I have a record of success across industries - building, transforming and leading successful information security teams, from greenfield security team builds to leadership and continual improvement of 80+ security professionals globally.

David Rimmer's Current Company Details
Capital One

Capital One

View
Senior Director, Cyber
David Rimmer Work Experience Details
  • Capital One
    Uk Divisional Ciso
    Capital One May 2022 - Present
    Mclean, Va, Us
  • Capital One
    Senior Director, Uk Cyber Consultancy & Architecture And Product Security Assurance
    Capital One Jul 2021 - May 2022
    Mclean, Va, Us
  • Capital One
    Director, Uk Cyber Consultancy & Architecture
    Capital One Mar 2020 - Jul 2021
    Mclean, Va, Us
    As part of the UK Cyber leadership team, I lead a team of technical cyber architects and consultants. The team makes a significant contribution to the company's drive for security and innovation, working with Tech Tribes and teams across the UK business.At Capital One UK we're proudly committed to creating an inclusive workplace, where the diversity of ideas and people are valued. We take on the best people from all walks of life. Whoever you are, whatever you look like, wherever you come from. We want you to share your ideas, grow your ideas and be listened to. Find our vacancies here: https://jobs.capitalone.co.uk/
  • Nsk Europe
    Chief Information Security Officer Emea
    Nsk Europe Nov 2018 - Mar 2020
    Maidenhead, England, Gb
    I was the Chief Information Security Officer for NSK Europe, a Japanese-owned manufacturing company which operates in 10 countries in EMEA - from the UK to Russia (plus Turkey, South Africa and Dubai). I led a lean team of security staff and ran the European information security programme, working with colleagues across the world and with a central team in Tokyo.I was responsible for making sure that the easiest way to do business is as secure as NSK need it to be, that NSK are a trusted business partner because we meet or exceed customer security requirements, and that business leaders across NSK Europe can make risk-aware decisions as part of their day to day roles. I owned all aspects of security, including physical security, cyber security and security culture change.
  • Equifax
    Vice President, Global Client Security
    Equifax Jul 2017 - Oct 2018
    Atlanta, Ga, Us
    I helped Equifax to survive one of the largest data breaches on record. I led several projects to address security issues prior to disclosure of the breach, and was the primary face of Equifax security to large US, Canadian and British customers as well as UK/Canadian regulators after the breach was made public. I have extensive experience of regulatory contact and investigation through this period of work, and in helping regulators to understand the challenges faced by modern multinational businesses.I created an immediate security improvement and control verification plan for 23 international business teams, and supported my global team through scheduling of client explanatory calls, updating team members on remediation progress, and ensuring the continued mental/emotional support for team members through this hugely disruptive and intense period of scrutiny and challenge.While I wouldn't wish this experience on anyone, it was an intense learning experience. The lessons that I and my team learned led to unique experience in areas such as breach readiness, control implementation and verification, crisis management, internal and external crisis communication, staff management and support, client engagement and effective delivery of the sheer number of concurrent tasks involved in such a situation.Prior to the breach, I was responsible for all business-facing security teams (Information Security Officers), leading around 80 security professionals in 24 countries across the world. My team was responsible for policy enforcement, client assurance, and security training and awareness.
  • Equifax
    Vice President, European Security
    Equifax Oct 2015 - Jun 2017
    Atlanta, Ga, Us
    Strategic management of security risks, working with matrixed centres of excellence in Atlanta, USA.Role highlights:- membership of the European executive board reporting to the Managing Director and global CISO- ownership of security education, training and awareness for Equifax worldwide, covering almost 10,000 staff in 24 countries- leading implementation of a global security risk management framework- leadership of teams in the UK and Ireland, and Iberia.
  • Tdx Group
    Head Of Information Security And Data Protection
    Tdx Group May 2013 - Oct 2015
    Responsible for global information security leadership, supporting operations on 4 continents. I worked with directors/MDs across the globe to address information risk in their business, implementing Equifax security processes and best practice. I led security work for a joint venture between TDX and the UK government to deliver a single funnel for debt management services, successfully gaining security accreditation for the pan-government project.I built the TDX security function, which did not exist prior to my arrival, into a team of high achieving staff which has recently been shortlisted as a finalist for a major European security award. • leverage Equifax resources, expertise and processes to mitigate information risk across TDX• provide guidance relating to privacy and compliance with the Data Protection Act (1998)• lead a global awareness and culture change programme, and present at Town Hall meetings• identify and mitigate information and business risk in UK, Spain, Australia and LatAm• influence executive stakeholders to include information risk in business planning and strategy• lead IT and security work on major bids, RFPs, client audits and contract negotiations• contribute as SME member of the risk and compliance committees, and the investment council• key contributor to the senior IT leadership team in TDX• represent TDX and build relationships with key clients including central government and global banking companiesKey achievements:• created and implemented a global risk management framework for all business risks• tangibly increased client confidence in TDX, improving client relationships to protect revenue• introduced a formal information security management system, certified to ISO27001• delivered security accreditation for the DMI programme• significant input into DMI contracts for TDX, covering ~20 subcontractors and ~150 supply chain bodies
  • Driving Standards Agency
    Head Of Information Assurance
    Driving Standards Agency Nov 2012 - May 2013
    Nottingham, Nottinghamshire, Gb
    I acted as Chief Information Security Officer (CISO) for the Agency, establishing a long-term security strategy and information risk management. I was responsible for leadership, development and management of 17 staff, covering security, privacy, compliance with the Data Protection and Freedom of Information Acts, as well as records and information management.• day to day ownership of information risk across the business, including senior briefings• leadership of several teams: security, DPA, FOI, information and records management • managing and leading audit programme (internal and throughout a global supply chain)• managing branch budget of ~£1m, and project budgets of up to £500,000Key achievements:• chaired Agency’s board-level Information Assurance Forum, driving engagement with directors• provided SME input into procuring a £500m online testing contract for use across government
  • Driving Standards Agency
    Security Manager
    Driving Standards Agency Jun 2010 - Nov 2012
    Nottingham, Nottinghamshire, Gb
    Subject matter expert for all aspects of security, for a Government trading fund with a turnover of £200m, around 2,500 staff and 350 operational sites across Great Britain. • maintained key policies which cover the full range of technical, physical and personnel security• provided IA input to the Release Forum and board-level Audit & Risk Management Committee• acted as first responder for technical security incidents and investigations• managed compliance with PCI DSS, Security Policy Framework, IA Maturity ModelKey achievements:• contributed to the UK IA professionalisation programme, standardising roles across government• part of the Cabinet Office-led group which developed the Information Assurance Maturity Model • delivered budget savings of £300,000 over two years by bringing skills and knowledge in-house
  • Driving Standards Agency
    Information Security Officer (Iso)
    Driving Standards Agency Jul 2008 - Jun 2010
    Nottingham, Nottinghamshire, Gb
    Key achievements: • Security lead for the award winning CPC project, which delivered UK compliance with EU law• implement a consistent method of assessing physical security across the Agency’s 350 sites
  • Tower Computing
    Head Of Technical Department
    Tower Computing Mar 2004 - Jul 2008
    Head of Technical Department for Nottingham-based software house, which produced applications running on IBM AS/400 mainframes. Our primary customers were large-scale high street fashion companies. My team provided functions such as IT support and operations management, security and client relationship management. • deliver new client implementations• support all aspects of AS/400 mainframe software• manage client relationships and run quarterly client forums• IT incident investigation and client support using Query/400Key achievements: • delivered internal IT modernisation programme for the company's network• implemented support ticketing platform and support FAQs

