Suggestions
Douglas Marzano
Chief Information Security Officer ❖ Controls ❖ Testing ❖ Compliance (NIST, ISO 27001, SOC 2, GDPR, HITRUST) ❖ Risk Management ❖ Data Protection ❖ Identity & Access Management (IAM) ❖ Disaster Recovery ❖ Cloud & Hybrid
Douglas Marzano is the Chief Information Security Officer (CISO) at MarketAxess, a leading electronic trading platform for fixed-income securities. With nearly two decades of experience in information security, he has built a robust security program from the ground up at MarketAxess, overseeing a global team and managing a significant budget.1
Professional Background
- Current Role: CISO at MarketAxess since January 2013. In this capacity, he has directed a comprehensive information security program, ensuring zero major security incidents and implementing advanced cyber risk management strategies.1
- Previous Positions:
- Information Security Officer at MarketAxess, where he developed key security measures and protocols.
- Director of IT Security at Crédit Agricole CIB, enhancing security infrastructures across the Americas.
- Vice President of IT Security at Bear Stearns, focusing on threat prevention and security assessments.
- Information Security Analyst at SIAC, where he contributed to the organization's security posture.12
Education
Douglas holds a Bachelor of Science degree in Computer and Information Systems Security/Information Assurance from Pace University, which has equipped him with the foundational knowledge necessary for his career in information security.
Expertise
His areas of expertise include:
- Compliance: Familiar with standards such as NIST, ISO 27001, SOC 2, GDPR, and HITRUST.
- Risk Management: Skilled in identifying and mitigating risks associated with data protection and information systems.
- Cloud Security: Experience in migrating security policies to hybrid cloud environments like AWS.
- Incident Response: Developed a state-of-the-art Cyber Incident Response process during his tenure.1
Douglas Marzano is recognized for his strategic approach to aligning technology with business objectives and fostering a culture of security excellence within organizations.