LinkedInChen Heffer

Chen Heffer

Technology Risk, Security & Compliance at Kaiser Permanente

United States
Computer & Network Security
  1. Kaiser Permanente,
  2. ISACA
  1. Spacenet Inc.,
  2. Self Employed,
  3. Technion - Israel Institute of Technology
  1. The Open University, Tel Aviv, Israel
Recommendations35 people have recommended Chen

Join LinkedIn & access Chen's full profile

Join LinkedIn & access Chen's full profile. It's free!

As a LinkedIn member, you'll join 300 million other professionals who are sharing connections, ideas, and opportunities.

  • See who you know in common
  • Get introduced
  • Contact Chen directly
Kaiser Permanente

Kaiser Permanente

Technology Risk, Security & Compliance

– Present

View full profile



Over 18 years of experience in both military and civilian Cyber Security. Experienced in Cyber Warfare, Critical Infrastructure Protection and Threat Analysis. Extensive work experience as a team leader, individual contributor, mentor and training program leader.

Specialties: Cyber Security, Management Consulting Services, IT Risk Management, Fraud Management, Information Security & Data Protection, Business Continuity, Information Systems Design and Architecture.


Technology Risk, Security & Compliance

Kaiser Permanente
– Present (8 months)United States

CISA Assistant Education Coordinator

– Present (4 months)United States

Director of Cyber Security and IT Compliance

Spacenet Inc.
(1 year)Washington D.C. Metro Area

Acted as the company's CISO and designed a line of security new services such as Security Incident and Event Management (SIEM) systems and Security Operation Centers (SOC).
Responsible for regulatory compliance such as ISO27000, ISO 33201 for Business Continuity, ISO 20000 (ITIL), NIST, PCI DSS (SP1), COBIT 5,HIPAA, SOX and AICPA – Service Organization Control (SOC 2 &3, SSAE-16). Responsible for Governance, Risk Management and Compliance (GRC) organizational framework.

Cyber Security and Technology Risk Management Principal Consultant

Self Employed
(4 years)Israel, Europe, North America, Australia

Cyber security and Information Technologies Risk Management leader. Experienced in Threat Analysis, Cyber Defense, Business Continuity and Disaster Recovery planning. Skilled in business development,team leadership and team development. Builds, develops and directs first-class security and governance teams. Designs and implements information security architecture and best practices for organizations with a wide variety of risk postures in complex and distributed environments. Excellent team collaboration and teaming skills; excellent coaching, mentoring and people development skills; strong communication, facilitation and presentation skills.
Experienced in both military and civilian Critical Infrastructure Protection, trained various military cyber defense teams.

An Instructor in the TCISO & TCRMO Professional Certificate

Technion - Israel Institute of Technology
(4 years)Israel

Mentored and led the TCISO training program which was design to provide IS and IT experts with technological capabilities and a general understanding of the field of information security. I held the position of a leading instructor on IT Risk Management and Business Continuity, and one of the key instructors in the Certified Information Systems Security Professional (CISSP) exam preparation program sponsored by ISC².

Designed, build and mentored the TCRMO program which covers over 300 IT Risk Management topics, frameworks and methods. The program was examined and approved by a pedagogic committee of the Technion, Israel Institute of Technology, and includes a preparation boot camp toward the Certified in Risk and Information Systems Control (CRISC) exam sponsored by ISACA.

Head of Security & Privacy Risk Management and Compliance Practice

(2 years)Israel

Professional management and business development of the Security and Privacy department in Deloitte. Direct management of 6 employees, responsible for the professional and technological directive and training of 120 Enterprise Risk Services (ERS) consultants; Professional management of strategic security projects; Prepared over 130 organizations from the Retail, Medical, Financial and Energy sectors for the PCI-DSS, ITIL, NIST, HIPAA, ISO, SOX and local banking information security regulations.

Information Security Senior Project Manager

iTcon LTD
(2 years)Israel, Europe

Responsible for a 24 month-long project preparing Israel’s largest bank for information security regulatory compliancy; Responsible for strategic information security project management in both the financial and Hi-Tech sectors; Responsible for regulatory risk assessments on critical enterprise systems such as AS/400, DWH, SQL and on-line trading; Consulted and certified retail and Hi-Tech companies on PCI DSS, NIST, ISACA Control Objectives for Information and Related Technologies (COBIT) 4.1 and the ISO27000.

Director of Information Technology

(4 years)Israel, USA, Germany, China

Headed the Information Systems, Information Technologies & Security department of a global video conferencing enterprise; Direct management of 4 system, application and infrastructure specialists in the Israeli HQ and professional management of the company’s IT specialists in the US, Germany and China.

Manager of Information Technologies & Information Systems

Ministry of Infrastructures
(3 years)Israel

Management of 2 fully redundant network sites and 10 additional remote sites across the country, and direct management of 3 system and infrastructure specialists.

IT, Security and Communication Specialist

Bynet Telecommunications
(3 years)Israel

IT, Security and Communication specialist providing infrastructure support and maintenance for various clients such as insurance companies, banks, governmental and military institutes.



CISA Assistant Education Coordinator and Mentor
– Present


Network Analysis using Wireshark Cookbook(Link)

Packt Publishing Ltd.
December 2013

Assisted Yoram Orzach, Author

Volunteer Experience & Causes

Member of the Certification and Conferences Committee

ISACA Israel Chapter
(3 years 1 month)Education

Member of the Certification and Conferences Committee


Israeli Ministry of Education
(3 years 1 month)Children

Voluntary community work with the Israeli Ministry of Education on Safe Internet for children, including lecturing in kindergartens and elementary schools.


ISACA National Capital Area Chapter
– Present (11 months)Science and Technology

Professional ISACA Training

Opportunities Chen is looking for:

Causes Chen cares about:

Organizations Chen supports:

  • PCI Security Standards Council
  • National Institute of Standards and Technology
  • INSS Israel







  • Information Security...
  • IT Risk Management
  • Information Security...
  • IT Business Strategy
  • Business Continuity
  • Management Consulting
  • Fraud
  • Information Security
  • Data Privacy
  • CISA
  • Architecture
  • CISM
  • Penetration Testing
  • ISO 27001
  • Computer Security
  • Computer Forensics
  • Security Audits
  • Security
  • Encryption
  • Risk Assessment
  • Data Security
  • IT Audit
  • Enterprise Risk...
  • Privacy Law
  • Risk Management
  • Disaster Recovery
  • Network Security
  • Checkpoint
  • Business Continuity...
  • Vulnerability Assessment
  • PKI
  • Web Application Security
  • Firewalls
  • Application Security
  • Security Management
  • CEH
  • Vulnerability Management
  • Networking
  • Security Awareness
  • Security Architecture...
  • Identity Management
  • IPS
  • Internet Security
  • IDS
  • Cryptography
  • Information Technology
  • Strategy
  • See 35+  See less


The Open University, Tel Aviv, Israel

Professional Training and Certifications

View Chen's full profile to...

  • See who you know in common
  • Get introduced
  • Contact Chen directly

Not the Chen Heffer you're looking for? View more


LinkedIn member directory:

  1. a
  2. b
  3. c
  4. d
  5. e
  6. f
  7. g
  8. h
  9. i
  10. j
  11. k
  12. l
  13. m
  14. n
  15. o
  16. p
  17. q
  18. r
  19. s
  20. t
  21. u
  22. v
  23. w
  24. x
  25. y
  26. z
  27. more