Executive Cybersecurity And Risk Strategist Resume
5.00/5 (Submit Your Rating)
SUMMARY:
- Optimize company potential with visionary technology leadership through relentless innovation and teambuilding to transform organizations.
- Global security, infrastructure, and financial application development thought leader catapulting teams, and exceeding expectations in complex environment.
- Propel MM revenue savings, utilizing predictive analysis, reducing redundancy in code base and implementing best practices in the international market. Identify business needs, organizing cross - functional teams, delivering time saving solutions during critical incident outages.
- Develop methodologies, supporting migration and transformation of applications.
- Drive high sustainable growth through innovation, assuming additional responsibility without growing team size.
- Mitigate IT risk and compliance, working across organization, identifying cyber risk threats, and formulating viable solutions.
- Continuous improvement advocate, defining methodologies, migrating, and transforming legacy applications to cloud solution.
AREAS OF EXPERTISE:
- Strategic Planning and Execution
- IT Risk Mitigation / Complexity reduction
- Data Analytics
- Vendor management
- CISSP Candidate
- Data Center Transformation
- Program Management
- Large budget acumen
- Technical capabilities
- Cultivating Relationships and Business Development
TECHNICAL SKILLS:
- Qualys, Endpoint, Kerberos, CyberArk, Darktrace, Shodan, RSA SecurID, Symantec BlueCoat, BIT9, SolarWinds, RedHat Enterprise, FireEye Enterprise, F-Secure, Firewall Checkpoint, F5, Phishing Box, RSA Archer, Fortify, VeraCode EMC VMAX, VCS, Fiber and iSCSI SAN - Hitachi USP-v, EMC VNX, HP P4500, 3Parv800, AS400, Windows (2016, 2013, 2010, …2003) Linux (Ubuntu, Debian, Mageia, Fedora, OpenSUSE, PC Linux OS, Manjaro, ARCH), Webservers (IIS), FTP, Microsoft SQL, PowerShell, MS Hyper-V, VMWare, MS ForeFront, MS InTune, MS Lync, Active Directory and Group policy, DNS, Firewall, Load balancing, WideIP, Wireless, VMware ESX 2.01,2.5,3.0 & 3.5, ESXi4.0/4.1/5.0, Visio, Citrix MetaframeXP/3.0/4.0/4.5 Citrix Xenapp 4.5/5.0/6.0/6.5 , Citrix Edgesight 5.2/5.3/5.4, Citrix Netscaler, Citrix Access Gateway, XenDesktop5.6 sp2, XenServer5.6 sp2, XenCenter 5.6 sp2, Provisioning Server 5.6 sp2
- Mongo DB, SQL 2016, DB2, Oracle, SYBASE, Access
- BlackRock, Electronfie, YieldBook, Murex, Calypso, Splunk, Numerix, Charles River, Tableau, UML/Rational Rose, OOD, Tableau, VBA/Excel, VBA/Access, C#, VB, RUP, J2EE, Java, JavaScript, JSP, XML, JSON, DOM, C, C++, HTML, Visual Basic, Microsoft Visual Studio .Net Enterprise Architect, Clarity
PROFESSIONAL EXPERIENCE:
Executive Cybersecurity and Risk Strategist
Confidential
Responsibilities:
- Assist with direction and execution of a cyber security roadmap that establishes requirements including, but not limited to, security for hybrid cloud deployment, B2B web services, mobile computing, fine grained access control, policy driven security, Identity Governance, Access Management, and Privileged access management, user provisioning/de-provisioning, and federation focusing on multiple protocols, such as Java and BeanShell coding.
- Oversee the design and development of security solutions that adhere to applicable policies and comply with information security requirements.
- Provide oversight for building, configuring, and architecture of Identity platforms.
- Identify emerging threat tactics, techniques and procedures used by cyber fraud actors and identify those actors for investigation referral.
- Develop and use predictive analytics to counter threats by tracking attack campaigns and pursuing strategic and tactical efforts to mitigate threats.
- Deliver expert cyber intelligence services and material to fraud, information technology and business leaders. Prepare appropriate threat intelligence content for customer and executive presentations.
- Identify and evaluate tools and processes to ensure the cyber fraud technical intelligence team can perform analytic tasks.
Global IT Risk and Security Director
Confidential
Responsibilities:
- Established security best practices for application development design reducing high-level risk findings in Archer by 10%.
