Steve Marchal Email & Phone Number
@truckstop.com
LinkedIn matched
Who is Steve Marchal? Overview
A concise factual answer block for searchers comparing this professional profile.
Steve Marchal is listed as Information Security Trust and Assurance | Malwarenaut 🚀 at Malwarebytes, a with 776 employees, based in Des Moines Metropolitan Area, United States. AeroLeads shows a work email signal at truckstop.com and a matched LinkedIn profile for Steve Marchal.
Steve Marchal previously worked as Manager, Security Trust and Assurance | Malwarenaut! 🚀 at Malwarebytes and Cyber Security Risk Manager at Truckstop.Com. Steve Marchal holds Bs, Management Information Systems from Iowa State University - Ivy College Of Business.
Email format at Malwarebytes
This section adds company-level context without repeating Steve Marchal's masked contact details.
AeroLeads found 1 current-domain work email signal for Steve Marchal. Compare company email patterns before reaching out.
About Steve Marchal
Seasoned and results-driven Information Security and Risk professional with experience in Cyber Security, Risk Management, and Compliance. Demonstrated experience across diverse industries such as Financial, Insurance, Health Care, Media, SaaS, and Consulting services.
Listed skills include Firewalls, It Security Policies And Procedures, Information Technology, Information Security, and 31 others.
Steve Marchal's current company
Company context helps verify the profile and gives searchers a useful next step.
Steve Marchal work experience
A career timeline built from the work history available for this profile.
Cyber Security Risk Manager
Managed and Led Cyber Security Governance, Risk, and Compliance (GRC) for a leading platform services (SaaS) provider in the Trucking transportation industry. This includes information assets that support and deliver its platform services including load planning, transportation management, telematics, route optimization, real-time rates, negotiation tools, factoring, and other shipping logistics tools.• Collaborated with Business Partners to provide Cyber Security Risk guidance on privacy, contracts, 3rd party risk audits, KPIs and KRIs, RFI/RFPs, internal audit, risk assessments, policies and standards, business continuity, disaster recovery, vendor management, vulnerability management, and application security.• Partnered with business partners to provide cybersecurity risk guidance across privacy, contracts, third-party risk, performance metrics (KPI/KRI), business initiatives (RFI/RFP), audits, assessments, policies and standards, business continuity, disaster recovery, vendor management, and application security.• Collaborated across departments and led the build out of an Information Security Management System (ISMS) program resulting in the initial ISO 27001 certification.• Provided annual assurance of ISO 27001 Surveillance Audits and PCI DSS Attestation.• Directed and coordinated comprehensive security reviews encompassing software, vulnerability management, vendor assessment, architectural analysis, and risk evaluation.• Served as a member of the Change Advisory Board, Privacy Committee (CCPA/CPRA), GRC Group, AI Group, and Security Champions, where I contributed as a trainer and awareness advocate.• Technologies: DRATA (ISO 27001), A-LIGN ASCEND (ISO 27001), Rapid7 Insight VM/IDR, CrowdStrike, Orca, Synopsys Black Duck (SCA), SonarQube (SAST), Axonius, JIRA, GitLab, Agile/Scrum, SecureScan (PCI DSS), SIG, CAIQ, SharePoint, Confluence, AWS, Azure, GCP, CVE, CVSS, Change Management, MS Office.
Senior Control Management Specialist
Technology Risk & Control Self-Assessment (RCSA) and Control Frameworks - Strategy, Operations & Quality Practices.• Provided risk management guidance and consulting, supporting business groups in designing and implementing risk mitigation strategies, processes, and controls.• Monitored programs and collaborated on strategic planning with business groups.• Developed and performed data management functions and communications including reporting on Control Effectiveness, RCSA Scorecard, KPIs and KRIs, dashboards, and training programs.• Technologies: SHRP (RSA Archer - COBIT), FAIR methodology, CMMI, Tableau Dashboards, JIRA, DMS, micro-learning, MS Office.
