Sei sulla pagina 1di 1

Panagiotis Kalantzis

3 Veroias str, Neo Irakleio Athens, GR 14122, Greece Phone: +30 6980 335566 pkalantzis@gmail.com

I N F O R M A TI ON S E C U R I T Y EX E C U T I V E
Information Security & Data Privacy Subject Matter Expert

Certifications Information Security & Data Privacy specialist with domestic international
and domestic experience in Information & Cyber Security Governance & Risk
ITIL v3, 2017 Management, Business Continuity, Data Privacy, Compliance and IT Audit.
CISM, 2016 With more than fourteen years of experience in the management of various
ISO27001LA, 2016 aspects of cyber & information security protecting networks, systems and
CISSP, 2015
information assets for diverse organizations and business sectors.
CRISK, 2011 (expired)
CBCI, 2010 (expired)
C|HFI, 2006 (expired) Technical Competences Summary
C|EH, 2006 (expired)
Risk Management CRAMM, OCTAVE, ISF, FAIR, COBIT, ISO/IEC 31000/27005
Regulatory ISO/IEC 27000, Data Protection Legislation (GDPR), Telecoms &
Key Skills Compliance: Banking Regulations, PCI DSS, Sarbanes Oxley (SOX) Act

Cyber Security Strategy Security Endpoint & Content Security, SIEM, DLP, IAM, Forensic Tools,
Technologies: Vulnerability Management & Auditing, Intrusion Detection &
Information Security & Prevention, OS Security / Hardening, Cryptography, PKI & Digital
Risk Management Certificates
Information Security
Governance Recent Professional Experience
Business Continuity Syntax IT, EMEA Director, Information Security & GRC Practice Leader, 2015
Management Freelancer Information Security & GRC Principal, 2013-2015
ISO/IEC 27000 MTN Cyprus, CY Business Risk Management & Internal Audit Head, 2013
Data Privacy (GDPR) MTN Cyprus, CY Information Security & Risk Manager, 2010-2013
KPMG Greece, GR Assistant Manager, 2008-2009
Regulatory Compliance
Trasys S.A., BE Senior Information Security Consultant, 2007-2008
Penetration Testing
Major Project Highlights:
IT Audit
Information Risk /Information Security Management: Develop Information
Incident Response Security strategy that meets management's business objectives and goals, while
Management developing the Information Security Management System (ISMS). Perform
periodic Risk Assessments that identify Information Security vulnerabilities,
Information Security
determining the level of risk and specifying available options to reduce
Awareness Program
Information Security risks to given Risk Appetite.
Development
Data Privacy Protection / GDPR Compliance: Design a holistic (360o)
Program /Project methodological approach to assist organizations to achieve GDPR compliance.
Management Perform periodic Privacy Impact Assessments that identify privacy risks, and
Vendor Management specify the appropriate compliance plan.
Business Continuity: Establishing a Contingency / Business Continuity Plan,
addressing major disruptions and ensuring data processing continuity.
Education Compliance: Devising enterprise security strategies safeguarding information
assets and ensuring compliance with regulatory mandates. Participated as Team
Athens University of
Leader and Subject Matter Expert in preparation and execution of ISO/IEC 27000,
Economics and
Sarbanes Oxley (SOX) and PCI DSS Compliance Audits.
Business, GR, Master
of Science in IS, 1999 Awareness: Developing Information Security awareness and training programs
University of Patras, and ensuring employees fully adhere to it.
GR, Bachelor of Telecom Infrastructure: Managing the information security aspect of major
Science in system implementations in telecom systems.
Mathematics, 1998 Financial Sector: Led business-critical IT Audit initiatives for large financial
institutions involving financial and compliance audits.
An extended CV version and references are available upon request
Able to Relocate & Travel Extensively Available for Full-Time & Contract Assignments

Potrebbero piacerti anche