Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Markel Samuel

Irmo,SC

Summary

Dynamic and results-oriented Cybersecurity and Compliance Auditor with a proven track record of conducting comprehensive cybersecurity compliance assessments across various frameworks including SOC 2 Reporting, PCI-DSS, NIST CSF, HITRUST, FFIEC CAT, and SWIFT Banking. Experienced in identifying gaps and mitigating risks with Fortune 500 client companies spanning diverse industries such as financial institutions, retail, energy, and information technology.

Overview

5
5
years of professional experience
1
1
Certification

Work History

Cybersecurity Advisor

Soteria
Charleston, SC
10.2023 - Current
  • Communicating with prospective and existing clients to understand their security needs and develop engagement plans to satisfy their requirements.
  • Developing an understanding of the business requirements and other motivating factors for clients.
  • Performing security risk assessments to identify where gaps exist within security programs.
  • Collaborated and leading portions of a $3 million dollar, 2 year specialized audit and assessment for a large State client set to renew
  • Working closely with Customers and the Soteria team to develop plans of action to ensure they achieve their desired outcomes.
  • Leading internal security efforts to obtain annual SOC 2 Compliance, implementing GRC tooling and interfacing with auditors
  • Documenting and presenting findings and recommendations to clients, including C-Suite and board-level executives.
  • Performing business development tasks from the initial call with a referral or repeat client, through the proposal stage, and finally, to contract execution.

Cybersecurity and Compliance Consultant

BDO USA
Charlotte, North Carolina
06.2022 - 10.2024
  • Conducted cybersecurity compliance assessments for SOC 2, PCI-DSS 4.0 Readiness, NIST Readiness, HITRUST, FFIEC CAT, SWIFT Banking, ISO Readiness frameworks
  • Lead audit and assessments start to finish for large Fortune 500 companies in industries such as financial institutions, big retail, energy, information technology
  • Bridged the gap for clients from PCI 3.2.1 to PCI 4.0 utilizing spreadsheet deliverable control-by-control
  • Presented customized compensating controls for clients to obtain compliance with frameworks
  • Interfaced with prospective clients from kickoff to project completion to foster working relationship to guide them throughout the engagement
  • Delivered polished final reports for these various frameworks, policies, and procedures
  • Validated systems through observation and reporting to determine control alignment

Cybersecurity Consultant (Contract)

Marqeta
Greenville, South Carolina
01.2022 - 05.2022
  • Developed and implemented cybersecurity policies, procedures, and standards to ensure the organization's information assets are secure.
  • Contribute on security engagements to obtain compliance with PCI DSS, PCI 3DS, and SOC 2
  • Conducted internal quarterly assessments to confirm compliance
  • Automated 20 hours of weekly evidence collection of logs using ticketing system API
  • Interfaced with auditors to provide evidence and solutions to organization infrastructure processes.

Information Security Analyst

Bigger Brains
Anderson, SC
01.2020 - 01.2022
  • Ensured control alignment and validation for systems in scope for security assessments (NIST CSF, PCI, GDPR), cooperate with external auditors to assist in security assessments and obtain compliance within frameworks.
  • Documented IT controls and processes for external vendor and auditor use to be in compliance with frameworks and security assessments such as SOC 2, NIST CSF, and PCI-DSS.
  • Implemented company's first Vulnerability Management platform to regularly patch endpoints
  • Implemented company's first Mobile Device Management platform to control, report, and monitor the use of handheld devices within organization.
  • Integrated company's first ticketing system for developer, compliance, and customer needs, nearly 2000 tickets in the lifecycle of the tool with over 80% resolutions across the company.

Education

Master's Degree - Information Security Management

Augusta University
08.2025

Bachelor's Degree - Cybersecurity

Anderson University (SC)

Skills

  • Risk Management
  • Payment Card Industry
  • NIST Cybersecurity Framework
  • SWIFT Framework
  • FFIEC Testing
  • CIS Controls
  • NIST CMMC
  • Policies and Procedure Writing
  • SOC 2 Type I and Type II Reporting

Certification

  • Certified Cloud Practitioner, AWS, 2022-12-01, www.credly.com/badges/aaaf31ea-e425-45d8...
  • Certified in Cybersecurity, ISC2, 2023-07-01, www.credly.com/badges/8b213859-19e4-4e9e...

Timeline

Cybersecurity Advisor

Soteria
10.2023 - Current

Cybersecurity and Compliance Consultant

BDO USA
06.2022 - 10.2024

Cybersecurity Consultant (Contract)

Marqeta
01.2022 - 05.2022

Information Security Analyst

Bigger Brains
01.2020 - 01.2022

Master's Degree - Information Security Management

Augusta University

Bachelor's Degree - Cybersecurity

Anderson University (SC)
Markel Samuel