NJ ISACA - Financial Cybersecurity Conference 2019


Paul Rohmeyer, Ph.D.  Associate Industry Professor, Stevens Institute of Technology

Professional Experience Summary

Paul has over 20 years of experience in IT Management, IT Audit, Information Security, Disaster Recovery Planning, and Vendor Management among other areas. Paul is a faculty member at Stevens in the School of Business and has presented and published on information security, decision-making and business continuation. He has consulted since 2000, delivering executive-level guidance in the areas of risk management, information assurance and network security to premier corporate clients in the financial services, pharmaceutical and energy industries. Prior to his consulting career, Paul served as Director of IT for AXA Financial and Director of IT Architecture Planning for SAIC/Bellcore. Paul holds a MBA in Finance from St. Joseph’s University, M.S. and Ph.D. degrees in Information Management from Stevens Institute of Technology and a B.A. in Economics from Rutgers University. Paul has achieved the CGEIT (Certified in the Governance of Enterprise IT), PMP (Project Management Professional), and NSA-IAM (U.S. National Security Agency Information Assurance Methodology) credentials.


Aman Singh, Chief Scientist, Palindrome Technologies

Professional Experience Summary

Aman has over 10 years of experience in systems research, design and development. He has worked with enterprise SaaS providers, carriers and OEMs in designing secure application and infrastructure services. He is a subject matter expert on Linux, Android, Java and Web platforms, and Federated Identity Management systems. Aman leads the research and development in emerging technologies at Palindrome Labs. His research interests include autonomous information security, context-aware IoT systems, blockchains, and privacy-aware networking. Aman has published multiple research papers on content-centric networks, dynamic network caches, secure heterogeneous network access and IoT security. He holds graduate degrees in Computer Science from Columbia University, NY.


Jennifer Bayuk, Ph.D.  FrameCyber

Professional Experience Summary

Jennifer is an Information Security Management and Information Technology due diligence expert. She has been a Global Financial Services Technology Risk Management Officer, a Wall Street Chief Information Security Officer, an Information Risk Management Consultant, a Manager of Information Technology Internal Audit, a Security Architect, a Bell Labs Security Software Engineer, a Professor of Systems Security Engineering, and a Private Cybersecurity Investigator and Expert Witness. Bayuk’s direct technology experience spans enterprise architecture, telecommunications networks, operating systems, database management systems, network management systems, application development and support, technology forensics, business continuity, and operations process. She has numerous publications, Masters Degrees in Computer Science and Philosophy, and a PhD in Systems Engineering. Her certifications include CISSP, CISA, CISM, CGEIT, and a NJ State Private Investigator’s License.


Terry Dignan, Consultant, Adroit

Professional Experience Summary

Terry Dignan is a Senior Security and Network Infrastructure Consultant with Adroit Management Consulting, providing advisory services to financial services enterprises. His primary focus is Technology Infrastructure and Data Center Modernization for large enterprises. Terry previously was Director of Telecommunications for Morgan, Lewis, and Bockius LLP, and Senior Principal Systems Engineer for Computer Sciences Corporation. Terry has MS degrees from Stevens Institute and NJIT, and the Bachelors in Electrical Engineering from Pratt Institute. Terry holds the CISSP and PMP certifications.


Andy Ellsweig, CPA, CRISC, CGEIT, Vice President, Head of IT Risk and Controls, Investor Bank

Professional Experience Summary

Andy Ellsweig leads the Investors Bank IT Risk and Control function, where he is responsible for implementing the IT Risk & control framework and establishing the first line of defense for the IT function. Prior to Investors bank, he was a director in RSM US LLP’s technology risk advisory services group. He has more than 30 years of experience in leading the information technology (IT) internal audit functions for major corporations and providing consulting services to clients in a variety of industries, with a focus on financial services. Earlier in his career, he held Management positions at KPMG, EisnerAmper, Sony, Schering Plough, PaineWebber and Johnson & Johnson. Andy has been a frequent speaker on a variety of topics at various organizations, including the Information Systems Audit and Control Association (ISACA), NJ Bankers Association, the Information Systems Security Association (ISSA), the Institute of Internal Auditors (IIA) and the Financial Executives Institute (FEI).
Mr. Ellsweig holds the Certified Public Accountant (CPA), Certified in Risk and Information Systems Control (CRISC), Certified Governance in Enterprise IT (CGEIT) and Certified Information Technology Professional (CITP) certifications.