- Led investments IT organization through regulatory audits including FINRA, SEC, SOX, SSAE16, SRO (NYSE and PHLX), CCAR, cyber security and external audits resulting in no high-level risk findings for the organization.
- Designed, executed and managed Agreed Upon Procedures (AUP) for software development lifecycle.
- Recovered hundreds of thousands of dollars for organization, resolving vendor SLA breaches.
- Managed inbound audits from corporate compliance for the investments IT organization, ensuring all audit work performed in accordance with regulatory, department and professional standards.
- Assisted in development of investments disaster recovery, vendor management, regulatory compliance, audit procedures, improving and reducing timeline.
- Used Splunk to analyze logs for potential security risks.
- Partnered with corporate legal to performed vendor assessments for onboarding our data center provider and all strategic partners.
Global IT Infrastructure Director
Confidential
Responsibilities:
- Conducted security reviews to minimize cyber threats.
- Designed investments innovation initiative strategy, working with enterprise strategic initiatives and continuously improving organization, defining IT policies, standards and procedures, and providing advice and best practices.
- Used Splunk and other security tools listed below to analyze logs for potential security risks.
- Performed vendor assessments using AUP processes.
- Negotiated with vendors, improving efficiency, and reducing cost 20%.
Global Change and Environments Director
Confidential
Responsibilities:
- Established change management process, complimenting software development cycle, and adhering to ITIL release and change methodology.
- Partnered with operations, ensuring infrastructure decision consistency between locations, aligning to enterprise architecture, and leveraging common approach opportunities.
- Assisted with migration of investments infrastructure from enterprise data center to independent data center reducing infrastructure changes 40%.
- Designed and wrote target operating model, establishing governance model for process management between Confidential organization and external data centers, adhering to regulatory requirements.
- Defined Key Performance and Operating Indicators (KPI / KOI), measuring vendor performance in comparison to SLA objectives.
- Oversaw that changes adhered to data privacy regulations and compliance.
Global Trading and Analytics IT Director
Confidential
Responsibilities:
- Led global trading and analytics support teams in 46 countries reducing IT trading errors.
- Conducted desktop simulated cyber-attacks and designed mitigation strategies.
- Conducted all regulatory reporting and compliance activities for trading.
- Worked closely with business and technology partners on investment trading platform features definition, roadmap, business case development and Trade floor support to deliver quality service.
- Assisted with migration from Charles River to BlackRock, dark side and pool trading.
- Assisted IT leadership in transformation of AIG applications into the Confidential environment which eliminated application redundancy.
- Led and designed predictive analytics, improving trading data availability in global regions.
- Provided operational expertise through 24 x 7 leadership, managing vendor feeds, and reducing number of incidents.
Senior Technical Program Manager
Confidential
Responsibilities:
- Maintained business continuity, providing “Project Management on Call Support” of batch process.
- Led team, increasing improvements and reducing complexity, removing redundant and / or obsolete code from business lifecycle via CRTS application.
- Worked with international CRTS, business and other IT teams resulted in batch cycle process improvement.
- Continually trained staff in “best practices” for project engagement, implementation, and post launch support which resulted in the team taking on more responsibility without increasing staff.
- Led technical calls with Cutter Associates “CutterCast” in Trading System project upgrades Best Practices resulted in client companies’ ability to upgrade in a reduced time frame.
Senior Program Manager
Confidential
Responsibilities:
- Deployed 2 trading systems as trading system deployment program manager, supporting Fixed Income and Equity / Derivatives trading.
- Designed and deployed real-time trade application that was coded in JAVA / J2EE (EJB and JSP pages) using BEA-Weblogic 8.1 as middleware and both Sybase and Oracle as back-end. This application took large block Institutional Equity trades and attempted to match purchases and sales internally before hitting open market.
- Led team of 10 and managed implementation of enterprise-reporting portal, integrating Crystal Enterprise with Plumtree and using Sybase / Oracle as backend data repository.
- Performed as project manager for full life cycle development of multiple trading systems and financial applications, development projects, and requirements gathering via object oriented design methodologies at various accounts, delivering budge applications on time, while producing error free expandable applications capable of integrating into legacy (COBOL2, DB2, CICS) and not yet built applications.
- Established firms overall project management “Best Practices” process methodologies per PMI-PMBOK and American Quality Assurance Society’s Six Sigma Black Belt processes. Planned, designed, and wrote project engagement and development methodology, conducting, ensuring methodologies properly implemented.
