Shay Colson, Cissp

Shay Colson, Cissp Email and Phone Number

Cybersecurity for the Middle Market @ Intentional Cybersecurity
Shay Colson, Cissp's Location
Bellingham, Washington, United States, United States
Shay Colson, Cissp's Contact Details

Shay Colson, Cissp personal email

Shay Colson, Cissp phone numbers

About Shay Colson, Cissp

Client-focused, extremely motivated, people-centric cybersecurity leader. Trying every day to raise the security tide through collaboration and transparency - let's recognize progress and get better, together.Detail-oriented with the ability to see the bigger picture, capable communicator in-person and in writing. Constantly (constantly) looking to innovate. Does not do well with downtime. Excited by complicated problems. Own worst critic. Organizational navigator. Enthusiast of self-propelled adventures (walk, run, hike, bike, swim). Learning to play the infinite game.What other sort of things do people put in this box? Does anybody actually expand it? Should I talk more about my dog? She's in the banner picture here and she hangs out in my office and she's awesome.

Shay Colson, Cissp's Current Company Details
Intentional Cybersecurity

Intentional Cybersecurity

View
Cybersecurity for the Middle Market
Shay Colson, Cissp Work Experience Details
  • Intentional Cybersecurity
    Managing Partner
    Intentional Cybersecurity Apr 2022 - Present
    Helping leadership teams understand the "So what?" of cyber risk in order to make better business decisions.On any given day, I might be:- Tailoring inherent risk rating methodologies for deployment across investment portfolios and funds; - Reviewing technical documentation, network diagrams, and environments to quantify attack surface;- Interviewing Chief Information Security Officers, Chief Technology Officers, Chief Information Officers, General Counsel, and Security Architects and Engineers;- Integrating findings from threat intelligence teams, open-source intelligence tools, and closed-source intelligence capabilities for acquisition targets;- Developing and prioritizing remediation plans, costs, and time estimates to address risks post-transaction (Immediate Action, 90 Day Plan, Year 1, etc.); Ensuring clients fully understand, contextualize, and manage down cyber risk across their entire footprint. Helping investment leaders and management teams navigate complicated cybersecurity and risk management challenges in their own specific contexts.Always looking to grow the skills and capabilities of those on my team, on my client's teams, and anyone else who asks (nicely). Always willing to make an intro or take a question - cyber is a team sport, and our world is very small. Be helpful, add value, and do the right thing.
  • Kroll
    Associate Managing Director, Cyber Risk (Due Diligence)
    Kroll May 2021 - Apr 2022
    New York, Ny, Us
    Lead North American Cyber Due Diligence Practice. Focused on buy-side, with deal sizes from $100 Million - $5+ Billion. Targets ranged from strategic acquisitions to large take-privates. Responsible for ensuring that cyber risk was properly identified and accounted for during the transaction, with mitigations planned for post-transaction.Partnered closely with Transaction Advisory Services, Valuation Advisory Services, Internal and External Technical Due Diligence teams, and Outside Counsel.
  • Kroll
    Director (Application Security & Product - Cyberclarity360)
    Kroll Mar 2019 - Apr 2021
    New York, Ny, Us
    Application Security and Product lead for CyberClarity360, a cloud-native assessment platform purpose built to help our Fortune 100 clients understand and navigate complex cyber risk decisions at scale.Leading application security and product efforts, including:- Internal vulnerability and web application security testing;- Third-party / external penetration testing findings remediation;- Business Continuity and Incident Response Plan Creation and Testing;- Static and Dynamic Code Analysis Integrations Within CI/CD Pipeline;- Integration with SEIM platform for 24x7 monitoring;- Security Architecture Design and Review responsibilities; - Coordination of ticketing, alerting, and response processes;- Ensuring application compliance with multiple security frameworks, including the NIST Cybersecurity Framework, CIS Critical Security Controls, New York DFS Cybersecurity Regulation, EU General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), and custom, client-specific internal control sets and requirements.
  • Kroll
    Senior Manager (Cyber Sme - Cyberclarity360)
    Kroll Feb 2018 - Mar 2019
    New York, Ny, Us
    Working directly with customers and development teams to achieve alignment and deliver value through a SaaS application.Leading Client Service Delivery, including:- Creating inherent risk models for Fortune 100 clients;- Reviewing third party cyber risk data and control maturity;- Reconciling vendor control implementation against various cybersecurity frameworks and regulations against custom control sets or requirements.- Developing automated remediation plan generation capabilities. Supporting Cyber Risk practice areas including advanced multi-evolutionary tabletop exercises and corporate counter-intelligence capabilities.
  • Min-Ns
    Chief Information Security Officer
    Min-Ns Dec 2016 - Feb 2018
    Owning information security efforts for a HIPAA/HITECH regulated Health Information Exchange. Handling all security incidents, reporting directly to the Executive Director.Leading strategic risk assessment and remediation activities. Coordinating Network and IT teams in daily operations, and creating a sustainable security taxonomy designed to scale.Managing outside penetration tests and security evaluations, performing internal risk assessments, prioritizing remediation activities, and deploying a proactive SIEM platform.
  • Us Federal Government
    Information System Security Engineer
    Us Federal Government Sep 2011 - Feb 2018
    Making security work.Responsible for security architecture and security control reviews for deployments of new technology platforms (COTS, SaaS, and custom-developed) on AWS GovCloud. Working directly with business units across the enterprise to identify and mitigate vulnerabilities and risks on new technology projects. Creating risk management and mitigation strategies, while still achieving business goals and requirements. Reconciling business needs and time/budget scope with current laws and regulations, including FISMA, NIST SP-800 53, internal policies and guidance, and security industry best practices.
  • Cloud Security Alliance
    Subject Matter Expert
    Cloud Security Alliance Feb 2017 - Dec 2017
    Seattle, Us
    Tailoring current Cloud Control Matrix (CCM v 3.0) to State and Local Government needs.Reconciling FedRAMP, NIST 800-53, and other security controls and best practices, as well direct interviews with State CISOs to understand their challenges and provide guidance.
  • Citizen Code
    Outreach
    Citizen Code Jul 2015 - Feb 2016
    San Francisco, Ca, Us
    Building relationships and solving problems. Innovation Prototyping + Lean Product DevelopmentBlockchain + Dynamic Equity OrganizationsDistributed Collaboration PlatformsClimate Impact
  • School Of Information Studies, Syracuse University
    Director Of West Coast Relationships
    School Of Information Studies, Syracuse University May 2010 - Jun 2015
    Syracuse, New York, Us
    Community manager for all West Coast-based constituent groups, from high school seniors to CEOs.Worked to engage in meaningful interactions, sustain relationships, create partnerships, identify opportunities, and take actionable steps to grow the Syracuse University and Syracuse iSchool community, reputation, and capabilities.In this role, I worked with companies including Google, Twitter, Facebook, eBay, Tesla, Dropbox, Box.net, Airbnb, Accel Partners, Amazon, Microsoft, Shasta Ventures, Stanford University, LinkedIn, Evernote, IDEO, and more. I have engaged hundreds of alumni in this role, generated hundreds of thousands of dollars in donations and support to the iSchool, including identifying and developing multiple new members to our Board of Advisors.
  • Rounded, Llc
    Outreach
    Rounded, Llc Apr 2013 - Mar 2014
    Syracuse, Ny, Us
    Finding, evaluating, and engaging meaningful opportunities for Rounded to make a real and tangible difference using technology.Solving problems using technology, with an emphasis on design, user experience, and quality of work.Web development, mobile web, web applications, iOS apps, Android apps, Wordpress, custom software, custom hardware.
  • University Of Washington
    Adjunct Instructor
    University Of Washington Sep 2011 - Jun 2013
    Seattle, Wa, Us
    Supporting in-person graduate classes for the Department of Communication's Master of Communication, including COM 546: "Narratives And Networks In Digital Media," and COM 529: "Research Strategy And Business Practice."Delivering in-person undergraduate courses for the Information School (INFO 498: "Risk Management").
  • Capesquared
    Co-Founder And Partner
    Capesquared Dec 2009 - Mar 2011
    Us
    • Design and build systems that streamline and simplify business processes.• User-Based Designer: Cultivate user narratives to identify and resolve system inefficiencies.• New product development and refinement.• Business development, customer acquisition, product management, project management.
  • United States Senate Sergeant At Arms
    Information Security Intern
    United States Senate Sergeant At Arms May 2009 - Aug 2009
    Washington, D.C., Us
    • Conducted 90-day Comprehensive Review of United States Senate Information Security practices for Senate Select Committee on Intelligence and Senate Committee on Rules and Administration. • Responsible for creation of information security training modules for presentation to new and existing Senate Committee and Office staff. • Assisted Network Operations Center, Security Operations Center, and Security Watchstander with daily information security operations and vulnerability assessments.
  • Philadelphia District Attorney'S Office
    Law Clerk
    Philadelphia District Attorney'S Office Aug 2006 - Mar 2008
    Us
    • Special Narcotics Enforcement Unit.• Handled more than 150 felony drug cases in court each week.

