Protiviti Contact

Protiviti Contact

Andrew Retrum

Managing Director

PROFESSIONAL EXPERIENCE

Andrew Retrum is a Managing Director and business-oriented leader within Protiviti’s Technology Consulting Practice. He is part of Protiviti’s Global Cybersecurity Leadership Team, with focus on Financial Services. Andrew’s professional aspiration is to lead our talented practice in delivering true value by helping our clients better understand, communicate, and manage the evolving Cyber Threat landscape.

Prior to working at Protiviti, Andrew spent his career at a “Big 5” Public Accounting firm in the Technology Risk Consulting practice. Andrew has lectured at numerous universities, including Notre Dame and University of Illinois, on IT Governance, Security, and Privacy.

MAJOR PROJECTS

Cybersecurity Transformation

  • Led a multi-year transformational effort to assist a global telecommunications company in advancing their security posture to meet the changing threat landscape.

  • Led a multi-year relationship with a large insurance company to support the security and information risk function as the enterprise went through a client first transformation. Areas of focus included Application Security, Identity Management, Cloud Security, Vendor Management, IT Risk Management, and GRC.

  • Led a “security reset” engagement at a global institution to establish agreed upon risk priorities, and future state operating model, and the formal roadmap to meet “reset” objectives.

  • Assisted client in prioritizing and planning key infrastructure and security activities for $300M merger program.

Cybersecurity Advisory

  • Led an engagement to help a company prepare for New York Department of Financial Services (NY DFS) Cybersecurity Attestation, including specific efforts to complete an enterprise-wide risk assessment in line with requirement 500.09.

  • Oversaw General Data Protection Regulation (GDPR) readiness review and compliance roadmap for a global technology and communications organization.

Evolving Technologies

  • Led engagement to assist organization in technology review of Internet of Things (IoT) devices ranging from smart locks to connected showers to medical devices.

  • Leveraging and Agile, and other similar frameworks, to help both our clients and our engagement delivery clear value more efficiently and effectively.

AREAS OF EXPERTISE

  • IT Strategy & Alignment

  • IT Portfolio, Project, & Program Management

  • IT Privacy Risk Management

  • IT Security Risk Management

INDUSTRY EXPERTISE

  • Financial Services

  • Healthcare

  • Professional Services

EDUCATION

  • University of Illinois, BS – Management Information Systems

PROFESSIONAL MEMBERSHIPS & CERTIFICATIONS

  • Member, ISACA
  • Member, ISC2
  • Member, IAPP

 

Download Resume