Perla Fernández, CISM
CISO at CEVALDOM- Claim this Profile
Click to upgrade to our gold package
for the full feature experience.
Topline Score
Bio
Credentials
-
Transformación Digital: Tecnologías y sus aplicaciones prácticas
MIT Professional EducationJul, 2021- Sep, 2024 -
ISO/IEC 27001 Lead Auditor
PECBJul, 2017- Sep, 2024 -
Certified Information Security Manager (CISM)
ISACADec, 2015- Sep, 2024 -
ISO/IEC 27001 Lead Implementer
PECBApr, 2015- Sep, 2024
Experience
-
CEVALDOM
-
Dominican Republic
-
Financial Services
-
1 - 100 Employee
-
CISO
-
Aug 2019 - Present
-
-
-
Asociación Popular de Ahorros y Préstamos
-
Dominican Republic
-
Financial Services
-
700 & Above Employee
-
Gerente de Seguridad de la Información y Contingencia
-
Mar 2019 - Present
-
-
-
-
Gerente de Seguridad de la Información
-
Jan 2019 - Mar 2019
-
-
Information Security and IT Auditor
-
Sep 2016 - Jan 2019
• Advise executive management and committees on information security matters and provide guidance on the Information Security Management System (ISMS).• Support the organization in the compliance with the ISO/IEC 27001:2013 standard, providing detailed reports about the effectiveness of its Information Security Management system (ISMS).• Design and manage risk-based information security and information technology audits.• Review the information security processes, procedures, policies and the effectiveness of the controls in place.• Support the Risk Management department to perform information security risk assessments and define treatment actions. Show less
-
-
Information Security Manager
-
May 2012 - Sep 2016
• Led the strategic development and implementation of an ISMS based on the ISO/IEC 27001:2013 standard. • Worked in collaboration with the Risk Management department in the IT risk assessment and risk treatment for information assets.• Developed, implemented and maintained information security policies, procedures, & technologies to achieve control objectives.• Helped in the design, development and implementation of the company’s risk management policy and also the continuity and disaster recovery plans.• Designed, developed and implemented an information security awareness program. • Implemented all the processes related to Verizon’s Security Management Program and helped the organization on the achievement of Verizon’s Cybertrust Security Certification• Tracked record on the implementation of IT security best practices based on multiple standards.• Worked in collaboration with the IT department in the creation of Incident Response and Vulnerability Management programs.• Implemented and administrated multiple IT security solutions, such as: Email and Web Protection, File Integrity Monitoring, SIEM/Log Management, Network Intrusion Prevention Systems and others.• Incorporated new security metrics and policy evaluation processes to effectively identify key areas of improvement across the organization. Show less
-
-
-
Banco Santa Cruz
-
Argentina
-
Banking
-
1 - 100 Employee
-
Information Security Officer
-
Oct 2010 - May 2012
• Collaborated with the Information Security team in the design, development and implementation of security policies based on the PCI DSS standard. • Implemented internet access policies and rules at the organizational level. • Deployed and configured multiple security solutions, in areas such as: Vulnerability Management, Thread Management, SSL Certificates for Web-facing applications and websites and others. • Managed and monitored the logical access to the information assets. • Managed Firewall and Network IPS devices. • Assisted the Chief Information Security Officer in the day-to-day tasks Show less
-
-
-
-
Project Manager
-
Oct 2008 - Oct 2010
• Helped one of the main Hospitals in Santo Domingo to implement key software solutions for laboratory management. • Developed customer specific technical product demonstrations and assisted customers with growth and migration planning. • Acted as a principal liaison to product marketing and product engineering in communicating customer requirements and information. • Helped one of the main Hospitals in Santo Domingo to implement key software solutions for laboratory management. • Developed customer specific technical product demonstrations and assisted customers with growth and migration planning. • Acted as a principal liaison to product marketing and product engineering in communicating customer requirements and information.
-
-
Education
-
Pontificia Universidad Católica Madre y Maestra
Ingeniería, Ingeniería de telecomunicaciones -
Universidad Autónoma de Santo Domingo
Maestría, Auditoría y Seguridad de la Información