Frank Dattilo
Details
Part Time Cybersecurity Consulting
Cybersecurity Consultant
Senior Manager in the Security and Privacy practice.
2013 : 2019
Protiviti
Retired
Management Consultant serving the Health Care, Financial Services and other industries, specializing in Information Security, Privacy & Risk Management
Recent engagements include :
• Directed a GDPR compliance gap assessment for an multi-national manufacturer.
• Served as Interim Chief Information Security Officer (CISO) for a regional health system.
• Directed HIPAA, Meaningful Use and NIST based risk assessments for multiple regional health systems.
• Conducted NIST CSF, SANS Top 20 and FFIEC Cyber security maturity and compliance assessments for a number of companies in a variety of industries.
• Conducted HIPAA Security, Privacy & Breach Rules Information Security Assessment & Strategy development engagements for a number of entities in the healthcare industry.
• Conducted ISO 27001 information security assessments and strategy development engagements for a number of organizations in a variety of industries.
• Conducted SANS Top 20 Critical Security Controls Cyber security engagements for companies in the financial services industry.
• Conducted Payment Card Industry compliance assessments and audits for a number of entities in various industries.
• Managed vendor risk management programs for multiple clients.
2011 : 2019
Protiviti, Inc.
Senior Manager, Information Security and Privacy
Provided financial, operational and technological strategic planning and tactical implementation assistance to a variety of healthcare providers including a multi-specialty physicians' practice, an orthopedic surgery practice and a national provider of radiology services.
2010 : 2011
The Peritian Group, LLC
Helth Care Industry Consultant
Directed all aspects of practice management including strategic planning, financial planning, financial management, operations management, human resources, marketing, and technology. Directed a staff of 70 professionals including 28 radiologists in delivering high quality diagnostic radiological services in an outpatient imaging center and four hospitals.
2008 : 2010
Southeast Medical Imaging
Executive Director
About
Experienced Cyber Security, Privacy, Compliance and Risk Assessment Consultant having conducted numerous security assessments utilizing the NIST CSF, ISO 27001- 27002, SANS Top 20 CSC, GDPR, GLBA, HIPAA and FFIEC security frameworks. Conducted several Payment Card Industry (PCI) Compliance Assessments and HIPAA Security, Privacy and Breach Rules Compliance Assessments, directed Security & Privacy Remediation and Strategy Development Efforts and managed Third Party Vendor Assessment Programs (Shared Assessments - BITS) for a number of entities in various industries.
Prior to joining Protiviti; several years experience in the health care industry as Executive Director, practice leader, information security specialist and risk assessor for a number of physician practices and hospital based specialists. Provided financial, operational and technological management, developed long term strategic and financial plans, technology infrastructure designs, and implementation strategies, developed operational and capital budgeting processes, negotiated joint ventures, directed Six Sigma business process evaluation and improvement projects, developed business development and marketing strategies, conducted business process re-engineering projects for various healthcare providers, and developed and implemented HIPAA Security & Privacy security environments.
More than twenty years in C-level and Senior Management roles in Information Technology in the Financial Services industry responsible for developing and implementing information technology strategy and infrastructure.
Specialties include: Information Security, Privacy & Risk Management, HIPAA Compliance, PCI-DSS, Medical Practice Management, NIST CSF, SANS TOP 20, FFIEC CSF, ISO 27001 and GDPR.
Primary industry expertise includes: Financial Services and Healthcare.
Certifications: HITRUST CCSFP, PCI-QSA, CISA, Six Sigma Green Belt