I 'hack' deals. And fix them. "While the world eyes the valuation meltdown in financial services, don't neglect the danger to regulated systems and data...[I]n addition to the obvious threat to market stability, the current situation has the added element of national and global security concerns."
from As Finance Roils, Don't Neglect Information Security!!
by Kevin M. Nixon, MSA, CISSP, CISM, and Laura Wilson, JD, CISA candidate
Everybody has gaps. Let's find and fix them before there's a crash.
Specialty: analyzing and ‘bringing up to code’ deals and business relationships related to information security and financial services
Governance / risk / compliance (GRC)
Deal analysis
Due diligence
Gap analysis
Problem resolution related to highly-sensitive systems and data
Experience in highly-regulated organizations:
Publicly-traded international financial services
Banking
Payment Card Industry (PCI)
Mortgages
Insurance
Investment advisors
Venture capital portfolio companies
Software and services projects involving regulated systems and sensitive data
Training on industry standards, gap analysis and risk mitigation
Preparing training materials and designing software dashboards to help stakeholders identify and remedy compliance and security gaps, and verify appropriate due diligence
Working with professional groups and not-for-profits interested in the regulatory, governance,
information security and national security implications of financial systems and regulated data