Senior Information Systems Security Consultant/ Security Program Manager
Provided Cyber Security and Compliance leadership and consultation for a PCI DSS Level 1 Service Provider who is a leading multinational provider in magazine fulfillment, business process outsourcing, and customer data management.• Championed and created a Cybersecurity Program utilizing industry frameworks (CIS CSC, NIST CSF, NIST 800-53, FFIEC, ISO 27001).• Worked with leaders to grow the culture of Cybersecurity and Compliance in an Agile environment.• Led Compliance program initiatives (PCI DSS, GIS DOJ, SSAE, GDPR, CCPA), Security/Privacy Assessments, Security Awareness, Policies and Standards, Questionnaires, KPIs and KRIs, and 3rd Party RFPs.• Spearheaded implementation mechanisms for centralized security log monitoring (SIEM).• Technologies: AlienVault SIEM, Tenable Vulnerability Management (PCI DSS ASV), OWASP, Cloud (Azure and AWS), IBM AppSec (DAST), Agile/Scrum, Solutionary (PCI DSS), PEN test tools, CVE, CVSS, Change Management.
Information Security Engineer
Managed and enhanced Information Security service management, risk reduction strategies, and problem resolution for the largest healthcare provider in Iowa and South Dakota.• Led the selection, design, implementation, and tuning of security solutions including Network Intrusion Protection System (IPS), Network Data Loss Prevention (NDLP), and Endpoint Protection Suite.• Championed and enhanced the Vulnerability Management Program and system Configuration Management (CIS Benchmarks) program to meet and exceed compliance requirements. Provided governance oversight and reporting results to leadership. Trained technical staff from various IT teams to mitigate vulnerabilities through weekly update meetings.• Evaluated key industry vendors, conducted proof-of-concept pilot reviews and led the selection, design, implementation, and tuning of Network Intrusion Protection System (IPS), Network Data Loss Prevention (NDLP), Endpoint Protection Suite (Antivirus/ Malware), Host Intrusion Prevention (HIPS) and Network Packet Analysis solutions. Responded to alerts and provided Incident Response resolutions and reporting. • Managed secure messaging environment and work with the Privacy Office to enhance detection and blocking of messages with PHI to meet new HIPAA reporting requirements.• Technologies: Compliance (HIPAA/ HITRUST) McAfee Security Suite (Vulnerability Manager/ Database Scanner, McAfee ePO, CVE, CVSS, Change Management (ITIL), Anti-malware, NIDS/NIPS, HIPS, NAC, DLP), Oracle Identity Manager and Analytics, Verisign Certificate Management (PKI), RSA Authentication Manager, IBM ISS NIDS/NIPS, General Dynamics Fidelis Network DLP, Network Instruments Observer and Gigator packet analysis packet analysis, Zix Corp Secure Messaging Gateway, Sendmail, NetIQ Log Manager, LAMP, VMWare ESX, Splunk, ManageEngine ADAudit, SolarWinds Orion, CVE, CVSS, Change Management (ITIL), and BackTrack/Kali.
Information Security Consultant
Security Operations Center (SOC) activities, ensuring 24/7 problem resolution and change management for one of the largest private networks.â—Ź Served as the primary point of contact for technical issue resolution and customer support, maintaining the security of network and information systems through proactive measures.â—Ź Implemented robust defenses against unauthorized real-time attacks and probes, utilizing: Network Intrusion Detection, Host Intrusion Prevention, Endpoint Protection (Antivirus/Malware/Firewall), Network Firewalls, Vulnerability/ Patch Managementâ—Ź Technologies: Internet Security Systems (ISS) NIDS, HIPS, Symantec Antivirus Corporate Edition, Trend Micro IMSS, Email Gateway, Sendmail, Nokia/Checkpoint Firewall-1 NG, Sidewinder Firewalls, Gauntlet Firewall, FoundScan Vulnerability Scanner, Phone Sweep war dialing.
