Convergent Risks | Top 10 GDPR Consulting/Service Company In Europe - 2019
Convergent Risks: A Holistic Approach to Privacy and Data Protection Compliance
CIOReview
  • About Us
  • US
    • US
    • APAC
    • LATAM
    • CANADA
    • EUROPE
About UsConferencePartner With Us
  • Technology
      1. ARTIFICIAL INTELLIGENCE
      2. AUDIOVISUAL
      3. BLOCKCHAIN
      4. BUSINESS INTELLIGENCE
      5. CLOUD
      6. DATA ANALYTICS
      7. DEVOPS
      8. DIGITAL TRANSFORMATION
      9. DIGITAL TWIN
      10. LOW CODE NO CODE PLATFORM
      11. NETWORKING
      12. ROBOTIC PROCESS AUTOMATION
      13. SECURITY
  • Industry
      1. CONTACT CENTER
      2. EDUCATION
      3. HEALTHCARE
      4. LEGAL
      5. MANUFACTURING
      6. PUBLIC SECTOR
      7. RETAIL
      8. TELECOM
  • Solutions
      1. ASSET MANAGEMENT
      2. CUSTOMER EXPERIENCE MANAGEMENT
      3. CYBER SECURITY
      4. DATA CENTER
      5. DOCUMENT MANAGEMENT
      6. ELECTRONIC DATA INTERCHANGE
      7. ENTERPRISE DATA MANAGEMENT
      8. ENTERPRISE RESOURCE PLANNING
      9. ENTERPRISE RISK MANAGEMENT
      10. ENTERPRISE-GRADE WEB DATA SOLUTIONS
      11. FACILITY MANAGEMENT
      12. FIELD SERVICE
      13. IDENTITY AND ACCESS MANAGEMENT
      14. INFRASTRUCTURE
      15. IT SERVICE MANAGEMENT
      16. MANAGED IT SERVICES
      17. PAYMENT AND CARD
      18. PROJECT MANAGEMENT
      19. SOFTWARE TESTING
      20. STORAGE
      21. VIDEO SOLUTIONS
      22. WORKFLOW
  • Platforms
      1. ACUMATICA
      2. AMAZON
      3. IBM
      4. MICROSOFT
      5. ODOO
      6. ORACLE
      7. SAGE
      8. SAP
      9. SERVICENOW
  • Functions
      1. COMPLIANCE
      2. CONTRACT MANAGEMENT
      3. LOGISTICS
      4. PROCUREMENT
      5. SALES AND MARKETING
      6. SUPPLY CHAIN
  • Leadership Perspectives
  • Innovation Insights
  • Research
  • Magazines
  • News
  • CXO Awards
Menu
  • US
    • US
    • APAC
    • LATAM
    • CANADA
    • EUROPE
CIOREVIEW >> GDPR >> Convergent Risks

Convergent Risks has been recognized by CIOReview Magazine as the recipient of “Top 10 GDPR Consulting/Service Companies In Europe - 2019,” based on our proprietary methodology, reflecting its position in the industry. This profile has been developed by the CIOReview research and editorial team based on insights from an interview with Chris Johnson, President & CEO.

Convergent Risks
A Holistic Approach to Privacy and Data Protection Compliance

Convergent Risks

Chris Johnson, President & CEO
Once you’re compliant, you’re done.

This is a questionable interpretation of compliance in the world that businesses operate in today. With ever-changing sources of data, organisations often miss out on maintaining ongoing compliance and overlook an organic component of their daily processes— security. According to Chris Johnson, CEO and President, Convergent Risks, ensuring adequate security controls exist for internal workflows and third-party vendors should be considered a priority in order to prevent privacy breaches as vulnerabilities within process and supply chains can pose a significant risk to the protection of the confidentiality of personal information from improper usage and sharing. Whilst organisations and their vendors usually have adequate policies and procedures in place, they often neglect or fall short in the implementation of appropriate physical, digital, and logical security measures to protect their personal data, leaving organisations vulnerable to breaches, which can prove costly in terms of financial and reputational risk. Against this backdrop, what organisations require is an ongoing commitment to compliance and efficient management of internal and third-party workflows.

