Bill Cancel
631-***-**** **********@*******.*** linkedin.com/in/bill-cancel-73b77311
VP Security Compliance Risk Management
SECURITY COMPLIANCE RISK
Accomplished Senior Director with extensive expertise in global cyber security operations, compliance and risk management. Advanced knowledge of security technologies, with a proven track record of aligning security programs with business objectives to support sustainable growth and operational continuity.
WORK EXPERIENCE
Henry Schein Inc. - Melville, NY Aug 2019 – Present
SR DIRECTOR, SECURITY OPERATIONS
Direct global security operations with a focus on proactive threat management, incident response, and risk mitigation.
Lead the design, implementation, and enforcement of security policies, procedures, and standards across the organization.
Collaborate with senior executives and IT teams to integrate robust security measures into business processes, ensuring operational continuity and resilience.
Direct cross-functional teams to deliver cybersecurity solutions, minimizing organizational risk and protecting corporate data and assets.
Oversee disaster recovery and business continuity initiatives, ensuring rapid response and restoration of critical systems.
Maintain cloud security, resilient IT operations, and innovative approaches to mitigate evolving threats and safeguard digital assets.
Lead and mentor teams to embrace change, fostering adaptability and innovation in response to shifting threat landscapes and regulatory requirements.
Serve as a trusted advisor to the CTO and executive leadership, providing insights to protect the organization while supporting growth and efficiency.
DIRECTOR, GLOBAL CYBER SECURITY Jan 2010 – Aug 2019
Led a global cybersecurity team, managing threat detection, compliance efforts, security audits, and IT security incident responses.
Administered a $6M cybersecurity budget, ensuring strategic resource allocation and cost-effective security initiatives.
Developed and executed comprehensive information security programs, including ISO 27001 and PCI compliance frameworks.
Established and directed a global IT risk management program, identifying, assessing, and mitigating cybersecurity risks enterprise wide.
Directed business continuity, disaster recovery planning, and cross-functional teams to ensure data integrity, security, and regulatory compliance.
DIRECTOR, IS RISK MANAGEMENT May 2003 – Jan 2010
Managed the IT SOX Program, creating control frameworks and testing scripts for regulatory compliance.
Developed and led the Information Security Risk Management program, tracking global IT risks and ensured enterprise-wide security adherence.
Led cross-border security initiatives, implementing information security frameworks to protect international operations.
Collaborated with business and functional areas to identify potential risks to mature ERM program and meet organizational objectives.
MANAGER, OPERATIONS Aug 2001 – May 2003
Managed daily operations for a multi-I-series environment, ensuring system performance, security, and operational efficiency.
Designed and executed system implementation projects, including a High Availability solution, to improve data reliability and operational continuity.
Worked closely with the application development team to optimize system performance and security
MSC Industrial Supply - Melville, NY Mar 1995 – Aug 2001
MANAGER, OPERATIONS
Managed daily operations in a multi-I-series environment, managing system security, remote connectivity, and disaster recovery planning.
Directed the relocation of data centers and designed system architecture for distribution centers, ensuring scalability and security.
EDUCATION
New York Institute of Technology (NYIT) - Old Westbury, NY
Bachelor of Science in Computer Science – Communications
PROFESSIONAL SKILLS
Information Security Strategy & Leadership
Cybersecurity Risk Management & Incident Response
Regulatory Compliance (ISO 27001, PCI)
Security Policy Development & Implementation
Disaster Recovery, Business Continuity Planning, Crisis Management
Budget Management ($6M+ Cybersecurity Budget)
IT Infrastructure & Cloud Security
Vulnerability & Security Audits
PROFESSIONAL MEMBERSHIPS
Certified Chief Information Security Officer (C CISO)
Certified Information Security Manager (CISM)
Certified Information Systems Security Professional (CISSP)
Payment Card Industry Professional (PCI-P)
Internal Security Assessor (ISA)
ISO 27001 Lead Implementer
Member, ISACA
Member, (ISC)
SOFTWARE SKILLS
Azure AD, Cybereason; Sentinel1; QRadar, Reliaquest, Trelix, OKTA, SafeNet, Qualys, Armis, Virus Total