Senior Security Lead Resume Profile
2.00/5 (Submit Your Rating)
PA
Summary
Business-focused information security leader, specializing in bridging enterprise security with organizational goals. Proven track record spanning global corporations, including Dow Jones, The Wall Street Journal, SunGard, CIGNA, and Reliant Energy.
Professional Experience
Confidential
Associate Director of Information Security
- Leading a team of specialists providing cyber security, risk mitigation, threat intelligence, and vulnerability incident management functions for the world's largest privately held software and IT services firm reporting to the Chief Information Security Officer CISO of SunGard.
- Responsibilities as business liaison focus on communication, distilling complex technical information and jargon into easy-to-understand, unambiguous, and actionable intelligence, while interpreting business strategy and developing appropriate thought leadership objectives.
- Responsible for cultivating a culture of individual responsibility and accountability, while promoting clear communications with a focus on cross-functional collaboration, transparency, and teambuilding.
- As leader of information security personnel with strong business acumen, responsibilities also include determining role objectives, coaching employees to achieve career aspirations, developing internal talent to acquire emerging security skills, and delegating projects based on growth opportunities.
- Charged with presenting meaningful security metrics and measureable trending analyses to business leadership. Regularly engaged in departmental financial forecasting and budgeting CapEx, OpEx .
- Trusted to oversee the following security engineering, architecture, and information assurance functions:
- Protecting the SunGard enterprise portfolio and corporate brand equity from information security threats, with responsibilities including investigating instances of intellectual property loss, proprietary data theft, and competitive intelligence disclosures.
- Analyzing instances of data breaches, security incidents, corporate privacy leaks, cyber extortion, denial-of-service DDoS ransom attacks, and advanced persistent threats APT .
- Securing a managed infrastructure for nearly 7,000 customers, over 30 SunGard data centers, multiple cloud service platforms, and maintaining a cyber attack mitigation service offering.
- Providing strategic and tactical security planning for SunGard's vulnerability assessment and penetration testing program, in addition to overseeing third-party service engagements.
- Participating in advisory groups to refine corporate information security policies and standards.
Confidential
Senior Security Lead
- Led critical security initiatives involving Reliant Energy and its considerable cyber assets being owned by NRG Energy, the largest independent power generation company in the United States , in turn helping to secure the national power grid infrastructure.
- Provided leadership for the governance and compliance of the national security policy, including overseeing standards and procedures to prevent the unauthorized use of data across multiple platforms and environments, including SCADA infrastructure, as well as assisting with NERC CIP compliance.
- As one of the primary architects of security guidelines, keyed the strategic planning and development of security services and solutions, then provided oversight for their implementation in an ever-changing cyber security landscape. This included tracking new developments and technologies in information security, and applying them to the corporate security program based on ITIL best practices.
- Acted as a key stakeholder and thought leader in the strategic planning, development and implementation of security services and solutions to protect from threats similar to Stuxnet.
- Set objectives, goals, and implementation plans for multiple teams while reviewing and approving overall security plans that served to address immediate external threats and partner security incidents.
- Was responsible for promoting and leveraging a matrix-based partnership with business units and the Project Management Office PMO to achieve the shared goal of mitigating business risk.
- Led ethical hacking engagements using Core Impact, AppScan, and Metasploit, with the goal of discovering subtle security risks which appear under unique circumstances and unexpected threat scenarios. Managed the HP ArcSight Security Information and Event Management SIEM initiative.
Confidential
Security Lead
- Was responsible for leading a focused team, charged with protecting the Dow Jones global portfolio The Wall Street Journal, Dow Jones Indexes, and News Corporation from a wide range of threats, including electronic espionage, targeted cyber attacks, data-stealing spyware, and botnets. Worked in conjunction with and reported directly to the global Chief Information Security Officer CISO .
- Was personally responsible for interfacing with federal and national law enforcement agencies e.g. the FBI and the Secret Service as well as private security intelligence agencies i.e. Pinkerton in an effort to trace cyber-borne threats as they related to the Dow Jones organization.
- Functioned as a security liaison for both intramural and extramural resources, working with numerous technical and business partners, and ensuring that all security policies and procedures were implemented and enforced through both manual and automated controls .
