Accomplished IT Audit & Security Compliance Professional with 10+ years of experience in information assurance, cybersecurity, compliance, and risk management. Demonstrated skill identifying business risks and compliance issues and designing proactive solutions. Hands on experience conducting third risk party assessments and finding remediation's based on program volumes or for highly visible and/or most complex requests. Advanced knowledge of NCUA, FFIEC, GLBA, ISO 27001/27002, SANS20, PCI DSS, and other Information security requirements and frameworks. Knowledge of and experience in auditing principles and frameworks such as NIST, and SANS. Experience in using FISMA and applicable NIST Special Publications e.g. FIPS 199, 200, SP 800-30, 800-53r4, 800-60 and 800-137.
Risk Assessments
ISACA
ISC2
PRMIA
SANS
CompTIA Security Plus - Current
CompTIA Security Plus - Current
Certified Information Security Auditor (CISA) - Current
Certified Risk Information Systems Control (CRISC) - InProgress
Certified Scrum Master (CSM)