Stephen Mcnamara

Stephen Mcnamara Email and Phone Number

Lead Vendor Risk Analyst II @ Silvergate Bank
Saint Paul, MN, US
Stephen Mcnamara's Location
Greater Minneapolis-St. Paul Area, United States, United States
Stephen Mcnamara's Contact Details

Stephen Mcnamara personal email

n/a
About Stephen Mcnamara

Third Party Risk Management (TPRM) Professional – Certified Third Party Risk Professional (CTPRP) with 20+ years’ experience. Experienced risk professional with experience in security risk assessments in fast paced environment on a global scale. Collaborating with vendors and business units to ensure safe partnerships through security risk assessment process. Redefining technical support through creating process documents, developing personnel training, talent for managing multiple projects and strategic technology specialist with an eye for process improvement and strong communication skills.Certification and Skills: • Certified Third Party Risk Management (CTPRP) – June 22nd, 2018.Strong knowledge and experience with:• Risk Assessments – executing/reviewing/determining inherent & residual risk.• Perform due diligence on vendor documentation to identify risks, gaps, or issues.• SOC Reports, ISO 27001, PEN Test, Vulnerability Scans, Privacy.• Understand and experience with security and privacy controls that include network, application, access control, risk management, incident management, privacy, compliance, threat management, end-user device, business resiliency, physical/environmental, asset management, operations management, cloud hosting, human resource, security.• Understanding of cloud principles such as IaaS, SaaS, PaaS. • Due diligence & oversight of core cloud providers AWS, Azure and GCP (ex: Tier 1 vendors).• Created documentation – ex: TPRM Playbook, TPRM training documentation.• Created Risk Assessment templates\questionnaires using SIG, CCM/CAIQ, NIST-CSF framework.• Cyber Security Incident Response – lead analyst for Cyber Incidents on TPRM team. • Experienced in multiple TPRM platforms – OneTrust, RSA Archer, SAI Global, Security Scorecard, CyberGRX. • Ability to work with or support senior business leaders to identify risk factors and communicate effective mitigation strategies.• Effective communication and relationship management skills.

