Practice Manager - Enterprise Risk And Compliance
Denver, Co, Us
Led a consulting practice of security experts focused on information security risk management and compliance. Strong focus on clients in all facets of the healthcare industry - payers, providers, pharma, and service providers. Current client base includes the largest provider networks, hospitals, pharmacies, PBMs, payers, and IT service providers (EMRs, infrastructure services, etc...) in the nation. Projects split between assessment work based on industry standards, frameworks, or regulatory requirements (HIPAA/HITECH, ISO 27K series, NIST 800 series, SANS 20, PCI, etc...) and security program development. Program development includes a large suite of design, build, and implement components or all of the following programs - incident response, threat and vulnerability management , third party/supplier risk management, risk management, training (technical and non-technical), policy and procedure development, etc...