We provide IT Staff Augmentation Services!

Senior Information Security Analyst Resume Profile

4.00/5 (Submit Your Rating)

GA

Key Strengths Information security professional skilled at managing global information security operations. My key strengths include familiarity with a wide variety of security products, tools and industry contacts. I maintain a firm technical understanding of threats and vulnerabilities. Proven change agent with proven ability to lead support teams and deliver next-generation technical solutions. In depth understanding of information technology security. Skilled in gathering, analyzing and defining business and functional requirements creating metrics, trend charts and other decision-making tools bringing concise views and results to 'C' level management..

Career Highlights: Confidential Senior information Security Analyst Program management, development and execution of a vulnerability lifecycle management program in compliance with PCI standards. Perform penetration tests and verification and exploitation of vulnerabilities. Responsible for implementing, upgrading, or monitoring security measures for the protection of computer networks and information. Ensure appropriate security controls are in place that will safeguard digital files and vital electronic infrastructure in compliance with PCI standards. Implementation and monitoring of the protection goals, objectives and metrics consistent with corporate strategic plan. Work with the business partners to prioritize security initiatives and develop policies according to risk management. Provide first level incident response as well as the investigation of security breaches, and assist with documentation and evidence. Responsible for gathering information and documentation required for outside consultants as appropriate for independent security audits. Resonsible for gathering, data analysis and interpretation of information security metrics for executive level business review. Confidential Sr. Information Security Engineer Responsible for risk assessment of application and infrastructure systems / projects to ensure compliance with Company policies, standards and regulatory requirements. Audit and remediation of IT controls for GLBA, SOX, FFIEC, PCI, PII and other US and international banking regulations. Responsible for security assessment s and vulnerability analysis utilizing various tools e.g., Whitehat Security Sentinel Suite, Nessus, HP WebInspect and other industry recognized security tools. Manage / design security architecture of IT projects as needed. Managed Information Security Awareness Program including development of training plan, materials and compliance training for annual information security training, new hire training, Bring Your Own Device Mobile Device Management program. Resonsible for gathering, data analysis and interpretation of information security metrics for executive level business review, strategic planning and review by Synovus Operational Risk Committee and Board of Directors. Reporting of multiple information security programs i.e., A/V, external websites, DLP, DDOS protection, SIEM, IPS, and penetration testing. Carry out ad hoc projects and prepare period reports to management. Confidential Information Security Officer Managed information security systems including antivirus, IPS/IDS, firewall, network forensics and reporting systems Responsible for risk assessment, audit and remediation of IT controls for GLBA, SOX, NCUA, FFIEC, PCI, PII and other US Government banking regulations. Responsible for client security infrastructure and vulnerability / threat management and patch deployment. Management of data classification and authentication Manage / design security architecture of IT projects Ensure compliance with Company policies, standards and regulatory requirements. Developed and updated inventory of regulations, rules, practices and guidelines Held compliance training and responsible for updating employees and managers on compliance related matters. Information Security Awareness Represented the credit union in communication and interaction with PEFCU Board of Directors. Carry out ad hoc projects and prepared period reports to management. Confidential Global Client Security Leader / Information Security Architect Managed service delivery of client security services for 70k global users. Responsibilities included operations, financials and new technology introductions of antivirus, network access control and host intrusion detection / prevention systems. Responsible for IT controls for U.S. Export Control, NIST, SOX, NIST, FAA, DOD, DOE and British MOD compliance for client computing. Responsible for client security infrastructure and Vulnerability / Threat Management and patch deployment. Management of data classification and authentication utilizing SSO, token, smart card and certificate based solutions RSA, Oracle, Computer Associates and Entrust . Manage / design security architecture of IT projects for GE Energy, GE Nuclear, GE Aviation, GE Transportation and GE Oil Gas. Member of team responsible for developing ISO/IEC 27001 security architecture and framework for the safeguarding of company assets at the infrastructure host, application, and data layers utilizing Arcsight security and compliance solutions. Ensure compliance with Company policies, standards standards and regulatory requirements related to client computing. Identify client security compliance risks from every line of business and manage them by providing training, advice, penetration testing and monitoring. Carry out compliance planning for every business line. Developed and updated inventory of regulations, rules, practices and guidelines for manufacturing and engineering operations. Represented sites in communication and interaction with regulatory bodies. Held compliance training and responsible for updating employees and line managers on compliance related matters. Confidential IT Infrastructure Leader Responsible for management of service delivery for Windows NT / UNIX server, telecommunications and network infrastructure, client PC break/ fix repair services. Management of 60 technical staff members. Responsible for day-to-day work activities conducted by this team as well as senior technical adviser and personnel management duties. Responsibilities included IT operations, financials, systems architecture, data center management, demand planning and change management for multiple large scale multi-billion dollar manufacturing facilities in Greenville, SC, Duluth, GA and Pensacola, FL. Management of authentication to U.S. Export Control, U.S. DOD and DOE restricted data and applications, including management of foreign national access control. Management of SOX, U.S. Export Control, U.S. DOD and DOE compliance. Ensure compliance with compliance standards and regulatory requirements. Identify compliance risks from every business line and manage them by providing training, advice, testing and monitoring. Carry out compliance planning for every business line. Developed and updated inventory of regulations, rules, practices and guidelines for manufacturing and engineering operations. Represented sites in communication and interaction with regulatory bodies. Held compliance training and responsible for updating employees and line managers on compliance related matters. Confidential Global Executive Support Leader Managed startup team of highly motivated technical resources focused on providing elevated support to over one thousand GE Executives including C level personnel located in 18 countries. Management of 45 contract technical staff members. Responsible for service delivery of PC support and training. Responsibilities included operations, financials as well as personnel management duties. Held compliance training and responsible for updating GE Executives and C Level management on security compliance related matters. Confidential Lead Coreload Architect Lead Image Development Architect for GE Energy. Developed NIST 800: 30 compliant coreload image. Managed development and distribution OS coreload PC / Server images utilizing Six Sigma methodologies for multi-matrixed environment with over 25 domains and 27000 users. Responsibilities included operations, finance and software licensing. Managed global support team for all issues relating to coreload images and their compatibility with over 1200 business applications. Systems Engineer Contracted as Systems Engineer / IT Consultant located onsite at JP Morgan. Responsibilities included design, technical support and documentation of operating procedures and diagrams relating to the client/ server computing, local and wide area network environments. Technical support lead for perimeter security, intrusion detection, firewall deployment and administration. Configuration and administration of Symantec Antivirus servers. Responsible for business development intelligence gathering, generating leads for possible sales, follow-up sales activity. Responsible for Pre-Sales, formal proposal writing. Field Service Engineer Regional Lead Engineer for large contract customers Synovus Banks, Bank of America, Time Warner Motorola, Delta airlines . Analyzed and resolved complex hardware and software problems associated with client/ server computing, local and wide area network environments. Field Sales Executive Confidential Onsite Sales Executive for Bank of America Florida Region Barnett Banks Acquisition . Responsible for business development intelligence gathering, generating leads for possible sales, follow-up sales activity. Responsible for Pre-Sales, formal proposal writing. Responsible for outbound operations and fulfillment of hardware and services.

We'd love your feedback!