> Interim Chief Information Security Officer Services
> Cyber-Risk Oversight mentoring for Senior Executives and Board of Directors.
> Provide ongoing enterprise information security management and reporting
> Perform gap analysis of Business processes and Security systems
> Design, build or enhance the information security program
> Develop business appropriate information security policy and procedure
> Assist with selection of applicable cybersecurity products and services
> Provide information security awareness training
> Assure regulatory compliance alignment: (HIPPA, PCI, SOX, NYDFS, ISO 27001-2)
> Third party assessments (facilitating SSAE16, SOC-1,2,3, reviews)
> Incident response planning, coordination and testing
> Penetration testing
> Intrusion detection, analytics, and prevention
> Disaster recovery process planning and testing
> Cyber Liability Insurance review and alignment
> Assist with law enforcement and regulatory inquiries in the event of a breach
> Incident Management (required notifications, liaise with forensic firms)