Yan Kravchenko, Cissp, Csslp

Yan Kravchenko, Cissp, Csslp Email and Phone Number

Results driven Information Security Leader | Innovator | Speaker @ Hennepin Healthcare
Yan Kravchenko, Cissp, Csslp's Location
Minneapolis, Minnesota, United States, United States
Yan Kravchenko, Cissp, Csslp's Contact Details

Yan Kravchenko, Cissp, Csslp personal email

n/a

Yan Kravchenko, Cissp, Csslp phone numbers

About Yan Kravchenko, Cissp, Csslp

Information Security and Technology Leader with extensive experience developing information security programs, building highly functional teams, and security change leadership. Over the past 25+ years, I have worked through many IT and security evolutionary trends while learning different ways to evaluate, understand, and remediate cybersecurity risks. As an expert in information security and application security governance, I have written several articles and contributed to the current security standards, taking advantage of the latest advances in application development and cloud computing.I am a frequent presenter at national and international conferences on topics ranging from advanced security and governance to application security and the evolution of the security industry as a whole.

Yan Kravchenko, Cissp, Csslp's Current Company Details
Hennepin Healthcare

Hennepin Healthcare

View
Results driven Information Security Leader | Innovator | Speaker
Yan Kravchenko, Cissp, Csslp Work Experience Details
  • Hennepin Healthcare
    Core Technology & Information Security Director
    Hennepin Healthcare Nov 2022 - Present
    Minneapolis, Minnesota, Us
  • Hennepin Healthcare
    Information Security Director
    Hennepin Healthcare Mar 2020 - Present
    Minneapolis, Minnesota, Us
    Information Security Leader, responsible for Hennepin Healthcare's Information Security, Identity & Access Management, and Enterprise Architecture.
  • Concord
    Information Security Architect
    Concord Apr 2019 - Feb 2020
    Minneapolis, Mn, Us
    While working to mature the Information Security service offerings, Yan worked with multiple clients to help integrate DevSecOps technologies and techniques. Primary areas of focus revolved around the OWASP Software Assurance and Maturity Model (SAMM), which Yan helped author, as well as overall application security governance.
  • Truonix, Llc
    Cto / Ciso
    Truonix, Llc Feb 2018 - Mar 2019
    Responsible for the delivery of all products and services, including the design of the primary application security management platform:• Designed and documented software requirements for the development of the TruRisq application.• Hired an offshore team of developers and managed the day-to-day development efforts, bringing the project to a successful product launch.• Provided program-level application and information security advisory services to multiple leadership teams for several organizations.
  • Atomic Data
    Chief Information Security Officer (Ciso)
    Atomic Data Jul 2015 - Jun 2018
    Minneapolis, Mn, Us
    Responsible for all aspects of information security, privacy and regulatory compliance for this regional technology and cloud provider, growing at 40% per year.• Led the organization in passing the SOC audit with zero exceptions for two years in a row after increasing the scope of the audit by 60% to include the entire organization.• Built an effective security team, coaching team members to successfully develop new skills and capabilities including Incident Response, Internal Audit, and Insider Threat Detection.• Built internal security program into a competitive differentiator in the increasingly commoditized cloud provider space.• Led the organization through the security and compliance maturity curve including creating a catalog of security controls, implementing a data classification model, deploying a GRC solution, establishing meaningful security metrics, and creating security policies and incident response procedures.
  • Netspi
    Compliance Advisory Practice Lead
    Netspi Aug 2008 - Jun 2015
    Minneapolis, Minnesota, Us
    Managed Audit and Compliance Advisory consulting practices, focusing on building organizational programs to support security and compliance needs.• Developed an application security prioritization framework, leveraging generally accepted risk management practices and the OWASP SAMM model, enabling many organizations to benefit from this open source offering. Trained multiple organizations to apply it.• Developed an application security roadmap for one of the top 5 banks in North America, enabling measurement, management, and prioritization of application security risks.• Performed threat, security, risk and compliance gap assessments (HIPAA, DEA EPCS, PCI, NIST, and ISO); helped teams understand the nature of any compliance gaps and advised on remediation plans.• Translated new, very complex regulation into software test scripts; wrote implementation manual used by world’s largest healthcare software companies to meet these new regulatory requirements – allowing these companies to certify to the new regulatory requirements on first pass.• Frequently invited to speak to executive leaders at clients’ organizations due to noted ability to explain technical challenges and opportunities and influence non-technical stakeholders, including Boards of Directors.
  • Christensen Farms
    Director Of It
    Christensen Farms Jul 2006 - Jan 2008
    Sleepy Eye, Mn, Us
    Responsible for all aspects of Information Technology for this midsize agricultural company. Responsibilities included setting IT strategy, managing IT team and maintaining fiscal responsibility.• Built an efficient, dynamic and agile team through regular team operating mechanisms and coaching in order to support the company’s growth.• Created a disaster recovery strategy to comply with the results of the Business Impact Analysis, ensuring recovery time objectives support business needs.• Increased organization’s security posture via performing HR/Payroll System Controls analysis, performing a complete security assessment of every system, and designed a secure, tiered network architecture in the company headquarters.
  • Lbl Technology Partners
    Manager / Sr. Consultant
    Lbl Technology Partners Jan 2000 - Jul 2006
    Provided audit, assessment, and business continuity consulting services for multiple state and local government agencies across the United States, education institutions, and Fortune 500 companies. • Proved to be self-motivated, highly productive and efficient in simultaneously managing 14 different security audit projects, resulting in over $500,000 revenue.• Designed and implemented multiple security scanning and enforcing tools, enabling higher efficiency and effectiveness of security assessments and controls evaluation.• Assisted clients with development of Business Impact Analysis, Disaster Recovery Strategies, and other critical components of Disaster Recovery and Business Continuity Plans.• Effective written and oral communications resulted in 50% proposal acceptance rate.• Led and participated in ISO, PCI-DSS, Sarbanes Oxley, and SAS 70 audits.
  • Compuware, Inc.
    Sr. It Consultant
    Compuware, Inc. Aug 1998 - Jan 2000
    Detroit, Mi, Us
  • Solution Design Group
    It Consultant
    Solution Design Group Apr 1997 - Aug 1998
    Golden Valley, Mn, Us
  • Aerotech
    Network Administrator
    Aerotech Sep 1996 - Jan 1997
    Pittsburgh, Pennsylvania, Us

