
Sergei Beliachkov

Connect with Sergei Beliachkov to Send Message
Connect
Connect with Sergei Beliachkov to Send Message
ConnectTimeline
About me
Information Security Manager | 20+ Years in Cybersecurity | CISSP | Developed and Implemented Security Programs for Enterprises 8k+ employees and Led Cross-Functional Teams 30+ members.
Education

Autonomous non-profit organization of additional professional education "IT Academy"
2018 - 2018Training in the program of professional retraining in the program Information Security (512 hours)
Autonomous non-profit organization of additional professional education "IT Academy"
2024 - 2024ISO/IEC 27001:2022 ISMS Foundation, Implementation and Internal Audit.webp)
Russian State Technological University named after K.E. Tsiolkovsky (MATI)
1998 - 2004Master's degree Engineer, Faculty of Applied Mathematics and Computer Science, Mechanical Engineer
Experience

Gazprom
Dec 2009 - Jun 2017Energy corporation. 480K+ of employees● Audited 80+ companies for compliance with ISO 27001, GDPR and domestic PII legislation. Optimized reports for the C-level management, by conducting a situational analysis, involving a wide range of experts in different companies, ● Developed and implemented several corporate cybersecurity standards based on ISO 27005 and NIST SP 800-37 and regulatory documents in the field of PII privacy. Standardized security and data privacy requirements within the Group. Show less
Deputy Head of the Department
Sept 2014 - Jun 2017Senior Specialist
Dec 2009 - Sept 2014

Stoloto
Jun 2017 - Oct 2020Head of Information Security (CISO)Lottery company 2K+ of employees● Implemented an information security management system in accordance with the international ISO 27001 standard, which resulted in increased transparency and maturity of the organization's cybersecurity, as well as increased customer loyalty and commitment.● Formed an IS risk matrix for the company to implement a risk-based approach to information security issues in the holding and prioritized tasks in the field of cybersecurity and optimized the allocation of resources among other business projects which led to a reduction in cybersecurity costs by more than 10%. ● Applied DLP, secure print service, BrandProtection, anti-DDOS within the holding cooperating with IT, legal, HR, PR, physical security, marketing and sales departments successfully reduced the most unacceptable cybersecurity risks indicated in the information security risk matrix.● Identified and prevented the leaks of confidential information from the company estimated at more than $2M by conducting ongoing cybersecurity awareness programs and using cybersecurity controls. ● Organized and conducted external audits of the company for compliance with ISO 27001 and PCI:DSS standards and external PenTest of the company's websites. This made it possible to increase the loyalty of customers and contractors and bring the company closer to passing attestation for compliance with the WLA:SCS standard. Show less

LLC Solar Security
Oct 2020 - Sept 2021Service Manager - vCISOSecurity Services Provider 1K+ of employees● Deployed information security services SOC, WAF, antiDDOS, AV, NGFW, PAM, VPN, WEB-proxy and led negotiations avoiding fines for violating the SLA and ensuring cybersecurity for a customer with 7K+ users and 1K+ servers. ● Orchestrated multiple security vendors, cybersecurity service providers, and related businesses and successfully cleaned up the client's infrastructure from the presence of a foreign APT group, recovered infrastructure from a breach and mitigated customer cybersecurity risks. ● Carried out the modernization and optimization of managed security services. A thorough inventory and redesign of the existing architecture of cybersecurity services made it possible to reduce their cost and increase the number of services provided to the customer by 1.5 times. Show less

