Lynn G.
Details
Ellucian
Information Security Manager
Developed and matured corporate information security policy and risk frameworks. Led review and formal approval process for Policy updates. Designed, developed, and delivered data analysis, metrics, reports, and dashboards. Supported customer-facing teams with security due diligence inquiries. Supported audit and assessment engagements such as SOX, ISO 27001, PCI, FISMA and data privacy.
2012 : 2017
Thomson Reuters
Information Security Manager
Managed design, development, implementation, data integration and support of policy, risk and business continuity management modules within RSA Archer governance risk and compliance (eGRC) platform. Supported audit and assessment engagements such as SOX, ISO 27001, SAS 70 / SSAE 16, HIPAA and data privacy. Designed and conducted risk control self-assessments. Developed and managed knowledge / collaboration tools.
2007 : 2012
Thomson Reuters
IT Risk Manager
Established IT service / knowledge management components for IT Security. Managed Sarbanes-Oxley (SOX) general IT control audit program for Technical Operations including management reporting, evidence collection, audit coordination, and remediation planning.
2004 : 2007
Thomson Reuters
IT Security Program Analyst
Liaison for Technical Operation service delivery engagements / issues in Thomson Research and Wealth Management.
2003 : 2004
Thomson Financial
Technical Account Manager
About
Certified Information Security Manager (CISM) adept at harmonizing regulatory, legal, corporate, and third-party security requirements into corporate security policy and risk framework. Known for translating business requirements into process and system improvements that meet operational needs, drive internal control improvement and reduce risk. Recognized as a versatile, customer-oriented, results-driven leader with strength in sourcing, structuring, analyzing and converting data from large, complex systems into meaningful metrics for the business.
Information Security | Policy Management | Risk Management | Compliance Management | Business Systems Analysis | Data Analysis | Process Management | Project Management | Knowledge Management | IT Service Management | Testing | Awareness and Training | Customer Service