Profiles search
Chris Garza, CISSP, PMP, PMI-ACP
Chief of Staff & Senior Technical Program Manager - Cybersecurity at HashiCorp
Austin, TX, United States
Details
Experience:
Implement a security governance framework and provide project management leadership to the Chief Security Officer to mitigate cybersecurity risks and to drive the implementation of strategic priorities.
• Manage the rhythm of the business for Security, lead Monthly and Qtrly Security Reviews with key stakeholders, and drive PCI and GDPR data compliance projects to strengthen the security posture of the business.
• Implemented a security requirements review process and integrated a shift left approach into the product lifecycle to ensure security requirements are identified, prioritized, and tracked throughout the duration of product initiatives.
• Reengineered a Security org-wide intake workflow process into Jira to identify high priority workloads, established a triage and prioritization process, and provided biweekly reporting to leadership on critical projects across the org.
• Managed the migration of the risk register into Jira and developed scorecards to identify the top security risks impacting the product and platform lines of business to reduce the high risk probability and impacts.
• Obtained the CISSP certification and served as a mentor to colleagues to prepare for the certification exam.
2022 : Present
HashiCorp
Chief of Staff & Senior Technical Program Manager - Cybersecurity
Drive cross functional security focused projects that protect the integrity of Apple products’ performance and business growth. Own delivery responsibilities on projects that build out secure and reliable systems servicing core applications.
• Manage a team of 6 Pen Testers and 4 Test Automation Engineers to identify cybersecurity threats and vulnerabilities, with a focus on the intake process, backlog grooming, dependencies, and professional development of the team.
• Lead new product security technical reviews and testing roadmaps to align with product and business priorities.
• Manage the Risk Treatment Plans in collaboration with Info Security to remediate identified security risks across the AP organization and mitigate the impact of out of compliance applications and technology.
• Lead confidential security projects in collaboration with site reliability and product engineering that define and refine the NIST and ISO security frameworks to strengthen the Apple Ad Platforms (AP) Engineering security footprint.
2022 : 2022
Apple
Senior Security Engineering Program Manager - Ad Platforms Engineering
Manage a full scale network security program across the AppleCare (AC) vendor network to identify and remediate information security gaps, and to strengthen security controls that protect Apple data and assets.
• Develop and implement a multi-year roadmap for the Zero Trust Extranet program to route the global AC vendor network traffic through a secure network proxy to enhance user access, authentication, and monitoring controls.
• Manage internal and external Network Security Assessments for the high-risk security AC vendors to identify network vulnerabilities and determine the efficacy of the controls protecting Apple data and assets.
• Lead the Matrix monitoring initiative to implement real-time application monitoring capabilities across the AC vendor network to identify potential network security and data exfiltration vulnerabilities.
• Developed a vendor security scorecard to measure and track security risk and progress across the AC network.
2020 : 2022
Apple
System Security Program Manager - Network Security
Lead the Modern Banking Platform (MBP) client implementations to deliver a component-based banking solution with real-time event processing and flexible integration to be scaled with multi-API and technology stacks.
- Manage the American Express Business Checking MBP project generating $4M in annual revenue for FIS.
- Manage client engagements, document program objectives and requirements, develop and manage client roadmaps, engage FIS and client project team, and communicate overall program status on a weekly basis.
- Manage project plans and implementation processes including resource allocation, progress tracking, monitoring change control process, testing, documentation, training, and on-time delivery within budget constraints.
- Lead weekly FIS and AMEX stakeholder and leadership status updates for the American Express MBP program.
2020 : 2020
FIS
Technology Program Manager, Global Digital Banking
Lead a team of Professional Services Project Managers that manage the installation, upgrade, conversion, and deconversion of Fiserv’s Mobile and Online Banking products for the Digital Channels global client base.
• Manage the execution of global project implementations by leading internal teams and external clients through the project lifecycle including Requirements Validation & Design, Config & Dev, Transition, and Production.
• Develop project plans, manage stakeholders, engage and align internal/external project resources, manage project issues/risks, project financials tracking in Clarity, and communicate executive status reporting and escalations.
• Manage Post Implementation Reviews and Retrospectives with the clients upon completion of an implementation to ensure customer satisfaction levels are above the 90% satisfactory ratings and to identify areas of improvement.
• Mentor Project Managers through Career Development Plans and provide guidance to achieve professional goals and objectives. Deliver mid-year and year-end performance reviews to drive continuous improvement.
