Kathy Braun

Kathy Braun

MBA, CCE
Principal Consultant, Cybersecurity and Risk Management

Kathy Braun is an experienced cyber risk management consultant, computer forensic investigator, and incident response senior advisor with more than twenty-five years of practical experience. She provides proactive cyber risk management maturity strategies via threat modeling, using cyber-attack scenarios aligned with business requirements. Her guidance transforms risk management and compliance programs, providing strategic oversight and practical management working with businesses to mature the organization’s data privacy posture. Her work ensures that technology supports the program to proactively maintain regulatory compliance and effectively respond to security threats.

Certifications

  • Certified Computer Examiner (CCE)
  • Certified Forensic Computer Examiner, Key Computer Systems / Kennesaw State University, Atlanta
  • Certificate in Risk Project Management, George Washington University, Washington, DC

Career Accomplishments

  • Head of Enterprise Risk Management as business cybersecurity advisor building the program from the ground up
  • Provided strategic cyber and risk advisory services in a global organization so that risk is understood, acting as a driver for  business objectives in support or operational, financial, and reputational stability
  • Acted as principal cybersecurity consultant for corporate and academic customers in financial industry both federal and private, healthcare, universities and Big 4 consulting firms.
  • Conducted cybersecurity investigations and risk assessments for a large financial services company
  • Managed CERT Incident Response teams in handling malware attacks, insider threats, intellectual property, and criminal cases
  • Managed a cybersecurity business for more than twenty years working in both the public and private sectors performing e-discovery and forensic investigations for criminal and corporate cases

Skills and Expertise

  • Develops strategic plans for data protection and privacy programs
  • Guides organizations to manage regulatory requirements such as FFIEC, NYDFS, GDPR, as well as to mature security posture to achieve ISO 27001, PCI and SOC2 compliance
  • Oversees Incident Response and E-discovery functions and acts as a liaison between Legal, Risk Management, and Executive staff
  • Develops third-party risk management programs for an enterprise-wide solution
  • Technical Skills and Platform experience: FTK’s Access Data, EnCase, F-Response, X-Ways Forensic Toolkit, Microsoft Office 365 Suite, FireEye, Cloud Incident Management- Azure Purview/Sentinel/Microsoft Defender for Cloud/DevOps, ARCHER, ServiceNow, Qualys, ArcSight, Wireshark, Rapid7, ThreatConnect, CrowdStrike
  • Frequent conference speaker on both cybersecurity and global cross-functional communication

Professional Affiliations

  • Member of Metro InfraGard Members Alliance, Inc.
  • Member of International Society of Forensic Computer Examiners (ISFCE)
  • Member of High Technology Crime Investigation Association (HTCIA), New York Metro Chapter

How Can We Help?

Our advisory, consulting and second-party audit services are tailored to each company we serve.

Let's Talk

  • Trust
  • Plain Dealing
  • Tailored Services
  • Safety First
  • Attention to Details