Curriculum Vitae Richard O. Regalado
RICHARD O. REGALADO
RISK and COMPLIANCE EXPERT, MANAGEMENT SYSTEMS ARCHITECT
(Enterprise Risk Management, Business Continuity, Information Security and Quality) SUMMARY:
Richard has more than 20 years of professional experience in designing, developing, implementing, managing, maintaining and improving risk-based, performance improvement and organizational excellence programs.
Notable engagements include:
• Business continuity management for SM Prime Holdings (SMPHI) and SM Supermalls covering 70 malls nationwide. SM Megamall and SM Mall of Asia Arena Annex – certified to ISO 22301:2012, becoming the first mall in the World to achieve this distinction;
• Enterprise risk management and business continuity management for NLEX Corporation (a toll-way management company);
• Information security and business continuity management systems for pharmaceuticals and food manufacturers –
o United Laboratories Inc.
o UL Skin Sciences Inc.
o Unilever
o Nestle
• Information security and business continuity management systems for BPOs – o Hewlett Packard
o Accenture
o sPI Global
o KMC
o Microsourcing
• Management systems for power and water utility companies – o Maynilad Water Services Inc.,
o Semirara Mining and Power Corporation,
o National Grid Corporation of the Philippines (NGCP) covering power generation sites from Luzon to Mindanao,
o Abu Dhabi Company for Onshore Oil Operations (ADCOO), o Aboitiz Equity Ventures, and Aboitiz Power
• Business continuity management for banks and financial institutions – o Asian Development Bank (ADB) – resulting in ADB becoming the 4th organization to be certified to ISO 22301:2012 in the Philippines; o Abu Dhabi Islamic Bank
o PayMaya Philippines Inc.
o Security Bank Corporation; and
o Unionbank of the Philippines (includes ISO/IEC 27001 ISMS) Curriculum Vitae Richard O. Regalado
2 17
• Integrated management system covering quality, environmental, energy, information security, business continuity and IT service level management for ePLDT Vitro Data Center - 1st to be certified to ISO 22301:2012 BCMS in the Philippines via a non- transition approach;
• Enterprise-wide risk management (ERM), information security management and various engagements for Globe Telecom; and PLDT Cloud.
• Information security management system for Hamdan Bin Mohammed e-University in Dubai, UAE - the 1st e-learning university in the Middle East for ISO 27001;
• Quality management for Bangko Sentral ng Pilipinas (covering the processes of mint, refinery and bank notes operations);
• Designed and conducted series of quality-related training for courses for 200+ maritime agencies in Yangoon, Myanmar;
• Information security and business continuity training courses, and audits for International Rice Research Institute (IRRI), and other centers within the CGIAR
(formerly Consultative Group on International Agricultural Research) Consortium in the Philippines, Jordan and Lebanon.
