Deloitte SpainExperienced Senior Cyber Security Consultant
Sep. 2018 - Sep. 2024Madrid, Spain* CISO support in media and communications sector - Definition and follow up of the anual action plan in order to improve the security posture. - Implementation and fine tunning of security tools, such as MDM or WAF. - Definition and execution of the cybersecurity awareness plan. - Definition of the security cloud architecture. - Definition and implementation of the security requirements definition process in IT project. - Definition and implementation of the third party risk management strategy. - Definition of the security operations procedure. - Definition and follow up of the vulnerability lifecycle management.
* DORA (Digital Operational Resilience Act) Gap Analysis in spanish banking and market sectors - Study of the actual compliance status. - Identification of the compliance GAP. - Definition of the action plan for full compliance.
* Definition of the risk management strategy in insurance sector - Definition of the security risk management policy following EIOPA. - Definition of the corporate risk assessment methodology. - Execution of the anual corporate risk assessment and definition of the anual risk management plan.
* Technical Security Office in british, american and spanish banking sectors - Follow up of the security action plan in order to improve the security posture. - Identification of the security maturity level and definition of the action plan for improve the maturity level. - Definition of the security policies in order to comply with EBA. - Definition of on premise and cloud security architectures. - Execution of the security in IT projects process. - Management of the security operations processes. - Definition of the executive security dashboard. - Definition of the security compliance baseline. - Definition of the security operations model. - Definition of the vulnerability lifecycle management strategy.