Summary
Overview
Work History
Education
Skills
Websites
Timeline
Generic

Alesia Kviatko

TEAM LEAD / CYBER RISK / VENDOR RISK
Madrid, Spain

Summary

Vendor Cyber Risk Senior Consultant with five years in information security and over a decade in IT. Proven expertise in cybersecurity assessments, risk management, and compliance, driving stronger security postures across diverse stakeholders. Adept at fostering collaboration across cross-functional teams, building lasting business relationships, and translating complex security risks into actionable solutions.

Overview

5
5
years of professional experience
3
3
years of post-secondary education
3
3
Languages

Work History

Team Leader, Vendor Cyber Risk

Deloitte Spain
Madrid
04.2025 - Current
  • Leading and coordinating team responsible for Cyber Risk assessments in EMEA region.
  • Reviewing vendor security controls, questionnaires and audit reports.
  • Collaborating cross-functionally with procurement, legal and IT teams.
  • Promoting and integrating VCRA process within GRC.
  • Mentoring stakeholders on best industry practices and standards.
  • Performing full vendor continuous monitoring cycle.

Senior Consultant / Vendor Cyber Risk

Deloitte Spain
Madrid
06.2023 - 03.2025
  • Engaged into comprehensive cybersecurity assessments for internal stakeholders, strengthening risk management, compliance, and security resilience across EMEA region member firms.
  • Assessed and delivered assessment results on 140+ vendors in 2024 alone.
  • Applying cyber risk expertise to enhance security postures and drive operational improvements.
  • Executing detailed vendor cyber risk assessments, identifying vulnerabilities and recommending mitigation strategies.
  • Performing due diligence by reviewing security policies, audit reports and certifications.
  • Facilitating training sessions to enhance stakeholder's awareness of security risks.
  • Collaborating with cross-functional teams to develop tailored remediation plans.
  • Assisting in the ongoing vendor monitoring program.
  • Effectively training and supporting the new joiners.

Senior Associate BISO

PwC Poland
Warsaw
05.2021 - 01.2023
  • Managed the full business continuity management cycle.
  • Managed stakeholder engagement for vulnerability assessments.
  • Assisted in configuration and compliance audits to maintain regulatory adherence.
  • Created detection and response metrics.
  • Mapped security controls to NIST frameworks.
  • Ensured compliance within existing ISPs and legal regulatory frameworks.

Senior Information Security Analyst

IQVIA
Warsaw
05.2020 - 05.2021
  • Ensured configuration data was available when and where needed to support service management processes.
  • Defined processes and dashboards for AP and asset/configuration management.
  • Developed standard operating procedure (SOP) documentation to streamline workflows.

Education

Bachelor or Arts -

University of Lodz
Lodz, Poland
10.2015 - 07.2018

Skills

Cyber Risk

Communication

Risk Assessment

Compliance Standards

Security Governance

CyberArk

Security Scorecard

Archer

undefined

Timeline

Team Leader, Vendor Cyber Risk

Deloitte Spain
04.2025 - Current

Senior Consultant / Vendor Cyber Risk

Deloitte Spain
06.2023 - 03.2025

Senior Associate BISO

PwC Poland
05.2021 - 01.2023

Senior Information Security Analyst

IQVIA
05.2020 - 05.2021

Bachelor or Arts -

University of Lodz
10.2015 - 07.2018
Alesia KviatkoTEAM LEAD / CYBER RISK / VENDOR RISK