Kelly Knecht Slovinac, CIPP, CISSP
Details
• Brief business and technology executives on cybersecurity threats, initiatives, open risks to drive visibility and maturity in vulnerability and risk management
• Collaborate with Corporate Compliance and Legal Departments and coordinates the IT component of both internal and external audits, federal and state examinations to ensure security programs are compliant with HIPAA and 21 CFR part 11 security rules, other relevant US Federal, State, and global laws, regulations, industry standards and ethical requirements
• Build and operationalize a threat detection program for tools scanning the public code repositories for data leaks, integrating alerts to incident management platform ServiceNow, and automate dashboard reporting to leadership.
• Serve as the SME for Security and Privacy Incident Response Management creating strong relationships and communication lines with internal and external stakeholders to ensure expeditious, effective, and exhaustive efforts for incident response
• Collaborate with Legal and business to develop Security Addendums aligning to GDPR requirements and support contract negotiations for security
2022 : Present
Cognizant
Information Security Officer
Partner with businesses to create and implement security and privacy policies and processes that provide structure, achieve business goals, and remain flexible for innovation. Performing process improvement and automation along with data analytics to increase profits.
2019 :
KS Information Services
Independent Business Owner
2020 : 2022
Cognizant
Information Security & Assurance Manager
• Facilitate and manage relationships with leadership, customers, vendors, and staff during all phases of solution implementation
• Deliver new compliance programs to track, report and drive cybersecurity efforts from development to business as usual
• Build multi-divisional processes and user manuals for global change management
• Define decision-making process for global security initiative prioritization and integrate the use of Salesforce for internal stakeholder visibility
• Conduct data analytics, modeling, and quality assessment to evaluate global resource capacity
2017 : 2019
PwC
Sr. Manager, Global CISO office Asia-Pacific lead
• Define, maintain, and communicate company’s security policy, goals, and public security statements in accordance with SOC II and SAS 70 obligations
• Provide security related requirements by participating in product planning and architecture decisions
• Implement a training program for security and policy understanding
• Plan and budget for IT and security resources and expenses throughout development lifecycle
• Support contract and proposal drafting and negotiations with clients related to security
• Track, report and drive solutions on security risks, projects, audits, vulnerabilities, and incidents
• Provide security/risk status reports for Board of Directors quarterly meetings
2016 : 2017
Xcira, Inc.
Security Officer
About
I try to make what seems impossible and boring achievable and fun. In a world of compliance and policies, working with businesses to create innovative and effective security and privacy operation strategies is my passion. Like policy ninjas, we work together to minimize risks and maximize productivity for agile environments. Sounds amazing right? To me it does.
I love the intersection of business operations, IT and law. Equipped with the skills to talk statistics with analyst, techie enough to chat the Systems Administrators and business savvy enough to engage the C-suite and attorneys, I am like the Swiss army knife of IT and Privacy compliance.
I would love to help you accomplish your cyber-security and privacy goals. It will be fun. Let’s get started!