
Juan Guillermo Carrasco Sanhueza
Subgerente de Seguridad de la Información y Ciberseguridad @ Banco Falabella Chile
About
In information security/Cybersecurity, I have experience in managing both offensive and defensive tests and initiatives related to threat intelligence management. My activities have included red teaming, ethical hacking, and threat hunting, as well as designing strategies to enhance the security posture of the organizations I have been a part of. Additionally, I have participated in numerous projects related to defining security policies, managing controls, and ensuring compliance with national standards (Ran 1-13, 20-7, 20-8) and international standards (such as ISO27001, ISO27005, ISO31000, ISO20000, and PCI-DSS). Furthermore, I have managed and implemented controls from cybersecurity frameworks such as NIST CSF, OWASP, OWISAM, CIS, ATT&CK and FFIEC. Since 2013, I have been part of the Information Security team at CMR/Banco Falabella Chile
Chile
Santiago
Financial Services
Liderazgo, Herramientas de seguridad, Respuesta a incidencias de seguridad, Servicios financieros, Gestión de riesgos cibernéticos, Criotografía EMV, Inteligencia de ciberamenazas (CTI), Seguridad de la información, Gestión de la continuidad, Information Security Management, Security Audits, Business Continuity, Security, Network Security, IT Audit, Wireless Security, Penetration Testing, Seguridad de red, Auditoría informática, Gestión de la seguridad de la información
Experience

Analista de Seguridad de la Información.
Moneda #970
My role as Analyst Information Security at CMR Falabella is to ensure compliance with security policies of corporate information and identify security breaches or vulnerabilities in information system, in order to propose improvements for remediation. - Promote compliance of Security Policy Corporate Information. - Support the development of projects about Information Security and Business Continuity. - Coordinate activities associated with cryptographic components (EMV Visa/MasterCard). - Validate the use of best existing practices in Information Security and new business projects. - Support different areas about Information Security subjects in CMR Falabella. - Apply methodologies for measuring and managing risk Information Security in order to support internal control processes. - Identify the risks associated with security flaws in information systems of CMR Falabella and propose improvements to mitigate security breaches and associated risks. - Perform security analysis and / or vulnerabilities to Corporate IT infrastructure

IT Consultant
Isidora Goyenechea 3520, Las Condes
Member of Performance & Technology Services area (ITA), specializing in the service line Information Security and Business Continuity. In information security, I am participating as a consultant performing IT security audits, SAS70 (ISAE 3402) control reviews, Web Application Penetration Testing, WPA2 Enterprise authentication deployment with Radius technology integration, security testing for Wireless Networks, SSID broadcast, signal strength, broadcast channels, review of secure encryption and authentication, WarDriving and Wireless Penetration Testing, and Identification and classification of information assets. In Business Continuity, I participated in the development of Business Continuity Plans , Contingency Plans , Disaster Recovery Plan , audits Management System Business Continuity ( BCMS ) by reference to the international standard BS25999 and ISO22301. (*) Business Continuity - Support , project management and implementation of Institutional Business Continuity (BCP , DRP , BIA) . - Application of the integral cycle Business Continuity Process and Document Management . - Reviewing and improving the Business Impact Analysis (BIA ) . - Performance Audit to BCMS by reference to the ISO 22301:2012 standard. - Consultancy Development of Contingency Plans. - Systems Implementation Business Continuity Management (BS-25999). - Systems Audit Business Continuity Management (BS-25999 / ISO22301). (*) Information Security - Vulnerability Assessment (internal and external networks ) . - Security Assessments Internal and External Network . - Evaluation of Wireless Security (Wardriving/Warwalking) - Review of General Controls SAS70 (ISAE 3402 ) - Cobit. - Implementation Methodology Information Asset Classification . - Analysis and Review of Security according to Circular No. 17(SBIF) - Analysis and review of Security transfers through POS ( Point of Sale) devices - Review of internal policies (ISO 27001-27002 )

Supervisor
ngamos 8224 - La Cisterna-Santiago de Chile
Prior to joining CMR Falabellan and KPMG, Juan worked in the telecommunications company INCOBECH dedicated to project management, technical inspection of works and Implementation (Installation and Integration) mobile equipment. In developing this feature, Juan performed the analysis, troubleshooting and planning of the necessary inputs in the projects of mobile technology for 2G and 3G networks.
Juan Guillermo Carrasco Sanhueza's Contact Information
Phone
Find the Right Leads
Find Verified Contact Data
What LeadContact does well
Find verified emails, phone numbers, and decision-makers with 98% accuracy.
Find Leads
Find the right people by company, role, industry, location, and more.
925M+ professional profiles

Find Emails
Access verified email addresses for your target contacts.
657M+ emails

Find Phone Numbers
Get cross-validated phone data from multiple top sources.
239M+ phone numbers

More Accurate. Lower Cost.
Find contact data in 1 tool with 98% accuracy
LeadContact integrates leading enrichment tools to deliver more accurate contact data—without paying for each one.
Great conversations start with the right contact.
It’s time to find yours.





