Summary
Overview
Work History
Education
Skills
Websites
Certification
Accomplishments
Languages
Timeline
Generic

Andrius Useckas

Boulder,CO

Summary

Self-assured individual considered well-trained Security Professional with more than 20 years of experience. Flexible and poised promoting well-developed skills in vulnerability scanning and data security.

As a founding member of two startups, played a pivotal role in shaping innovative ventures from inception. Notably, spearheaded the technical architecture of a startup and engaged in consulting roles within Fortune 500 companies. Blends software development proficiency with extensive knowledge in network and application security.

Overview

13
13
years of professional experience
1
1
Certification

Work History

Security Architect / Fractional CISO

ZioSec
02.2024 - Current

Providing expertise and guidance across a broad spectrum of security domains, tailoring solutions to meet unique needs and challenges of each client.

Consultancy services encompass:

  • Assessing security compliance, security program organization, policies, and procedures, and general risks and vulnerabilities.
  • Developing reasonable and cost effective recommendations for security improvement.
  • Mitigating operations risks through proactive coordination of crisis response and emergency management strategies.
  • Advising on best practices for securing cloud environments, including configuration management, data encryption, access controls, and compliance with industry standards such as SOC2, GDPR, HIPAA, and PCI DSS
  • Conducting comprehensive penetration tests to identify and exploit vulnerabilities in systems, applications, and networks, helping clients remediate weaknesses before they can be exploited by malicious actors

CTO/CISO

ThreatX
11.2014 - 02.2024
  • Part of founding and executive team oversaw company through multiple rounds of funding and achieving multimillion ARR
  • Worked effectively in fast-paced environment
  • Spearheaded conceptualization, design, and implementation of Nginx-based security sensor
  • Architected highly scalable, global, multi-cloud architecture comprising ThreatX Web Application and API Protection (WAAP) platform and analytics engine
  • Implemented and maintained SOC2 Type II compliance, which included deployment and management of variety of security tools - from vulnerability scanners to EDR
  • Managed Security Operations Center (SOC)
  • Adopted cutting-edge programming language Rust which not only accelerated time-to-production but also ensured uncompromised security and efficiency of critical microservices
  • Learned and adapted quickly to new technology and software applications
  • Assisted with day-to-day operations, working efficiently and productively with all team members

Sr. Security Architect

Telespace
08.2013 - 11.2014
  • Spearheaded Telespace's journey to compliance with PCI and HIPAA standards within six-month timeframe
  • Orchestrated planning, design, and oversight of security technology deployment to proactively address and mitigate security challenges inherent in Telespace's offerings
  • Formulated and published core Information Security Policy, along with supplementary policies and procedures, to establish robust security framework.
  • Created policies and procedures for emerging security technologies and proposals
  • Worked with business partners to balance requirements, security and risk reduction.

Enterprise Security Architect

BMC Software
05.2011 - 08.2013
  • Created policies and procedures for emerging security technologies and proposals.
  • Created frameworks by designing and developing technical solutions.
  • Engaged business and technology stakeholders to gather goals and requirements.
  • Worked in team setting, providing support and guidance.
  • Acted as Technical Architect and Solutions Architect - planning, designing and supervising deployment of new security technologies
  • Acted as team leader in group projects, delegating tasks and providing feedback.

Education

High School Diploma -

Šiaulių Lieporių Gimnazija
Siauliai, Lithuania
05.1993

Skills

  • Security Architecture Design
  • Compliance Management
  • Emergency Management
  • IT risk management
  • Employee security training
  • Application security
  • Penetration Testing
  • Disaster Recovery Planning
  • Incident Response
  • Threat detection
  • Network Security
  • Intrusion Detection
  • Cloud architecture
  • AWS
  • Google Cloud
  • Python
  • Rust
  • Terraform
  • Docker
  • EBPF
  • MySQL
  • MongoDB
  • BigTable
  • Redis
  • Elasticsearch
  • Splunk
  • Linux

Certification

CISSP, 09/2005 - Current, #82281

Accomplishments

    Authored multiple security products, including the BitBlazr kernel sensor: https://github.com/auseckas/bitblazr

Languages

English
Native or Bilingual
Lithuanian
Native or Bilingual
Russian
Professional Working

Timeline

Security Architect / Fractional CISO

ZioSec
02.2024 - Current

CTO/CISO

ThreatX
11.2014 - 02.2024

Sr. Security Architect

Telespace
08.2013 - 11.2014

Enterprise Security Architect

BMC Software
05.2011 - 08.2013

High School Diploma -

Šiaulių Lieporių Gimnazija
Andrius Useckas