This BrandYourself profile is automatically optimized to show up high in Google

Richard Ramsden

A highly experienced information security professional, successful in leadership, engagement and internal consulting in a Financial Services environment. An outstanding communicator at both business and technical levels. Possesses a resilient, open, risk-based approach, with proven team and people skills and an effective leadership style. Business focussed and commercially aware.

Richard Ramsden's Background

Richard Ramsden's Experience

Senior Information Security Analyst at Yorkshire Building Society

January 2002 - August 2003

Information Security team member, responsible for: - Providing information security advice and guidance to business colleagues - Monitoring the security posture of the Group’s technology estate - Incident investigation and remediation - Consultancy on projects - Risk assessment and benchmarking - Delivering awareness briefings and presentations

Information Security Manager at Yorkshire Building Society

August 2003

Lead the Group’s Information Security, Data Protection and IT Risk teams in the develop, implementation and monitoring of a strategic, comprehensive, enterprise information security and risk management programme, to ensure the integrity, confidentiality and availability of information owned, controlled or processed by the organisation. Responsibilities include: - Leadership of the organisation’s Information Security, Data Protection and IT Risk teams, including hiring, training, staff development, performance management, compensation reviews and budget management. - Close and continuous liaison with and support for internal and external Audit functions, Financial Crime and Operational Risk. - Development, publication, communication and maintenance of Information Security and Data Protection policies, standards and guidance. - Implementation of an Information Governance framework, including a Data Management Review Board and Personal Information Management System. - Design and management of information security strategy. - Investigation and remediation of incidents, to ensure the protection of the Group’s confidential information, reputation and fixed assets. - Creation and management of innovative awareness and training campaigns, to make sure that staff understand their information security responsibilities. Focus on ‘next generation’ awareness, encouraging a security positive culture. - Design of a Penetration Testing Review Board to ratify external testing results, define actions and frame emergency response. - Managing technical security monitoring, including IDS/IPS, database activity monitoring, configuration monitoring. - Design of disaster recovery strategy and approach, development of plans and testing. - Liaison with Business Continuity Management to ensure that BCP and DR requirements are aligned and understood across business units. - Managing supplier relationships.

Richard Ramsden's Education

University of Westminster

2003 – 2004

MSc


University of Leeds

1992 – 1995

BA

Concentration: English Literature and Language, 2:1


© 2024 BrandYourself - Manage your online reputation