Ben Frost

Director, Information Security (grc) at Duck Creek Technologies

Ben Frost has extensive experience in the field of information security, governance, risk, and compliance (GRC). Ben currently holds the position of Director of Information Security (GRC) at Duck Creek Technologies, where they lead teams responsible for managing GRC, cybersecurity program and project management, and data protection/privacy. In this role, they utilize risk and control frameworks to identify risks and implement internal controls to reduce risk. Ben'sresponsibilities include managing risk and control self-assessments, external audits, customer/prospect requests, policy management, and asset management.

Prior to their current position, Ben worked at USAA, where they held various roles in the internal audit department. Ben served as an Audit Director, Senior Audit Manager, Audit Manager, Senior Auditor, and Auditor I during their tenure. In these roles, they managed audit teams, executed risk-based audits, reviewed audit workpapers, and communicated results to senior leadership. Ben also played a key role in developing the annual audit plan for IT audit entities within their team's portfolio.

Before joining USAA, Ben worked at Interactive Data, where they served as an Audit Manager. In this role, they assisted in creating and implementing a risk management program and managed the IT SOX program. Ben also performed and supervised IT-specific operational audits and reviews.

Ben started their career at Deloitte, where they worked as an Advisory Senior Consultant and Advisory Consultant. Ben specialized in IT audits and played a crucial role in external audits by assisting with engagement planning, identifying risks and controls, designing test procedures, and reporting findings to management. Ben also conducted detailed walkthroughs to evaluate the control environment.

Prior to Deloitte, Ben worked as an Office of Information Technology Consultant at the University of Notre Dame, and as an ERS Intern - Data Quality and Integrity at Deloitte.

Ben holds several certifications, including CISA, CIA, CRMA, and an MBA degree.

Ben Frost, CISA, CIA, CRMA, MBA, completed their Bachelor of Business Administration (B.B.A) degree in Information Technology - Management from the University of Notre Dame - Mendoza College of Business from 2006 to 2010. Ben then earned their Master of Business Administration (MBA) with a focus on Cyber Security from The University of Texas at San Antonio between 2017 and 2021. Before pursuing higher education, Ben attended Northshore High School from 2002 to 2006. In addition to their degrees, Ben holds several certifications, including Certified Information Systems Auditor (CISA) from ISACA in 2013, Certified Internal Auditor (CIA) from The Institute of Internal Auditors Inc. in 2015, and Certification in Risk Management Assurance (CRMA) from The Institute of Internal Auditors Inc. in 2019.

Links

Previous companies

University of Notre Dame logo
Deloitte logo
USAA logo

Timeline

  • Director, Information Security (grc)

    May, 2023 - present

  • Director, IT Internal Audit

    May, 2022

View in org chart