Shenoa Herlinger, CIPM, CIPT, CIPP/E, CIPP/G, FIP, CDPSE

Shenoa herlinger, cipm, cipt, cipp/e, cipp/g, fip, cdpse

bookmark on deepenrich
location of Shenoa Herlinger, CIPM, CIPT, CIPP/E, CIPP/G, FIP, CDPSESilver Spring, Maryland, United States
Followers of Shenoa Herlinger, CIPM, CIPT, CIPP/E, CIPP/G, FIP, CDPSE395 followers
  • Timeline

  • About me

    Experienced Manager in Data Privacy and Protection

  • Education

    • Defense language institute foreign language center

      2003 - 2004
      Associate of arts - aa arabic language and literature
    • Georgia state university

      -
      Bachelors sociology and anthropology
  • Experience

    • Us army

      Jan 2001 - Jan 2009
      Psyop nco

      • Staff Sergeant in Psychological Operations operating at detachment level in Taji and Karbala, Iraq • Conducted mission coordination between Brigade level S2 and S7 and the Tactical PSYOP teams • Participated in frequent meetings with local nationals gathering PSYOP assessments which assisted in BDE mission planning, interacted sympathetically and engagingly while maintaining analytical perspective • Responsible for gaining atmospherics with specific Target Audiences • Developed matrices and reporting systems for collected data to DIV commander • Wrote detailed reports regarding interaction with Local Nationals and assessed current situations and atmospherics after every mission • Briefed BDE staff on PSYOP plans that directly supported BDE and DIV Commander's intent while attending weekly Counter-IED and Security Working Group meetings • Communicated intelligence gaps to BDE commander; recommended possible ways to glean information based on mission sets Show less

    • Human terrain system

      Jan 2009 - Jan 2010
      Cultural analyst

      • Provided analytical experience to Iraq-focused research teams supporting requirements generated from primary customers deployed to combat theaters of operation • Employed working knowledge of tribal system and make-up, current politics and policies, religious history and sectarianism, minority ethnic groups residing in Iraq, militant group make-up and theory, and ancient history that influences modern-day issues • Researched and wrote short and long-term reports based on requests for information/requests for support (RFIs/RFSs) for both the social science community and supported military units on various religious, cultural, and political key movements and individuals in foreign areas of interest • Generated reports based upon non-traditional sources, multiple-domains, networking across the intelligence community and deployed assets, as well as leveraging of expertise throughout the command structure of U.S. Army Human Terrain System • Utilized analytical methods to assess and report on foreign political, social, and cultural systems with which government operators may interact • Research Topics Undertaken ➢ Politically Motivated Terrorism: Research Methodologies, Motives, and Preventative Measures ➢ The Effects of the Iraqi Diaspora ➢ Iraqi National Literacy Campaigns & Adult Education Programs ➢ National and Public Support for Females in the Iraqi Security Forces ➢ Women's Initiatives and Progressive Campaigns in Iraq ➢ Compiled information for over eleven Iraqi Provincial Profiles to include tribal data ➢ Compiled information for over twelve Afghan Provincial Profiles to include tribal data ➢ The History of the Sinaloa and Juarez Drug Cartels in Mexico, report for program director for State Department use• Provided basic coding services in HTML for classified wikis and websites Show less

    • L3harris technologies

      Jan 2011 - Jan 2014
      Intelligence analyst

      • Deployed to Afghanistan twice for programmatic support • Facilitated the fulfillment of analysis requests from forward deployed customers, both military and civilian • Supplied credible intelligence reports to support customer requests. Topics undertaken include political military, security and stability, threat assessments, counter-insurgency operations development, and insurgent and militant organization and theory • Worked in a joint-intelligence center as an all-source analyst and request manager • Supervised and prioritized requests directly while forward deployed • Provided high-ranking military customers with direct interface to ensure a quality product and relayed customer requests to CONUS team in a timely manner• Managed multiple intelligence requests that were developed for and briefed to the Commander's Initiative Group and COMISAF directly • Fulfilled numerous multi-agency intelligence requests for the Afghanistan Threat Finance Cell • Facilitated tool development for forward deployed analysts • Worked in multi-agency environment and supplied information to support reports generated by DIA, DEA, FBI, and SIGAR • Generated financial figures and reports to send to FATF directly for action • Assisted in the identifying and locating of shell companies to help recover the disappeared Kabul Bank monies Show less

    • Copper river information technology

      Jan 2016 - Jan 2018
      Governance, risk, and compliance systems analyst

      • Assisted with agency governance, risk, and compliance efforts by reviewimg Information System security categorization documents to include Federal Information Processing Standard 199 (FIPS 199), Security Assessment Reports (SAR), System Security Plan (SSP), System Authorization Plan (SAP) for accuracy and completeness • Ensured over 12 systems remain on track to receive Authorization to Operate • Assessed requests to differentiate between major and minor applications and websites and recommended courses of action for Security Assessment and Authorization (SA&A) • Reviewed and closed Plans of Action and Milestones (POA&Ms) • Coordinated closely with System Owners (SOs), Information System Security Officers (ISSOs), and other stakeholders to assist in the SA&A process to ensure compliance with Federal regulations and NIST standards Show less

