Security Audit & Compliance Analyst Resume
4.00/5 (Submit Your Rating)
Chicago, IL
SUMMARY:
- Expertise in documenting Business Requirements, and creating Functional/Non - Functional Requirements by organizing one-one discussions and by conducting requirement elicitation sessions.
- Created artifacts i.e. Scope document, Project Charter, and CRD/BRD as a Business BA, and created artifacts like FRD, Use Cases, Use case diagrams, etc. as an IT BA
- Supported QA teams in creating Test cases and provided support during Unit Testing, System Testing, Regression / End to End Testing, and as a point of contact for defects raised in HP Quality Center.
- Well versed with Waterfall, and some Agile methodologies. Facilitated and managed sessions with Project Sponsors, Business owners, Product Managers, SMEs and Analysts from various business areas.
- Responsible for high level implementation plans, data and process models, cost estimating, cost benefits analysis, and risk assessment on projects. Facilitated workshops such as JAD, RAD, and DRP sessions etc. and performed as a team leader when necessary.
- Hands-on experience with Project coordinating activities like: Working closely with Business team/Stakeholders for documenting RFPs, Project charter, etc.; Working with IT teams for gathering estimates and preparing RFEs, Leading project status meetings, Handling and communicating change control work, Conducting cost-benefit analysis, Resource management tasks, etc.
- Effective hands-on business professional with solid business understanding, technical skills, outstanding communication and interpersonal skills as well as effective organizational and team building qualities.
TECHNICAL SKILLS:
Project Methodologies: Waterfall, some Agile Framework (SCRUM)
Programming Environments: Java, .NET, Visual Basic, Mainframe.
Microsoft Office Tools: Excel, Word, Visio, MS Project, Outlook, PowerPoint, SharePoint.
Oracle's’ Identity Access Management Suite of Services: OAM; OIM; OES; OAG
Qualys Suite of Services: Vulnerability Management (VM) Web Application Scanning (WAS)
PROFESSIONAL EXPERIENCE:
Confidential, Chicago, IL
Security Audit & Compliance Analyst
- Created the initial implementation of a proactive Cyber Security vulnerability scanning program as part of USG’s Advanced Threat Detection initiative.
- Configured and used Qualys scanning tool to conduct discovery and vulnerability scans across various target subnets.
- Formatted scan output and coordinated follow-up analysis with device support teams.
- Provided management with metrics on hosts scanned, vulnerabilities found and remediation progress.
- Access Certification duties focused on distribution and follow-up of manual certification of user access by managers and data owners.
- Detailed documentation requirements included video recording of extractions, integrity testing of data, tracking of certification progress and research of changes requested.
Business Analyst/Project Manager
- Communicated business requirements to technical audiences in a clear, complete, and concise manner.
- Produced end-user manuals and documentation; assisted and conducted end-user training.
- Performed analysis and requirements gathering for new projects and legacy enhancements.
- Developed, maintained and served as the subject matter expert of the integration and implementation of IAM.
- Assisted in the consolidation and retirement of legacy applications.
- Interacted effectively with end users, business/IT partners and technical staff.
- Assisted Oracle Engineers in gathering requirements enabling IAM (Identity Access Management) OAM (SSO); OES (Oracle Enterprise Server - Fine grained Authorization); OIM (Oracle Identity Management) and OAG (Oracle Access Governance)
Business Systems Analyst
- Interacted with various Business Heads to finalize the Business Requirements for the application. Conducted joint requirements planning sessions as a facilitator to gather requirements. Documented and maintained Business Requirement Document (BRD) and Functional Requirement Document (FRD) defining new systems operations for the project.
- Followed a structured approach in organizing requirements into logical groupings of essential business processes, business rules, and information needs, while ensuring critical requirements were not missed.
- Identifying & Managing risks, Resource analysis, Cost analysis, Post project analysis & coordination among cross-functional teams & follow-up with clients for settlement of project based issues and integration with the Technology Team.
- Followed UML based methods to create: Use Cases, Activity Diagrams, Sequence Diagrams, Case Diagrams, etc.
- Reviewed test strategy and test plans to ensure, test cases reflected functional, user interface, performance, usability and security requirements
Technical Business Analyst
- Played an active role in gathering, analyzing and writing Business Requirements and translating them into Functional Requirements, and other supporting artifacts
- Performed analysis, directed and participated in the evaluation of existing application products or reporting methods, and recommends efficient, cost effective solutions which support client business processes and functional requirements
- Functioned as the primary liaison between the business client, operations, and technical areas throughout the project life cycle.
- Project Coordinating activities like: Scheduling meetings, communicating with project resources, Preparing and leading presentations, working closely with project stakeholders and IT project team, etc.
- Conducted JAD sessions with various teams (Business, dev. team, QA team, etc.) which aids in developing an architectural solution that the application meets, to resolve open issues, and accommodate change requests
- Good understanding of Software Infrastructure while working closely with Business and Architectural team in defining the business process flow to enhance the underwriting process which involves front-end, back-end systems and web-services for system integration.
- Involved with resolving open issues; addressing risks based on priority and as a point of contact for fixing defects by engaging appropriate teams
Business Analyst
- Conducted detailed analysis of business requirements and design of the high level modules including creating a design document containing interactive diagram, sequence diagrams, screenshots of GUI and database mapping.
- Held regular meetings with the business user groups, system architects, developers, database developers, quality testers, during the entire project to assure that the critical as well as the minute details of the project were discussed and issues were resolved beforehand and provided current project status updates.
- Proactively communicated and collaborated with external and internal customers to analyze information needs and functional requirements and delivered the following artifacts as needed: Functional and Business Requirements Document, Use Cases, GUI (Mock-up Screen and Interface designs/Prototypes)
Business Analyst/Project Coordinator
- Responsible for analyzing and documenting business requirements, business workflow, developing file mapping and technical specifications, and working with business partners/stakeholders to determine details and priority of requirements
- Worked extensively on MS Office tools like Excel, PowerPoint, Word, etc. for documentation and presentation purposes, used MS SharePoint for document storage/sharing, and used MS Outlook extensively for communication and meetings on the project.
- Analyzed, documented and maintained business requirements, functional requirements, technical specifications and conceptual diagrams requirements with project implemented in Waterfall methodology
- Assisted PM in Project Management Activities such as: Documenting Issue/Risk log and Meeting minutes, Planning and listing meeting Agendas, Conducting status meetings, etc.