It Security Analyst Resume Profile
PA
Summary of Qualifications
A trusted security professional recognized for performance and a track record of successful projects including: Cyber-Security, Security Audit, Risk Assessment, Business Continuity, Disaster Recovery and Managed Services. Focused on financial metrics for web applications, mobile devices, data center, public, private, and hybrid cloud security with extensive experience in: BIA, GLBA, SOX, HIPAA, NERC-CIP, PCI/DSS-EMV, SIEM, ISO27001, and ISO22301
Professional Experience
Confidential
IT Security Analyst
- RCSA Risk Control Self Assessment IT Security/Risk Management project for JPMorgan Chase, DE
- Risk Management sampling, testing, and validations on 30 risk control self assessments/substantiations covering Cloud and IT infrastructure for Credit Card, Merchant and Auto business applications needing to meet their 2014 audit compliance deadlines.
Confidential
Business Continuity Manager
- As a Certified Business Continuity Professional CBCP led contingency planning centered on security audit compliance for multiple business units including financial analysis of the organization's SunGard LDRPS software applications, Business Impact Analysis BIA improvement and Business Continuity Management BCM projects.
- Identified contingency gaps by BIA business impact analysis and risk assessments, base-lining current states of continuity for PECO business units: Office of CEO, COO, CFO, CIO, HR, Finance, Legal, Information Technology, Corporate Security, Safety, Emergency Management, Supply Chain, Real Estate Facilities, Governmental Regulatory, Marketing, DSO, TSO, Electrical Plant Operations, Gas Plant Operations, Customer Service, Field Services and Call Center Offices. Managed business continuity planning, maintenance, training, drills, exercises and emergency preparedness, delivering quarterly progress reports that included gaps with suggested remediation to executive management.
- Improved Business Continuity Disaster Recovery metrics for PECO, an Exelon Company, by delivering a 100 level of performance on 3 project measurements that were completed 60 days ahead of schedule.
- Reduced contingency plan complexity 250 by consolidating 175 location based plans to 66 business function based plans. The CEO for PECO pointed out this significant cost reduction in a company wide email, with accolades for adding a capability for speeding up PECO's critical emergency response.
Confidential
IT Security Consultant - Analyst
- Partnered with KPMG of Canada to complete security policy audit and data center/cloud architectures for a retail client regarding PCI-DSS/EMV compliance. Evaluated Supervisory Control Data Acquisition SCADA architectures for an Energy client utilizing advanced Cyber-Security best practices including Security Incident Event Management SIEM applications. Recommended real time Distributed Denial of Service DDoS remediation to financial clients to limit the negative affects of unexpected cyber attacks.
- Consulted on security policy, architecture, governance, compliance, risk assessments, business continuity, disaster recovery, BIA, and contingency planning. Advised on security audits regarding GLBA, SOX, HIPAA, OCC, PCI/DSS-EMV, NERC-CIP, ISO223001, and ISO 27001 to meet organization's GRC requirements.
Confidential
IT Security Consultant
- Stealth cryptography cloud security program for Federal clients under a Federal Secret Clearance.
- Confidential IT Security Product Manager Product managed, vetted and launched a cloud-based service: Verizon Notification Services VNS is a secure communication service that positioned Verizon to enter a new market, increased security portfolio revenue while introducing a new Business Continuity Solution to an existing Verizon customer base. This is Verizon's web site for Verizon Notification Services VNS : Verizon Notification Services Improved Verizon's internal Disaster Recovery communication by implementing Business Continuity notification services that automated calling trees, which greatly reduced the assembly time for executive participation from an hour or more to five minutes or less. Managed OCC/GLBA/SOX/BCDR compliance projects resulting a new professional services business for the financial account and engineering teams. Configured complex supply- chain security projects by collaborating with Verizon's top-ranked account sales managers, network security engineers which resulted in 10M in new revenue for the Verizon Business group from their Financial, Healthcare and Manufacturing clients. Created the first security group at Verizon to partner Verizon Business with Verizon Wireless, which allowed both groups to increase client visibility, account coverage, building new customer solutions and providing integration of managed security services.
Confidential
IT Security Consultant- Analyst
Advanced professional security services that resulted in 3M of additional recurring revenue. Delivered metrics based ROI security programs for CFO's executives in the financial market space. Organized CISSP, CISA, CISM and CBCP professional resources for managed security projects