He is an IRCA (International Registry of Certificated Auditors) registered lead auditor for ISO 22301 business continuity management system, ISO/IEC 27001 information security management system, and ISO 14001 environmental management system. Richard’s experience in handling over 100 projects speaks well of his project management skills and leadership skills. He has sound ability to lead and manage business through his networking, people and technological skills. He is also a sought-after tutor for both public and in-house courses and resource speaker for forums and conferences. KEY COMPETENCIES:
• Design, development, implementation and management of management systems: o Information security management (ISO/IEC 27001)
o Business continuity management (ISO 22301)
o Energy management (ISO 50001)
o Occupational health and safety management (ISO 45001) o Quality management (ISO 9001)
o Risk management (ISO 31000)
o Supply chain security management (ISO 28000)
o Customer service standard (TICSS 2007:01)
o Environmental management (ISO 14000)
o Social accountability/responsibility management (SA 8000/SR 26000) o IT service level management (ISO 20000)
• Formulation of policies and establishment of procedures
• Establishment of monitoring and evaluation mechanisms for processes
• Creation continual improvement environment
• Project and program management
• Process re-engineering and development of process documentation
• Establishment of performance metrics, KPIs, KRAs and objectives for organizational improvement
• Courseware design and development and conduct of courses Curriculum Vitae Richard O. Regalado
3 17
PUBLICATIONS:
Co-author “ISO 27K Toolkit, ISMS Auditing Guideline, Version 2, 2017” http://www.iso27001security.com/ISO27k_Guideline_on_ISMS_audit_v2_DRAF T.pdf
Co-author “Information Security Metrics and Implementation Guide” published at ISO 27001 implementer’s forum
http://www.iso27001security.com/html/iso27k_toolkit.html Co-author “ISO/IEC 27001 Mandatory Documentation Checklist”, http://www.iso27001security.com/ISO27k_ISMS_Mandatory_documentation_c hecklist_release_1.docx
WORK SUMMARY:
EIAN Management Consulting (December 2010 to Present) Designation: Principal Consultant and Tutor
• Manage projects to ensure meeting customer requirements in terms of quality of deliverables, achievement of set milestones and budget
• Manage internal resources including capability mapping of consultants to projects; development of internal competencies and resourcing of consultants
• Research and development of new products and services such training and consulting engagements for new management system standards
• Initiate, manage and improve strategic partnerships with government institutions, professional organizations and certification bodies such as: o United Nations International Strategy for Disaster Response (UNISDR) – Private Sector Alliance for Disaster Resilient Societies (ARISE) o Corporate Network for Disaster Response (CNDR)
o Development Academy of the Philippines (DAP)
o Information Systems Audit and Control Association (ISACA) o Philippine Society for Quality (PSQ)
o Fujitsu Philippines Inc.
o TUV Rheinland
o Nippon Kaiji Kyokai (Class NK)
o SGS Philippines, Inc.
o Professional Evaluation and Certification Board (PECB)
• Business development
Cybersecurity Philippines CERT® (March 2017 to Present) Designation: Team Leader, White Team
• Provide guidance and tutelage to teams in relation to management systems and best-practices in information security, business continuity, and risk management. Spectrum FZ LLC (May 2007 to May 2009)
Designation: Manager and Principal Consultant, Strategies Consulting Group
• Set up the Strategies Consulting and Professional Services Group including recruitment of consultants; defining key performance indicators, establishing targets and budgets; creation of continual improvement plans.
• Created competency development program for consultants (12)
• Created customer satisfaction system for consulting services Curriculum Vitae Richard O. Regalado
4 17
• Develop new business opportunities through strategic partnerships: with British Standards Institute (BSI, www.bsi-emea.com) which resulted in Spectrum becoming an Accredited Consulting Partner of BSI and with The International Customer Service Institute (TICSI, www.ticsi.org) which resulted in Spectrum becoming the first Training and Consulting Partner of TICSI world-wide.
• Monitoring of consultants’ activities, performance and progress of projects
• Manage projects through regular liaisons with client organizations’ top management
• Handled the implementation of ISO 9001 and ISO/IEC 27001 for Spectrum FZ LLC
• Pre-sales activities for both management systems and professional services
• Coordination with Technical team for professional services such as vulnerability assessment, penetration testing, network security audits and other services Freelance Consultant (January 2004 to May 2007)
• Carry out consulting and training activities in accordance with contract agreement.
• Source and assign consultants to various projects in terms of their competencies and
experience.
• Strategize on approach and methodology for fulfilling requirements of potential clients in the tendering stage.
• Coordinate with external entities for activities that need to be outsourced such as vulnerability/penetration testing, software development, 3rd -party certification, etc.
• Confer with clients to ensure continual improvement activities are in-place DG Jones and Partners Philippines Inc. (a British project and construction management firm) (March 2001 to January 2004)
Designation: Technical Consultant
• Responsible in maintaining the organization’s IT and network infrastructures and communication needs to all DG Jones-affiliated organizations world-wide Seconded to WTL Philippines as a Technical Director As Technical Director of WTL Philippines
• Design and develop Information Security Management System package and approach including all training modules, documents and implementation plans resulting in the certification of the Emerson Process Inc. first company in Philippines to BS 7799 information security management system
• Responsible for review, upgrade and maintenance of reference materials such as training handouts, presentation slides, templates, standard documentation, implementation plans and schedules for all management system standards.