Shay Colson, Cissp Skills

Information Security Computer Security Social Media Enterprise Risk Management Project Management Entrepreneurship Business Development Start Ups Risk Management Information Security Management Security User Experience Digital Media Program Management Network Security Business Process Information Management Higher Education Product Management Data Analysis Information Assurance Vulnerability Assessment Risk Mitigation Information Security Policy Student Recruitment Visio Twitter Business Networking Community Engagement Public Speaking Community Management Alumni Relations Vulnerability Management Nist Mobile Security Cloud Security Security Architecture Design Social Networking Itil V3 Foundations Certified Multitasker Cyber Security

Shay Colson, Cissp Education Details

  • University Of Washington
    University Of Washington
    Comparative History Of Ideas (Chid)
  • Syracuse University
    Syracuse University
    Information Management

Frequently Asked Questions about Shay Colson, Cissp

What company does Shay Colson, Cissp work for?

Shay Colson, Cissp works for Intentional Cybersecurity

What is Shay Colson, Cissp's role at the current company?

Shay Colson, Cissp's current role is Cybersecurity for the Middle Market.

What is Shay Colson, Cissp's email address?

Shay Colson, Cissp's email address is sh****@****ail.com

What is Shay Colson, Cissp's direct phone number?

Shay Colson, Cissp's direct phone number is +120888*****

What schools did Shay Colson, Cissp attend?

Shay Colson, Cissp attended University Of Washington, Syracuse University.

What are some of Shay Colson, Cissp's interests?

Shay Colson, Cissp has interest in Startups In Seattle, Computer Security, Food In Seattle, Seattle, Syracuse, Syracuse University, Volvo (Automobile), Sprint.

What skills is Shay Colson, Cissp known for?

Shay Colson, Cissp has skills like Information Security, Computer Security, Social Media, Enterprise Risk Management, Project Management, Entrepreneurship, Business Development, Start Ups, Risk Management, Information Security Management, Security, User Experience.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.