Sitemaps
Experts
DiscussionsQuestionsExperts

Steven Parker

CISO for GDPR, FERPA, PCI and HIPAA Compliance

Bio

Virtual CISO, I have over 17 years of Cyber and Information Security experience. I can show you how to ensure the confidentiality, integrity and availability of your network and data assets and help you develop a program that will enable your business growth in a secure fashion.
In my career I have launched security, risk and compliance programs and developed them into business enabling service departments. Currently providing Chief Information Security Officer (CISO) consultative services to a variety of verticals. Currently held industry certifications include CISSP, HCISSP, CISA, CISM, CRISC, C|CISO, CFE, ITIL and Cloud Integration. Reach out to me, I am here to help and provide you with the best security advice that will help you sleep at night.

Recent Answers

Network Security

Which CDN would you recommend for bot detection?


Steven Parker

CISO for GDPR, FERPA, PCI and HIPAA Compliance

Distil Networks is more like a CDN (Content Delivery Network), so every traffic to customers website should pass through Distil server. In other words you have to point your DNS to their CDN (that can potentially bring down your site). They keep analyzing your website through out and if the traffic is found malicious they block. As you asked about competitors, ShieldSquare as a potential alternative, offers following benefits over Distil: Non-intrusive API integration that will not affect your website performance and uptime. Zero False Positives that will ensure that your genuine users are never troubled. I can offer more direction if I know more about your environment. Best Regards, Steven

Network Security

Which level of DoS protection is best to start off with for a startup building a social network from the ground up?


Steven Parker

CISO for GDPR, FERPA, PCI and HIPAA Compliance

Denial of Service protection is a key component of your perimeter defense along with your firewall, intrusion detection/prevention and continuous monitoring. There are several managed service providers that you can choose from. The first vendor you should contact is your Internet Service Provider (ISP), they may have DoS services available as a component of your contract or they will have DoS providers they partner with. Once you have identified the services your provider offers or the DoS protection partners they have you can evaluate which is best for you. If you have more questions on this or other security, data protection or regulatory requirements, PCI may be important for you, feel free to let me know. Best of luck in your venture! -Steven

Security

We need to certify our start up with the best , most advanced healthcare information security vendors. Any ideas of the best start ups or ways to go?


Steven Parker

CISO for GDPR, FERPA, PCI and HIPAA Compliance

Hi I have over 20 years experience in securing networks and devices with confidential healthcare data. Also, I am multi-certified and I am a Healthcare Certified Information Security Practitioner(HCISSP). Even if HIPAA is not something you need to do, your first step is to identify a industry standard security framework such as the ISO27000. The framework will provide you with guidance and Best Practices on how you should be securing your environment. The ISO Standards are globally recognized as a strong foundation for security and should be a consideration to follow if you are interested in processing, transmitting or storing healthcare information. I would be interested in hearing about your strategy and understanding your requirements based on your business needs. This will enable me to recommend the best path for you to go to appropriately secure your environment. I would be happy to have a conversation with you to do this and offer my professional guidance. Best Regards, Steven

Contact on Clarity

$

6.67

/min

5.0 Rating


Schedule a Call
Send Message

Stats

3

Answers

11

Calls

Areas of Expertise

Information SecurityCloud SecurityRisk ManagementComputer SecurityPCI DSSInformation Security ManagementAdvisorSecurity AuditsHIPAARisk Assessment