Brian Heemsoth is the SVP and Chief Security Officer for Fannie Mae. He is responsible for enterprise-wide risk-based security including cybersecurity and workplace safety and security. He leads the development and execution of Fannie Mae’s defense and response capabilities including emerging threats/risk mitigation, policy development, and protection of the firm’s data and systems assets. He is also responsible for security services to protect Fannie Mae sites, personnel, and leadership.

Brian has nearly 20 years of experience leading and transforming enterprise security programs across the financial services and healthcare industries. He most recently served as EVP and Chief Information Security Officer at FIS, where he led more than 1,000 cybersecurity and risk professionals responsible for enterprise cyber risk management, AI security governance, regulatory readiness, and security modernization. He previously held senior cybersecurity leadership roles at Wells Fargo, CVS Health, and Aetna, including serving as Acting CISO and Head of Cyber Defense at Wells Fargo. His experience spans cyber defense, security operations, incident response, threat intelligence, identity and access management, fraud prevention, cloud and software security, cyber resiliency, and regulatory risk management.

Brian serves as Board Director and Risk Committee Chairperson for Financial Services Information Sharing & Analysis Center (FS-ISAC).

Brian holds a B.S. in Computer Information Systems, Bentley College, Waltham, Massachusetts. His certifications include Certified Information Systems Security Professional (CISSP), Certified Software Security Lifecycle Professional (CSSLP), Certified Third Party Risk Professional (CTPRP), and GIAC Certified Incident Handler (GCIH).

Board of Directors

Comprised of top security and resilience executives in the financial sector.