Charlie Miller, Senior Advisor, The Santa Fe Group, Shared Assessments Program

Professional Experience Summary

Charlie’s key responsibilities include expanding the Shared Assessments Third Party Risk Management membership driven program, facilitating thought leadership, industry vertical strategy groups, research studies, regulatory and association relationships. He joined the Santa Fe Group, Shared Assessments in 2015 and has been in the third party risk space for over 13 years. Charlie is a frequent speaker and a recognized expert in Third Party Risk. He has vast industry experience, having led third party risk management and financial services initiatives for several global companies. Charlie was the Director of Vendor and Business Partner Risk Management at AIG and implemented third party risk management programs at Bank of Tokyo Mitsubishi (BTMU). He held multiple leadership roles at Merrill Lynch & Co., Inc. overseeing the company’s global vendor management program and a Director of Technology Audit. He led a financial services practice unit as a consulting partner at Deloitte, focusing on technology outsourcing, risk management and cost control. He began his career at IBM as a systems engineer. Charlie is a Distinguished Fellow of the Ponemon Institute, Certified International Privacy Professional and Certified Third Party Risk Professional.



Timothy Gallagher, Managing Director, Kroll

Professional Experience Summary

Timothy Gallagher is a Managing Director with Kroll’s Business Intelligence and Investigations practice and Head of the New York office. Tim is a highly regarded law enforcement executive, who served with great distinction for over two decades with the Federal Bureau of Investigation. Before joining Kroll in 2018, he was the Special Agent in Charge of the FBI’s Newark, N.J. office, where he managed the activities of over 800 professionals. Tim possesses a broad array of investigative experience spanning the areas of Financial Fraud, Counterterrorism, and Cybercrime.

Prior to his appointment as Special Agent in Charge of FBI Newark, Tim served at the FBI’s Headquarters in Washington, D.C., as Deputy Assistant Director of the Criminal Investigative Division, the largest division in the FBI. In this capacity, Tim focused on developing and executing effective strategies to mitigate criminal threats with a Financial Crimes nexus. He regularly collaborated with his law enforcement counterparts in the UK, Canada, Australia, and New Zealand to combat transnational fraud, money laundering, and cyber threats. From 2012-2015, Tim was the Special Agent in Charge of the Criminal and Division in the Washington, D.C., Field Office. During this time, he played leading roles in several crises and noteworthy investigations, including the global interest rate manipulation investigation (LIBOR) and an international fraud/money laundering case which resulted in over 20 arrests in 11 countries.

Tim has been a featured speaker on fraud schemes and wire fraud on CNBC, The Today Show, and CBS. He has delivered keynote addresses for the Financial Services Roundtable, FINRA, Corelogic, the NCUA, and numerous financial services providers. He has been quoted on financial fraud matters in the Wall Street Journal, NY Times, and Yahoo News.

Tom Doughty, Vice President & Chief Information Security Officer, Prudential Financial

Professional Experience Summary

Tom currently serves as Vice President & Chief Information Security Officer for Prudential. Prior to joining Prudential, Tom served as a Military Intelligence Officer specializing in Electronic and Information Warfare and emerging intelligence processing technology platforms. Tom joined Pru in 1998 as an Information Systems Auditor, and from 2000 until 2005 assumed responsibility as Business Information Security Officer for Prudential Securities, Incorporated (PSI). Since 2005 in the CISO role, Tom has maintained oversight of Prudential’s end-to-end information and cyber security program, including infrastructure level protections, security related Policies & Standards, and security operations. Tom is a graduate of the United States Military Academy at West Point, and holds an MBA in Finance and Information Technology from New York University’s Stern School of Business. He is currently a member of the BITS security steering committee, and serves on the Board of Directors of the Wall Street Technology Association and the Board of Directors of Financial Top Level Domain Services (fTLD).



Heather Bennington, CIPP/US, CISA, Vice President, Privacy and Records Management Compliance, BNY Mellon Pershing

Professional Experience Summary

Heather is a Vice President in the Privacy and Records Management Compliance team at BNY Mellon Pershing. She focuses on providing data protection expertise to help manage the business risks and regulatory requirements associated with personally identifiable information. She started her career in IT Audit and has experience both as an internal and external IT auditor. She has her Certified Information Privacy Professionals/US and Certified Information Systems Auditor designations. Her passion for writing has led her to be published within the data privacy compliance and IT audit professions, on a freelance basis. She has a degree in Business & Technology from Stevens Institute of Technology. She currently volunteers as a co-chair of the International Association of Privacy Professional’s (IAPP) New Jersey Knowledgenet Chapter and as a member of Stevens Institute of Technology’s Master of Science - Information Systems (MSIS) Program Advisory Board. In her free time she enjoys competing in triathlons, volunteering in her moms’ group, and spending time with her family.

Outlook Outlook
iCal iCal
Google Google
Yahoo! Yahoo!