t
tiigo_f

Torrain Findley

@tiigo_f

CISO, Cybersecurity GRC and Compliance Consultant

Estados Unidos
Inglés
Parte de la información aparece en idioma inglés.
Sobre mí
Cybersecurity and Governance, Risk & Compliance (GRC) professional with hands-on experience helping organizations strengthen security, manage risk, and meet compliance requirements. I specialize in NIST CSF, NIST 800-171, ISO 27001, CMMC readiness, cybersecurity risk assessments, security policies and procedures, vendor risk assessments, security control assessments, and incident response planning. I translate complex security requirements into practical solutions, clear documentation, and actionable remediation plans tailored to your organization.... Lee más

Habilidades

t
tiigo_f
Torrain Findley
desconectado • 
Tiempo medio de respuesta: 2 horas

Revisa mis servicios

Administración y protección de datos
I will provide cybersecurity grc risk and compliance consulting

Porfolio

Experiencia laboral

Florida_Institute of Technology

Florida Institute of Technology

Tiempo completo • 3 yrs

Chief Information Security Officer

Jun 2026 - Present2 mos

As the Chief Information Security Officer (CISO) for Florida Institute of Technology, I provide strategic leadership for the University's enterprise Information Security Program, overseeing cybersecurity strategy, governance, risk management, and the protection of institutional information assets. I lead the development and implementation of security policies, standards, and initiatives that strengthen the University's overall cybersecurity posture while supporting its academic, research, and administrative missions. I direct the University's cybersecurity incident response program and lead Governance, Risk, and Compliance (GRC) efforts to ensure compliance with regulatory and contractual requirements, including GLBA, CMMC, etc.

Information Security Officer

Aug 2023 - Jun 20262 yrs 10 mos

As an Information Security leader, I oversee security operations, including SOC activities, threat detection, incident response, vulnerability management, and enterprise security technologies such as SIEM, EDR, firewalls, IDS/IPS, email security, and endpoint protection. I manage security personnel, investigate security events, coordinate remediation efforts, oversee security change management, and work closely with IT leadership to develop and execute enterprise cybersecurity initiatives. I also lead cybersecurity governance, risk, and compliance efforts, including the development and maintenance of the Information Security Program, security policies, standards, procedures, and technical documentation. My responsibilities include leading CMMC readiness and assessment activities, conducting enterprise risk assessments, and supporting compliance with frameworks and requirements such as CMMC, NIST SP 800-171, GLBA, and FERPA, while continuously evaluating emerging technologies and threats to strengthen the organization's overall security posture.

Akamai_Technologies

Cybersecurity Consultant

Akamai Technologies • Tiempo completo

Jan 2021 - Jul 20232 yrs 6 mos

In this role, I conducted security assessments, threat modeling, and forensic investigations to identify vulnerabilities and strengthen organizational security. I managed EDR and SIEM technologies, customized security dashboards for proactive threat detection, led external penetration testing and remediation efforts, and integrated Akamai security solutions with platforms such as Splunk and QRadar. I also supported incident response activities and updated security policies to align with industry best practices and regulatory requirements. Additionally, I implemented Zero Trust security principles through MFA, SSO, IAM, and continuous monitoring, while automating security operations using Python and Bash. I collaborated with DevSecOps teams to integrate security controls into CI/CD pipelines and provided clients with technical training and guidance on Akamai security solutions, helping organizations improve their overall security posture and operational resilience.