IT security leader and cybersecurity strategy consultant, specializing in finance, insurance, healthcare, and telecom industries. With 20+ years industry experience, has led multiple large, enterprise-wide projects. Has strong written and verbal communication skills, with the ability to negotiate and resolve issues at all levels – business, technical, and executive. Provides value to all stakeholders by maintaining excellent working relationships throughout the company, staying current on latest security updates, and encouraging efficient and effective collaboration in a professional team environment. Successfully led large corporations through annual SOC 2, type 2 audits, ongoing 3rd party vendor management assessments, quarterly funds board reporting, and ad hoc regulatory security questionnaires. Led access management processes, roadmap development, disaster recovery, and business continuity planning. Created and led quarterly onboarding security training and monthly security awareness training. Successfully doubled associate phish reporting - far above industry averages. Areas of Expertise: Risk Assessment and Mitigation, Governance and Compliance, Identity Access Management, Security Operations, Incident Response, Disaster Recovery and Business Continuity, Social Engineering Education, Funds Board Reporting, Organizational Leadership, Coaching, Mentoring, and Staff Development, Audit reporting, NIST, ISO, SEC, FINRA, NY DFS Cybersecurity Regulation, PCI, HITRUST, SOX
Listed skills include Vendor Management, Business Process Improvement, Business Analysis, Process Improvement, and 2 others.