Clarence Roberts
Details
Citi
Senior Vice President Lead Information Security Assessor at Citibank
• Assess Citi suppliers information security practices and controls through the review of policy documentation, configuration settings and infrastructure reviews.
• Document assessment results and in order report back to Citi business lines the supplier’s security posture and any potential gaps that potential pose a risk to the Citi business.
• Effectively communicate and coordinate planning, preparation, execution, review and threat assessment phases of third party assessment activities.
• Mentor and train new assessors that join the program.
2013 : 2023
Citi
VP Lead Information Security Assessor (TPISA)
• Assess Citi suppliers information security practices and controls through the review of policy documentation, configuration settings and infrastructure reviews.
• Document assessment results and in order report back to Citi business lines the supplier’s security posture and any potential gaps that potential pose a risk to the Citi business.
• Effectively communicate and coordinate planning, preparation, execution, review and threat assessment phases of third party assessment activities.
• Mentor and train new assessors that join the program.
2013 : 2019
Citi
VP Lead Information Security Assessor
Develop and document security configuration standards for the Walt Disney Company (TWDC).
• Provide segment support and consultative services on TWDC information security policies and standards.
• Executive security dashboard development for providing a high-level view of key performance indicators relevant to defined security controls within Disney segments.
• Analyze segment activities and services to ensure alignment with company security policies and standards.
• Lead initiatives to evolve security policies and standards based on changes in company strategies and industry trends.
2019 : 2020
The Walt Disney Company
Senior Security Specialist, Governance
• Responsible for monitoring, analyzing, and configuring various security tools and platforms to ensure a secure network environment and to meet regulatory requirements (i.e. SOX, PCI, HIPAA)
• Responsible for recognizing and identifying potential threats to the network and systems connected to the network from the Internet and Intranet.
• Daily administering of Security Information and Event Management (SIEM) application including
2011 : 2013
Starwood Vacation Ownership
Information Technology Security Analyst
About
Highly skilled and certified Third Party Information Security Assessor with 20+ years of experience in assessing the security posture of diverse organizations. Proficient in conducting comprehensive security assessments, vulnerability assessments, and risk assessments to identify and mitigate potential security risks. Strong expertise in industry standards and frameworks such as PCI DSS, ISO 27001, NIST, and a track record of delivering accurate and timely assessment reports. Excellent communication skills and ability to work with cross-functional teams to ensure compliance with information security policies and procedures. Adept at providing expert guidance on security best practices and driving continuous improvement initiatives.