Summary
Overview
Work History
Education
Skills
Websites
Timeline
Generic
Brant Kahle

Brant Kahle

Kalida,OH

Summary

Seasoned IT professional with over a decade of experience, including six years specializing in cybersecurity. Currently serving as an Infrastructure Security Manager at TIAA, leading critical security projects, enhance and streamline security processes, and implement robust measures to safeguard infrastructure. Adept at vulnerability management, vulnerability response, and risk assessment. Renowned for determination, commitment to continuous improvement, and ability to lead and inspire teams to advance cybersecurity initiatives and protect organizational assets. Known for resilience in overcoming roadblocks and finding innovative paths forward to achieve security goals.

Overview

9
9
years of professional experience

Work History

Lead Info Sec Infrastructure Security Manager

TIAA
01.2023 - Current

Strategic Security Planning:

  • Experience in upgrading CVSS vulnerability scoring systems from v2 to v3.
  • Research into incorporating EPSS (Exploit Probability Scoring System) into vulnerability rating systems.
  • Scope, Onboard, and Operationalize new tools and processes into existing reporting systems for Compliance and Governance Reporting

Team Leadership and Management:

  • Led a team of 6 full-time InfoSec analysts and 2-3 consultants, technical associates, or interns.
  • Fostered a culture of continuous learning and professional development.

Threat and Vulnerability Management:

  • Conduct regular vulnerability assessments to identify and mitigate risks.
  • Monitor and analyze security threats, vulnerabilities, and incidents to protect IT infrastructure.

Zero Day Vulnerability Response and Management:

  • Develop and maintain a Vulnerability Response plan to effectively handle Critical vulnerabilities and zero days.
  • Coordinate and lead response to such vulnerabilities, including investigation, potential impact, and remediation.

Collaboration and Communication:

  • Collaborate with other departments (IT, AppDev, HR, Legal) to ensure comprehensive security coverage
  • Communicate security risks and strategies to senior management and stakeholders in a clear and effective manner

SR Information Security Vulnerability Assessment Specialist

TIAA
06.2018 - 12.2022

Infrastructure Security:

  • Conducted vulnerability scans using Nexpose/InsightVM, RiskIQ, Nessus, and Twistlock
  • Reported and managed vulnerabilities and coordinated remediation efforts
  • Automated security processes and maintained compliance metrics (Tableau)
  • Created and maintained SOPs for infrastructure security

Application Security:

  • Conducted vulnerability scans using Burp Suite, Checkmarx, and Veracode
  • Reported and managed application vulnerabilities and coordinated remediation efforts
  • Automated application security processes and maintained compliance metrics (Tableau)
  • Created and maintained SOPs for application security

Penetration Testing:

  • Managed vendor relationships and scheduled third-party penetration tests
  • Automated penetration test processes and integrated reporting into JIRA
  • Designed and deployed a Responsible Disclosure portal

Automation/Process Creation:

  • Automated time-consuming tasks and created low-code PowerApps applications
  • Shared automation knowledge and created shared libraries and knowledge bases

Administration:

  • Onboarded and maintained consultant workers and finalized vendor contracts
  • Supported internal and external audits

0-Day Vulnerability Response:

  • Led and supported responses to zero-day and critical vulnerabilities, including BlueKeep, CISCO, PrintKnightmare, multiple Chrome zero-days, Spring4Shell, and Log4J

Desktop Engineer

Pride Technologies (Consultant for TIAA)
09.2017 - 06.2018
  • Incident Management - Act as queue manager for the Desktop Engineering team
  • Incident Reporting\Performance Analytics – Create reports and run analytics on team performance
  • Active Directory Migration – Assisting in migrating the Nuveen AD environment to TIAA
  • VDA Deployment\Administration Project– Deployed and Administered software to users requiring the ability to work from home
  • Inventory Migration Project – Report on hostnames of all Nuveen machines to be inputted into CMDB
  • Executive Support – Prioritized to support high level executives.

Call Center Analyst

Request Technology (Consultant for Nuveen)
04.2016 - 08.2017
  • Receive and accurately record details of problems reported to the Service Desk to include status and resolutions to problems
  • Successfully troubleshoot, diagnose and resolve Tier 1 & Tier 2 service and support issues
  • Create and maintain production support documentation including technical support documents and end user instructions
  • Respond to error messages by resolving issue or escalating to appropriate support personnel.

IT NETWORK COnsultant

Metalink Technologies
12.2014 - 04.2016
  • Work in partnership with clients advising them how to use information technology to meet their business needs
  • Meet with clients to determine requirements and define the scope of a project
  • Purchase systems where appropriate and then design, test, install, and monitor new systems
  • These systems included hardware such as workstations, network devices, all the way to new servers
  • Install and Test VoIP solutions as well as cloud managed antivirus solutions
  • Implement VPN solutions for clients.

Education

Highschool Diploma -

Kalida High School

Computer Science Engineer Technology -

University of Toledo
Toledo, OH

Skills

  • Nexpose/InsightVM/Twistlock/Tenable/Wizio/RiskIQ
  • JIRA/ServiceNow
  • Archer/ITRC
  • Power Automate/Power Apps/SharePoint
  • Tableau/PowerBI
  • Report Writing
  • SQL
  • Python
  • Project Management
  • Team Leadership/Mentality
  • Queue Management
  • Metrics and Compliance Governance
  • Comprehension of workflows and processes
  • Determined and Driven

Timeline

Lead Info Sec Infrastructure Security Manager

TIAA
01.2023 - Current

SR Information Security Vulnerability Assessment Specialist

TIAA
06.2018 - 12.2022

Desktop Engineer

Pride Technologies (Consultant for TIAA)
09.2017 - 06.2018

Call Center Analyst

Request Technology (Consultant for Nuveen)
04.2016 - 08.2017

IT NETWORK COnsultant

Metalink Technologies
12.2014 - 04.2016

Highschool Diploma -

Kalida High School

Computer Science Engineer Technology -

University of Toledo
Brant Kahle