Cyber Security Senior Consultant Resume
4.00/5 (Submit Your Rating)
Atlanta, GA
SUMMARY:
- Veteran with 20 years Information Technology/15 years IT Director/CIO experience and 20 years IT Security Threat/Vulnerability Management experience. Proven Senior Technology Director/Chief Information Officer (CIO)/Chief Technology Operations Officer (CTO).
- Solutions driven with emphasis on executive level customer service. Subject Matter Expert on Confidential (DoD) Enterprise Infrastructure/Architecture Framework, FISMA/NIST/ISO/C&A, War Fighter, and both private and aerospace industry best practices.
- Professionally skilled at salvaging troubled relationships and building strategic long - term alliances. Excellent oral/written communications skills.
- Strong analytical/problem solver. Client Facing/Cyber Security Strategy, Vision/Strategic Planning.
- Adept at exceeding client expectations on IT Program Delivery/Solutions Delivery/Disaster Recovery/Business Continuity/Vulnerability Management/Security Awareness/Defense in Depth.
PROFESSIONAL EXPERIENCE:
Confidential, Atlanta,GA
Cyber Security Senior Consultant
Responsibilities:- Spearheaded Strategic/Tactical planning efforts and implemented industry best practice efforts for the Veterans Administration. Strong prioritization/rationalization skills.
- Managed Security Mangers, Architects, Engineers and lead cross functional interdisciplinary teams (HR, Legal, IT, Privacy, Audit, Compliance) to achieve tactical and strategic Enterprise goals.
- Applies emerging security technology to solve business problems with Cyber-Security solutions, policy, and procedures.
- Identified and mitigated risks. Planned and executed vulnerability and mitigation strategies.
- Implemented IT Governance support for regulatory and contractual obligations, compliance support, consultative support to architecture and infrastructure, third party security assessments, security policy recommendations and standards. Vendor/contract negotiations/ business case scenario/ROI
- Planned for and identified new hardware/software technologies. Briefed C-level executives.
- Security rule set metrics and analytics/log aggregation and threat monitoring. Security Information Event Monitor (SIEM)/Splunk.
- Defined and projected annual IT Security budget. Defined weaknesses in documented formal processes.
- Took ownership of Stakeholder Management, Vendor Management, guidance and oversight.
- Facilitated compliance with FISMA, NIST 800-53 (4), ISO27001, HIPAA, PCI-DSS, Privacy, Sarbanes Oxley (SOX) 404/SAS70/SSAE16 auditing/GLBA/OMB A-130 Appendix III/Clinger-Cohen/FIPS-199, FIPS-200. Excellent C-Level Executive presentation skills.
- Directed Vulnerability Scanning and Monitoring, Audit and Compliance support, Security Information and Event Management, Threat Assessment, Network Visibility, Data Loss Prevention (DLP), Incident Management, Identity Access Management (IAM), IT Security Roadmap, DDOS, Advanced Persistent Threat.
- Provided technically complex enterprise security solutions, including promoting IT Governance Risk and Compliance and educated on the interdependencies of the IT Governance triangle.
- Conducted Threat Analysis, Vulnerability Assessments, Pen Testing. Implemented and educated clients on various.
- Experienced in multiple industries, diverse technologies, governance frameworks, business processes including Confidential, Private Industry Educational Institutions, Document/Print/Copy, and Financial Institutions. Excellent negotiator/innovator. Proactive/results oriented approach.
- Managed Disaster Recovery, Incident/CERT Response, Business Continuity.
- Built and managed Best in Class Security Teams, identified skill-sets, roles, responsibilities, and Key Performance Indicators (KPI's). Mentored junior consultants.
Confidential,Atlanta,GA
Executive Director
Responsibilities:- Directed and managed senior IT Security management staff (10) and improved the client facing experience and professional advice to business unit executives on the design and strategically significant security systems, architecture/infrastructure projects, and emerging technologies as they related to overall business strategy.
- Spearheaded both federal and industry best practices to integrate into the Confidential environment.
- Took ownership of the Certification and Accreditation (C&A) process and FISMA requirements for the Global Electronic Federal Tax Payer System (EFTPS) for the Confidential Fiscal Services (FS) client and Internal Revenue Service (IRS) for government services business and the nation’s critical infrastructure agency. Excellent presentation skills to executive/C-Level staff.
- Maximized efficiency in the Certification and Accreditation process, trained, mentored personnel.
- Provided IT Governance direction and support for regulatory and contractual obligations, compliance support, consultative support to architecture and infrastructure, third party security assessments, security policy recommendations and industry best practice/standards. Vulnerability Scanning and Monitoring, Audit and Compliance support, Security Information and Event Management/EnVision/Splunk, Threat Assessment, Network Visibility, Data Loss Prevention (DLP), Incident Management, Identity Access Management (IAM), IT Security Roadmap, DDOS, Advanced Persistent Threat/Cloud Migration/SaaS
- Provided technically complex enterprise security solutions, including promoting IT Governance Risk and Compliance and educated on the interdependencies of the IT Governance triangle.
