Sam White

Consultant

Cardiff, United Kingdom10 yrs 8 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Expert in ISO27001 compliance and security audits.
  • Proven track record in data leakage prevention initiatives.
  • Skilled in managing security incidents and risk assessments.
Stackforce AI infers this person is a Cybersecurity expert with a focus on risk management and compliance.

Contact

Skills

Core Skills

Information SecurityRisk AnalysisInformation Security ManagementInfrastructure Management

Other Skills

Data Leakage PreventionThreat Intelligence3rd Party Risk AssessmentsTechnical Risk AssessmentsSecurity Incident ManagementISMS DocumentationPhishing CampaignsMonthly MI ReportingInformation Security Awareness TrainingThematic ReviewsPen Test ManagementISO27001 complianceSecurity auditsSecurity documentationIncident resolution

Experience

10 yrs 8 mos
Total Experience
3 yrs 6 mos
Average Tenure
4 yrs 11 mos
Current Experience

Admiral group plc

3 roles

Senior Technical Security Consultant

Jan 2024Present · 2 yrs 4 mos

Technical Security Consultant

Nov 2022Jan 2024 · 1 yr 2 mos

Information Security Risk Consultant

Jun 2021Nov 2022 · 1 yr 5 mos

Principality building society

Information Security

Jun 2018Jun 2021 · 3 yrs · Greater Cardiff Area

  • Data Leakage Prevention
  • Threat Intelligence
  • 3rd Party Risk Assessments
  • Technical Risk Assessments
  • Security Incident Management
  • ISMS Documentation (Policies, Standards and Procedures)
  • Phishing Campaigns
  • Monthly MI Reporting
  • Information Security Awareness Training
  • Thematic Reviews
  • Pen Test Mgmt
Data Leakage PreventionThreat Intelligence3rd Party Risk AssessmentsTechnical Risk AssessmentsSecurity Incident ManagementISMS Documentation+7

Cgi

2 roles

Information Security Manager (GRC)

Promoted

Jun 2016Jun 2018 · 2 yrs · Greater Cardiff Area

  • Retention and extension of the ISO27001:2013 Certificate.
  • To maintain ISO27001 compliance at all sites in scope.
  • Internal and External Security audits and reviews and resolution of non-conformance.
  • Security Incidents and their resolution.
  • Escalation point for members around Security across the business.
  • Work with the Bid Team on Security Reponses.
  • Request, review and approve of changes to all Security Documentation. (Security Policy, Risk Register and Statement of Applicability)
  • Run Bi-Monthly Security Forums to Senior members of the business.
  • Monthly reporting for the Compliance Team to the Security, Quality and Risk Manager.
  • Act as COMSEC Alternate Custodian.
ISO27001 complianceSecurity auditsSecurity documentationIncident resolutionSecurity forumsInformation Security Management+1

Wintel Engineer

Sep 2015Jun 2016 · 9 mos · Greater Cardiff Area

  • Server Builds (ESX/Windows 2008-2012 R2)
  • Raid Configuration
  • BAU documentation
  • Impact Assessment’s/Technical Authorities
  • Installation of Hotfixes/Patches
  • CPMS/ITSM Remedy control
  • Configuration of Security Devices (HSM’s)
  • Configuration of remote console access (IBM/Dell/HP)
  • Active Directory
  • Maintaining all KPI’s set by the company
Server BuildsRaid ConfigurationActive DirectoryConfiguration of Security DevicesInfrastructure Management

Education

University of South Wales

Bachelor’s Degree — Computer Forensics

Jan 2012Jan 2015

Stackforce found 100+ more professionals with Information Security & Risk Analysis

Explore similar profiles based on matching skills and experience