Don Schmidt

Director, BISO Fannie Mae

Don Schmidt is a Senior Director in Cyber Security at Fannie Mae and is currently the Lead Business Information Security Officer (BISO). Mr. Schmidt joined Fannie Mae in August 2016 as the Deputy Chief Information Security Officer (DCISO), reporting to the Chief Information Security Officer (CISO). In his current role, Mr. Schmidt is primarily responsible for building out and leading the BISO program designed to strengthen Fannie Mae’s cybersecurity posture by integrating security into business priorities and creating a culture of shared security accountability. In his prior role as DCISO, he was responsible for overseeing Fannie Mae’s Information Security Architecture, Engineering and Operations, as well as the company’s Cyber Threat Intelligence, Detection and Incident Management/Response and Identity and Access Management teams.

Mr. Schmidt is a retired military officer with over 27 years of leadership, and many years of IT experience, primarily focused on Information Security. Prior to joining Fannie Mae, he was Vice President, Information Security at Fidelity Information Services (FIS) where he had matrixed responsibilities for the FIS enterprise-wide incident response, corporate investigations and threat intelligence programs.

Mr. Schmidt completed a Bachelor’s of Science Degree in Business Management, a Master’s of Science Degree (equivalent) in Military Studies and Leadership, and a Master’s of Science Degree in Information Resource Management. He also holds a current CISSP certification.

Day Two | November 11, 2020, Wednesday

9:00 AM Business Enablement By Way Of The BISO

Business enablement happens through a true understanding of the front-line employee experience, mid-level management remit, top-level management strategy and the ultimate enterprise vision. Once achieved, that understanding informs and influences the cyber security budget presented to the Board. The final mile is then translating that business-inspired budget into a cogent business case for the enterprise. Join this session to know more on:

  • Braiding The Business, InfoSec & Technology together  
  • Working as a translator between the three groups 
  • Reducing and ultimately eliminating Shadow IT 
  • Evangelizing the importance of security throughout the entire enterprise  
  • Driving business enablement every minute of every day