Jan Matto Partner
Personal quote / vision
Digitalization is everywhere and a vital part of our society and economy. For organizations, digitization is not just a tool, but is part of strategy, processes, products and services. It forms the connection with the market and other stakeholders and is partly determining the job satisfaction of employees. This makes IT audit and consulting multifaceted where multiple viewpoints and disciplines always play a role.
Specialist experience
- IT auditor (RE) and Registered Informatician (RI)
- Consulting on IT issues
- IT Governance and risk management
- Third Party Assurance reports including ISAE 3402, ISAE 3000, SOC 2, DigiD assessments and ENSIA audits
- Information security, cybersecurity assessments, penetration testing
Specific customer experience
- IT sector (Technology, Media, Telecom), including: cloud service providers, indentity and authentication services
- Financial sector: fintech companies, pension funds, payment providers, banks
- Diversity of enterprises including, port companies, (online) retail, transportation and logistics
- Government agencies and various not-for-profit organizations
- International experiences
Education and work experience
- 1990 - 1992 | Erasmus University Rotterdam | IT auditing
- 1993 - 2001 | Erasmus University Rotterdam | Lecturer
- 2021 - present I Free University I Lecturer Enterprise Security IT Architecture
- 1998 - 2024 | Mazars | Partner IT Audit & Advisory | Global Leader Cyber Security & Data Protection
- 2024 - present | Forvis Mazars | Partner IT Audit & Advisory | Global Leader Cyber Security & Data Protection
Additional positions
- NOREA Commission of admission and accreditation IT Audit courses Universities
- NOREA Committee on professional regulations
- Lecturer in IT auditing and computerization at VU University Amsterdam
- Sounding board group Online Trust Coalition, Ministry of Economic Affairs and Climate
Want to know more?
Pages associated to Jan Matto
Industries
Services
- Cybersecurity health check
- System Audit
- De NIS2-richtlijn: hoe bereidt u zich voor?
- Digital compliance
- Data Protection Impact Assessment
- Privacy Compliance
- Identifying and solving of digital issues
- Compliance based on digital laws and regulations
- Digital trust & digital assurance
- IT Audit & Assurance
- Forvis Mazars Certification Hub
- Cybersecurity services
Insights
- Future-proofing cyber security in an increasingly digital world
- The clock is ticking on DORA compliance
- How public sector organisations can protect their data
- Cyber security: Is your safety net strong enough?
- How insurance can mitigate risks of cyber attacks
- De bevestigde status van ESG en de opkomst van cybersecurity tijdens Due Diligence
- Navigating regulatory complexity
Who we are
- Terugkijken: webinar 'Digitale footprint'
- Debatteer mee en krijg inzicht in uw cyberrisico’s
- Terugkijken webinars 'Dreigingsbeeld digitale footprint'
- Terugkijken: webinar 'Dreigingsbeeld digitale footprint: een onderbelicht terrein'
- Terugkijken: webinar | Privacy voor onderwijsinstellingen
- Terugkijken: webinar ‘Bewust van uw privacyrisico’s’
- Voorlichtingsmiddag | Cybersecurity & data protection
- Voorlichtingssessie | Invoering Digital Operational Resilience Act (DORA)
- Rondetafel | Artificial Intelligence (AI)
- Voorlichtingsmiddag | Intern rapporteren over de beheersing van digitale risico’s
- Whitepaper: De AVG en de gevolgen voor organisaties
- De Nederlandse Cybersecuritystrategie 2022-2028
- GDPR is nabij - Is de ICT-dienstverlener klaar? Nee!
- Forvis Mazars University
- Kennissessie: Cybersecurity en compliancy
- Kennissessie Malware onder controle: preventie, detectie herstel en audit
- ESET en Mazars introduceren GDPR Compliance Checker
- ‘Onbekende digitale zichtbaarheid’ op het internet vaak beginpunt voor hackers
- Introduction of the Digital Operational Resilience Act (DORA)
- Is uw goededoelenorganisatie weerbaar genoeg?
- DNB Good Practice Information Security: in control in four steps
- Privacy benchmark for organizations: aware of the dangers and measures against privacy risks
- New mandatory model contract for transfer of personal data to countries outside the European Economic Area (EEA)
- Staying connected despite the corona crisis: IT is the vital link
- OSINT benchmark: be aware of your digital footprint
- The risks of data breaches at educational institutions: what measures should they take?
- Privacy benchmark for educational institutions: aware of your privacy risks
- European Commission adopts adequacy decisions for personal data transfers to the United Kingdom
- Chart your secure cyber path