- Conducted Threat Analysis, Vulnerability Assessments, Pen Testing. Implemented and educated clients on various Security Frameworks...i.e...ITILV3, NIST/ISO COBIT5, COSO, HITRUST, etc.
Executive Director/Enterprise Networks
Confidential, Pentagon,Wash, D.C.
Responsibilities:
- Contracted as a senior technology consultant to redesign customer/client support to the Secretary of the Air Force Information Technology IT Security Budget and the Office of Secretary of Defense (OSD) by re-architecting the Enterprise IT Security software application for multiple client facing business areas.
- Re-aligned the EITDR Portfolio Management/Cyber Operations program and innovated an integrated Chief Information Officer (CIO)/IT Governance/Certification and Accreditation (C&A) compliance solution.
- Streamlined correct IT Security Budget data reporting to the Office of the Secretary of Defense (OSD/NII) and the Office of Management Budget (OMB) for Federal Information Security Modernization Act (FISMA) compliance reporting to achieve congressional approval of the 110 th, 111 th, 112 th, 113th Congress of the United States of America.
- Managed Security Mangers, Architects, Engineers and lead cross functional interdisciplinary teams (HR, Legal, IT, Privacy, Audit, Compliance) to achieve tactical and strategic Enterprise goals.
- Applies emerging security technology to solve business problems with Cyber-Security solutions, policy, and procedures.
- Identified deficiencies and reduced overhead. Security Planning, Strategy, Architecture/Infrastructure and innovation.
- Provided IT Governance direction and support for regulatory and contractual obligations, compliance support, consultative support to architecture and infrastructure, third party security assessments, security policy recommendations and industry best practice/standards. Vulnerability Scanning and Monitoring, Audit and Compliance support, Security Information and Event Management, Threat Assessment, Network Visibility, Data Loss Prevention (DLP), Incident Management, Identity Access Management (IAM), IT Security Roadmap, DDOS, Advanced Persistent Threat. Vendor negotiations/business case scenario/ROI.
- Provided technically complex enterprise security solutions, including promoting IT Governance Risk and Compliance and educated on the interdependencies of the IT Governance triangle. Conducted Threat Analysis, Vulnerability Assessments, Pen Testing. Implemented and educated clients on various Security Frameworks...i.e...ITILV3, COBIT5, NIST/ISO, COSO, HITRUST, etc.
- Experienced in multiple industries, diverse technologies, governance frameworks, business processes including Confidential, Private Industry Educational Institutions, Document/Print/Copy, Financial Institutions. Excellent vendor negotiations/prioritization/rationalization skills.
- Built and managed Best in Class Security Teams, identified skill-sets, roles, responsibilities, and Key Performance Indicators (KPI's). Mentored junior consultants."
Confidential,Atlanta,GA
Executive Director
Responsibilities:- Managed Security Mangers, Architects, Engineers and lead cross functional interdisciplinary teams (HR, Legal, IT, Privacy, Audit, Compliance) to achieve tactical and strategic Enterprise goals.
- Applied emerging security technology to solve business problems with Cyber-Security solutions, policy, and procedures.
- Managed and transformed the Senior IT Security management staff (10) to provide more Strategic and Tactical Planning/ IT Security Management Consulting, Architecture/Infrastructure and client facing direction to Business Executives.
- Lead the Certification and Accreditation (C&A) compliance of strategically significant security systems, security projects, vulnerability management, and the Incident Response Plan.
- Supported technical sales teams with "Value Propositions", closing techniques, listening skills, and use of open/closed probes with new potential business clients.
- Certified in both Professional Selling Skills III and Professional Selling Skills IV.
- Professionally skilled at overcoming client objections, and "product positioning" against the competition maximizing client Return on Investment (ROI). Deep experience emphasizing best "bang for the buck" business case scenarios."
- Provided IT Governance direction and support for regulatory and contractual obligations, compliance support, consultative support to architecture and infrastructure, third party security assessments, security policy recommendations and industry best practice/standards. Vulnerability Scanning and Monitoring, Audit and Compliance support, Security Information and Event Management/EnVision/Threat Assessment, Network Visibility, Data Loss Prevention (DLP), Incident Management, Identity Access Management (IAM), IT Security Roadmap, DDOS, Advanced Persistent Threat.
- Provided technically complex enterprise security solutions, including promoting IT Governance Risk and Compliance and educated on the interdependencies of the IT Governance triangle. Conducted Threat Analysis, Vulnerability Assessments, Pen Testing. Implemented and educated clients on various Security Frameworks...i.e...ITILV3, Cobit5, COSO, HITRUST, etc.
Confidential,Atlanta,GA
Senior Information Technology Program Manager/(PMO)
Responsibilities:- Program Manager/contracted consultant for US Navy/Air Force/Army C-4 classified Military Command and Control projects for Technology Services/IT Delivery/Solutions Delivery.
- Facilitated meetings, interpreted IT Security guidance, coordinated IT Service Delivery.
- Designed technical solutions as a client facing/DoD customer role. Supervised and coached a staff of 10 systems engineers.