- As such, was responsible for providing guidance, identifying risk, and proposing secure solutions for a variety of security projects within Dow Jones, including attack and penetration simulation studies, vulnerability assessments, and wireless security audits in a multi-tier infrastructure.
- Was responsible for designing and leading a new 1 million program that strengthened Dow Jones defense capabilities against advanced persistent threats APTs and zero-day attack vectors.
- Led a five-hundred thousand dollar Data Loss Prevention effort utilizing Symantec Vontu DLP and IBM Q1 Radar, which involved analyzing data for sensitive material exfiltration and assisting with PCI compliance efforts.
- Oversaw behavioral analysis investigations into business logic abuse on the website of The Wall Street Journal in support of the security management activities of the Dow Jones Global Security Office.
- Led and oversaw technical data forensic investigations using FireEye, NetWitness, Varonis, Tripwire, EnCase, FTK, and open source Unix/Linux tools.
- Regularly performed security education training and presented on recent Computer Emergency Response Team CERT/CIRT security advisories for senior leadership.
| Confidential |
| IT Risk Vulnerability Assessment Specialist |
- Responsible for benchmarking and remediating vendor security procedures to ensure the protection of CIGNA's data and assets, and as a Fortune 150 insurance company, the detection of its considerable HIPAA security risks.
- Worked to identify protected health information PHI exposures and covert information leaks, while eradicating the causes of complex security violations.
- Performed network design reviews, and engineered ISO 17799, ISO 27001, and COBIT-compliant framework solutions to countermeasure security incidents by deterring cyber intrusions and preventing data exposure.
- Spearheaded company-wide efforts to identify and evaluate partner vendors in an effort to gauge security posture. Collaborated with internal auditors to conduct in-depth penetration testing for HIPAA compliance purposes and to locate infrastructure-level and application-level vulnerabilities. Applicable findings, metrics, and trending data were provided to management via custom reporting.
- Collaborated with internal and external business partners to analyze SAS 70 audit statements, as well as conceptualize capital expenditure plans and perform Cost Benefit Analysis for vulnerability mitigation. Extensively utilized the Archer Security Management tool for remediation analysis and tracking.
- Ensured external partner entities were assessed for the ability to comply with CIGNA policies and standards along with HIPAA regulatory requirements by evaluating and mitigating assailable positions.
- Served as a primary specialist conducting off-site risk-based assessments to ensure security controls were appropriate based on data types, while providing services to multiple lines of business, and interacting with management at a variety of levels within the organization. Also worked with Symantec to facilitate a security staff augmentation engagement with CIGNA.
- Performed forensic investigations to determine the root cause of system compromises, including identification of suspicious processes, event logs, and live forensic data. Analysis work was performed in a sandbox environment utilizing EnCase, a digital investigation toolkit.
| Confidential |
| Information Security Consultant |
- Architected and implemented a secure computing platform for a complex Application Service Provider.
- Implemented a robust, company-wide security framework, including an intrusion detection system to monitor for abnormal traffic patterns originating from the DMZ environment, heading inbound to the network. Conducted regular penetration testing in order to evaluate effectiveness of security controls.
- Performed initial setup and subsequent support of the Cisco PIX and ASA security appliances, including firewall configuration, ACL and MAC address filtering, DNS monitoring, designed firewall rules and 802.1x port access control in support of the company security policy.
- Accomplished initial setup and performed subsequent updates of the Active Directory infrastructure running Microsoft Windows Server 2000 as a Domain Controller, IIS 5.0, and SQL Server as the DBMS.
- Stayed abreast of security advisories and anomalous traffic patterns, and maintained proper logging standards. Assisted with SAS 70 reviews of outsourced technology-related vendors.
- Refined auditing of internal IT governance policy to maintain adherence to strict data security management methodology in relation to customer data integrity per Pennsylvania Department of Banking regulations. Auditing project was carried out according to PMBOK project management guidelines.
- Created business continuity BCP and disaster recovery DRP plans, along with policies and procedures for governing email messaging, access control, and incident response. Additionally performed Business Impact Analysis BIA , as requested by internal business partners.