• Oversee all projects and consultants (6 consultants) and ensure that appropriate resources are provided for the realization of client requirements.
• Develop and implement occupational health and safety policies and procedures for deployed consultants especially for working on construction-related projects.
• Generate feedback from market and potential clients as basis for developing and modifying approaches and programs.
• Develop unique approach for special markets and/or segments such as: industrial zones, small and medium scale industries, regional zones, etc.) Curriculum Vitae Richard O. Regalado
5 17
Tokumi Electronics Philippines, Inc. (1998 to 2000) Designation: Network Specialist and Quality Management Representative
• Design, install, operate and maintain the LAN/WAN (Fiber-optic backbone, 100BaseT, Star Topology), hardware and software systems.
• Maintain and operate RPG/400 system
• Handles upgrades and change management for the ICT infrastructure
• Maintain frame-relay equipment for the company’s WAN connection between Philippines and overseas clients.
• Troubleshoots faulty systems, attends to network and system related concerns and assists users
• Perform the functions of a QMR in the development, documentation and maintenance of the ISO 9001 quality management system. Sumisetsu Philippines, Inc. (December 1991 to July 1998) Designation: Network Engineer and EDP Supervisor
As Network Engineer
Design, develop and installation of networks in for the following projects: o The Japanese Embassy
o Honda Cars Philippines
o Toyota Autoparts Philippines
Coordinate with other construction disciplines (civil and structural) for the laying of power and data cable routes for IT installation projects OTHER ENGAGEMENTS:
GUEST SPEAKER, Lyceum Philippines University in Batangas City for the topic Risk Management
September 18, 2014
GUEST SPEAKER, Code Red: What is your plan? Know the Importance of Disaster Risk Reduction and Business Continuity Planning at the Ateneo Graduate School of Business, Rockwell, Makati.
July 18, 2014
FREELANCE PARTNER
TÜV Rheinland Philippines, Inc.
June 2014 to Present
Performs auditing and training activities for BCMS, ISMS, QMS, EMS and other related management system standards.
RESOURCE SPEAKER AND TUTOR for RISK-BASED COURSES
Development Academy of the Philippines (DAP)
June 2010 to Present
RESOURCE SPEAKER AND FACILITATOR
eTQM College (for ADCO)
January 2009
Developed training materials and delivered training on ISO 9001:2008 quality management system for Abu Dhabi Company for On-shore Oil Operations (ADCO) Curriculum Vitae Richard O. Regalado
6 17
GUEST for Information Security, 103.8 Nightline with James Piecowye September 24, 2008
Guest resource for information security and ISO 27001 TRAINER AND AUDITOR
BSI Management Systems Dubai
June 2007
RESOURCE SPEAKER AND TRAINOR
Information Systems Audit and Control Association (ISACA) June 2006 to present
• Guest speaker for ISACA Manila 2007
DEPUTY TEAM LEADER, Cabinet Oversight Committee for Information Security, Task Force On Security Of Critical Infrastructures (COCIS-TFSCI), Office Of The President Of The Republic Of The Philippines
January 2004 to May 2007
• Collaborate with different government agencies and offices such as the Office of the President of the Republic of the Philippines, National Computer Center (NCC), Philippine National Police (PNP) and other entities in matters relating to the established objectives of the Task Force.
• Conduct information security training on select government agencies such as the Transnational Crime Unit of the Philippine National Police.
• Draft policies with the other members of the Formulation of Information Security Policies (FISPOL) group to address information security concerns EXTERNAL MANAGEMENT SYSTEMS AUDITOR
TÜV SÜD Philippines, Inc.
