Information Security Analyst Resume Profile
5.00/5 (Submit Your Rating)
Cleveland, OhiO
Qualifications Skills Profile
- Create, analyze and remediate information security policies and procedures.
- Wireshark, Nessus, NetworkMiner, Nmap, WinDump, Metasploit
- Analyze and remediate Active Directory Human IDs, Non-Human IDs and user groups to meet security guidelines, RBAC and user provisioning.
- Network vulnerability identification, research, analysis, remediation, and monitoring and root cause analysis of repeating vulnerabilities.
- Outline, create and monitor security baselines in accordance with government and internal guidelines.
- Performing security assessments in a diverse environment and documenting discrepancies.
- Comprehensive knowledge of Compliance Regulations, financial privacy regulations, banking conduct, and ethics.
- Strong Risk Management and Compliance experience, including internal control testing for financial, operational and compliance process.
- Identity and Access Management
- IT Risk and Controls
- Creation and enforcement of security policies and procedures.
- Some experience with Linux.
- Some experience with PowerShell scripting.
- Strong in strategic design and implementation.
Professional Experience
Confidential
Information Security Analyst
- Implement Data gathering and Remediation steps to identify developer access levels. Partner with the Lines of Business to remediate the users with inappropriate access and align them with corporate, SOX, OCC and GLBA guidelines.
Confidential
- Routine access control and security baseline testing of the following Platforms: Windows, SAN, Unix, Sybase, Oracle, Tivoli Access Manager, Software Configuration Load Management, Webmethods, Websphere, DB2 Z/OS, Active Directory.
- Daily monitoring, analyzing and remediation of network vulnerabilities. Such as Missing security patches, network security baseline configurations.
- Evaluate access control design effectiveness, operating effectiveness to identify gaps and weaknesses.
- Participate in annual business compliance and operational assessments to ensure appropriate and consistent testing needs exist for each line of business, platform and database. Consult with business units regarding compliance risks, internal controls, and issues.
- Identify and monitor compliance violations, internal control weaknesses on the platforms, databases, Active Directory and LDAP, providing sufficient and timely reporting to management.
- Work with the network support teams to ensure their Authentication/Authorization processes met guidelines and there was separation of duty in granting the access.
- Partner with the business unit to establish and set priorities, and develop solutions to resolve control gaps and weaknesses identified as issues during internal and external, audit reviews.
- Recommend efficient and effective processes for managing risk. Formulate appropriate testing procedures to evaluate those controls, along with their testing requirements and frequency.
- Identify vulnerabilities in the network in regards to the server and applications on the servers. Determine best approach to resolve vulnerability with patching, code changes or access changes.
- Lead various sub-tasks and/or projects to drive progress. Such projects include: Developer Access, Server patching, Active Directory Management of Windows groups with Escalated Privileges.
- Liaison to the business unit when introducing new applications to the environment. Partner with the business unit to formulate proper controls to setup, monitor and maintain proper access to their application.
Confidential
Field Engineer
- Provide Windows and MAC desktop hardware and software support to the internal users within the Key Bank Corporation.
- Partner with the Windows server team to resolve and repair Windows Server hardware issues.
- Mobile device support
Confidential
Field Engineer
- Provide desktop hardware and software support to the internal users within the Key Bank Corporation.
- Partner with the Windows server team to resolve and repair Windows Server issues
Confidential
Field Engineer
- Provide desktop hardware and software support to clients of many industries around Ohio
- Provide Server hardware and software support to clients of many industries around Ohio
Computer Skills
Microsoft Office Suite: Excel, Word, PowerPoint, Access, Outlook Extensive research skills, AD Toolkit, Exporter Pro, Active Directory, Group Policy Manager
