Adnan R.
Cloud Security & AI Governance Executive | Cyber Risk · Enterprise Security · Multi-Cloud
- Role
- Senior Manager, Cloud Security & Risk at Elevance Health (Formerly Anthem)
- Location
- Morristown, NJ, US
- LinkedIn followers
- 500 followers
About Adnan R.
I build enterprise security programs — not just advise on them.At Elevance Health (one of the largest US health insurers), I built the cloud security program from the ground up within the Office of the CISO, establishing governance, risk, and architecture frameworks across 100+ cloud applications and 10+ business units on AWS, Azure, and GCP.Some of what I\'ve delivered: Built and led the enterprise AI security governance framework — defining acceptable use guardrails for LLMs, assessing model and data risks, and aligning policy with HIPAA and data protection requirements. This program did not exist before I created it. Led technical control evaluation and assurance work that contributed directly to passing HITRUST certification — coordinating across business units and translating complex control requirements into actionable remediation. Drove enterprise cloud security posture management using Wiz — conducting multi-cloud configuration assessments, leading post-incident reviews, and directing risk-based remediation across cloud environments. Championed incident response readiness across the enterprise — connecting business units with the cyber defense team, facilitating tabletop exercise planning, and guiding playbook development for teams that had no prior IR program. At Insight, served as Deputy CISO — recruited directly by the CISO to design and lead a new security practice, direct ISO 27001 and UK Cyber Essentials audits, and oversee SOC migration delivering enterprise-wide visibility. At KPMG, led a $12M security overhaul directing 20 engineers — migrating 100K mailboxes and building a secure, compliance-ready email infrastructure for one of the Big Four.Core expertise: Cloud Security Architecture · GRC & Audit Readiness · AI Governance · CSPM (Wiz, Prisma Cloud) · Vendor & Third-Party Risk · Incident Response Readiness · Zero Trust · ISO 27001 · HIPAA · HITRUST · SOC 2AWS · Azure · GCP · CrowdStrike · Splunk · Azure Sentinel · Kubernetes · IAMCISM · CDPSE · CCAK · Georgetown M.S. Technology ManagementOpen to Director of Security, Director of Cloud Security, and VP/CISO-track leadership roles.
Experience
Senior Manager, Cloud Security & Risk
Elevance Health (Formerly Anthem)
Mar 2021 — Present · NJ, US
Built the enterprise cloud security program within the Office of the CISO — this function did not exist in its current form before I established it. Operating at director-equivalent scope across a matrixed organization, I lead security strategy, governance, and execution across 100+ cloud applications and 10+ business units on AWS, Azure, and GCP.Key program ownership and outcomes: AI Security Governance: Designed and implemented the enterprise AI governance framework — establishing acceptable use policies for LLMs, assessing data protection risks for AI use cases, and partnering with Legal and Privacy on HIPAA-aligned AI security controls. HITRUST Audit: Led technical control evaluation and assurance work that directly contributed to HITRUST certification — translating control requirements into technical evidence and coordinating remediation across cloud environments. Cloud Security Posture: Directed enterprise CSPM program using Wiz — conducting multi-cloud configuration assessments across AWS, Azure, and GCP, leading post-incident configuration reviews, and driving risk-prioritized remediation across business units. Incident Response Readiness: Championed IR readiness across the enterprise — connecting business units with the cyber defense team, facilitating tabletop exercise planning, and guiding playbook development for teams with no prior IR program in place. GRC & Compliance: Developed 150+ security controls aligned with HIPAA, HITRUST, and NIST; led vendor security assessments against ISO 27001, HITRUST, and SOC 2 Type II standards. Architecture Leadership: Conducted security architecture reviews across AWS, Azure, and GCP — advising engineering teams on secure IaC, zero-trust design, identity, network segmentation, and data protection.Skills: AI Governance · CSPM · HITRUST · ISO 27001 · HIPAA · SOC 2 · AWS · Azure · GCP · Wiz · Prisma Cloud · Zero Trust · Vendor Risk Management
Education
Georgetown University
Masters in Technology Management, Computer/Information Technology Administration and Management
2016 — 2018
Georgetown University
Master's degree, Computer/Information Technology Administration and Management
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.