Simon Rozario

Simon Rozario Email and Phone Number

CISO at Information Management Consultants Ltd @ Capital Support Ltd
london, london, united kingdom
Simon Rozario's Location
London, England, United Kingdom, United Kingdom
Simon Rozario's Contact Details

Simon Rozario work email

Simon Rozario personal email

n/a

Simon Rozario phone numbers

About Simon Rozario

With over 20 years of experience as an IT professional, and as a current Chief Information Security Officer, I am an accredited lead auditor who has implemented ISO 27001 at a number of organisations. I have written a number of security awareness papers on key topics including cloud computing, phishing attacks, endpoint security and social engineering amongst a number of presentations to various organisations about security and, in particular, ISO 17799/27001 implementation. These presentations included data protection and classification information; information (data) is the centre of ISO 27001, and therefore the managing of sensitive data is key. Key skills: -• Implement manageable risk assessments at client sites• Identify potential business impacts through an on-site business audit and gap analysis• Implement projects after a security audit or information security breaches• Advise clients on best practices for minimising cybersecurity risks

Simon Rozario's Current Company Details
Capital Support Ltd

Capital Support Ltd

View
CISO at Information Management Consultants Ltd
london, london, united kingdom
Employees:
66
Simon Rozario Work Experience Details
  • Information Management Consultants Ltd
    Ciso
    Information Management Consultants Ltd Jun 2017 - Present
    London, United Kingdom
  • Capital Support Ltd
    Chief Information Security Officer
    Capital Support Ltd Oct 2014 - Present
    Canary Wharf, London
    As the Chief Information Security Officer (CISO) of Capital Support, my role was created to deal with the growing demand for IT professionals specialising in IT security for the financial services sector. The key areas for Capital Support included: -• Achieve ISO 27001:2013 accreditation status within six months• Create and establish an Information Security Steering Group (ISSG) committee • Provide a training structure for all Capital Support employees and increase security awareness • Conduct an internal business process and gap analysis to identify areas that required improvements • Achieve the Cyber Essentials accreditation Since completing the above tasks, I now oversee: -• Management of Capital Support’s ISO 27001:2013 accreditation• Conduct business and gap analysis audits for clients to identify areas in need of security improvements• Provide outsourced and remote CISO services to global clients • Assist clients with achieving their own ISO 27001 accreditation or regulatory compliance (U.S. SEC/OCIE Examinations and FCA) • Technical pre-sales specialist providing information on cybersecurity solutions
  • Lewisham Homes
    Information Security Consultant
    Lewisham Homes Sep 2013 - Oct 2014
    London, United Kingdom
    Key objectives were to ensure that Lewisham Homes complied with the Data Protection Act, and to put an Information Management Framework in place. The role included presenting a project plan for using the ISO 27001 to the Board of Directors at Lewisham Homes. With approval from the Board of Directors, I set about implementing the information management project. Key areas of achievement: - • Carried out a gap analysis to ISO 27001 • Set up an Information Management Steering Group (as part of the ISMS) • Created an information asset register and record management • Carried out the business impact analysis (BIA) against the information assets • Created a risk treatment plan from the gap analysis and BIA • Created a number of policies: reporting information security breaches and events, acceptable use policy for all staff, mobile device policy, ICT operational policies, information labelling, classification and handling policy, third party coco, information sharing procedure • Reviewed privacy statement and made recommendations • Reviewed HR policies with regards to temporary and permanent staff • Implemented an e-learning package for all staff • Created a Statement of Applicability (SoA) against ISO 27001:2013 Day to day duties: - • Manage IT security incidents • Reviewing third party cocos and scope requirements for penetration tests • Reviewing Lewisham Homes’ risk management methodology including business impact, threat and vulnerability • Key adviser for FOI and SAR requests and information sharing agreements
  • London Borough Of Lambeth
    Information Security Officer
    London Borough Of Lambeth Sep 2012 - Sep 2013
    London, United Kingdom
    As the Information Security Officer at Lambeth Council, Simon’s role was to ensure that staff wereaware of the Council’s security policies and the importance of them. One way he achieved this wasby carrying out a clear desk policy audit as part of the physical audit. The physical audit highlighted a number of recommendations, one of which was to appoint Security Champions to take ownership.Simon also worked with Business Support Managers across the Council to carry out a risk assessment on their priority systems.As part of the Council’s PSN coco submission, Simon had to work with CLAS consultants to scope the penetration test and put together a remediation IT health check plan. Simon was also the single point of contact with regards to information security and advice oninformation security in new web applications, outsourced services, disaster recovery projects andother projects.Key areas of achievement: - • Carried out physical internal audits • Carried out the risk assessment on all priority 1 systems and developed a risk treatment plan • Scoped the penetration test for PSN compliance • Implemented a process for remediation following the IT Health Check • Completed the PSN coco • Carried out a gap analysis to ISO 27001 Day to day duties: - • Managed IT security incidents • Reviewed third party cocos • Reviewed the Council’s risk management methodology including business impact, threat and vulnerability • Key adviser for information security and information sharing for the Council • Reviewed and updated the Council’s security policies
  • Wandsworth Borough Council
    It Security Consultant
    Wandsworth Borough Council Jan 2011 - Sep 2013
    London, United Kingdom
    Having implemented BS7799 for the Rent Service (part of DWP), Simon was approached byWandsworth Council to implement ISO 17799/27001.As the IT Security Consultant, Simon had overall responsibility for information security in the Council. He reported to the Board of Directors and ensured that the Council maintained its certification to ISO 27001. He was also the Project Manager that rolled out ISO 27001 across the other departments (HR, Administration, Finance, Children Services, Adult Services, Leisure and Amenities, Planning and Housing) in the Council together with PCI DSS.Key areas of achievement: - • Security architect review with a budget of £1.5 million • Changed the security culture of the Council • Implemented a process for reporting security incidents • Reviewed and updated the Council’s security policies • Put together a security awareness training program • Developed a risk management methodology including business impact, threat and vulnerability • Achieved compliance and certification in the first attempt for the Council • Implemented an information security management system framework. Over half of the Council is ISO 27001 certified and the aim was for the whole Council to achieve ISO 27001 by a set date • Achieved certification to BS7799 • Recertification and scope expansion to ISO 27001 • Delivered a risk management process • Delivered a security awareness program Day to day duties: - • Developed and maintained the Council’s IT security • Reviewed and updated security policies • Carried out internal audits • Key adviser for DPA, FOI and information sharing Simon had to carry out internal audits as well as facilitate with external auditors. He coordinated other tests, from penetration testing to server hardening. The Council was predominately a Microsoft house, and Simon reviewed all the security patches and took the appropriate action with regard to security patches.

