Work Preference
Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic
Open To Work

Brook Pauquette

Columbus,OH

Work Preference

Job Search Status

Open to work
Desired start date: Immediately

Desired Job Title

Manager, Information SecuritySenior Information Security AnalystManager, Information Security OperationsInformation Security OfficerInformation Security Manager

Work Type

Full Time

Location Preference

RemoteHybrid
Location: Columbus, OH, US
Open to relocation: Yes

Salary Range

$90000/yr - $150000/yr

Important To Me

Company CulturePersonal development programs

Summary

Dynamic information security professional with a proven track record in safeguarding organizational data and mitigating risks. Expertise in implementing comprehensive security measures that ensure compliance with industry standards and regulations. Recognized for fostering team collaboration and driving impactful results while adeptly adapting to evolving challenges in the security landscape. Committed to enhancing organizational resilience through innovative security strategies and proactive risk management.

Overview

14
14
years of professional experience
1
1
Certification

Work History

Manager, Information Security

Rea and Associates
01.2025 - 01.2026
  • Joined team to mature the cybersecurity program. Duties include Security Awareness Training, managing possible security alerts, Defender management, vulnerability scanning and remediation via Action1.
  • Managing IAM
  • Application scanning via Veracode and remediating weak code
  • Leading remediation projects utilizing JIRA stories
  • Leading GRC efforts as they relate to business requirements and needs.
  • Building relationships with several groups to provide a security paradigm
  • Assisting the AppDev group with software development and providing a secure development mindset
  • Scanning running applications for vulnerabilities and leading remediation projects
  • NIST remediation to achieve compliance as the relate to business goals
  • End user training using KnowBe4 simulated phishing and training
  • Reporting to C-Level on all projects and status

Senior Information Security Analyst

Arbitration Forums
01.2024 - 01.2025
  • Hired to serve as a lead resource to the Information Security group. Main duties include remediating vulnerabilities discovered by vuln scanners, aligning the security controls against NIST requirements, serving as a SME in cybersecurity matters, Kubernetes scanning and remediation, end user training via KnowBe4, advising senior management with regards to security posture as they relate to business goals.
  • Conducted risk assessments and vulnerability analyses to identify potential threats.
  • Utilized Arctic Wolf to maintain positive security posture
  • Developed and implemented incident response plans to mitigate security breaches.
  • Mentored junior analysts on best practices in information security protocols.

Manager, Information Security Operations

Waters Corporation
01.2022 - 01.2024
  • Hired to manage operations and mature security program. Main duties are daily remediation of security threats and emerging issues, Palo Alto Firewall and Cortex XDR administration, infrastructure creation, change, and support, communication with C-level committee regarding state of the security and IT program KPIs, creation of security policies and procedures as they strategically align with business goals, lead GRC efforts, managing server vulnerability remediation, Cortex XDR environment including endpoint protection, Palo Alto firewall administration, simulated phishing campaigns for user education via ProofPoint, regular risk assessments and plan creation for remediation of found issues and vulnerabilities.
  • Regular reporting to executive committee KPIs related to security posture and status
  • Managing risk assessments and creating remediation plans to mitigate and correct risk posture
  • Managing processes to identify, analyze, evaluate, and monitor risk control using:
  • Palo Alto Firewalls (Panorama, Prisma)
  • Palo Alto Cortex XDR
  • Rapid7 InsightVM and InsightConnect
  • Attention to security issues in Azure environment
  • VMWare host maintenance
  • Palo Alto administration including log review, SSL decryption issues, and firewall rule creation
  • Daily maintenance of end user security issues and requests via Service Now
  • Created user education program for monthly phishing tests
  • Regular creation and maintenance of up to date documentation of processes and procedures
  • Regular communication with department heads to track remediation of security issues
  • Working with compliance group to continue to improve NIST scoring

Information Security Officer

Riptide Remedy Consulting
01.2021 - 01.2022
  • Maturing security programs for various organizations. With significant funding contingent on specific security compliance and initiatives in place, I consulted to create policy, procedure, and compliance requirements. Main duties are compliance initiatives, endpoint protection, firewall engineering (Palo Alto), internal user education around security best practices and phishing campaigns, and IPS/IDS maintenance. Virtual server creation and maintenance. NIST/ISO compliance remediation. Effective communication to Executive and Steering committees to highlight progress.
  • Effective understanding of business needs to better implement appropriate security controls
  • Compliance management
  • Experience with cloud computing
  • Created and managing internal vulnerability scanning and remediation
  • Proactively mitigating for existing and emerging threats from inside and outside the corporate network
  • Owned the staff education process which included user awareness campaigns and mock phishing attempts.
  • Responsible for third party requirements related it IT and Security standards
  • Maintain budget responsibility to promote business health

