Lawrence Tisdale
IT Security & Risk Analyst Ii @American Family Insurance
Signup · Get unlimited contacts
WORK HISTORY
IT Security & Risk Analyst Ii @American Family Insurance
Asheville, NC, US
Perform risk assessments against supply chain threats including the MOVEit, WS_FTP, and GlobalProtect severe vulnerabilities• Actively monitor third party cyber incidents and assess risk to the Enterprise while ensuring remediation and recovery is completed• Conduct third party cyber risk assessments of prospective vendors to the Enterprise• Review SOC reports, penetration test results, SIG questionnaires, and other documentation to determine residual cyber risk• Negotiate Data Security Exhibits (DSEs) and redlining to ensure that vendor has adequate and compliant security controls and policies in place
EDUCATION
Purdue University
Bachelor of Science - BS, Cybersecurity
ABOUT LAWRENCE TISDALE
CRISC certified GRC and Third Party Cyber Risk (TPCR) Analyst with a strong technical foundation in cybersecurity and enterprise risk management. I specialize in evaluating vendor security controls through SOC 2 reviews, SIG Lite/Full questionnaires, ISO 27001 evidence, PCI-DSS attestations, and penetration test documentation, among other materials.My work focuses on assessing inherent and residual risk, driving remediation to closure, monitoring high-impact supply chain cyber incidents (MOVEit, GlobalProtect, GoAnywhere), and improving enterprise GRC processes with a focus on scalability and continuous monitoring.Supported by formal cybersecurity training and my CRISC certification, I aim to apply practical, well-grounded risk management that aligns security goals with broader organizational priorities.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.