A seasoned Chief Information Security Officer (CISO) with over a decade of experience leading cybersecurity, compliance, and risk management in healthcare and SaaS organizations. A recognized thought leader in incident response, data protection, and regulatory compliance, with a proven track record of building robust security programs, automating risk processes, and driving business resilience.
Expert in aligning security strategy with business objectives, leveraging AI-driven automation to enhance incident response, compliance reporting, and business continuity planning. Adept at navigating complex regulatory landscapes, including HIPAA, SOC 2, ISO 27001, and NIST frameworks, while integrating cutting-edge security technologies to proactively mitigate threats.
Overview
10
10
years of professional experience
1
1
Certification
Work History
Information Systems Security Manager
Priori
03.2023 - Current
Prepared and maintained regular system assessment and evaluation documents, informing CSO of discovered faults or discrepancies in operations.
Collaborated with key personnel to verify data integrity and compliance with related regulatory guidelines and legal requirements.
Applied cybersecurity best practices to information system standards, directives and guidance for personnel, monitoring compliance across organization.
Led development of internal education curricula for new employees, designing instructional programs to rapidly onboard information systems users.
Coordinated with external auditors during annual audits, demonstrating adherence to regulatory requirements and industry best practices.
Analyzed network security and current infrastructure, assessing areas in need of improvement.
Developed comprehensive security policies, procedures, and guidelines for improved organizational compliance.
Reduced risk of data breaches through continuous vulnerability assessments and penetration testing.
Verified continuous update of systems and immediately patched vulnerabilities to prevent security issues.
Ensured prompt detection and remediation of incidents through effective intrusion detection systems deployment.
Strengthened endpoint protection strategies by deploying advanced malware protection solutions.
Led the development of disaster recovery plans, improving organizational resilience in the face of cyber incidents.
Conducted regular security awareness training sessions, fostering a culture of cybersecurity vigilance among employees.
Enhanced network security by implementing robust information systems controls and monitoring processes.
Senior Compliance Manager
Bevy
08.2020 - 03.2023
Mitigated risk exposure by conducting thorough audits and identifying areas for improvement.
Analyzed data trends to identify potential areas of non-compliance or emerging risks, taking proactive measures to address them.
Improved overall compliance by streamlining processes and implementing new policies.
Implemented robust monitoring systems to detect potential issues and ensure prompt resolution.
Spearheaded the development of a centralized compliance database, improving accessibility to key information for stakeholders.
Optimized internal controls by conducting regular reviews and recommending enhancements.
Played a pivotal role in preparing the organization for successful audits from various regulatory bodies.
Reduced company liability, ensuring adherence to industry regulations and best practices.
Streamlined policy management processes, enhancing efficiency while maintaining rigorous standards for documentation review and approval.
Developed comprehensive training programs to educate employees on critical compliance topics.
Managed a high-performing team of compliance professionals, fostering collaboration and growth.
Drove continuous improvement initiatives within the Compliance department, leveraging technology solutions where feasible to enhance effectiveness while reducing costs.
Reviewed documents, files, transcripts, and other records to assess compliance and potential risk.
Prepared records and data for regular audits.
Formulated detailed recommendations based on audit findings to support annual planning and definition of goals.
Played instrumental role in company-wide risk assessment efforts, supporting enhancements in business processes and controls.
Liaised with clients to identify and target inefficiencies in areas of risks and business controls, process gaps and workflow discrepancies.
Managed company participation in food safety audits, and reviews by third parties, customers and regulatory agencies.
Analyzed and identified risk areas to determine compliance with applicable laws and regulations.
Compliance Officer
START Treatment & Recovery Services
08.2019 - 08.2020
Managed relationships with regulators, maintaining open lines of communication to ensure transparent operations.
Assisted with internal and external audits to confirm compliance with applicable laws and regulations.
Promoted a culture of continuous improvement through ongoing evaluation and refinement of compliance program elements.
Collaborated with cross-functional teams to address compliance concerns, fostering a culture of shared responsibility.
Enhanced regulatory compliance by developing and implementing comprehensive policies and procedures.
Evaluated new regulations for potential impact on business operations, taking proactive measures to ensure readiness for implementation.