    • Digital global connectors, llc (dgc)

      Jan 2018 - Jun 2022

      Responsible for monitoring and administration of Information Security systems, processes, and procedures in order to protect and maintain the confidentiality, integrity, and availability of all data and information systems and network environments. Work closely with other teams, vendors, and partners to focus on securing all aspects of data flow, system controls, and operational procedures with a focus on Privacy related data and controls. Provide a balance between privacy, security, and functionality using best practice methodologies and unique problem-solving skills.• Assists with cross-functional initiatives on assessing security and privacy risks, controls and compliance • Actively participates in client discussions, meetings, and business development opportunities• Establishes and maintains strong working relationships with customers, partners, vendors, and the business community• Prepares and communicates status, issues, and key decisions to project stakeholders and executives including the CIO and CISO, and Senior Official for Privacy• Reviews security control assessment (SCA) documentation to ensure compliance with NIST 800-53 Rev 4 security and privacy controls, FISMA security categorization, and Risk Management Framework requirements• Tests security and privacy controls to ensure proper control functionality and compliance• Participates in the NIST 800-53 Revision 5 Privacy and Security Control Working Group• Supervises all DGC contract personnel at NIH and ensures compliance with all contract requirements Show less • Served as the Privacy Team Lead for the USAID Global Privacy Program; possessing in-depth knowledge of business and privacy risk management, and regulatory compliance with OMB, FISMA, NIST and FedRAMP as well as applicable state and international privacy laws such as the GDPR and CCPA• Assisted with transitioning USAID to NIST 800-53 Revision 5 security and privacy controls for a global enterprise of over approximately 15,000 personnel operating in over 80 countries across hundreds of systems• Participated in the planning, design, development and execution of the Information Privacy risk and control identification, evaluation, documentation, analysis and reporting processes including analytic tools • Provided analysis and recommendations on Information Privacy risk assessment and mitigation to internal and external clients or other analysts; influenced Information Privacy risk management strategies and approaches and educated risk owners on best practices. Regularly advised team members and senior management on key Information Privacy risk management efforts • Managed, monitored, and remediated suspected or confirmed Personally Identifiable Information (PII) breaches and provided executive level briefings of incident and remediation• Managed day-to-day assignments and balanced ad-hoc priorities for the privacy team as well as provided oversight to over 20 contract personnel providing broader cybersecurity support• Assessed current Privacy Program functions and processes for opportunities to streamline and mature the program Show less

      • Data Privacy and Compliance Risk Manager - NIH

        Jan 2021 - Jun 2022
      • Data Privacy and Compliance Risk Manager - USAID

        Jan 2018 - Jan 2021
    • Bdo usa

      Jun 2022 - now
      Experienced manager - data privacy and protection

      Lead US and international data privacy protection and compliance consulting for Fortune 500 clients including Under Armour and Greystar; also consulted for non-profit, higher education, financial, and life sciences clients.• Expertise in building, maturing, and managing programs for data subject rights requests, cross-border data transfers, PIAs/DPIAs, privacy complaints and breach response, third-party risk management, cookie and web tracking technologies, and training and awareness campaigns• Experience developing privacy programs subject to overlapping laws and regulations, including: GDPR, PIPIA, PIPL, LGPD, CCPA, FERPA, COPPA• Prioritized privacy initiatives based on client risk appetite and budget• Assisted a Life Sciences client with planning international clinical trials that required simultaneous compliance with GDPR, US, and Australian data privacy regulations• Consulted as an expert on an assurance engagement for a nationally chartered, R1 research university’s privacy program to include providing remedial recommendations• Conducted a privacy policy gap analysis for a major private equity firm with significant international interests requiring deep expertise in European and US privacy regulations• Lead teams consisting of several privacy analysts, computer scientists, and engineers and served as a rating supervisor and mentor for junior privacy analysts• Experience with data privacy tools such as OneTrust and DataGrail Show less

    • Venable | blue

      Aug 2024 - now
      Lead analyst - venable blue
  • Licenses & Certifications

    • Introduction to generative ai

      Google cloud
      Nov 2025
      View certificate certificate
    • Cdpse

      Isaca
    • Certified information privacy professional - us government

      Iapp - international association of privacy professionals
    • Certified information privacy professional/europe

      Iapp - international association of privacy professionals
    • Certified information privacy technologist (cipt)

      Iapp - international association of privacy professionals
    • Cgrc

      Isc2
    • Succeeding in project management as an introvert

      Linkedin
      Jul 2024
      View certificate certificate