Stephen Mcnamara's Current Company Details
Silvergate Bank

Silvergate Bank

View
Lead Vendor Risk Analyst II
Saint Paul, MN, US
Employees:
107
Stephen Mcnamara Work Experience Details
  • Silvergate Bank
    Lead Vendor Risk Analyst Ii
    Silvergate Bank
    Saint Paul, Mn, Us
  • Delta Air Lines
    Sr. Security Analyst - Vendor Risk Management
    Delta Air Lines Sep 2023 - Present
    Atlanta, Georgia, Us
    • Participate in vendor risk management activities including third party risk assessments, gap analysis, contract review, vendor breach and termination activities, and partner with internal stakeholders to monitor vendors.• Perform data analytics and create reports to effectively communicate outcomes from vendor management activities and relate security, compliance, and/or governance related concepts and controls across a variety of audiences including non-technical audiences.• Identify and communicate findings of non-compliance with Delta Information Security Standards and track to remediation to an acceptable level of risk.• Continuously work to improve the overall Vendor Risk Management Program through identifying opportunities and leading participating in implementation activities.• Provide guidance to the business, Strategic Sourcing and other stakeholders to ensure requirements of VRM are fully understood.• Serve as the subject matter expert in interpreting requirements and improve awareness of Operational Risks faced by Business from vendor’s failure/poor performance.
  • City National Bank
    Vendor Risk Senior Analyst
    City National Bank May 2023 - Sep 2023
    Los Angeles, Ca, Us
    Facilitate enterprise third party risk assessments for initial due diligence and ongoing oversight of third party vendor services. This includes collection of documents and analysis, third party risk assessment questionnaire requirements, reviewing audited reports of controls (i.e. SSAE18, SOC Type II, PCI AoC/RoC) and other information to support full evaluation of any potential outsourcing risks.
  • Silvergate Bank
    Lead Vendor Third Party Risk Analyst Ii
    Silvergate Bank Oct 2022 - May 2023
    La Jolla, Ca, Us
    ➤ Facilitate the onboarding, monitoring, and offboarding of vendors to ensure strong oversight of all vendors’ risk and provide business partners visibility of existing and emerging risks.➤ Monitor vendors’ compliance with the terms of services outlined in approved contracts. Review and update contractual language.➤ Support the design and implementation of a common and consistent vendor risk management (VRM) program to effectively manage vendor risk.➤ Assess security controls leveraged by third parties and mitigate any findings or risks identified through assessments and independent external audits, such as Penetration Tests, SOC 1, 2, and 3 reports.➤ Support financial analysis review of current and potential vendors.➤ Assist with data, contract, and document transfer from legacy systems into the VRM system.➤ Update and maintain vendor management standards and policies.➤ Help business units with analysis of emerging risks and controls and direct remediation of findings.➤ Foster strong relationships with vendors and vendor owners to help ensure that all risk assessment and mitigation requirements have been met; risk is monitored and mitigated throughout testing/ development/ implementation and use.➤ Support development and execution of a robust communication and training plan to facilitate the effective application and awareness of VRM to the business.➤ Maintain prompt and consistent communication.➤ Demonstrate attention to detail, ability to translate vendor management requirements into business-friendly terminology, and the ability to effectively communicate to a diverse set of stakeholders.➤ Review subject matter expert reviews for reasonableness.➤ Maintain current knowledge of all Federal and State Laws and Regulations, along with all Bank’s policies and procedures.
  • Thomson Reuters
    Sr. Third Party Risk Management Analyst
    Thomson Reuters Sep 2019 - Aug 2022
    Toronto, On, Ca
    Conducted Third Party Vendor Risk Assessments for multinational mass media and information company to detect and minimize supplier, partner, and distributor inherent and residual risks. Oversaw and consult on remediation and mitigation of third party inherent and residual risks, work with business units in registering risks and remediating “findings'' identified. TPRM platform used OneTrust, SAI Global, CyberGRX and Security Scorecard. ➤ Enabled business units to make informed decisions on vendor partnerships by providing articulate security risk assessment summaries that align with company security standards.➤ Performed due diligence on vendor documentation to identify risks, gaps, or issues. ➤ Reviewed security documentation/reports that include SOC Reports, ISO/IEC 27001, Penetration Tests, Vulnerability Scans, SDLC, Privacy and etc..➤ Helped develop and implement TPRM Enterprise tool called OneTrust.➤ Created risk assessment templates using SIG\CCM\CAIQ\NIST CSF framework.➤ Created TPRM “Team Playbook”. ➤ Developed improved features within Risk Assessment Reports including identification of services, key risks, and remediation for new TPRM platform OneTrust. ➤ Created updated process documents for the TPRM platform OneTrust for team concerning software use, login details, and the submission process, among others.➤ Helped lead a project in identifying top100 critical vendors and assessing inherent and residual risk.➤ Partnered with groups such as Sourcing, Procurement, Technology S&G, Architects in TPRM process.➤ Assisted in compliance audits on the TPRM program from external auditors.
  • U.S. Bank
    Third Party Risk Consultant
    U.S. Bank Aug 2018 - Sep 2019
    Minneapolis, Mn, Us
    Responsible for managing, monitoring and coordinating Third Party Management (TPRM) activities for assigned business lines. Perform third party risk assessments and reporting. Includes audit and credible challenge of discrepancies and data conflicts along with approvals of internal and external assessments for completeness, consistency and accuracy prior to third party engagement.
  • Thomson Reuters
    Sr. Information Security Analyst
    Thomson Reuters Mar 2017 - Aug 2018
    Toronto, On, Ca