Spearheaded investigations into potential violations, promptly addressing issues to maintain company reputation and avoid sanctions.
Provided expert guidance on complex regulatory matters, enabling informed decision-making within the organization.
Mitigated legal risks by proactively identifying gaps in existing policies and recommending improvements.
Streamlined reporting processes for improved efficiency in submitting data to regulatory agencies.
Designed risk assessment frameworks to evaluate organizational vulnerabilities and prioritize areas requiring attention.
Implemented successful remediation efforts following audit findings, minimizing adverse consequences for the organization.
Ensured continuous improvement in compliance practices by setting up feedback loop with key stakeholders.
Developed comprehensive compliance manual, significantly improving staff understanding of regulatory requirements.
Enhanced regulatory compliance by auditing and revising company policies and procedures.
Mitigated potential financial penalties by proactively identifying and addressing compliance issues before regulatory reviews.
Optimized resource allocation for compliance activities by analyzing data trends and focusing on high-risk areas.
Coordinated with external regulators to clarify compliance expectations and ensure company practices were fully aligned.
Improved operational efficiency by streamlining compliance processes and reducing redundancies.
Conducted periodic compliance audits and reviews to identify areas of improvement.
Conducted thorough risk assessments for identifying potential compliance vulnerabilities and formulated mitigation strategies.
Completed field checks to verify licenses and permits for various business.
Compliance Officer
Public Health Solutions
11.2018 - 08.2019
Managed relationships with regulators, maintaining open lines of communication to ensure transparent operations.
Assisted with internal and external audits to confirm compliance with applicable laws and regulations.
Promoted a culture of continuous improvement through ongoing evaluation and refinement of compliance program elements.
Collaborated with cross-functional teams to address compliance concerns, fostering a culture of shared responsibility.
Enhanced regulatory compliance by developing and implementing comprehensive policies and procedures.
Demonstrated adaptability in response to evolving industry standards, maintaining best practices in a dynamic regulatory environment.
Provided expert guidance on complex regulatory matters, enabling informed decision-making within the organization.
Mitigated legal risks by proactively identifying gaps in existing policies and recommending improvements.
Advised senior management on strategic planning initiatives, incorporating compliance considerations into decision-making processes.
Boosted staff compliance awareness with creation and delivery of engaging training sessions.
Improved operational efficiency by streamlining compliance processes and reducing redundancies.
Achieved significant improvements in compliance metrics by leading targeted internal review and action plan.
Led cross-departmental collaboration to ensure seamless adherence to new regulatory requirements.
Corporate Compliance Officer
Sunnyside Community Services
12.2014 - 10.2018
Promoted transparency throughout the organization by regularly updating and communicating compliance objectives, expectations, and achievements.
Evaluated proposed business initiatives for alignment with applicable legal requirements, minimizing potential liabilities.
Enhanced corporate compliance by developing and implementing comprehensive policies and procedures.
Provided expert guidance on regulatory matters during mergers and acquisitions, ensuring seamless transitions.
Collaborated with cross-functional teams to ensure consistent application of compliance standards across all departments.
Developed robust monitoring systems to track compliance-related activities and report findings to senior management.
Identified potential areas of vulnerability, creating proactive action plans to mitigate risks.
Reviewed contractual agreements with third-party vendors to ensure adherence to relevant laws and regulations.
Streamlined reporting processes for increased efficiency in regulatory submissions.
Implemented corrective actions following internal or external audit findings to prevent future non-compliance incidents.
Fostered a culture of ethical behavior and integrity within the organization through consistent messaging and role modeling.
Coordinated responses to regulatory inquiries, ensuring accurate representation of company practices and timely resolution of concerns.
Developed risk assessment models to identify potential compliance risks.
Education
Master of Arts - Compliance
CUNY School of Professional Studies
New York, NY
06-2021
Skills
Access control management
Application security
Identity management
Incident response
Penetration testing
Disaster recovery planning
Security event log reviews
Cybersecurity policy development
Threat analysis
Vulnerability assessments
Third-party risk management
Business continuity planning
Certification
Certified Chief Information Security Officer (CCISO) – EC-Council. - In Progress
Certified Information Systems Auditor (CISA) - ISACA. - In Progress