Information Security Program Governance And Delivery Manager Resume
3.00/5 (Submit Your Rating)
Dallas, TX
SUMMARY:
- Senior IT manager with 15 years of experience in wide range of Techno - Management positions.
- Held several mid-level management positions in the areas of Information Security, IT Operations, Release / Deployment, Infrastructure and PMO.
- Successfully managed multimillion dollar Information Security programs for a North America’s only Post-trade financial services company, DTCC (one of the eight SIFMUs declared by Financial Stability Oversight Council, a federal government organization)
- Managed Deployment and Transition of massive releases of 120,000+ development hours at largest Pharmacy retail chain in US
- Successfully managed several mission critical applications deployed on multilayered, enterprise infrastructure serving 300+ clients of a largest Benefits HRO organization in North America with 99.99% uptime under 5 sec SLA
PROFESSIONAL EXPERIENCE:
Confidential,Dallas, TX
Information Security Program Governance and Delivery Manager
Responsibilities:- Responsible for delivery and governance of critical programs with annual budget of up to 8 million dollar in Information Security area.
- Worked closely with Business Units, Legal, Vendor Management, Internal Audit and IT leadership to define, manage and implement critical information security priorities.
- Work with IT Operations, Development and Infrastructure to ensure all architecture decisions were executed with a high consideration for security as part of the design and deployment activities
- Handled projects like Phishing Alert Button Implementation, IBM Guardium Vulnerability Assessment Module Implementation, FireEye HX Implementation and Resilient IRP Implementation to name few.
- Handled programs in the area of Application Security, Security and Risk Management, Security Engineering and Security Operations.
- Conducted Portfolio Working Group meeting, Review meeting and presented at various Steering committees about program and project status/challenges/deep dives.
- Provides effective communication regarding issues, objectives, initiatives and serve as a liaison between the security team and the stakeholders to understand and formulate Governance, Risk and Compliance(GRC) requirements and solutions
- Handled Financial Controller responsibilities: Track and manage portfolio budget; Report senior management on financial status of portfolio; Work with Corporate Financial Controller to reconcile with departmental financials.
- Help provide centralized oversight of all Security initiatives for transparent and structured reporting up to Senior Management
- Work with functional heads for planning programs and ensuring smooth launch/closure during year beginning and ending.
- Help transforming traditional security programs into NIST Cybersecurity Framework.
Confidential
Infrastructure and Information Security Program Manager
Responsibilities:- Worked with Confidential to uplift Security posture of the organization and to implement strategic initiatives in the Security and Infrastructure area.
- Helped conducting SOX, OCR, HIPPA, PCI and HITRUST audits and helped remediate several incidents found in these security audits.
- Managed multimillion dollar budget and cross-functional teams including IT and Business to improve security landscape.
- Helped establishing a two dimensional Cyber Security framework (Capabilities Vs. Layers of IT stack) and implementing it. Performed an exercise of identifying solution for each layer of IT stack (Application, Network and End Point) against the capability (Preventive, Detective and Retrospective)
- Enforced security compliance by deploying several cyber security tools like ForeScout CounterACT, SailPoint IdentityIQ, BeyondTrust Power Broker, Imperva Database Activity Monitoring, SourceFire and McAfee ePO.
- Lead all aspects of program including vendor selection, contracts and agreements, Cost-Benefit analysis, Budgeting and approvals, Professional Services, Organizational and Leadership Communications etc.
- Lead several Infrastructure initiatives that indirectly influence security posture like LANDesk Management Console upgrade, Active Directory restructure and clean up, Network switch upgrades and Network wiring.
Deployment and Service Transition Manager
Confidential
Responsibilities:- Worked as a counterpart for Release Management and Pharmacy Business Operations management to successfully deploy massive quarterly release to a chain of 8500 stores and central filling facilities.
- Work with development PMs to deliver about 25 development projects in a release under tight timeline. Release generally will have 80,000 to 120,000 development hours.
- Plan and coordinate deployment that spans around one and half month involving Infrastructure groups, Development division, other LOBs like retail, ecommerce, 3rd parties and vendors for deployment activities.
- Schedule and coordinate deployment activities for central legacy systems, 60+ pharmacy web applications, 3rd parties and internal systems
- Managed Service Transition Team of 15 associates comprising employees and contractors who walk through projects tied to release from post development to production planning, setup, implementation and transition solutions to Production Support team.
- Worked with PMO organization, Execution Board and IT Process Management to set up Service Transition process in compliance with ITIL to bridges the gap between development, production implantation, pilot and ongoing support.
- Prepare, Analyze and Monitor several KPIs of the Service Transition Team to keep resource and work balance.
- Provided consultation for setting up Capacity Management, High Availability, Performance Tuning and Monitoring processes.
Confidential
Unit Manager
Responsibilities:- Responsible for 24/7 availability and <5 Sec of response time for the suite of business applications serving 300+ clients of Benefits LOB.
- Managed a of a team of IT professionals providing Tier II, 24x7 production support for around 40 web applications hosted on distributed technologies (Unix/Linux, Windows, J2EE, WebSphere, Apache, UDB, CTG, MQ) on hardware with more than 550 CPUs
- Lead SWAT team of about 25 members comprising key members from cross functional teams.
- Responsible for APM (Application Performance Management) and Build & Configuration Management team of the Benefits LOB.
- Held On-Call Manager role that works as a counterpart for Major Incident Manager and Problem Manager.
- Drive application performance, capacity management, sizing, SLAs and OLAs.
- Represent ITS domain and help defining and negotiating SLAs and Support Policies in RFP, pre and post-sale stages.
- Drive automation effort for deployment, release and configuration change processes by introducing a home grown tool that processed 50k+ service requests in 2 with a success rate of 96%.
- Act as key contributor in designing systems and prioritizing IT projects based on ROI, Cost saving and Impact.
- Define process to move applications from its post development to production implementation.
- Tire II 24/7 application/environment support for around 40 applications.
- Worked as Stress Test Lead and be person point of contact for LOB for Stress Testing/Tuning activities.
- Supporting Build & Configuration Team in their day to day activities as and when needed.
- Worked on critical projects like WebSphere, MQ Series, DB2, and JDK upgrades, Solaris that require good amount of planning, coordination, communications and execution under pressure.
- Designed WebSphere application server runtime environment (cell, clusters, nodes and JVMs) on WebSphere 5x and 6x
