Sr Business Analyst - Cyber Security/privacy &strategy Resume
Los Angeles, CaliforniA
SUMMARY:
- Over 15 years of experience managing ERP projects across a wide range of banking, mortgage and manufacturing clients.
- Proven record of managing complex projects and customer - relationships from identifying and pursuing leads, through managing project financials, and delivery of work products.
- Ability to effectively manage and motivate teams to deliver high-quality work products within expected timeframes and on budget.
- Proven record of identifying opportunities for companies to mitigate effectively risk and improve business performance, facilitate strategic decision making and enhance efficiency.
- Successfully led and coordinated a portfolio of projects resource planning and allocation of work packages
- Experience in implementing a risk management process for IT systems integrated into SDLC
- Expertise in management and escalation of risks and issues & interacting with Business users for requirement gathering.
- Proven record of managing complex projects and customer-relationships from identifying and pursuing leads, through managing project financials, and deliverables.
- Good Knowledge in providing end-user training, project delivery, and post-implementation review processes
- Proven record of identifying opportunities for companies to effectively mitigate risk and improve business performance, facilitate strategic decision making and enhance efficiency.
TECHNICAL SKILLS:
Software Process Improvement Models: CMMI-SW Level 4, PMI PMBOK, BABOK, Information Technology Infrastructure Library (ITIL v1)
Operating Systems: UNIX, Sun Solaris, HP-UX, Linux, Windows XP, Windows 9x/2000, Windows NT and DOS
IT Risk Assessments, IT Controls Testing/Auditing Areas: Process, Risk and Controls (PRC) Framework, Control Objectives for Information and related Technology (COBIT), Sarbanes Oxley (SOX), Gramm-Leach Bliley Act (GLBA), General Computer Controls
Other: Test Director, MS Office (Excel, Access, Word, Power Point, Project and Outlook), Lotus Office Suite3
Environment: Windows 2000/XP, UNIX, MS Office, MS Visio, MS Project, SQL, Oracle, Quick Test Pro
PROFESSIONAL EXPERIENCE:
Confidential - Los Angeles, California
Sr Business Analyst - Cyber Security/Privacy &Strategy
- Proactively managing the portfolio of clients, while reporting to Senior Managers and above
- Foreseeing Business development activities to help identify and research opportunities on new/existing clients
- Consult with end - users to analyze and understand user needs, objectives, desired features, and input/output requirements
- Contributing to the development of our own and team’s technical acumen
- Developing strategies to solve complex technical challenges
- Assisting the senior management and delivering of large projects
- Training, coaching, and supervising staff
- Keeping up to date with local and national business and economic issues
- Continuing to develop internal relationships and Confidential brand
Confidential, Livonia, MI
Project Manager
- Maintaining and executing the organization’s information security strategy and plan. Managing external relationships with vendors, contractors and other industry partners.
- Key member of the team responsible for choosing the systems integrator to implement the project. Responsibilities include RFP and integrator evaluation criteria.
- Coordinating and aligning roles and responsibilities with internal roles and external partners
- Developing and managing the consulting company resources and internal team members
- Supporting Organizational governance, risk management, audit processes to address and escalate cyber security risks.
- Responding to internal requests for information regarding organization’s information security program to facilitate external due diligence requests and compliance assessments.
- Developing and maintaining lines of communication to assure organizational understanding cyber security risk and organizational operations (including mission, functions, image, and reputation)
Confidential, Auburn Hills, MI
BA/Project Manager GRC
- Implemented an IT Governance framework with key objectives to mitigate risk through implementing proper controls and monitoring.
- Developing Current State assessment of our policies and procedures throughout the IS environment.
- Driving efforts to integrate procedure and process flow documentation into the Enterprise Project Management Office
- Future State, including first and second lines of defense roles and responsibilities.
- Identify Gaps in processes between Current and Future State.
- Work with Leadership, Information Technology and Business Units to document and implement IT Security & Risk Management frameworks, policies, standards and best practices.
- Coordinating and implementing plans to test business and functional processes and quality assurance testing.
