Troy Thomas
Chief Information Security Officer (CISO) @Rego Consulting
Signup · Get unlimited contacts
WORK HISTORY
Chief Information Security Officer (CISO) @Rego Consulting
Led Rego Consulting to its first ISO 27001 certification and SOC 2 compliance, strengthening enterprise trust.Achieved EU-US Data Privacy Framework compliance and led GDPR aligned privacy programs, enabling compliant cross-border data operations.Aligned security strategy with business objectives, supporting $30M+ in annual revenue while reducing compliance gaps by 50%.Oversaw AWS cloud governance, incident response, and third-party risk for platforms serving global users.Directed cybersecurity programs with zero reported breaches.
EDUCATION
Harvard University
Cybersecurity, Managing Risk in the Information Age
York University
Master's Certificate, Project Management
Seneca Polytechnic
Diploma, Police Foundations (Law)
Western University
Bachelor of Science - BS, Computer Science
ABOUT TROY THOMAS
Enterprise Chief Information Security Officer and board-facing executive with 20+ years leading information security programs, enterprise risk, cybersecurity, privacy, compliance, and customer support for global SaaS organizations. Proven track record in aligning security strategy with business objectives, enabling revenue growth, operational resilience, and customer trust across highly regulated, multi-region, and public-company environments.I lead enterprise security programs, risk management, and governance (GRC) while partnering with boards, executive leadership, and audit committees to drive risk-informed business decisions, regulatory readiness, and strategic security investments. My expertise spans cloud security (AWS), Zero Trust, security architecture, DevSecOps, identity and access management (IAM), data protection, incident response, and crisis management, ensuring platforms and products are secure, resilient, and audit-ready.I take a pragmatic, business-driven approach, integrating security, privacy, and customer experience into core operations rather than treating them as separate functions. I’ve built and scaled high-performing security and customer support teams, embedding security into product development, operational workflows, and customer engagement programs. This approach has reduced organizational risk, protected revenue, strengthened customer trust, and enabled high-growth SaaS operations at scale.Specialties & Focus Areas:Enterprise Security Strategy | Information Security Program Leadership | Enterprise Risk Management (ERM)| Security Governance & GRC | Risk Register | Security Architecture | Cloud & SaaS Security (AWS)| Zero Trust Architecture | DevSecOps & SDLC Integration | Identity & Access Management (IAM)| Data Protection & Classification | Incident Response & Crisis Management | Vulnerability & Threat Management | Compliance & Privacy (ISO 27001, SOC 2, GDPR, CCPA, NIST)| Third-Party & Vendor Risk | Business Continuity & Disaster Recovery (BCP/DR)| Executive & Board Communication | Customer Trust & Revenue Enablement
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.