Undisclosed - Multiple client facing engagemntsInformation Security - Data Privacy - Governance, Risk, & Compliance
Jan. 2012St Petersburg, Florida, United StatesServe as Lead for GRC (Governance, Risk, and Compliance) platform tool used to assess client readiness for compliance with multiple regulatory frameworks to include: PCI, SOX, ISO 27001, GDPR, and HITRUST. Provide subject matter expert support for Internal Control over Financial Reporting (ICOFR) audit program for IT General Controls, evaluate current security controls, collect controls evidence, and support existing IT Security staff with ongoing controls development and remediation planning. Submit evidence packets to Internal Audit, perform mock audit exercises to prepare for external SOX audit. Lead auditor for HIPAA and SOX audit for 2015 and 2016. Creating ITGC Narratives for SOX Program in 2017. Provide subject matter expertise on Dell Secureworks Managed Security Services to include: Managed Firewall services, Intrusion Detection Systems, Intrusion Protection Systems, Vulnerability Management, and Log Retention. Gather intelligence from global threat visibility and Counter Threat Unit (CTU) research to apply security device signatures and policies, attacker black lists, event correlation, threat analysis and response procedures. Program Manager – Managed Security focused software delivery projects for a Major Telecommunications Conglomerate with specific focus on protecting Sensitive Personal Information (SPI) through the deployment of encryption technologies such as Voltage, TDE Encryption, and data masking solutions. Ensured delivery was on time and on budget. Managed client meetings, project budgets, IT resources, developers, testers, as well as Delivery and Project specific milestones, served as Team Lead for several Project Managers. Lead Release Manager for multiple application deployments. Compliance activities include User Access Management Assessment and SOX Audit response. Data Loss Prevention expertise with Symantec DLP, Cisco IronPort, and ForcePoint Triton AP-Data.