January 2004 to March 2007
EDUCATIONAL BACKGROUND:
Certification Training for Certified Quality Business Analyst (CqBA), sanctioned by International Association of Quality Professionals (IAQP), 2010 Bachelor of Science in Computer Engineering, 1989-1991 Don Bosco Technical College, Mandaluyong City, Philippines Curriculum Vitae Richard O. Regalado
7 17
Appendix A: Engagements
Organization Scope/Deliverables Industry Year
Fujitsu Philippines Inc.
Development of ISO 22301 business
continuity management system
(BCMS)
IT Consulting 2020
Philippine Guarantee
Corporation
Development of ISO 9001 quality
(QMS) and ISO/IEC 27001 information
security management systems (ISMS)
Government 2020
First Oceanic Property
Management
Development of ISO/IEC 27001
information security management
system (ISMS)
Property management 2020
PayMaya Philippines
Inc.
Development of ISO 22301 business
continuity management system
(BCMS)
Payment gateway 2020
Vacuumtech Philippines
Inc.
Development of ISO 14001
environmental management system
Manufacturing of
Thermos vacuum
flasks
2020
Fujitsu Philippines Inc.
Design and conduct of customized
training courses for information
security and business continuity
IT Consulting 2019
Globo Asiatico
Enterprises Inc.
Development of ISO 9001 quality
(QMS) and ISO 22301 business
continuity management systems
(BCMS)
Healthcare 2019
Philippine Advanced
Processing Technology
Inc. (PAPTI)
Development of ISO 45001
occupational health and safety
management system (HSMS)
Manufacturing 2019
Aboitiz Power Inc. (Oil
business unit)
Development of an information
security management system (ISMS)
based from ISO/IEC 27001 for 6 sites
Power generation 2019
Diversify Offshore
Sourcing Solutions
Development of ISO/IEC 27001
information security management
system (ISMS)
BPO 2019
Uni-oil Petroleum
Philippines Inc.
Design and conduct of training
courses for ISO 14001 environmental
management system (EMS)
Manufacture of
lubricants and oils 2019
Global Virtuoso Inc.
Development of ISO/IEC 27001
information security management
system (ISMS)
BPO, airline industry 2019
Willis Towers Watson
Provided 3rd-party audit services for
their ISO/IEC 27001 information
security management system
BPO, financials 2019
Metrobank Foundation
Institute
Development of ISO 9001 quality
management system, and
documentation of processes
Awards-giving
organization 2019
Accenture
Design and conduct of customized
training courses for information
security and business continuity
BPO 2019
Curriculum Vitae Richard O. Regalado
8 17
Organization Scope/Deliverables Industry Year
Chi-X Global
Technology Inc.
Development of ISO/IEC 27001
information security management
system (ISMS)
Tech support for the
financial sector 2019
Unilab Skin Sciences
Inc.
Development of ISO 22301 business
continuity management system
(BCMS)
Pharmaceutical 2019
Yusen Logistics
Philippines Inc.
Development of ISO 22301 business
continuity management system
(BCMS)
Logistics, air freight
and sea freight 2019
Vacuumtech Philippines
Inc.
Development of ISO 9001 quality
management system
Manufacturing of
Thermos vacuum
flasks
2019
United Laboratories Inc.
(UNILAB)
Development of ISO 22301 business
continuity management system
(BCMS)
Pharmaceutical 2019
Datawords Philippines
Inc.
Development of ISO/IEC 27001
information security management
system (ISMS)
BPO, content
development 2019
NLEX Corporation
Development of ISO 22301 business
continuity management system
(BCMS)
Tollways management 2019
Yondu Inc.
Development of ISO/IEC 27001
information security management
system (ISMS)
BPO, software
development 2018
ALLCARD Inc.