    Conduct security assessments for multinational mass media and information firm to detect and minimize supplier, partner, and distributor risks. Oversee and train new analysts in Third Party Vendor Risk Security Assessments as subject matter expert within global environment. Manage SOC compliance audits across business units and Vendor Risk Management documentation. Perform Information Security Assessments to identify and assess third party vendor ratings. Oversee and consult on remediation and mitigation of third party residual risk.➤ Became Certified Third Party Risk Professional (CTPRP) through 3 day intensive training and exam to increase personal marketability and develop training for new analysts.➤ Helped to develop the Vendor Risk Program by creating new vendor risk questionnaires and developing technology of Enterprise Risk Management tool.➤ Developed improved features within Risk Assessment Reports including identification of services, key risks, and remediation.➤ Oversaw SOC 2 compliance audits for all business units, assessing submitted control information, and reviewing and submitting controls to respective, identified groups.➤ Created updated process documents for Risk Management software for team concerning software use, login details, and the submission process, among others.➤ Communicate vendor risk assessments with business units to ensure safe transactions with vendors, identifying high risk vendors, registering risks, and offering recommendations.➤ Enable business units to make informed decisions on vendor partnerships by providing articulate information security risk assessment summaries that align with company security standards.
  • Ibm
    Senior Support Analyst
    Ibm 2015 - 2017
    Armonk, New York, Ny, Us
    Oversaw daily site operations with 25 direct reports and served as point of contact for conflict resolution during outsourcing campaign at Thomson Reuters. Resolved tier 2 and 3 escalated ServiceNow tickets for Windows and Mac OS X, and Jamf JSS and Casper Suite oversight for Mac OS X. Supported encryption software and led software and hardware upgrades.➤ Managed company mobile devices purchased for personal use through AirWatch MDM.➤ Created new process documents for personnel ranging from basic end users to senior technologists on multiple topics to facilitate a user friendly experience with technology.➤ Developed and maintained updates for Oracle Knowledge Base documentation.➤ Supported company in troubleshooting and replacing switches and activating ports.
  • Thomson Reuters
    Sr. Technical Support Analyst
    Thomson Reuters 2010 - 2015
    Toronto, On, Ca
    Handled front-line primary technical administration to consumers and businesses for multiple platforms including computers and mobile devices, software, and anti-virus management. Managed mobile devices and administration for company personnel for AirWatch MDM. Oversaw support for encryption software and OS support. Attended to Tier 2 Desktop Support tickets through HP Service Manager.➤ Supported internal users for hardware and software acquisition, offering recommendations and collaborating with them to purchase product.➤ Served as anti-virus contact and technical support for Windows and Mac OS X in enterprise environment.➤ Handled user management tools Active Directory and ARS for permission group additions and password resets as permission based applications.➤ Created and developed knowledgebase documents for technical support, enabling users to engage in more user-friendly use of hardware and software.
  • Thomson Reuters (Formerly Thomson West)
    Sr. Business Administrator
    Thomson Reuters (Formerly Thomson West) 2007 - 2010
    Oversaw daily operations for support program and application use across all professional and market business units. Maximized team efficiency with communication and technical skills through specialized system support of workforce management and quality monitoring.➤ Supported company call centers regarding third party applications including nGenera email, chat, knowledgebase, and Verint Impact 360.➤ Acted as point of contact for multiple Thomson West companies and business units on a global scale for software installation and customer service support.
  • Thomson Reuters (Formerly Thomson West)
    Technical Specialist
    Thomson Reuters (Formerly Thomson West) 2005 - 2007
    Handled specialized system support and technical support for PC, printer, and software applications including troubleshooting, diagnoses, and resolution.➤ Specialized System Support - Provided second level technical support for specialized systems (Talisma email, chat and telephony, Witness quality monitoring, Aspect eWorkforce Management, RTA and empower, and Internal workflow program Hand-Off Database). ➤ PC / Applications technical support - Provided second level assistance for PC, printer and software application issues and questions. Troubleshooted, diagnosed and resolved escalated PC / Application problems.➤ Monitored and maintained inventory of department PC’s, printers and licenses for 3rd party applications. Submit orders for hardware and software purchases.• PC / Application training – Developed PC / Application training materials in conjunction with department trainers. Created and maintained PC / Application documentation and support plans. ➤ Tested, coordinated and implemented technical initiatives – coordinated PC hardware and software installations/upgrades with business teams. Conducted initial testing of new/upgraded software applications, coordinated user testing and documented issues. ➤ Identified, investigated and analyze technical support issues – identified trends and problem areas; recommended and implemented solutions.
  • Thomson Reuters (Formerly Thomson West)
    Ets Desktop Consultant
    Thomson Reuters (Formerly Thomson West) 2003 - 2005
    Provided tier 2 desktop support to company personnel and trained ETS desktop consultants on remote administrative tools. Led monthly meetings with department contacts and updated technical process documents for users.➤ Provided tier 2 desktop support to internal Thomson West employees. ➤ Trained ETS Desktop Consultants to use remote administrative tools. ➤ Coordinated monthly meetings with department contacts to discuss technical issues within the department or upcoming upgrades\migrations.➤ Consulted with users in purchasing new hardware or software. ➤ Updated\created technical documentation for users.
  • Thomson Reuters (Formerly Thomson West)
    Sr. Help Desk Analyst
    Thomson Reuters (Formerly Thomson West) 1998 - 2003
    Handled onsite and remote support to personnel, liaising between help desk and desktop support. Provided training to help desk analysts and created technical process documents for personnel.➤ Provided technical phone support to internal Thomson West employees and remote sites, which included remote dial-up support.➤ Liaison between Help Desk and Desktop support. ➤ Provided training to Help Desk Analysts.➤ Updated\created technical documentation for users.➤ Transitioned three help desks into single call center.
  • Shared Resource Management, Inc.
    Computer Consultant
    Shared Resource Management, Inc. 1997 - 1998
    ➤ Solved software, hardware, and network problems customers had over the phone or on site. ➤ Helped establish a help desk for external customers.
  • Thomson Reuters (Formerly West Publishing)
    Technical Customer Service Representative
    Thomson Reuters (Formerly West Publishing) 1995 - 1997
    Provided technical and administrative phone support for both Westmate and Premise software.

