Neil Quiogue
Details
McKesson
Sr. Director, Information Security
Led the European Security Capability Management and Security Governance in Information Security and Risk Management (ISRM).
Led and supported the execution of ISRM goals and objectives in Europe with the governance and management of security initiatives and resources and ensure security risks are managed and the organisation complies with security requirements and regulations through active collaboration with customers and stakeholders.
Drove and/or proactively supported regional Information Security and Risk Management (ISRM) engagement in Key Initiatives and Focus Areas including Information Protection Programme and General Data Protection Regulation (GDPR).
Supported SAFe agile methodologies to evolve ISRM services and deliver value to project teams.
2018 : 2021
McKesson
Director of Information Security
Led the Protect & Detect organisation through the development and execution of strategies to protect Amgen's information assets from threats and detect threats on those assets in a timely manner.
Led Protect & Detect (P&D) capabilities including Endpoint Protection, Network Protection, Data Protection, Security Monitoring, Threat Intelligence, Vulnerability Management, Penetration Testing, and Security Consulting.
2013 : 2018
Amgen
Director of Information Security
Managed the information security programme at PopCap globally working with different teams (Legal, Human Resources, Operations/IT and Development teams) to improve the security posture within the company.
Led a number of security projects including PCI DSS compliance, Security Information and Event Management, Host Intrusion Detection systems, Database Activity Monitoring, Vulnerability Management, Security Awareness Training.
Coordinated or handled security incidents when they occurred. Also handled vulnerability management and basic penetration testing.
Helped define and review security policies, standards, and guidelines that are patterned after NIST, CIS, SANS, and ISO 27001.
Provided advice and recommendations on security needs, issues, and requirements with the different teams. Kept up-to-date on compliance and legislation requirements like Data Protection.
PopCap was eventually acquired by Electronic Arts (EA).
Joined the Security and Risk Management (SRM) team that provides Information Security, governance and security support for EA's business worldwide. Supported PopCap and other EA European Studios like DICE and Playfish.
Provided architecture and engineering work through security guidance into on-going projects and run activities within EA.
Assisted in security governance, coordinated with the security operations team and provided due diligence within the request and change management process to approve security related changes within the EA environment.
2007 : 2012
PopCap Games
Information Security Manager
Led the System Administration team in managing the day-to-day IT (systems, network, and security) operations.
Collaborated with project and development teams in meeting their IT requirements including implementation on Solaris and Linux systems.
2005 : 2006
CAPE Technologies
System Administrator Team Lead
About
Over 20 years of global experience (Asia Pacific, North America and Europe) in Information Technology and Information Security/Cybersecurity in various roles from technical to leadership in different industries (from start-ups to Fortune 500 companies) including regulated environments. Extensive results and behaviour oriented experience working in matrix organisations spanning different geographies and cultures. Balanced business management and technical knowledge and experience helping facilitate communication and relationship building at multiple levels in an organisation and ensuring the success of initiatives.
Relevant Certifications: CISSP, SABSA SCF, CMgr FCMI (Chartered Fellow)
Areas of Expertise: Information Security / Cybersecurity, Security Risk Management, Strategic Planning (IT and Information Security Strategy), Program Management, Service Management (ITIL), Project Planning and Execution, Stakeholder and People Management, Vendor Relationship Management, Continuous Improvement, Change Management, Policies and Standards (NIST CSF, ISO 27001/27002, CIS Critical Security Controls), Regulated Environments (SOX, GxP), Problem Solving and Decision Making.