David Rimmer Skills

Information Security Security Information Security Management Pci Dss Security Policy Iso 27001 Computer Security Business Continuity Governance Information Assurance Information Technology Risk Management Security Architecture Design Data Security Management Computer Forensics Internal Audit Security Audits Network Architecture Policy Writing Compliance Data Privacy Staff Development Building Relationships Leadership Security Policy Framework Information Assurance Maturity Model Enterprise Security Data Protection Act Enterprise Risk Management Privacy Law Sharks Public Speaking External Audit Pragmatic Risk Management System Accreditation Security Awareness Privacy Privacy By Design Security Leadership Innovation Training And Awareness Engagement Strategy Bs25999 Malware Analysis Enterprise Network Security Cyber Security Regulatory Compliance Security Controls Crisis Management Board Level Experience

David Rimmer Education Details

  • University Of Bedfordshire
    University Of Bedfordshire
    Computer Security And Forensics
  • Qt&C Training
    Qt&C Training
    Bcs/Iseb Data Protection Practitioner Certificate
  • 7Safe Training Ltd
    7Safe Training Ltd
    Ia
  • Parity Training
    Parity Training
    Iseb Certificate In Information Security Management Principles (Cismp – Distinction)
  • Keele University
    Keele University
    History & International Politics
  • Sans Security Conference
    Sans Security Conference

Frequently Asked Questions about David Rimmer

What company does David Rimmer work for?

David Rimmer works for Capital One

What is David Rimmer's role at the current company?

David Rimmer's current role is Senior Director, Cyber.

What is David Rimmer's email address?

David Rimmer's email address is da****@****fax.com

What is David Rimmer's direct phone number?

David Rimmer's direct phone number is +4420729*****

What schools did David Rimmer attend?

David Rimmer attended University Of Bedfordshire, Qt&c Training, 7safe Training Ltd, Parity Training, Keele University, Sans Security Conference.

What are some of David Rimmer's interests?

David Rimmer has interest in Football, Dog Walking, Information Technology, Nfl, Gadgets, Information Security, Ncaa, Economic Empowerment, Environment, Education.

What skills is David Rimmer known for?

David Rimmer has skills like Information Security, Security, Information Security Management, Pci Dss, Security Policy, Iso 27001, Computer Security, Business Continuity, Governance, Information Assurance, Information Technology, Risk Management.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.