Expert contribution | Paul Calatayud | CIOReview
CIOREVIEW >> ABOUT AUTHOR
profile image

Paul Calatayud

CISO, Surescripts

Paul Calatayud serves as the head of Information Security, Audit, and Enterprise Risk Management as the Chief Information Security Officer (CISO) for Surescripts. Prior to his role with Surescripts, Mr. Calatayud was Director of Information Security for United Health Group, a fortune 15 company, where he managed a department of 50 security professionals supporting over 150,000 employees. Mr. Calatayud has 15 years of experience within information security which started by serving in the U.S. Army as an information security cryptographer. Mr. Calatayud has held progressive roles in information security at the Department of Defense, Medtronic, Comcast, BAE Systems, Best Buy, and Vesta; where he was head of security for a company processing billions of credit cards annually. Mr. Calatayud sits on the Board of Directors for EHNAC, NH-ISAC; and Board of Advisors: Invincea, Secured2, Cram, SANS, Capella, and Intersect.

Paul Calatayud frequently speaks at industry events on areas of which he is a subject matter expert: identity proofing; PCi-DSS; ISO 27001; risk management; security leadership; threat & vulnerability management; security metrics. He has spoken at various notable events including: RSA Conferences, NACD Meetings, the EC Council on Application Security Best Practices; Surescripts’ Annual Customer Forum on Identity Proofing and Fraud Monitoring; Lockpath Customer Panel: How to manage PCI and multiple compliance frameworks & compliance vs. Security; St. Thomas University on Career Management and Evolution of Security in Corporate nvironment. Mr. Calatayud holds a B.S. in Information Technology, MBA, Masters in Information Security, and a PhD in Leadership.

Latest from Paul Calatayud

As demands on the tech-driven enterprise continueto rise, so do the stakes for today’s chief information security officers (CISOs). As breadth and depth of a CISO’s roles and responsibilities evolve,being proactive and forward thinking is the only way to safeguard against the myriad of cybersecurity threats and attacks organizations face on a daily basis. It...