Suggestions
Marc Menninger
Director of Cybersecurity at A Place for Mom
Professional Background
Marc Menninger is a distinguished security leader with over 15 years of hands-on experience in the field of enterprise security. His career trajectory showcases his extensive knowledge and expertise in key areas such as strategy development, governance, technology implementation, risk management, and team development. Throughout his professional journey, Marc has consistently demonstrated a remarkable ability to enhance the security posture of the organizations he has served, ensuring that they remain resilient against an ever-evolving landscape of cyber threats.
Marc's experience spans various industries, including federal, financial, and technology sectors, giving him a well-rounded perspective on information security challenges and solutions. His strategic vision and technical skills have led him to hold pivotal leadership roles, most notably as the Director of Cybersecurity at A Place for Mom, where he oversees the development and management of comprehensive security programs that align with international standards.
Education and Achievements
He earned a Bachelor of Science (B.S.) degree in Mathematics and Computer Science from the University of Tampa, providing him with a strong foundational knowledge to navigate the complexities of cybersecurity. Marc's commitment to professional development is evident in his certifications and memberships, including being a Certified Information Systems Security Professional (CISSP) since 2000 and a Certified in Risk and Information System Controls (CRISC).
Key Accomplishments
Marc's contributions to the field of cybersecurity are both impressive and impactful. Notably, he successfully planned, developed, and implemented a company-wide information security program from the ground up, based on the ISO 27001 security framework. This initiative not only established a solid foundation for security practices but also bolstered the organization’s compliance with various industry standards.
He has played a crucial role in leading the successful completion of multiple third-party penetration tests and audits for ISO 27001, HIPAA, and SOC 2 Type 2, validating the effectiveness of organizational security measures. Marc has also taken the initiative to draft and enforce new information security policies, procedures, and standards in alignment with ISO 27001, reinforcing the organization's security governance framework.
Furthermore, he instituted and chaired the Information Security Steering Committee (ISSC), which brought together company executives and directors to address security challenges and strategies collaboratively. His leadership contributed to a security-aware culture within the organization. Additionally, Marc directed the implementation of the company's first Security Information and Event Management (SIEM) system, significantly enhancing the organization’s ability to detect and respond to security incidents proactively.
Certifications & Associations
Marc’s robust list of certifications is a testament to his expertise in the cybersecurity domain. He is a longstanding CISSP holder, demonstrating his commitment to maintaining high standards in information security. Moreover, his certification as a CRISC showcases his proficiency in managing risks associated with information systems. Marc actively contributes to the field as a member of the ISACA Board and participates in advisory roles, including his position on the Seattle SecureWorld Expo Advisory Council, where he shares insights and knowledge with fellow professionals.
Community Engagement
In addition to his professional achievements, Marc is an engaged member of his local community, as evidenced by his active participation in Rotary International since 2008. His commitment to community service aligns with his professional endeavors, fostering a sense of responsibility and leadership both within and outside of his work environment.
Conclusion
Marc Menninger’s dedication to advancing the field of cybersecurity and fostering safe information environments is evident through his extensive background and achievements. His practical experience in developing high-functioning security programs and managing risk positions him as a highly respected figure in the cybersecurity community. Through his leadership, innovation, and collaboration with industry peers, Marc continues to contribute to the security resilience of the organizations he serves and is committed to empowering others in the field of information security, ensuring that they are equipped to face modern cybersecurity challenges head-on.