“Compliance will continue to be a process that evolves over time and requires an ongoing commitment” begins Stephanie Iyayi, Sr. VP, Business and Legal Affairs, Convergent Risks—a specialist consultancy focused on security, risk and compliance services. “We are only now beginning to see how enforcement will work, meaning that compliance will continue to be a process that evolves over time and will require an ongoing commitment to actively adjust to the terms of the law as necessary. Change can be frightening, but it can also highlight places where your own data handling practices have been lacking and help bring you in line with today’s requirements on both a legal and technical front.” However, it is easy to underestimate the commitment needed and the complexity of maintaining PII, Privacy and GDPR compliance. Often, companies struggle with the technical and organisational measures for achieving compliance and lack the understanding to implement security throughout their vendor supply chain and multiple workflows. This is precisely what Convergent intends to change.

A global multidisciplinary team of qualified subject matter experts, including international privacy lawyers, cloud and application security consultants, qualified auditors and seasoned risk and cybersecurity professionals, Convergent is trusted by some of the world’s largest organisations to handle their most sensitive content and data protection issues and cover all aspects of PII, Privacy and GDPR best practice compliance. The team draws on its extensive experience in developing and managing secure information asset workflows from both an enterprise and a third-party perspective to empower clients with privacy and cybersecurity best-practice solutions. The company helps clients operationalise their day-to-day data protection activities, securely migrate data from on-prem to on cloud, prepare for, and respond to the emerging reality of personal data breaches and efficiently manage its vendor supply chain, saving on time and budget.

Convergent offers the proper mix of guidance, support, and oversight to ensure privacy compliance when processing is conducted outside of the organisation through the implementation of its Privacy Control Framework. Iyayi explains, “The controls provide a structure for managing and processing personal data as well as securing the physical and logical environments where such assets are stored, accessed or processed. This helps to build a greater internal understanding of the information being shared and the risk exposure, enabling organisations to prioritise further compliance efforts.” “In some cases, we have implemented an ongoing programme of compliance for personal data and combined it with existing information security compliance as a number of controls tend to be common,” Johnson adds.

Stephanie Iyayi, Senior Vice President, Business and Legal Affairs
An assessment against Convergent’s Privacy Control Framework includes analysis of a detailed vendor questionnaire mapped to the framework and review of contracts, policies, and other relevant documentation. Where relevant, Convergent also carry out a site visit to validate responses provided and conduct interviews with third-party personnel. The end product being a user-friendly report documenting the findings and any correction plans. Johnson explains, “The amount of time and resources required for a vendor audit depends in large part on the risks that a third-party may pose within the organisation. Entrusting this process to a specialist such as Convergent can provide both peace of mind as well as cost and operational efficiencies.”

Compliance will continue to be a process that evolves over time and requires an ongoing commitment


He continues to emphasise that while privacy incidents continue to make headline news and result in substantial fines and reputational damage, organisations must adopt appropriate preventative physical and logical security measures, besides compliant policies. Companies should regularly test policies, processes, and systems against real-life threat scenarios. “By complying with a robust privacy control framework, our clients can clearly demonstrate that it takes data privacy seriously and is managing it within industry best practice. Carrying out such an exercise provides a practical and relatively inexpensive way to identify and manage risks to personal data, whilst supporting regulatory compliance with data protection legislation, enhancing customer loyalty and protecting your reputation,” informs Johnson.

Given the robust features and methodologies, Convergent’s Privacy Control Framework is already creating ripples in the market. Iyayi illustrates, “Backed by Convergent, organisations of any size or structure can utilise the GDPR controller, GDPR processor or CCPA control frameworks as applicable, to demonstrate it meets the requirements of the relevant legislation to stakeholders and customers alike.” Apart from its uniquely experienced global multidisciplinary team, the uniqueness of Convergent also stems from its ability to support clients in related areas such as penetration testing, preparatory security assessments, remediation, secure workflow strategy, and training. “We also make use of appropriate technology as far as possible to streamline our administrative processes, which enables us to pass on cost savings to our clients,” adds Johnson.

