Mariia Erokhina

Angestellt, Head of IT Security, Pepperstone

Limassol, Limassol District, Cyprus, Zypern

Fähigkeiten und Kenntnisse

ISO 27001
IT-Riskmanagement
Business Continuity Management
IT-Security
Information Security Management System
IT Governance
Communication
Project Management
SOC 2
PCI DSS
Cloud Security
Information Secuirty
Identity Access Management
Audit
Compliance
AWS Security
Software as a Service (SaaS)

Werdegang

Berufserfahrung von Mariia Erokhina

  • Bis heute 5 Monate, seit Jan. 2024

    Head of IT Security

    Pepperstone
  • 2 Jahre und 4 Monate, Okt. 2021 - Jan. 2024

    Chief Information Secuirty Officer (CISO)

    Sumsub

    Key Responsibilities: Established the Information Security function from scratch. Developed and implemented an InfoSec strategy, policies and standards. Collaborated on secure integrations and designed core security processes. Ensured alignment with global standards like ISO 27000, PCI DSS, and SOC 2. Oversaw external audits and achieved multiple certifications. Championed a risk-centric approach and addressed client security inquiries. Headed and mentored the Information Security team.

  • 3 Jahre und 3 Monate, Aug. 2018 - Okt. 2021

    Senior Business Information Security Officer

    Citi

    Key Responsibilities: Led the execution of global infosec strategy at the country level, adapting to local specifics. Built key partnerships with top executives and departments for security alignment. Managed risk assessments and their impact on business; addressed application vulnerabilities, incident responses, data protection, and third-party security evaluations. Provided infosec guidance to Citi's Russian Business; ensured Citi Projects met all internal and local security regulations.

  • 2 Jahre und 5 Monate, Apr. 2016 - Aug. 2018

    Expert in Identity and Access Management (IAM/IdM/IGA) implementation

    Solar Secuirty

    Key Responsibilities: Designed custom technical solutions; integrated IdM into client IT landscapes. Guided access control integrations and justified IdM investments with a strategic roadmap. Led audits, managed IdM project risks, and crafted automated processes. Updated security policies; introduced new Solar inRights functionalities and promotion strategies. Managed cross-functional teams; introduced unique training courses and seminars on IdM best practices.

  • 2 Jahre, Apr. 2014 - März 2016

    Information Security Officer

    Vneshprombank, Ltd.

    Key Responsibilities: Crafted an infosec strategy with an action plan to enhance the Bank's security. Led audits, ensured IS standards adherence (e.g., PCI DSS, GOST ISO 27000). Developed and implemented key regulatory documents; ensured compliance across mandates. Managed 60+ members across 28 branches, overseeing infosec protocol adherence. Directed access management; contributed to the IdM project.

21 Mio. XING Mitglieder, von A bis Z