Design and conduct of various
training courses in support of the
companies ISO 9001 quality
management system
Credit card
manufacturer, 2018
Metal Industry
Research and
Development Center
(MIRDC)
Development of ISO/IEC 27001
information security management
system (ISMS)
Government,
engineering 2018
Philippine Competition
Commission (PCC)
Development of ISO/IEC 27001
information security management
system (ISMS)
Government, finance 2018
National Intelligence
Coordinating Agency
(NICA)
Conduct of information security
courses Government 2018
Unionbank of the
Philippines
Business continuity management
system and information security
management system
Financial, banking 2018
SM Prime Holdings, SM
Supermalls
Development of a business continuity
management system in alignment
with ISO 22301 covering 70 malls
nationwide
Shopping center, mall
operations,
2015 -
2018
Home Guaranty
Corporation (HGC)
• Design and development of
ISO 27001 information
security management system
and upgrade of their quality
management system to ISO
9001:2015
Government, housing 2015 –
2018
Curriculum Vitae Richard O. Regalado
9 17
Organization Scope/Deliverables Industry Year
• Designed and conducted
series of training courses for
business continuity
management, provision of
consulting services for its
implementation
Unilever Philippines Inc.
Development of business continuity
plans for catastrophic scenarios using
ISO 22301
Manufacturing, food
and home care 2018
National Grid
Corporation of the
Philippines (NGCP)
Development of ISO/IEC 27001
information security management
system (ISMS)
Power generation 2017 -
2018
ICAP Financials
Development of ISO/IEC 27001
information security management
system (ISMS)
Financial trading 2018
Aruze Philippines
Manufacturing Inc.
Development of an information
security management system (ISMS)
based from ISO/IEC 27001 and
compliance to the Data Privacy Act
Manufacturing 2018
Commission on
Elections (COMELEC)
Development of an information
security management system (ISMS)
based from ISO/IEC 27001 and
compliance to the Data Privacy Act
Government 2017
NLEX Corporation
Development of an enterprise risk
management programme aligned with
ISO 31000
Tollways management 2017
Maynilad Water
Services Inc.
Development of ISO 22301 business
continuity management system for
the entire water and waste water
services
Water utility company 2017
PLDT IP Converge
Development of ISO 22301 business
continuity management system for 3
sites
BPO, call-center 2017
Sprout Solutions Inc.
Development of ISO/IEC 27001
covering their software development
processes
BPO, software
development 2016
Jollibee Foods
Corporation
Development of ISO/IEC 27001
information security management
system for their ICT units and
functions
Fast-food 2016
Linaheim Corporate
Services Inc.
Design and conduct of internal audit
training for ISO 9001 and ISO 14001
Freight-forwarding,
logistics, BPO 2016
KMC MAG Solutions
Inc.
Development of ISO/IEC 27001
information security management
system (ISMS) covering 4 sites
Off-shoring and
outsourcing 2016
ERGO EBlocks Inc. Development of ISO 9001 for the
manufacture of construction blocks Construction 2016 H&D Group Philippines
Inc.
Development of ISO 9001 for the
provision of property management
support
Property management 2016
Curriculum Vitae Richard O. Regalado
10 17
Organization Scope/Deliverables Industry Year
Nestle Philippines Inc.
Design of customized courseware to
address requirements for their
business continuity management
system
Food manufacturing 2016
University of Perpetual
Help Hospital – Dr. Jose
Tamayo Medical Center
Design and development of ISO 9001
quality management system for the
entire hospital
Hospital 2016
First Sumiden Circuits
Inc.
Development of a business continuity
management system in alignment
with ISO 22301 covering 4 plants in
Cabuyao, Laguna
Electronics
manufacturing 2016
KMC Mag Solutions Development of quality management system in alignment with ISO 9001
Off-shoring and
outsourcing 2015
Power Sector Assets
and Liabilities
Management
Corporation
Facilitated the design of approach
and framework for an enterprise risk
management (ERM) system for both
strategic and operational risks
Government, power 2015
Avon Philippines Inc.