Convergent is further enhancing its service with the introduction of its web-based application in the coming months, a compliance tool that enables clients to manage large-scale assessments against relevant privacy and security control frameworks. The app allows users to access helpful guidance and implementation materials and download templates and policies from the platform. To evaluate the security systems, the app will also enable penetration testing and vulnerability scanning, thereby offering a holistic tool toward privacy and cybersecurity compliance.

Convergent Risks

News

Convergent Risks and Digital Silence Announce a Merger Deal Forming "ConvergentDS LLC"

Tuesday, April 16, 2024

Convergent Risks and Digital Silence, esteemed cybersecurity experts in Media & Entertainment, Financial Services, Critical National Infrastructure, Mortgage Banking, and Technology sectors, are joining forces. Headquartered in Denver, Colorado, USA with operating offices in Los Angeles, California, London, UK, and Mumbai, India.

DENVER and LOS ANGELES and LONDON and Mumbai -
Convergent Risks and Digital Silence, two well-known thought leaders and innovators in the Media and Entertainment, Financial Services, Critical National Infrastructure, Mortgage Banking, and Technology markets, today announced a merger that will combine their expertise and resources to provide enhanced cybersecurity solutions across their global client base.

The merger formalizes an existing collaboration launched last year to complement the strengths of both companies. By combining Convergent Risks's security assurance and global vendor supply chain experience with Digital Silence's deep penetration testing technical expertise, the new company gains strategic strength and capabilities to provide comprehensive security solutions tailored to meet the evolving needs of organizations in an increasingly digital world.

"We are thrilled to join forces with Digital Silence; since announcing our partnership in early 2023 we have become a stronger, more innovative, and diverse security provider," said Chris Johnson CEO of Convergent Risks. "Together, we are better positioned to address the growing number of security threats and will continue our mission to deliver unparalleled security solutions to all our customers."

Justin Whitehead CEO, of Digital Silence, echoed these sentiments, stating, "This merger represents a significant milestone in our respective businesses. By combining our strengths, we will offer a comprehensive suite of cybersecurity services on a global scale, including our research and development in technology, RF and wireless, and AI security. Our goal is to protect the organizations we serve and help our clients stay ahead of the evolving threat landscape."

The merged companies will continue to operate under a new name, ConvergentDS.

The new entity will be headquartered in Denver, Colorado, USA with Chris Johnson, co-founder and CEO, Justin Whitehead, co-founder and CCO, Daniel Nelson, co-founder and General Counsel, and JT Gaietto, co-founder and Chief Operating Officer, forming the executive leadership team of ConvergentDS.

Johnson said, "We will continue to support our existing customers without interruption while working seamlessly to integrate our operations and technologies, we are united in the belief that this is the right time and opportunity to deliver on the challenges ahead."

Convergent Risks CEO: The Only Constant is Change

Saturday, May 25, 2024

Convergent Risks CEO Chris Johnson explored how security has changed and evolved over the past 15 years, since MESA’s inception, at the Content Protection Summit @ NAB 2024 in Las Vegas on April 13.

During the session “The Only Constant is Change,” Johnson and JT Gaietto, chief of staff at Digital Silence, which merged with Convergent Risks in April to form ConvergentDS, discussed the current challenges and future roadmap of security in media and entertainment. Gaietto is serving as COO on the new ConvergentDS leadership team. He and Johnson are among its co-founders.

“I’m very proud to say that I’ve been to every single one of these events since the start” and the one thing that has stood out in the sector over the past 15 years is that “the only constant thing is that things will change,” Johnson said at the start of the session.

Johnson recalled that about 15 years ago, he was working for EMI Records and had just finished working on Love, The Beatles show at the Mirage hotel in Las Vegas. “I actually realised that I was sending, for the first time, data to and from the Mirage Beatles show back to Abbey Road in London,” he recalled.