Information Security Architect
Managed, lead, research, analyze, design, plan, and organize corporate-wide security functions for the Chief Information Security Officer (CISO).â—Ź Develop and maintain policies, standards, security baselines, and procedures to ensure alignment with industry best practices and regulatory requirements.â—Ź Conduct comprehensive risk and threat assessments to identify vulnerabilities and prioritize security measures.â—Ź Design and deliver user awareness training programs to foster a culture of security awareness throughout the organization.â—Ź Provide incident response and investigative support as part of the Computer Incident Response Team (CIRT), ensuring timely and effective resolution of security incidents.â—ŹConduct architecture reviews and product assessments to evaluate the security posture of existing systems and recommend enhancements.â—Ź Spearheaded the development of the AEGON Threat & Vulnerability Management Program, enhancing the organization's ability to detect and mitigate security threats.â—Ź Contributed as a key team member in achieving ISO 17799 Security Standard certification for the AEGON Information Security Program, demonstrating compliance with international security standards.â—Ź Standardized the corporate antivirus solution and established a robust test environment to ensure the effectiveness of security measures.â—Ź Technologies: Compliance (GLBA, ISO, SOC) Internet Security Systems (ISS) RealSecure IDS and Internet Scanner, eEye Digital Security Retina and Iris Vulnerability scanners, Symantec Corporate Edition, Demarc IDS (SNORT solution), and FoundScan Vulnerability Scanner.
Colleagues at Malwarebytes
Other employees you can reach at malwarebytes.org. View company contacts for 776 employees →
Brandy Davis
Colleague at MalwarebytesLargo, Florida, United States
View →
LH
Lizette Hubert
Colleague at MalwarebytesMarina, California, United States
View →
AB
Anton Borissov
Colleague at MalwarebytesTallinn, Harjumaa, Estonia
View →
GM
Gleb Malygin
Colleague at MalwarebytesTallinn, Harjumaa, Estonia
View →
MD
Matthew Dennis
Colleague at MalwarebytesSan Francisco Bay Area, United States
View →
TB
Tony Balch
Colleague at MalwarebytesSan Jose, California, United States
View →
CG
Chloé Gille
Colleague at MalwarebytesIreland
View →
CC
Cristian Castellana
Colleague at MalwarebytesGreater Tampa Bay Area, United States
View →
MB
Marco Bizzarri
Colleague at MalwarebytesPerugia, Umbria, Italy
View →
AF
Amin Fc
Colleague at MalwarebytesMalaysia
View →
Steve Marchal education
Frequently asked questions about Steve Marchal
Quick answers generated from the profile data available on this page.
What company does Steve Marchal work for?
Steve Marchal works for Malwarebytes.
What is Steve Marchal's role at Malwarebytes?
Steve Marchal is listed as Information Security Trust and Assurance | Malwarenaut 🚀 at Malwarebytes.
What is Steve Marchal's email address?
AeroLeads has found 1 work email signal at @truckstop.com for Steve Marchal at Malwarebytes.
Where is Steve Marchal based?
Steve Marchal is based in Des Moines Metropolitan Area, United States while working with Malwarebytes.
What companies has Steve Marchal worked for?
Steve Marchal has worked for Malwarebytes, Truckstop.Com, Wells Fargo, Hearst Magazines (Cds Global Inc.), and Wellmark: Blue Cross Blue Shield.
Who are Steve Marchal's colleagues at Malwarebytes?
Steve Marchal's colleagues at Malwarebytes include Brandy Davis, Lizette Hubert, Anton Borissov, Gleb Malygin, and Matthew Dennis.
How can I contact Steve Marchal?
You can use AeroLeads to view verified contact signals for Steve Marchal at Malwarebytes, including work email, phone, and LinkedIn data when available.
What schools did Steve Marchal attend?
Steve Marchal holds Bs, Management Information Systems from Iowa State University - Ivy College Of Business.
What skills is Steve Marchal known for?
Steve Marchal is listed with skills including Firewalls, It Security Policies And Procedures, Information Technology, Information Security, Ids, Cis Csc, Cissp, and Intrusion Detection.
Search by job title, company, industry, location, and seniority. Export verified B2B contact data when you need it.
Start free trialCheck these profiles if this is not the Steve Marchal you were looking for.
View similar profiles