Provision of 3rd-party auditing
services looking at strategic, tactical
and operational risks including health
and safety, environment, quality and
business continuity to key
subcontractors and suppliers
Manufacturing 2015
p3ople4u.com
Development of ISO/IEC 27001
information security management
system (ISMS)
BPO, system
development 2015
PLDT Vitro Data Center
Development of an Energy
Management System (EnMS) in
alignment with ISO 50001
Disaster recovery site,
data center 2015
Helping Hand
Development
Cooperative (HHDC)
Design and development of ISO 9001
quality management system
Manpower
cooperative 2015
Globe Telecom (Globe
Data Center and
Professional Services
Group)
Development of an Integrated Risk
Management framework covering
quality, environment, business
continuity and information security
Telecommunications 2015
CB Richard Ellis
Outsourced 3rd-party audits for ISO
9001 QMS in preparation for annual
surveillance audit
Real-estate, financial
research, property
management, financial
management
2015,
2014
Linde Global Services
Manila
Development of a BCMS for the
shared service center for the Linde
Group Worldwide
Shared services, BPO 2014
QBE-Global Shared
Services Center (QBE-
GSSC)
Outsourced 3rd-party audits for ISO
22301 BCMS in preparation for the
audit of Australian Prudential
Regulation Authority (APRA)
BPO, Financial
services 2014
Security Bank
Design of customized training and
workshop courses for business
impact analysis (BIA), risk
assessment, risk treatment and
Banking and finance 2014
Curriculum Vitae Richard O. Regalado
11 17
Organization Scope/Deliverables Industry Year
creation of business continuity plans
in accordance with ISO 22301 BCMS
The NET Group
Business continuity management
system audit for head office at 7
buildings using ISO 22301 BCMS as
benchmark
Property and building
management, real
estate
2014
CGIAR-IAU
Business continuity management
system audit in accordance with ISO
22301 BCMS of the International
Center for Agricultural Research in
Dry Areas (ICARDA) Amman, Jordan
and Beirut and Terbol Lebanon
Research 2014
Philippine Advanced
Processing Technology
Inc. (PAPTI)
Design and development of ISO
50001 energy management system
and integration with the ISO 14001
environmental management system
Manufacturing 2014
SMT Philippines Inc.
Design and conduct of ISO 14001
environmental aspects and impacts
course
Electronics 2014
Metro Pacific
Investments
Corporation
Gap assessment of ISMS against the
requirements of ISO/IEC 27001:2013
Finance and
investments 2013
SPi Global Design and conduct of ISO/IEC
27001:2013 ISMS course BPO 2013
CGIAR-IAU
Audit of the International Rice
Research Institute (IRRI) Occupational
Health, Safety and Security processes
in accordance with OHSAS 18001
and Philippine OSH requirements
Agricultural and
scientific research 2013
CGIAR-IAU
Process, operational and health and
safety audits of the International Rice
Research Institute (IRRI) Experiment
Station using ISO 9001 and OHSAS
18001.
Agricultural and
scientific research 2013
Yusen Logistics
Design and conduct of problem-
solving tools and techniques
workshop
Air and sea freight,
logistics 2013
Bargonfip
Shipmanagement Inc.
Development of a QMS in accordance
with ISO 9001 Maritime 2013
Araw Shipping Co., Ltd. Development of a QMS in accordance with ISO 9001 Maritime 2013
Class NK (thru Wealth
Ocean Ltd. Yangon,
Myanmar)
Seconded by Class NK to design and
conduct ISO 9001 awareness courses
and internal audit courses for 40+
maritime organizations in Yangon,
Myanmar
Maritime 2013
PLDT Cloud Operations Development of a QISMS based on ISO 9001 and ISO 27001 ICT 2013
Asian Development
Bank (ADB) Provision of independent BCMS audit Banking and finance 2013 Curriculum Vitae Richard O. Regalado
12 17
Organization Scope/Deliverables Industry Year
Security Bank
Corporation
Design and conduct of a business
continuity management system
executive course for 200+ executive
(VP level up) across the country
Banking and finance 2013
SPi Global
Analyze existing information security
and business continuity controls and
develop a scoring matrix and
dashboard for measurement and
monitoring
BPO 2012
Accenture
Design and conduct of business
continuity management system
(BCMS) course in accordance with
ISO 22301
BPO 2012
SPi Global
Design and conduct of business
continuity management system
(BCMS) course in accordance with
ISO 22301
BPO 2012
Asian Development
Bank (ADB)
Development of a BCMS certifiable to
ISO 22301 covering the eight (8)
critical processes of the bank.
