Area of Focus
Risk consulting
Connect

Kerry Erickson

Director
Area of Focus
Risk consulting
Connect

About Kerry

RSM US LLP’s Kerry Erickson focuses on the assessment of security and risk aspects pertaining to the payment card industry.


Experience

Throughout his 25 years at RSM, Kerry has performed or participated in numerous network implementation, network security, cybersecurity, technology assessment, compliance, and strategic planning engagements. His engagements have supported clients in many industries, including finance, manufacturing, consumer products, government, education, service industries, and health care.  Kerry has been a PCI-qualified security assessor since 2014, and PCI secure software framework and secure SLC assessor since 2021

Kerry has performed numerous consultative and audit engagements for a broad range of industries with a variety of hardware, software, and operational environments. His consultative engagements have included all aspects of network security, network integrity, compliance, risk assessment, policy and procedure development, business process documentation, and business continuity planning. His auditing work has covered identifying and testing controls (e.g., access, operational, systems development, documentation, etc.), as well as reviewing segregation of duties, policies, physical security, and compliance testing. Kerry has information systems (IS) audit experience with mainframe computers, midrange systems, PCs, networks, telecommunications, routers, firewalls, and outsourced services (e.g., core processing, online banking, mobile banking, etc.). He is familiar with major application software, security software, and operating system software.

Prior to joining RSM in 1998, Kerry held the position of manager, hardware and software systems, for an insurance firm in Dubuque, Iowa. Kerry enjoyed many of the same responsibilities as that of the system administrator but on a corporate-wide scale.


Professional affiliations and credentials

  • Payment card industry professional (PCIP), PCI Security Standards Council LLC
  • Certified information systems auditor (CISA), Information Systems Audit and Control Association
  • Certified information security manager (CISM), Information Systems Audit and Control Association
  • Qualified security assessor (QSA), PCI Security Standards Council LLC
  • Secure software assessor (SSA), PCI Security Standards Council LLC
  • Secure SLC Assessor (SSLCA), PCI Security Standards Council LLC
  • PENTEST+, The Computing Technology Industry Association, Inc. (CompTIA)

Education

  • Bachelor of Science, computer science, mathematics and secondary education, University of Dubuque