Yan Kravchenko, Cissp, Csslp Skills

Information Security Security Information Security Management Disaster Recovery Pci Dss Information Technology Computer Security It Strategy Hipaa Cissp Vulnerability Assessment Consulting Networking Business Continuity It Audit Risk Management Nist Payment Card Industry Data Security Standard Hitrust Privacy Compliance Iso Cisa Dea Epcs Hitech Application Security Network Security Cloud Security Leadership Amazon Web Services Scrum Agile Continuous Integration And Continuous Delivery Devops Devsecops

Yan Kravchenko, Cissp, Csslp Education Details

  • Regis University
    Regis University
    E-Security Concentration
  • St. Louis Park
    St. Louis Park

Frequently Asked Questions about Yan Kravchenko, Cissp, Csslp

What company does Yan Kravchenko, Cissp, Csslp work for?

Yan Kravchenko, Cissp, Csslp works for Hennepin Healthcare

What is Yan Kravchenko, Cissp, Csslp's role at the current company?

Yan Kravchenko, Cissp, Csslp's current role is Results driven Information Security Leader | Innovator | Speaker.

What is Yan Kravchenko, Cissp, Csslp's email address?

Yan Kravchenko, Cissp, Csslp's email address is ya****@****spi.com

What is Yan Kravchenko, Cissp, Csslp's direct phone number?

Yan Kravchenko, Cissp, Csslp's direct phone number is +161246*****

What schools did Yan Kravchenko, Cissp, Csslp attend?

Yan Kravchenko, Cissp, Csslp attended Regis University, St. Louis Park.

What skills is Yan Kravchenko, Cissp, Csslp known for?

Yan Kravchenko, Cissp, Csslp has skills like Information Security, Security, Information Security Management, Disaster Recovery, Pci Dss, Information Technology, Computer Security, It Strategy, Hipaa, Cissp, Vulnerability Assessment, Consulting.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.