SUSAN G. KIEBLER
248-***-**** (residential) • 248-***-**** (mobile) • *********@*****.***
Senior Enterprise Risk Management and Business Assurance Executive
Summary of Qualifications
Results-driven executive with proven success in balancing operational risk with business growth and client satisfaction;
offering more than 20 years of progressive experience in enterprise risk assessment and mitigation. Proven ability in
creating, implementing, and validating business continuity planning (BCP) programs, overseeing information security,
facilitating supplier management, ensuring regulatory compliance, and instituting risk management initiatives at the
corporate level.
Operational Planning Reduction and Mitigation of Risk
Cross Functional Team Leadership Acquisitions, Divestitures & Mergers
Project Management Process Improvement
Change Management Supplier and Vendor Management
Contract Development & Negotiation
Business Continuity/Information Security
Crisis Management Risk Analysis and Control
Professional Experience
NYCE Payments Network, Secaucus, NJ 1998-2010
Director Enterprise Business Assurance (2007 to October 2010) - Direct Report to SVP/CIO
Strategically planned and administered multi-million dollar budget to control costs, boost revenue and optimize
bottom-line profits, while managing staff and resource requirements r educing operational expense 13% year over year
for three consecutive years.
Oversaw the governance, development, implementation and management of the enterprise-wide BCP for as many as
four nationwide locations, 15 functional teams and as many 350 employees.
Analyzed business needs and identified gaps for recovery and continuity utilizing the change and problem
management process.
Developed and deployed enterprise policy guidelines to ensure compliance with corporate governance, regulatory
compliance and industry standards.
Relocated mission critical Data Center platforms resulting in an estimated $5MM in annual cost savings.
Represented NYCE on multiple Corporate Committees and Governance boards including Policy; Supplier
Management; Business Continuity; and Pandemic Advisory resulting in the implementation of proactive solutions
through consultative guidance for project and business teams relevant to policies, guidelines, best practices and
regulatory compliance.
Corporate Liaison and single point of contact for all internal audits and risk engagements, external client reviews, and
external industry and regulatory compliance reviews (i.e. PCI, SAS70, FFIEC)
Oversight and management of all aspects of Information Security, including system access, vulnerability testing,
intrusion prevention/detection, as well as physical security and facility access.
Payment Card Industry (PCI) Standard, Sarbanes Oxley (SOX) Act, COBIT, FFIEC, OTS, ACH, SAS70, Red Flag Act,
Risk Management, CISSP, Human Resources, Financial Services, Payment Industry, HP NonStop (Tandem),IBM
Z\OS, Windows, Change and Problem Management, Systems Development Methodology (SDM), budget, supplier
management, client liaison
Enterprise Business Assurance Manager (2005-2007)
Responsible for the areas of Risk Management; Business Continuity; Regulatory Compliance; PIN/PCI Security;
Supplier Management and audit related issues.
Developed, continually improved and tested disaster recovery and business continuity strategies, resulting in
enhanced recoverability.
Internalized Data Center Disaster Recovery facility resulting in reduced recovery times, maintaining recovery point
objectives, and realizing an estimated $1MM annual cost savings.
Created and chaired a forum for addressing audit related issues, ensuring all items were resolved within pre
established guidelines.
Business Continuity Administrator (2002-2005)
Operational responsibility for the areas of Enterprise Risk Management, Business Continuity and Disaster Recovery
planning.
Oversaw recovery planning of all platforms and work group recovery for four offices, in three states, from multiple
contingency locations.
Risk Manager/Internal Auditor (1999-2002)
Developed strategies to minimize loss exposures and expenditures through the utilization of risk assessment
matrices, financing and various management tools.
Performed lead/key role in engagements related to the architecture, design, implementation and testing and
management of security solutions through audit reviews of systems and IT organizational and functional activities.
Liaison and project manager for regulatory compliance, PIN security and audit related issues.
Risk Manager (1998-1999)
Recovered previously denied six figure claim settlement.
Created and managed enterprise risk management process and legal counsel oversight.
Developed, implemented and monitored member, agent processor, and vendor compliance via audit, financial
analysis and direct interface.
Key member of merger and acquisition team culminating in the transition of operations to new locations.
Managed enterprise supplier relationships, including contract negotiations and monitoring.
Authored, implemented and oversaw human resource policies and administration for compliance with federal and
state regulations.
Additional Experience
Risk Management
Consultant (1994-1998)
First Chicago NBD -
Assistant Risk Manager (1995-1996)
Hogg Robinson of
Michigan - VP – Financial Services Manager (1993-1994)
Marsh & McLennan,
Inc. Senior Account Executive (1989-1993)
Michigan National
Corporation, Risk Management (1987 – 1989)
EDUCATION/AFFILIATIONS & ASSOCIATIONS
University of Michigan, Ann Arbor, Mi – Bachelors
Certified (Crosby) Quality Education System Instructor
ITIL and Negotiation Skills Training
InfraGard – Michigan East Region Advisory Board Member
Great Lakes Business Recovery Group – Steering Committee Member