Security Supervisor Resume Profile
Summary
- Savvy Security Leader with a well-known reputation for delivering innovative security solutions across multiple public and private sectors with business strategies the focus of every solution.
- Broad experience building security solutions for organizations with no formal information security program where it was required to hire top-tier talent and create high performing groups for organizations with little to no information security experience.
- Strategic Security Planning and Execution
- Integration of Information Security operations
- Complex security business driven solutions
- Security expertise in compliance and regulatory requirements NIST, NERC, ISO, PCI, HIPPA
- Business Unit relationship management
- Risk Management and Performance metrics
- Cultural growth through security awareness
- Succeed in positions where vision and thought of technologies must align with the business goals.
- Many of my previous team members are now security managers, senior analysts or professional speakers in the information security arena.
PROFESSIONAL EXPERIENCE
Confidential
Financial leader estimating the brand to be worth US 14.97 billion and one of the top 20 Most Admired Companies in the World
Lead Information Security Architect
I am currently working with a team responsible for designing and developing the organization's overall security architecture to protect its information assets. I work with American Express internal businesses and external partners to develop secure target architectures and corresponding strategies to move from current state to the target architecture. Responsibilities also include consulting on security posture and risk management for various technology initiatives.
Confidential
Public utilities organization which provides electric, natural gas, water and wastewater services to the customers of Colorado Springs
Information Security Supervisor
- Responsible for the planning and development of an enterprise information security strategy in support of the overall business goals.
- Identifying enterprise systems, processes and information resources that require security protections the supervisor collaborates with key business and IT leaders to develop security and business continuance standards and action plans.
- Directed all security audits and tasks to ensure that the integrity, confidentiality and availability of information to end-users, is not compromised and is constantly improving security awareness.
- A corporate advocate for information security best practices while maintaining reliable, up-to-date, information from across the industry regarding identification of new threats and vulnerabilities.
Confidential
Executive Security Consultant
This is a consulting firm I began which focuses on network security consulting at an executive level. I perform many tasks including security awareness training, risk assessments, security architecture project management, and assisting in building security programs for organizations.
Confidential
Chief Information Security Officer
- Develop and implement an overall enterprise security strategy, program and architecture
- Responsible for managing, monitoring and maturing security processes while documenting and communicating enterprise security risk policies to executives, mission owners, peers and customers
- Collaborate with senior management in formulating and implementing security policies and projects
- Manage the multi mullion dollar budget for security initiatives based on appropriate risk management
- Act as the corporate advocate for information security best practices while maintaining reliable, up-to-date, information from the government and across the industry
Confidential
Director of Information Security
- Facilitated the addition of administrative controls to tier 1 applications by creating and implementing standardized policies and procedures, as well as, quarterly security audits for these applications
- Facilitated the addition of logical controls to applications by centralizing security administration
- Added system controls and annual reviews of tier one applications for disaster recovery initiative
- Implement and enforce corporate-wide standards, policies, and procedures.
- Corporate policies are based on: ISO 17799, GLB Act, HIPPA, and Sarbanes-Oxley.
