Security Analyst Resume Profile
3.00/5 (Submit Your Rating)
Experience
Confidential Office of Technical Assistance OTA
- CIO - HAITI UCREF Anti Money Laundering AML Technical Advisor with AML.ms and Intrudetect Information Security
- Supervising AML.ms apps Financial Action Task Force FATF , Egmont Group and Moneyval AML/CFT reporting compliance reviews
- Designing the UNODC goAML compatible XML Schema Improving compliance methodologies with U.S and international standards such as Bank Secrecy Act BSA , Office of Foreign Assets Control OFAC sanctions, US Patriot Act, Know Your Customer KYC , Suspicious Activity Reports SARs , politically exposed people PEPs , the FATF, etc Developing Information Security Governance Policies Procedures
- Advising FIU for workflow processes, investigations, analysis of financial information CTR/STR pattern recognition and reporting AML/CFT
- Improving business processes for FIU investigations Assisting Financial audits Conducting FIU and Reporting Entity training and certs
- Maintaining AML.ms application for UCREF, Investigation/Case Management Implementation Continuous monitoring operations
- Managing Amazon AWS, EC2, Route 53 DNS, SSL, Cisco security infrastructure Firewalls, IDS/IPS, Web Reputations, Content Filtering, AV
- Confidential Office of Financial Research OFR ,
- Information Systems Security Manager ISSM with Intrudetect Information Security
- Served as the principal information security advisor to the CTO, AO, SO, CISO establishing Change Record Management CRM
- Developed Information Security Governance and Policies, C A, SSP, Access Control, Security Architecture and Design, CCB
- Ensured compliance reporting on OMB, FISMA, NIST, C A, FIPS Inventory, BDNA Audit and IR reporting to DO CSIRC
- Improved the Disaster Recovery DR , Annual Training, Risk Management, Continuous Monitoring, Contingency Plan, ST E
Confidential
Departmental OCIO
- Information Security Manager with Intrudetect Information Security, Systems Plus, Sr. Information Security Analyst with SAIC
- Pioneered Gov. Cloud with Google Apps for Government, Amazon AWS EC2 Facebook, Twitter, DNSSEC, CyberScope, OMB
- Implementation of M-06-16, M-07-11, M-08-23 DNSSEC NIST's 800-53, 800-37, 800-30, 800-18, OMB A-130, PII, BDNA, FISMA
- Security Configuration Management FDCC and SCAP support with Threatguard, SecureElements C5, SecureFusion, Tenable, McAfee
- Emerging technologies, implementation of HSPD12 SIM w/ArcSight, NetForensics, ISS, Cisco MARS DR/IR, POA M and C A
- Confidential International Trade Administration ITA ,
- Information Security Manager with Intrudetect Information Security, Sr. Information Security Analyst with Fujitsu
- Designed and implemented security architecture with ISS SiteProtector and Fusion, SonicWALLs, Cisco PIX, Websense and Foundstone
- Managed incident response policies developed security processes and procedures RealSecure, Cisco IDS, Snort, Dragon, Symantec IDS
- Developed and implemented incident response processes, secure configuration guides, ST E, C A, NIST and FISMA reporting
Confidential
Information Security
- Developed information security procedures, redesigned a incident response process, established and managed 24/7 CSIRT
- Improved C A packages, implemented NIST, FISMA and OMB controls, performing technical vulnerability assessments
- Developed, managed and tested the disaster recovery plan implemented security awareness programs and alert reporting process
- Managed security application infrastructure including ISS Site Protector, Checkpoint, Arcsight, provided computer forensics with Encase
Confidential
Sr. Security Analyst
- Developed and implemented information security policies and procedures provided patch and exploit dissemination
- Established CIRT processes and procedures, evaluated, tested, and configured various security products, reviewed patch management
- Designing centralized security monitoring, incident logging, alert correlation infrastructure to expedite forensic intrusion analysis
- Implemented perimeter security network security solutions with Crossbeam, Checkpoint, ISS and BlueCoat and NetForensics
- Automated vulnerability assessments and security audits using ISS Internet Scanner, Nmap, Snort, Nessus, Retrina, Sniffer Pro, etc.
Confidential
Sr. Security Sales Engineer
- Developed and managed security sales strategy for new and existing clients, utilized strategic selling skills to maximize revenue
- Designed security policies, performed vulnerability assessments, security audits, provided enterprise security architecture consultations
- Integrated and implemented security solutions such as ISS RealSecure, Entrust PKI, StoneBeat, NOKIA Checkpoint and Cisco PIX
- Designed and configured high availability and load balancing solution with Alteon and Cisco switches and routers