Stephen Mcnamara Skills

Technical Support Active Directory Troubleshooting Windows Xp Management Vendor Management Hardware Project Management Process Improvement Integration Windows 7 Itil Information Technology Vpn Networking Help Desk Support Information Security It Management Risk Assessment Remediation Technical Leadership Team Leadership Personnel Management Conflict Resolution Vendor Onboarding Vendor Risk Sai Global Security Scoreboard Cybergrx Process Documents It Security Assessments Ctprp Data Center User Management Software Updates Personnel Training Testing Software Development Life Cycle Leadership Databases Software Development Software Documentation Technical Training Active Directory Experience Documentation Encryption Software Technical Administration Risk Management Information Security Assessments Vendor Risk Program Development Interpersonal Communication

Stephen Mcnamara Education Details

  • University Of Wisconsin-River Falls
    University Of Wisconsin-River Falls
    Emphasis In Criminal Justice And Minor In Anthropology
  • Normandale Community College
    Normandale Community College

Frequently Asked Questions about Stephen Mcnamara

What company does Stephen Mcnamara work for?

Stephen Mcnamara works for Silvergate Bank

What is Stephen Mcnamara's role at the current company?

Stephen Mcnamara's current role is Lead Vendor Risk Analyst II.

What is Stephen Mcnamara's email address?

Stephen Mcnamara's email address is stephen.mcnamara@tr.com

What schools did Stephen Mcnamara attend?

Stephen Mcnamara attended University Of Wisconsin-River Falls, Normandale Community College.

What skills is Stephen Mcnamara known for?

Stephen Mcnamara has skills like Technical Support, Active Directory, Troubleshooting, Windows Xp, Management, Vendor Management, Hardware, Project Management, Process Improvement, Integration, Windows 7, Itil.

Who are Stephen Mcnamara's colleagues?

Stephen Mcnamara's colleagues are Kimberly Barr, Steven Morrison, David Gallivan, Bryan Cook, Connie Reckling, Eric Rowe, Jim Williams.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.