Kevin Smith
Business Information Security Officer - Emeia @WSP
Signup · Get unlimited contacts
WORK HISTORY
Business Information Security Officer - Emeia @WSP
Cambridge, GB
Cyber and information security leader for Information Security Office in EMEIA. Reporting to the Global CISO with a strong dotted line reporting relationship to the EMEIA CIO to help support the achievement of both enterprise-level and regional information security strategies, objectives, and obligations.
EDUCATION
University of East Anglia
Master of Business Administration (M.B.A.), Business Leadership, Management and Consultancy
University of Stirling
Bachelor of Science (BSc), Environmental Science and Chemistry
SKILLS
ABOUT KEVIN SMITH
As a dynamic and motivated leader in information security, I bring a unique blend of strong technical acumen and commercial skills, honed through hands-on leadership roles and enriched by an MBA. With a proven track record as a Data Protection Officer (DPO), I possess a deep understanding of privacy laws and regulations, which I leverage to ensure sustained compliance.I am passionate about cultivating a strong security culture within organizations and implementing robust security governance structures that foster accountability and proactive actions to mitigate corporate security risks. My commitment to driving continuous improvement in security management systems ensures the safeguarding of personal and confidential information.Professional Expertise:* Security Strategy and Governance: Implementing best-practice security controls to reduce organizational risk and costs while delivering competitive advantage.* Risk Assessments and Mitigation: Conducting thorough risk assessments and developing mitigation strategies to protect organizational assets.* Audit Planning and Management: Leading audit planning and execution to ensure compliance with industry standards and regulations.* Project Management: Managing complex security projects from inception to completion, ensuring timely and within-budget delivery.* Policies and Procedures: Developing and enforcing comprehensive security policies and procedures.* BC/DR and Incident Response: Establishing and maintaining robust business continuity and disaster recovery plans, and leading incident response efforts.* Certifications: ISO 27001, Cyber Essentials Plus, PCI DSS, Data Protection and GDPR.* Privacy Impact Assessments: Conducting privacy impact assessments to identify and mitigate data protection risks.* Security Awareness Training: Designing and delivering security awareness training programs to foster a security-conscious culture.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.