2019 : 2020
Fiserv
Project Management Leader - Mobile and Online Banking
• Manage the rhythm of the business for Security, lead Monthly and Qtrly Security Reviews with key stakeholders, and drive PCI and GDPR data compliance projects to strengthen the security posture of the business.
• Implemented a security requirements review process and integrated a shift left approach into the product lifecycle to ensure security requirements are identified, prioritized, and tracked throughout the duration of product initiatives.
• Reengineered a Security org-wide intake workflow process into Jira to identify high priority workloads, established a triage and prioritization process, and provided biweekly reporting to leadership on critical projects across the org.
• Managed the migration of the risk register into Jira and developed scorecards to identify the top security risks impacting the product and platform lines of business to reduce the high risk probability and impacts.
• Obtained the CISSP certification and served as a mentor to colleagues to prepare for the certification exam.
2022 : Present
HashiCorp
Chief of Staff & Senior Technical Program Manager - Cybersecurity
Drive cross functional security focused projects that protect the integrity of Apple products’ performance and business growth. Own delivery responsibilities on projects that build out secure and reliable systems servicing core applications.
• Manage a team of 6 Pen Testers and 4 Test Automation Engineers to identify cybersecurity threats and vulnerabilities, with a focus on the intake process, backlog grooming, dependencies, and professional development of the team.
• Lead new product security technical reviews and testing roadmaps to align with product and business priorities.
• Manage the Risk Treatment Plans in collaboration with Info Security to remediate identified security risks across the AP organization and mitigate the impact of out of compliance applications and technology.
• Lead confidential security projects in collaboration with site reliability and product engineering that define and refine the NIST and ISO security frameworks to strengthen the Apple Ad Platforms (AP) Engineering security footprint.
2022 : 2022
Apple
Senior Security Engineering Program Manager - Ad Platforms Engineering
Manage a full scale network security program across the AppleCare (AC) vendor network to identify and remediate information security gaps, and to strengthen security controls that protect Apple data and assets.
• Develop and implement a multi-year roadmap for the Zero Trust Extranet program to route the global AC vendor network traffic through a secure network proxy to enhance user access, authentication, and monitoring controls.
• Manage internal and external Network Security Assessments for the high-risk security AC vendors to identify network vulnerabilities and determine the efficacy of the controls protecting Apple data and assets.
• Lead the Matrix monitoring initiative to implement real-time application monitoring capabilities across the AC vendor network to identify potential network security and data exfiltration vulnerabilities.
• Developed a vendor security scorecard to measure and track security risk and progress across the AC network.
2020 : 2022
Apple
System Security Program Manager - Network Security
Lead the Modern Banking Platform (MBP) client implementations to deliver a component-based banking solution with real-time event processing and flexible integration to be scaled with multi-API and technology stacks.
- Manage the American Express Business Checking MBP project generating $4M in annual revenue for FIS.
- Manage client engagements, document program objectives and requirements, develop and manage client roadmaps, engage FIS and client project team, and communicate overall program status on a weekly basis.
- Manage project plans and implementation processes including resource allocation, progress tracking, monitoring change control process, testing, documentation, training, and on-time delivery within budget constraints.
- Lead weekly FIS and AMEX stakeholder and leadership status updates for the American Express MBP program.
2020 : 2020
FIS
Technology Program Manager, Global Digital Banking
Lead a team of Professional Services Project Managers that manage the installation, upgrade, conversion, and deconversion of Fiserv’s Mobile and Online Banking products for the Digital Channels global client base.
• Manage the execution of global project implementations by leading internal teams and external clients through the project lifecycle including Requirements Validation & Design, Config & Dev, Transition, and Production.
• Develop project plans, manage stakeholders, engage and align internal/external project resources, manage project issues/risks, project financials tracking in Clarity, and communicate executive status reporting and escalations.
• Manage Post Implementation Reviews and Retrospectives with the clients upon completion of an implementation to ensure customer satisfaction levels are above the 90% satisfactory ratings and to identify areas of improvement.
• Mentor Project Managers through Career Development Plans and provide guidance to achieve professional goals and objectives. Deliver mid-year and year-end performance reviews to drive continuous improvement.
2019 : 2020
Fiserv
Project Management Leader - Mobile and Online Banking
Company:
HashiCorp