Shane Laing

Chief Information Security Officer (Virtual) @Convergence Networks

St. Petersburg, FL, US
MOBILE NUMBERS
+91 *********19

Signup · Get unlimited contacts

WORK HISTORY

Jan 2021 — Present

Chief Information Security Officer (Virtual) @Convergence Networks

View department →

US

Security Strategy & Governance:* Develop & implement security strategies aligned with business goals & risk appetite.* Establish & enforce security policies, procedures and guidelines.* Ensure compliance with regulations & industry standards such as CMMC, HIPAA, PCI DSS, NIST, ISO 27001.* Lead risk assessments, identifying vulnerabilities & developing mitigation strategies.Security Program Development & Management:* Implement cybersecurity programs tailored to risk profiles.* Develop & Maintain incident response & business continuity plans.* Conduct security awareness training to enhance threat response.* Optimize security operations & controls to protect data integrity.Risk Management & Compliance:* Assess & prioritize risks to drive decision-making.* Guide compliance with industry regulations & best practices.* Oversee audits & gap analyses to enhance security measures.* Manage efforts to achieve & maintain SOC 2, CMMC & ISO 27001 certifications & compliance.Threat & Vulnerability Management:* Oversee vulnerability management to address security weaknesses.* Monitor & counter emerging threats with strategic mitigations.* Implement security technologies & tools to strengthen defenses.* Ensure secure system design & architecture.Incident Response & Crisis Management:* Develop & test incident response playbooks.* Collaborate with SOC to minimize incident impact.* Conduct post-incident analysis to improve response.* Advise on breach disclosure & compliance.Stakeholder & Executive Advisory:* Communicate cybersecurity risks & strategies to executives.* Advise on budgets & resource allocation.* Align IT, legal, compliance & leadership with security.* Foster a security-first culture & strategic decision-making.* Develop & enhance product & service offerings, boosting revenue.

EDUCATION

N/A

Western Governors University

Bachelor of Science, Cybersecurity and Information Assurance

N/A

Western University

Executive Diploma, Honours, Municipal Management

ABOUT SHANE LAING

I am an accomplished Chief Information Security Officer (CISO) with over 20 years of technical expertise in cybersecurity and a decade of executive leadership experience. My career is defined by a commitment to designing and implementing secure, scalable systems that protect organizational assets from complex and evolving cyber threats. My strategic vision and hands-on approach have empowered organizations across various industries to achieve robust security postures and compliance with industry standards.My professional journey has provided me with a comprehensive skill set in cybersecurity management, including stakeholder alignment, program development, policy creation, risk management, and incident response. I excel in translating intricate cyber risks into actionable business strategies and aligning technical solutions with broader organizational goals. My expertise encompasses threat mitigation, vulnerability assessment, network and cloud security, and business continuity and disaster recovery planning.Area of Expertise: Develop and execute comprehensive cybersecurity strategies that align with organizational priorities and risk tolerance. Lead cross-functional teams and engage with C-suite executives to drive strategic security initiatives and enhance cyber resilience. Implement and manage security frameworks and standards, including NIST CSF, ISO 27001, CIS, CMMC, and SOC2. Oversee regulatory compliance with standards such as HIPAA, PCI DSS, DFARS, GLBA, and SOX. Spearhead incident response and security investigations, ensuring thorough documentation and effective remediation. Optimize risk management and performance measurement frameworks to support data-driven decision-making.I am passionate about continuous improvement and innovation in cybersecurity, and I am dedicated to fostering a culture of security awareness and resilience within organizations.

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.