Banking and finance 2012
Semirara Mining
Corporation
Development of a BCMS certifiable to
ISO 22301 Mining 2012
Transnational
Diversified Group
Design and conduct of business
continuity management system
(BCMS) course in accordance with
ISO 22301 and BS 25999
Shipping, crewing,
travel and tourism,
BPO, IT
2012
ePLDT Vitro Data
Center
Development of a BCMS certifiable to
ISO 22301 and integration efforts to
the existing ISO 9001 QMS, ISO
14001 EMS, ISO 20000 and ISO
27001 ISMS
Telecommunications 2012
FF Miravite Inc. ISO 9001 QMS Actuarial services 2012 International Rice
Research Institute (IRRI)
Design and conduct of specific
information security management
system (ISMS) implementer course
Scientific research 2012
TORM Shipping
Philippines Inc.
Business process mapping and
reengineering Ship crewing 2012
PvG Global Philippines
Development of an ISMS certifiable to
ISO 27001 and integration efforts to
the existing ISO 9001 QMS; conduct
BIA and RA for the continuity of
critical services
BPO (financial
transactions) 2012
Aboitiz Equity Ventures
(Aboitiz Power)
Full development of a business
continuity management system to all
sites and subsidiaries
Power generation
(hydro and geo),
manufacturing, IT,
power transmission
and distribution
2012
Emerson Manila Shared
Services (EMSS)
a. Physical site survey and
assessment using BS 25999
b. Workshop and validation of
existing BCM using BS 25999
Technical support
center 2012
Curriculum Vitae Richard O. Regalado
13 17
Organization Scope/Deliverables Industry Year
International Rice
Research Institute (IRRI)
Design and conduct of customized
course for BS 25999 BCMS
Agricultural and
scientific research 2011
Microsourcing
Philippines
Development of ISO 9001 and ISO
27001
BPO – web
development,
software
development,
healthcare and
financial support
2011
Golden Asian Oil
Process reengineering and
development of process
documentation
Petro-chemical (palm
oils and LNGs) 2011
Shopping Center
Management
Corporation (SCMC)
(SM Supermalls)
Process change management
workshop and training
Retail and shopping
center management 2011
AG Finance
Process reengineering and
development of process
documentation
Finance 2011
Wallem Philippines Inc. ISO 90003 software quality management system Software development 2011
Globe Telecom Data
Center (6 sites)
Perform outsourced internal audits for
quality, information security and
business continuity management
systems
Telecommunications 2011
Department of Social
Welfare and
Development (DSWD)
Development of ISMS in alignment to
ISO 27001 Public service 2011
Ortigas Company
Limited Partnership Inc.
(Greenhills Shopping
Center, Tiendesitas and
Circulo Verde)
Development of BCMS in alignment
to BS 25999
Real estate, project
management,
construction
management
2011
Hewlett Packard
Philippines
Development of specific course for
BCMS and ISMS, review of existing
BCMS processes
Software
development,
technical support
2011
ePLDT Vitro Data
Center
ISO 14001 EMS
Integrated management system
including emergency preparedness
and incident management plans
Telecommunications 2010
Globe Telecom
Enterprise-wide risk management
(ERM)
Review of BCM initiatives and
formulate remediation plans and
recommendations after 3rd-party
audit.
Telecommunications 2010
Sagittarius Mines (X-
Strata) Policies and procedures development Mining 2010 IMOSTI Compass
Training Internal auditor’s course Maritime training 2010 CPL (Cerebos)
Packaging Inc. Internal auditor’s course Packaging 2010 Curriculum Vitae Richard O. Regalado
14 17
Organization Scope/Deliverables Industry Year