Summary
Overview
Work History
Education
Skills
Websites
Certification
Languages
Work Permit
Projects
Timeline
Generic

Elmira Hilaj

Cliffside Park

Summary

IT & cybersecurity professional with 9+ years driving security transformation across financial services, telecommunications, and IT organizations. Built comprehensive security programs from the ground up, dramatically reducing incident response times while maintaining strict regulatory compliance. Successfully led cross-functional teams through complex cloud migrations and developed robust security frameworks that safeguarded critical digital assets.

Overview

9
9
years of professional experience
1
1
Certification

Work History

Information Security Senior Analyst

National Commercial Bank
09.2022 - Current

• Developed and executed 3-year cybersecurity roadmap that secured Bank infrastructure and transformed organizational security posture.

• Established 24/7 SOC operations from scratch, cutting incident response times.

• Part of the security architecture team for e-para digital wallet launch, enabling e-para's entry into fintech market with zero security incidents in first year.

• Partnered directly with Mandiant consultants to rebuild incident response capabilities, resulting in 90% improvement in threat containment.

• Deployed enterprise-wide Akamai WAF protection that blocked 15,000+ malicious attacks monthly while maintaining 99.9% uptime.

• Conducted quarterly risk assessments that identified critical vulnerabilities and integrated vulnerability management workflow.

• Created custom Splunk dashboards that automated 80% of security monitoring tasks, freeing team to focus on advanced threat hunting.

• Provided quarterly security briefings to executive leadership, driving informed decision-making by presenting key performance indicators (KPIs), project status updates, and security assessment results and evidences.

• Executed Information Security Risk Assessments (ISRA) and led Business Continuity Management (BCM) and Disaster Recovery (DR) simulations.

CCNA Instructor

Tirana Center of Technology
05.2022 - 09.2022
  • Taught Cisco courses on routing and switching, gave hands-on lab tests, provided feedback on configurations. Explained VLAN setups, mentored students on exam questions, and troubleshooted their lab errors daily.

Network Unified Communication Security Engineer

Communication Progress
05.2022 - 09.2022
  • Architected secure unified communications networks with integrated security controls, implemented VPN solutions, and conducted security assessments for SIP trunking infrastructure.
  • Deployed end-to-end secure UC solutions with encrypted communications, conducted security testing for codec compatibility, and maintained comprehensive security documentation.

Network and Voice Security Senior

Albtelecom Albania
08.2020 - 05.2022

• Secured national telecommunications infrastructure serving more than 1M customers with zero major security breaches during tenure

• Designed network security architecture with redundancy and failover capabilities, security-focused disaster recovery testing, and maintained security documentation.

IT Support Team Leader

Alosys Communications
12.2017 - 07.2020
  • Led 3-person IT support team.
  • Configured customer premises equipment, diagnosed network connectivity failures, conducted technical troubleshooting, and documented service delivery metrics.

Information Technology Engineer

Alosys Communications
01.2016 - 11.2017
  • Configured and deployed network infrastructure for enterprise clients, optimized routing protocols, and implemented network segmentation strategies.
  • Administered network communication systems, configured routing equipment, managed enterprise network deployments, and performed network performance optimization.

Education

Master of Arts - Information Technology

Polytechnic University of Tirana
Tirana, Albania
10.2015

Bachelor of Science - Telecommunications Engineering

Polytechnic University of Tirana
Tirana, Albania
07-2014

Skills

  • Cybersecurity Tools: Splunk SIEM, Nessus, Azure, AWS, Akamai, DDoS Protection, Sandbox, Cisco ESA, Microsoft
    Defender, ServiceNow, Forcepoint, Fortinet Fortigate, M365, Cisco ASA, Cisco ESA, Cisco WSA

  • Networking & Communications: VoIP, VLAN, BGP, SIP, Voice PBX, VTC, GSM/UMTS, GMSC, SBCs, POP
    Configuration, Routers (Cisco, Huawei), Firewalls, IPS, IDS, CMBD, Network Security

  • Frameworks & Standards: NIST, ISO 27001, EBA, DORA, Data Protection, System & Data Classification
    GRC & BCM: Risk Assessments, Business Continuity Planning (BCP), Disaster Recovery (DR), Compliance Audits

  • Soft Skills: Team Leadership, Problem-Solving, Time Management, Attention to Detail

Certification

  • Certified Incident Handler
  • Forensic Analysis & Malware Research
  • Certified Information Systems Security Professional (CISSP)
  • Splunk Search Expert Specialization
  • Microsoft Azure Cybersecurity Tools
  • AWS Cloud Fundamentals

Languages

Albanian
Bilingual or Proficient (C2)
English
Advanced (C1)
Italian
Upper intermediate (B2)
Spanish
Elementary (A2)

Work Permit

Authorized to work in the United States (Green Card Holder)

Projects

  • Mandiant Incident Response - Partnered with leading cybersecurity firm on comprehensive incident response readiness assessment.
  • Enterprise WAF - Successfully deployed Akamai Web Application Firewall across critical banking infrastructure.
  • DDoS Protection - Implemented comprehensive DDoS mitigation strategy with One Albania partnership.
  • SOC Team - Led complete SOC team onboarding and operational transition.
  • Advanced Threat Detection - Deployed sandbox analysis solutions for enhanced malware detection and analysis.
  • Microsoft Defender - Managed security initiatives from email filtering through to device provisioning and policy enforcement with Microsoft Intune.
  • DLP implementation - Performed PoC with Forcepoint by defining rules and filters and flows how to detect possible data leakage and prevent data loss.
  • ISO 27001 - Assisted FIRST with assessment process to obtain ISO 27001 certification for BKT.
  • Business Continuity - Performed annually the Business Continuity Management exercise.
  • ISRA - Performed twice the Information Security Risk Assessment exercise, internally and with PwC.

Timeline

Information Security Senior Analyst

National Commercial Bank
09.2022 - Current

CCNA Instructor

Tirana Center of Technology
05.2022 - 09.2022

Network Unified Communication Security Engineer

Communication Progress
05.2022 - 09.2022

Network and Voice Security Senior

Albtelecom Albania
08.2020 - 05.2022

IT Support Team Leader

Alosys Communications
12.2017 - 07.2020

Information Technology Engineer

Alosys Communications
01.2016 - 11.2017

Master of Arts - Information Technology

Polytechnic University of Tirana

Bachelor of Science - Telecommunications Engineering

Polytechnic University of Tirana