“That was the first time we’d sort of got into that sort of technology,” Johnson said. “Fifteen years ago: that’s all it was. So we’ve come a very long way. Most of my guys at the time were traveling around the world and we were visiting CD and DVD and Blu-ray replication plants, which actually, if you think about it, is still very relevant today.”

He told attendees: “There’s still a need for us to secure those types of things. We wrote our first two security programmes for CDSA. We wrote the site security programme, which has eventually morphed into the [Trusted Partner Network]. And we had a copyright and license verification programme, which looked at the integrity of how many discs were pressed. It looked at the mirrored images and the IFPI [International Federation of the Phonographic Industry] codes that were on DVDs…. And that’s what we spent most of our time doing.”

At that time, most companies were large corporate organisations and “security at the time was more about protecting them from their own mistakes than it was from being damaged from the outside,” he said.

Convergent Risks was focused on internal detection, which he said, “brought us to the first common theme, [which] is that people knew what their job was [and] they did it really well.”

He added: “They did it because they were very well trained. And that is still a common theme today. We need to train our people well…. People are our greatest asset. And whilst we talk a lot about the technology and AI, we think it’s really important that we continue to push … the training and education.”

At NAB, the company announced it was partnering with media localisation firm OOONA to introduce a new security training course for the media and entertainment industry, to help clients prepare to respond to unforeseen threats and actual security events, he pointed out.

That course is “going to, over time, expand into multiple subjects, and we’ll be linking it to most of the security activities that we do,” he said.

He went on to say: “Fresh technologies are constantly emerging. And cyber threats are now very fast to evolve. Digital landscapes are constantly shifting.”

But the industry was “not quick enough to change security controls that we were using and we had some significant casualties…. Several big businesses that were subject to ransomware attacks that have subsequently had to go out of business or have had to pay out lots of money, which is a question in itself whether it’s the right thing to do.”

Now, however, the Hollywood studios are “evolving [and] we’re working very closely with the studios to look at what controls need to come into these best practices,” he said. “What we’re trying to do is now associating and make the process a lot more frictionless.”

Wrapping up the session, Gaietto said: “We’ve moved into a much more hybrid and remote workforce strategy [in which] security now is at the web browser level. So we really need to train our users on how to manage content and manage security for themselves because they’re not always behind that barbed wire fence and that castle wall that we’ve developed over the last 10 years.”


Top 10 GDPR Consulting/Service Companies In Europe - 2019

Company
Convergent Risks

Headquarters
Los Angeles, CA

Management
Chris Johnson, President & CEO and Stephanie Iyayi, Senior Vice President, Business and Legal Affairs

Description
A global multidisciplinary team of qualified subject matter experts, including international privacy lawyers, cloud and application security consultants, qualified auditors and seasoned risk and cybersecurity professionals, Convergent is trusted by some of the world’s largest organisations to handle their most sensitive content and data protection issues. The team draws on its extensive experience in developing and managing secure information asset workflows from both an enterprise and a third-party perspective to empower clients with privacy and cybersecurity best-practice solutions. Convergent offers the proper mix of guidance, support, and oversight to ensure privacy compliance when processing is conducted outside of the organisation through the implementation of its Privacy Control Framework

Top 10 GDPR Consulting/Service Companies In Europe - 2019

I agree We use cookies on this website to enhance your user experience. By clicking any link on this page you are giving your consent for us to set cookies. More info

CIOReview
Follow on LinkedIn

About

  • Home
  • About Us
  • Partner With Us

Stay Connected

  • Subscribe
  • Newsletter
  • Sitemap

Contact Us

  • editor@cioreview.com
  • sales@cioreview.com
  • marketing@cioreview.com

Legal

  • Editorial Policy
  • Privacy Policy
  • Terms of Use

© 2026 CIOReview. All rights reserved. Headquartered in Fort Lauderdale, FL, USA.

 

companies_description
This content is copyright protected

However, if you would like to share the information in this article, you may use the link below:

https://www.cioreview.com/convergent-risks-2019