Stephen Siano, Cisa, Cfe, Cissp

Stephen Siano, Cisa, Cfe, Cissp Email and Phone Number

Information Security Professional | CISSP | IT Audit Leader | CISA | Technology Risk Management | Cybersecurity | Data Analytics @ American Express
new york, new york, united states
Stephen Siano, Cisa, Cfe, Cissp's Location
New York City Metropolitan Area, United States
About Stephen Siano, Cisa, Cfe, Cissp

I am an accomplished, certified, and ethical Information Security and Internal Audit leader with a passion for identifying and mitigating technology risk and helping teams achieve more together through leading by example and mentoring others. Strong advocate of the Servant Leader management style. I started my career in Internal Audit, focusing on technology audit, risk assessment/management, data analysis, and auditing for compliance to various standards. I've led a team for 5 years and find fostering and developing talent to be very personally rewarding.As a result of my nearly 2 decades of professional experience, I have knowledge and experience in a variety of areas such as Security Risk Management, Security Governance, IT Audit, Fraud Investigation, Data Forensics, Data Analytics, General Data Protection Regulation (GDPR), Foreign Corrupt Practices Act (FCPA) and Payment Card Industry (PCI) Compliance, Risk Assessments, Automated Controls, Intellectual Property Protection, NIST Cybersecurity Framework, and SOX IT General Computer Controls. I'm committed to creating a culture of excellence, quality, service, and compliance.

Stephen Siano, Cisa, Cfe, Cissp's Current Company Details
American Express

American Express

View
Information Security Professional | CISSP | IT Audit Leader | CISA | Technology Risk Management | Cybersecurity | Data Analytics
new york, new york, united states
Employees:
69113
Stephen Siano, Cisa, Cfe, Cissp Work Experience Details
  • American Express
    Technology Risk Management
    American Express Sep 2024 - Present
    New York City Metropolitan Area
  • Bd
    Director, Cybersecurity Officer
    Bd Dec 2022 - Jan 2024
    Franklin Lakes, New Jersey, United States
    • Lead interactions between Security Governance and Technology (IT) teams. Intake security requests and apply BD’s cybersecurity framework to identify requisite security services as needed.• Lead discussions and clarify objectives with eleven project owners of twenty-two projects resulting from recent NIST CSF maturity assessment. Regularly present status updates to C-Level executive leadership.• Assist in the development of 3-year cybersecurity roadmap in partnership with IT… Show more • Lead interactions between Security Governance and Technology (IT) teams. Intake security requests and apply BD’s cybersecurity framework to identify requisite security services as needed.• Lead discussions and clarify objectives with eleven project owners of twenty-two projects resulting from recent NIST CSF maturity assessment. Regularly present status updates to C-Level executive leadership.• Assist in the development of 3-year cybersecurity roadmap in partnership with IT leadership.• Collaborate with security risk owners to strategize and develop risk treatment plans to manage identified security risks as part of Information Security Risk Register. Effectively triaged over 200 security risks over the last two months.• Collaborate with IT and IS Strategy leaders to develop, improve, and report out cybersecurity metrics to executive leadership, including the Cybersecurity Risk Committee. Areas measured include endpoint protection, disaster recovery, patching compliance, and removable media exceptions. Show less
  • Bd
    Associate Director/Senior Manager, Information Technology Audit
    Bd Feb 2020 - Jan 2023
    Franklin Lakes, New Jersey, United States
    • Led and managed a team of Senior IT Auditors who delivered over 50 global IT audits on various subject matter including NIST CSF, security operations, privacy (GDPR), application and cloud security, data centers, distribution centers, and operational technology (OT) (manufacturing sites) over 5 years identifying over 300 IT risks.• Conducted semi-annual qualitative and quantitative IT risk assessments and leveraged results to generate annual IT Audit Plan. Presented results to Audit, IT… Show more • Led and managed a team of Senior IT Auditors who delivered over 50 global IT audits on various subject matter including NIST CSF, security operations, privacy (GDPR), application and cloud security, data centers, distribution centers, and operational technology (OT) (manufacturing sites) over 5 years identifying over 300 IT risks.• Conducted semi-annual qualitative and quantitative IT risk assessments and leveraged results to generate annual IT Audit Plan. Presented results to Audit, IT, and Information Security leadership teams.• Managed technology and security risks as identified during internal audits; collaborated with risk owners and IT risk management counterparts to mitigate and remediate risks.• Led NIST CSF maturity and capability assessment of the Information Security function, covering both IT and Security. Collaborated with external vendor to plan, execute, and report out on results to internal stakeholders and executive leadership. Show less
  • Bd
    It Audit Manager, Internal Audit And Erm
    Bd Dec 2017 - Feb 2020
    Franklin Lakes, New Jersey, United States
  • Cr Bard
    It Audit Manager, Corporate Audit Services
    Cr Bard Mar 2014 - Dec 2017
    New Providence, New Jersey, United States
    • Managed and executed IT internal audits using internal or co-sourced Big 4 resources. Audits included application implementations/upgrades, program management (IT outsourcing), privacy / HIPAA /cybersecurity, and GDPR.• Implemented ACL software for data analysis. Designed and executed ad-hoc data analytics for use on audits. Supported financial audit teams with custom data analytics support.• Evaluated automated application controls (JD Edwards) for design and operating effectiveness… Show more • Managed and executed IT internal audits using internal or co-sourced Big 4 resources. Audits included application implementations/upgrades, program management (IT outsourcing), privacy / HIPAA /cybersecurity, and GDPR.• Implemented ACL software for data analysis. Designed and executed ad-hoc data analytics for use on audits. Supported financial audit teams with custom data analytics support.• Evaluated automated application controls (JD Edwards) for design and operating effectiveness in support of SOX compliance. Show less
  • Dun & Bradstreet
    Senior It Auditor
    Dun & Bradstreet Jan 2008 - Mar 2014
    IT audit, operational audit, fraud investigations, computer forensics, contract compliance, ACL analytic design, ACL implementation, source data manipulation and configuration. Experience auditing and automating controls in the following process areas: Accounts Payable, T&E expense, Purchasing Card, Procurement, Payroll. Experience with EnCase v6 & EnCase v7.
  • Bristol-Myers Squibb Via Innovative Development Llc.
    It Audit Consultant
    Bristol-Myers Squibb Via Innovative Development Llc. Aug 2005 - Dec 2007
    IT Audit Consultant. Worked on SOX compliance. Tested/designed General Computer Controls at Bristol-Myers Squibb Co. Administered OpenPages testing repository for General Computer Controls.

Stephen Siano, Cisa, Cfe, Cissp Education Details

Frequently Asked Questions about Stephen Siano, Cisa, Cfe, Cissp

What company does Stephen Siano, Cisa, Cfe, Cissp work for?

Stephen Siano, Cisa, Cfe, Cissp works for American Express

What is Stephen Siano, Cisa, Cfe, Cissp's role at the current company?

Stephen Siano, Cisa, Cfe, Cissp's current role is Information Security Professional | CISSP | IT Audit Leader | CISA | Technology Risk Management | Cybersecurity | Data Analytics.

What schools did Stephen Siano, Cisa, Cfe, Cissp attend?

Stephen Siano, Cisa, Cfe, Cissp attended Villanova University, Christian Brothers Academy.

Who are Stephen Siano, Cisa, Cfe, Cissp's colleagues?

Stephen Siano, Cisa, Cfe, Cissp's colleagues are Jamal R. Tullis, Shweta Mondal, Christina Garcia, Jyoti ., Max Johnston, Rodgers Chama, Danny Lenton.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.