We provide IT Staff Augmentation Services!

Sr. Security Consultant Resume

3.00/5 (Submit Your Rating)

Eden, PrairiE

SUMMARY:

  • Accomplished technology professional and entrepreneur with the proven ability to achieve goals by leveraging a rare combination of technical, communication, leadership, and business talents.
  • Experienced, highly technical information security analyst field - tested in both offensive security consulting as well as defensive protective roles. I am proficient in open source threat intelligence gathering, security research planning, execution, and maintenance.
  • Strong experience in the area of compliance, vulnerability testing, and Security Information and Event Management (SIEM) with the ability to transfer knowledge and skills across industry while maintaining excellent understanding of corporate security needs.
  • Strengths include solid communication and problem-solving skills and project management.

TECHNICAL SKILLS:

Compliance Standards: PCI 3.0, HIPPA, NIST-800, SOC Type II, OWASP Top 10,HITRUST CSF, SANS Top 20

Security Tools: Kali Linux, Nessus, NMAP, Metasploit, Mcafee ePO, Social Engineer ToolKit, BurpSuite

SIEM Solutions: Splunk, and LogRhythm

Productivity: Office 365, Service Now

Operating Systems: Apple OSX, Linux, Windows Server 2012, Windows 7, 10, Exchange 2010/2013 Firewall Juniper, Dell SonicWall, CheckPoint

Scripting: Powershell, and Python 2.71

PROFESSIONAL EXPERIENCE:

Confidential, Eden Prairie

Sr. Security Consultant

Responsibilities:

  • Conducted and managed 23 vendor risk assessments and due-diligence reviews using the NIST-800 framework and HITECH Standards
  • Worked in HIPAA environment performing Virtual Onsite Risk Assessments for UHG Eldercare vendors
  • Provision assessment reports and executive summaries with recommendations & direction regarding remediation efforts and disposition of the third party.
  • Advisor role includes not only the identification of risks but applying subject matter expertise to risk assessments and ownership of mitigation plans within the business
  • Utilized eGRC (also known as Archer) to manage assessment and remediation records
  • Engaged Vendor Relationship Office (VRO) IT, executives, and business teams regarding data privacy and data protection

Confidential, Philadelphia, PA

Information Security Analyst

Responsibilities:

  • Helped establishing a two dimensional Cyber Security framework (Capabilities Vs. Layers of IT stack) and implementing that process. Performed an exercise of identifying solution for each layer of IT stack (Application, Network and End Point) against the capability (Preventive, Detective and Retrospective)
  • Directed the adoption and implementation of policies and procedures based on NIST CyberSecurity Framework, HIPAA standards and SANS Top 20 technical controls across the enterprise that aligned with executive leadership goals and objectives
  • Worked with senior management to identify their perceived threats to the integrity, availability, and confidentiality of RHD information assets.
  • Delivered hands-on training workshops for 5300 employees and partnered with business leaders to improve training plan for enterprise policies in order to achieve HIPAA compliance.
  • Deployed simulated phishing campaigns to over 2500 users. Designed custom education material, summarize metrics and conduct follow-up activities.
  • Observed and analyzed traffic using NetFlow in order to learn valuable lessons from known malicious actors and employee suspicious traffic to countries we don’t do business with and to determine countermeasures against such threats
  • Submitted weekly reports to our HIPAA Security Officer on the latest global cyber threats, system vulnerabilities and remediation efforts
  • Performed risk analysis and risk assessments improving HIPAA compliance by 43%
  • Utilized Nexpose and Retina vulnerability scanning software weekly to ensure HIPAA compliance objectives were being met, while providing mitigation strategies and guidance for discovered vulnerabilities.
  • Analyzed and handled LogRhythm SIEM Logs/Events/Flows, Test Rules and Offenses, and responses in critical environments for 2500 nodes for 160 branch offices.
  • Managed and Monitored the Office365 DLP Agent to ensure endpoint notifications for PII/PHI data moving through the network is not being leaked though email or saved to 3 rd party cloud drives
  • Strong understanding on DNS hijacking, DNS spoofing, content spoofing and wireless security with hands-on experience using Kismet.

Confidential, New York City

Senior Information Security Consultant

Responsibilities:

  • Part of a team that was hired by to perform black box penetration test of Windows 2008 and 2012 Servers, wireless networks, and social engineer employees. An assessment of overall website security and recommendations for implementing a defense mechanism for identified vulnerabilities were made based off NIST 800-53
  • Responsible for the creation and implementation of information security policies based on Payment Card Industry (PCI) and ISO 27001/27002 standards.
  • Conducted interviews and performed research on information system technologies and applications to gain an understanding of the areas being audited.
  • Consulted with a casino Security Officer with requirements for research and implement security tools and solutions such as; a secure file transfer solutions, Intrusion Detection Systems/Intrusion Prevention Systems, enterprise email encryption and content filtering.
  • Coordinated the development of new signatures and enhancements to existing rules and alerts structure of Splunk ES with 50GB of security log data generated daily to better respond to security incidents.
  • Initiated and coordinated a patch management group, comprised of Systems Administrators from all IT departments that evaluated, tested, and deployed Microsoft patches in a 200+ sever environment. Created metrics and implemented tools to measure the effectiveness of the patching process
  • Threat and Vulnerability Management using Qualys scanner. Used Policies and workflows to identify and rank vulnerabilities in order to evaluate risk. Reported findings to asset owners and management in order to remediate vulnerabilities and remove risk or to acquire formal risk acceptance
  • Used Burp Suite to customized attacks against web server for parameter tampering, cookie poisoning, session hijacking, cross-site scripting and privilege escalation.
  • Examined Disaster Recovery and Business Continuity plans and led a successful BCP tests including one full 'site down' scenario executing critical workspace, staffing and support plans
  • Recommended a new IPS approach which saved a company over $300,000 in yearly cost.
  • Researched latest threats using open source intelligence sources (Mandiant,Sophos,/r/netsec and OpenBl.com

We'd love your feedback!