John Legate

Lead - Third Party Risk Management

Role
Lead Cyber Security (Third Party) Risk Analyst at Garmin
Location
Overland Park, KS, US
LinkedIn followers
500 followers
Information TechnologyView LinkedIn profile

About John Legate

As an Information Security and Compliance leader, I’m committed to driving impactful results that align with business goals. My career spans technical individual contributor and management roles, where I’ve honed my ability to prioritize tasks, deliver on objectives, and contribute to broader departmental success.I bring deep expertise in Cybersecurity Risk Management, Governance, Risk, and Compliance (GRC), and Third Party Risk Management (TPRM). My skill set covers Vendor Risk Management, Policy Development and Compliance, Enterprise and Cloud Architecture, Network and Data Security, Operational Risk, and Regulatory Risk Management—equipping me to tackle complex challenges with a strategic mindset.I thrive on leading projects that elevate operational maturity and strengthen security postures. With proven team leadership experience and exceptional communication skills, I excel at bridging technical and business needs. Currently, I focus on leveraging my strengths as a Third Party Risk Lead, integrating multiple cybersecurity disciplines to deliver value and resilience.Passionate, collaborative, and results-driven, I’m eager to contribute to organizations that prioritize security and innovation.

Experience

  1. Lead Cyber Security (Third Party) Risk Analyst

    Garmin

    Sep 2020 — Present · Olathe, KS, US

    Responsible for the day-to-day operations of Garmin’s Global IT Third Party Risk Management program development and execution of security strategies, policies, and procedures to protect organizational information systems, networks, and data assets. • Lead IT Third Party Assessments to protect the organization’s information assets\' confidentiality, integrity, and availability, including initiating discovery sessions with internal stakeholders and third parties, analyzing due diligence documentation and questionnaire responses, leading architecture and control assessments, contributing to legal/data privacy reviews, and facilitating risk review/decisions by senior management.• Work closely with cross-functional purchasing, legal, and compliance teams to address global privacy regulations, PCI-DSS standards, and industry-specific compliance requirements such as TISAX (specific automotive industry certification program based on the ISO/IEC 27001 standard).• Contribute towards regular reporting and communication to senior management on third-party assessment results and compliance efforts.• Lead projects to continuously improve operations, adapted to address changing threats, and internal security policy initiatives to mature and improve the overall effectiveness of the third-party risk management program.

Education

  • Texas Tech University - Rawls College of Business

    BBA, Accounting

    1986 — 1990

  • Klein High School

    High School Diploma

    1982 — 1986

Skills

  • Systems Analysis
  • Vulnerability Management
  • Business Process Improvement
  • IT Asset Management
  • Sdlc
  • Management
  • Back-End Web Development
  • Cloud Computing
  • Risk Management
  • Web Development
  • IT Audit
  • Sabsa
  • Nist
  • Cyber Security
  • Integration
  • Program Management
  • Project Management
  • Strategic Planning
  • Network Security
  • Software Development
  • Secure Sockets Layer (Ssl)
  • Change Management
  • Access Control
  • Healthcare Management
  • Software Design
  • Cobit
  • Sarbanes-Oxley
  • Computer Security
  • Strategy
  • Information Security
  • Healthcare
  • Risk Assessment
  • Internal Controls
  • Third-Party Risk Management
  • IT Governance
  • Process Improvement
  • Business Process
  • Solution Implementation

Find verified contacts for anyone on LinkedIn

Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.

Free plan included · No credit card required

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.

John Legate — Lead Cyber Security (Third Party) Risk Analyst at Garmin in Overland Park, KS, US | Unifers