- Leading UAT & functional acceptance testing of patches and upgrades.
- Provided periodic updates, education and presentations to staff and management on various aspects of IT Security Governance, Risk Management & Compliance.
- Provided support to other department initiatives and deliverables as needed.
- Training/Report Creation and distribution in ERP
Confidential, Cranston, RI
BA/PM, IT Risk Program Office
- Develop and implement an IT Process, Risk and Control framework across the bank, and use the framework as the basis of integration across multiple departments of the operating system with focus on continuous improvement across multiple IT processes.
- Responsible for reviewing project technical status and making decisions to achieve project.
- Writing business requirements that include creating use case analysis and developing screen mock ups, process mapping for different modules like Library/Inventory/RCSA.
- Provided Management Reporting and Dashboard views of business unit specific risk and compliance data.
- Executed and validate test cases.
- Actively participated in manual and automated testing system testing, integration testing and stress testing.
- Team up with RBSCFG Risk groups (i.e. Operational, Regulatory) to identify, address and remediate gaps.
- Developed and rolled out the Process, Risk and Control (PRC) Framework.
Confidential, Reston, Virginia
Operational Risk Analyst
- Maintained and executed the overall Operational Risk Project Plan, development of Operating Model, requirements, and preliminary design.
- Worked on functional enhancement and implementation of Business intelligence applications across all business units.
- Documented the Operational Model requirements and Process Flows, Gap Analysis; developed requirements and proof of concept for IT Risk and control framework for B-wise Pilot; defined process for risk assessment of ASP assets as a part of a third party risk review process.
- Consolidated data for metrics and trending. Performed analytical assessment of data to reach tactical and systemic conclusions to ensure end-to-end risk picture was captured. Presented risk metrics to stakeholders.
- Ensured efficiency and coherence of existing control organization through Risk and Control Self Assessment (RCSA). Produced management reports, including appropriate metrics, that clearly communicated issue status and information risk to senior management.
- Management Information Systems Reporting to better meet external and internal reporting and risk mapping requirements.
- Performed UAT and Regression testing for RCSA-T workbook, RATT System and BART tools.
- Created a Group Learning Process Training Strategy document and coached Risk Leads.
Confidential, Providence, RI
Sr. Business Analyst
Responsibilities
- Responsible for all project documentations such as SRS,FRD & BRD
- Identified, researched, investigated, analyzed, defined and documented business processes and Use Case Scenarios
- Designed and developed all Use Cases and UML models using RUP
- Performed Gap analysis by identifying existing technologies, documenting the enhancements to meet the end state requirements
- Developed timelines for project delivery, and managed projects and resources to successful completion
- Extensively worked on MS Office, SQL, MS Project, MS Visio, Rational Requisite ProTraining/Report Creation and distribution in ERP.
Confidential, New York, NY
Business Analyst
Responsibilities
- Gathered requirements and generated initial data to produce User Interface and Process Requirements and documented the same in Business Requirement Document (BRD)
- Assisted Project Teams in preparing Software Requirement Specifications (SRS), User Interface Design & application architecture
- Created requirements after analyzing user profiles. Authored the high level/ low level use case model, flow diagrams defining system inter-activity, functional and technical requirements & its related documentation
- Planned and defined the system requirements to Narrative Use Cases and Use Case Scenarios. Facilitated the JAD sessions.
- Conducted requirement Elicitation sessions, and training sessions with Business User Groups such as end-users/clients/ stake holders and the IT Group
- Actively Interfaced with customers to define and document all requirements relative to the specification, feature development, deployment and implementation of solution
- Conducted Performance and Capacity analysis to eliminate lack of attention to total system requirements and incomplete performance, capacity and external interface requirements
- Supported all aspects of compliance with Sarbanes-Oxley Act
- Assembled, analyzed and evaluated data in order to be able to make appropriate and well reasoned recommendations and decisions to support the Business Stakeholders and the project team.
- Facilitating, coordinating, monitoring, completion of SOX compliance activities
- Developed test plans, test scenarios, test cases, test data to be used in functional UAT based on business & technical requirements and/or product knowledge