Sberbank-Technology
Sept 2021 - nowHead of DepartmentSoftware production company 8K+ of employees● Organized from scratch an information security system for cloud SaaS products for B2B and B2C clients, developed threat models in accordance with the MITRE ATT&CK matrix and implemented security controls based on NIST SP 800-53 and CSA Cloud Controls Matrix (CCMv4) frameworks to reduce and mitigate current cybersecurity risks and helped launch a new sales channel for the company's software products in less than two months, overtaking competitors in more than six months.● Established a new virtual CISO service for the external market In 3 months, and won over 10 contracts with external software production teams over the next 6 months adding over USD $400K.● Deployed from scratch information security controls in OpenStack cloud region organized monitoring and incident response for an infrastructure of 2000+ servers which allowed to reduce critical levels of cyber risks and avoid potential losses from cyber breaches, and also helped the company to meet the contractual service level agreement (SLA) and avoid penalties. ● Formed information security requirements, based on NIST SP 800-160 standard, for the company's application production CI/CD pipeline for 500+ components and deployed such code security tools as SAST, DAST, SCA etc. Reduced application vulnerabilities and production costs by 30%, by implementing security reviews early in production. Show less
Licenses & Certifications

CCDP
Cisco SystemsJun 2012
CCDA
Cisco SystemsDec 2011
CCNP
Cisco SystemsAug 2009
CCNA
Cisco SystemsNov 2006- View certificate

CCSP Cert Prep: 1 Cloud Concepts, Architecture, and Design Audio Review
LinkedInSept 2022 - View certificate

Vulnerability Management: Assessing the Risks with CVSS v3.1
LinkedInSept 2022 - View certificate

Building an ISO 27001-Compliant Cybersecurity Program: Getting Started
LinkedInSept 2022 - View certificate

CCSP Cert Prep: The Basics
LinkedInSept 2022 - View certificate

Implementing a Vulnerability Management Lifecycle
LinkedInAug 2022 - View certificate
%C2%B2.webp)
Certified Information Systems Security Professional (CISSP)
(ISC)²Nov 2021
Languages
- enEnglish
- ruRussian
Recommendations

Manon barenne
Étudiante à NEOMA Business School - PGEReims, Grand Est, France
Rahul morya
Student at Dr. Br. Ambedkar National Institute of technology, JalandharJalandhar, Punjab, India
Eleanor de boise
Junior Product DesignerHitchin, England, United Kingdom
Anggita gigih wahyu iriawan
Project Engineer/Mechanical Engineer - Turbo Machinary SpecialistJakarta Metropolitan Area
Hishonia vaseekararajah
ACA | MAAT | Reading MBA at PIM | Finance Manager | Ex-EYColombo, Western Province, Sri Lanka
Abhishek m
Digital Marketing ExecutiveHyderabad, Telangana, India
Tainã viana
Técnico Manutenção Mecânica - Lingotamento ContínuoVolta Redonda, Rio de Janeiro, Brazil
Ifeoma mary
Care support workerUnited Kingdom
Peter k. choge
Economising Processing & Production, Preserving Nature and Sustaining The Human RaceEldoret, Uasin Gishu County, Kenya
Lucas bartolucci
Office Administration, Facilities, Building and Reception Services manager at The OneLife Company | ...Knutange, Grand Est, France
Natalie reeves
Office Manager & Processing Manager at Weichert RealtorsMcLean, Virginia, United States
Marta morán olivenza
Kindergarten Supervisor TeacherKópavogur, Capital Region, Iceland
Kara marcum
Special Education Preschool Teacher美国 犹他州 普罗沃
Andrey kinakh
Team LeadUkraine
Nancy gupta
Guest lecturer (University of Delhi) Meditation coachNew Delhi, Delhi, India
Nina jeute
Hotelfachfrau - Office Admin - ZahlenfreakNew Zealand
Prateek tiwari
Madhya Pradesh Power Generating Company Limited (MPPGCL)Indore, Madhya Pradesh, India
Christian klaebe
Sales Application Engineer bei Eaton Electric Germany GmbHHennef, North Rhine-Westphalia, Germany
Murugan kandasamy
Chartered Engineer, AMS HealthcareMadurai, Tamil Nadu, India.webp)
Mohd ali-(cams)
Certified Anti Money Laundry Specialist (CAMS) ,CDD Case Manager ,KYC Analyst , Corporate Relationsh...Abu Dhabi Emirate, United Arab Emirates
...