Information Security Manager

Washington Prime Group
Columbus, OH
01.2017 - 01.2021
  • Managing Security Program, responsible for security processes and procedures. Initiatives include security program creation, risk assessments, penetration testing, vulnerability remediation, rollout of vulnerability management, creating and reviewing corporate policy and documentation, and communicating with the executive leadership team keeping them up to date on technology status and projects.
  • Responsible for deployment of vulnerability scanning and remediation standing up Tenable
  • Responsible for performing regular risk assessments
  • VMWare host maintenance including Horizon VDI administration
  • Created and rolled out security program
  • Proactively mitigating for existing and emerging threats from inside and outside the corporate network
  • Engineered, deployed, and maintain the patch management infrastructure across all platforms
  • Experience maintaining and securing servers in an AWS environment
  • Responsible for maintaining and distributing documentation related to security standards
  • Responsible for ensuring CCPA compliance was achieved
  • Experience with frameworks such as NIST, PCI, and ISO27001

Information Security Officer

BVS Performance Solutions
New Albany, OH
01.2016 - 01.2017
  • Leading Cyber Security and Technology teams, responsible for a wide array of information technology initiatives. Initiatives include platform standardization, risk assessments, PCI compliance, SOC2 compliance, vulnerability remediation, creating and reviewing corporate policy and documentation, and communicating with the executive leadership team keeping them up to date on technology status and projects.
  • Solely responsible for vulnerability scanning and remediation using Nexpose and Qualys scanning tools
  • Led initiative to obtain SOC2 compliance – worked with team leaders enterprise wide on remediation and process improvement
  • Engineering and maintenance of IPS/IDS infrastructure
  • Engineered, deployed, and maintain the patch management infrastructure across all platforms
  • Responsible for endpoint security inkling anti-virus and full disk encryption
  • Deployed a SIEM and File Integrity Management solution that successfully improved logging and analysis
  • Responsible for managing all aspects of physical security
  • Responsible for maintaining and distributing documentation related to security standards

Senior Network Security Engineer

OCLC
Dublin, OH
01.2012 - 01.2016
  • Senior engineer, engineered and supported network and systems supporting libraries. Responsible for network security, information security compliance, network engineering and administration, inventory and documentation, and network monitoring.
  • Engineered and implemented entirely new network infrastructure that included VBlock, Checkpoint firewalls, EMC storage, Windows domain, and IPS/IDS solutions while maintaining strict security policies.
  • Researched and implemented advanced network monitoring that saved the company money and raised customer support and satisfaction.

Education

Master of Science - Cyber Security and Information Assurance

Western Governors University

Bachelor of Science - Information Technology

Franklin University
Columbus, OH

MBA - Information Technology Management

Western Governors University
07-2026

Skills

  • Experienced and Accomplished Leader with effective management and communication skills interfacing with technical and non-technical personnel
  • Security program creation aligning with business goals
  • Experience with ISO, PCI, SOX, CCPA, and SOC2 compliance
  • Cloud infrastructure maintenance and support
  • Vulnerability Scanning and Remediation
  • Palo Alto and Checkpoint Firewall maintenance and administration
  • Network Infrastructure Engineering
  • Intrusion Detection, Protection, and Analysis and Incident Response
  • Maintaining IAM environments
  • Disaster Recovery Design and Support
  • Creation of Service Level Agreement (SLA) Protocols

Certification

  • CISM
  • CISSP
  • C|EH
  • MCSE: Security
  • CompTIA Security+

Timeline

Manager, Information Security

Rea and Associates
01.2025 - 01.2026

Senior Information Security Analyst

Arbitration Forums
01.2024 - 01.2025

Manager, Information Security Operations

Waters Corporation
01.2022 - 01.2024

Information Security Officer

Riptide Remedy Consulting
01.2021 - 01.2022

Information Security Manager

Washington Prime Group
01.2017 - 01.2021

Information Security Officer

BVS Performance Solutions
01.2016 - 01.2017

Senior Network Security Engineer

OCLC
01.2012 - 01.2016

Master of Science - Cyber Security and Information Assurance

Western Governors University

Bachelor of Science - Information Technology

Franklin University

MBA - Information Technology Management

Western Governors University
Brook Pauquette