We provide IT Staff Augmentation Services!

Director, Infrastructure & Information Security Resume

3.00/5 (Submit Your Rating)

Incindianapolis, IN

CORE AREAS OF EXPERTISE:

  • Management of technical personnel
  • Staff Development/mentoring
  • Information Security architecture
  • Security incident response leadership
  • Security gap identification and remediation
  • Expert knowledge of FISMA, NIST, HIPAA security and privacy requirements
  • Threat and vulnerability detection, control/mitigation
  • Business Continuity/Disaster recovery
  • Risk analysis/remediation
  • Security assessment/compliance

PROFESSIONAL EXPERIENCE

Confidential, IncIndianapolis, In

Director, Infrastructure & Information Security

Responsibilities:

  • Lead 90 Network, Voice, Server, Data Center, Security and Disaster Recovery professionals
  • Lead all enterprise infrastructure and system security activities for all National Government Services (NGS) components
  • Led efforts to implement a secure virtual desktop environment for off premise workforce, vendors and subcontractors
  • Led effort to solidify and strengthen infrastructure stability through implementation of best practice approaches for monitoring and configuration management
  • Led effort to establish secure configuration baselines for all systems
  • Provide leadership for the Computer Security Incident Response Team (CSIRT) and Crisis Management Team (CMT) efforts at NGS
  • Responsible for establishing and maintaining key business relationships with the Centers for Medicare and Medicaid Services (CMS) and NGS management.
  • Lead the review, testing and procurement of security related software and hardware components
  • Lead the coordination and monitoring activities performed by system security consultants and vendors
  • Provide assurance that NGS is compliant with all CMS systems security requirements
  • Lead the disaster recovery and business continuity efforts at NGS.
  • NGS was awarded the “Best Security Team” by SC Magazine in 2009
  • Named as a finalist for Chief Information Security Officer of the year award by SC Magazine
  • Reduced audit findings from over 100 in 2007 to less than 5 in 2009
  • Achieved 100% of security award fee for our DME MAC contract due to no high risk audit findings in 2008 & 2009
  • Established and maintained a valuable relationship with key stakeholders at CMS
  • NGS was the only CMS Medicare contractor to receive no high risk findings on the FISMA 912 security audit in 2011
  • Created a vulnerability management program that includes combination of external vendor review (SecureWorks), external audit review (PwC), internal review of Security Information Management Tool (ArcSight) and at least quarterly internal penetration testing and vulnerability scanning
  • Implemented a solid CSIRT program that is proactive in identifying potential events, training personnel on how to handle events and communicating ongoing investigational activities to NGS associates.

Confidential, IncIndianapolis, In

Senior Compliance Analyst

Responsibilities:

  • Completed annual risk assessment
  • Performed audits of operational areas
  • Maintained communication with operational area management
  • Performed compliance related research and investigations

Confidential, IncIndianapolis, In

Internal Auditor

Responsibilities:

  • Performed operational, compliance, financial, and information system audits
  • Assessed risk and controls of units throughout the company
  • Reported findings and recommendations to senior executives

Confidential

Internal Auditor

Responsibilities:

  • Performed operational, compliance and financial audits
  • Assessed risk and controls of various bank departments
  • Reported findings and recommendations to senior management

We'd love your feedback!