Robert M.
CISO, and IT Compliance and Privacy Officer @RedSail Technologies
Signup · Get unlimited contacts
WORK HISTORY
CISO, and IT Compliance and Privacy Officer @RedSail Technologies
Miami, TX, US
Reporting up to the Executive Leadership Team for RedSail Technologies, a leading pharma systems and operations company, I spearheaded, developed and established a comprehensive information security, governance and compliance program for a cloud-based platform, managing security, governance, and compliance for development and business teams.• Successfully achieved multiple HITRUST and SOC 2 Type 2 certifications by creating and managing over 640 controls, ensuring alignment with business requirements, and delivered within specified project timelines and budget. • Presented monthly program updates to executive management, showcasing program metrics, budgets, and purchases, demonstrating a commitment to transparency and accountability.• Mentored and trained team on security guidelines, the protection of PII, PHI, data, and the use of security tools.• Led the development of a risk management program, conducting thorough risk assessments and overseeing network, endpoint, cloud security, vulnerability management, and penetration tests.• Implemented and managed a formal security awareness training and phishing program, fostering a forward-thinking approach to security education within the organization.• Implemented an automated controls scheduling system and a document management system for improved efficiency and compliance.• Led and executed comprehensive third-party assessments, client reviews, and questionnaires, resulting in consistently positive evaluations, supporting of the sales pipeline and bolstering TransactRx\'s reputation for security excellence and transparency.• Authored over 600 policies and associated procedures covering 19 IT domains, and over 50 supporting documents that not only met but exceeded HITRUST and SOC 2 Type 2 requirements, demonstrating a steadfast commitment to excellence in information security practices.
EDUCATION
Queens College
Bachelor's degree, Computer Science
SKILLS
ABOUT ROBERT M.
Senior Information Security leader with over 15 years of progressive experience of establishing and improving robust cybersecurity programs in healthcare, and financial industries. Skilled in compliance and governance which led to multiple company certifications including HITRUST, SOC 2 Type 2, GDPR, ISO 27001 and SOX. Technical management of cloud and host-based security tools.INDUSTRIES - Pharma Systems and Operations, Financial Services, Realty ManagementCERTIFICATIONS - CISSP, CISM, ITIL, CBCP, IT Project+ GOVERNANCE - NIST, ISO, HITRUST, COBITCOMPLIANCE - SOC2, Sarbanes-Oxley (SOX), PCI DSS, GDPR, HIPAA, FISMA, FIPS, FedRAMPSYSTEMS / TOOLS - AWS cloud, Qualys (vulnerability scanning), Sumo Logic (SIEM), Sophos (endpoint, server protection and DLP), Google cloud (email, file management), GQueues (control scheduling with Gmail), Endpoint Central (asset management, patching), ThreatLocker (allow listing), InfoSec IQ (training, phishing), ServiceDesk (incidents, change management), PostgreSQL, MongoDB, GitHub, sonarcloud (code scanning), Veracode (code scanning), DocTract (document management), KnowBe4 (training, phishing), RSAM (risk, compliance), LockPath (risk, compliance), Slack, Zoom, TeamsPROGRAMS - Cyber security, controls, audit, privacy, security awareness, vulnerability, third party vendor, email encryption, risk management, SSO and MFA, incident response, GRC systems, staff management
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.