Simon Rozario Skills

Information Security Iso 27001 Risk Assessment Pci Dss Security Audit It Security Policies And Procedures Information Security Management Gap Analysis It Security Policies It Security Operations It Security Best Practices It Security Assessments

Frequently Asked Questions about Simon Rozario

What company does Simon Rozario work for?

Simon Rozario works for Capital Support Ltd

What is Simon Rozario's role at the current company?

Simon Rozario's current role is CISO at Information Management Consultants Ltd.

What is Simon Rozario's email address?

Simon Rozario's email address is sr****@****ort.com

What is Simon Rozario's direct phone number?

Simon Rozario's direct phone number is +4420745*****

What skills is Simon Rozario known for?

Simon Rozario has skills like Information Security, Iso 27001, Risk Assessment, Pci Dss, Security Audit, It Security Policies And Procedures, Information Security Management, Gap Analysis, It Security Policies, It Security Operations, It Security Best Practices, It Security Assessments.

Who are Simon Rozario's colleagues?

Simon Rozario's colleagues are Mahfuja Rahman, Billy Prater, Tam Koko, Sarah Messer, Andy King, Jayce Paul, Rodney Bovell.

Not the Simon Rozario you were looking for?

  • Simon Rozario

    It Security Consultant At Wandsworth Borough Council
    London
    1
    wandsworth.gov.uk
  • Simon Rozario

    Lead Operational Integrity Engineer At Wood Group Kenny
    Greater Aberdeen Area
    3
    yahoo.co.uk, woodgroupkenny.com, woodplc.com

    1 +447983XXXXXX

  • Simon Rozario

    Pipeline Operational Integrity Engineer At Wood Plc
    United Kingdom
  • Simon Rozario

    It Security Consultant At Syi Consulting
    London
    1
    syi-consulting.co.uk

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.