Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Iasen Ognianov

Summary

Dedicated to contributing a unique blend of leadership and innovation

and a commitment to excellence in your organization by ensuring that projects and information systems align with the overall strategic mission and business objectives.

Overview

18
18
years of professional experience
1
1
Certification

Work History

CISO & Head of IT Infrastructure

Silfex (Lam Research)
Springfield, OH
04.2023 - Current
  • Developed and maintained information security policies, procedures, standards, and guidelines.
  • Provided executive leadership team with updates on the status of IT security programs.
  • Conducted risk assessments and threat analyses to identify security gaps in IT infrastructure.
  • Executed regular system audits to ensure compliance with established security requirements.
  • Collaborated with cross-functional teams to ensure compliance with industry regulations, NIST, and ISO.
  • Oversaw incident response processes to address potential security breaches effectively.
  • Managed vendor relationships for security tools and services, ensuring optimal performance.
  • Implemented security awareness programs for employees to enhance risk management practices.
  • Ensured timely installation of critical security patches across enterprise environments.
  • Managed security operations center activities, including threat monitoring, analysis, investigation, and response.
  • Provided technical advice and guidance on secure coding practices for software development teams.
  • Performed regular penetration testing exercises to evaluate the effectiveness of existing controls.
  • Led IT strategy development to align technology with business goals.
  • Managed infrastructure projects to enhance system performance and reliability.
  • Led cloud infrastructure projects to enhance system reliability and performance.
  • Managed network infrastructure and ensured optimal performance across multiple sites.

Chief Information Security Officer

Lordstown Motors
Lordstown, OH
01.2021 - 04.2023
  • Develop, implement, and maintain an information security strategy and roadmap.
  • Develop and establish an information security program, ensuring compliance with relevant regulations like Privacy (GDPR) and standard methodologies/frameworks like NIST.
  • Incorporate periodic external threat environment reviews into the security strategy and roadmap.
  • Provide expert advice to executive leadership and board on information security risk and mitigation activities.
  • Collaborate with senior business leaders and departments to advise on risks, mitigations,and incident response.
  • Collaborate with the regional IT teams on developing and implementing information security programs (policy, procedures, projects, and audits).
  • Lead the development and implementation of effective information security policies and procedures.
  • Evaluate the effectiveness of and compliance with information security program procedures
  • Develop continuous improvement programs to improve information security such as vulnerability management, patch management, and DR recovery.
  • Devine information security risk assessment methodology and metrics
  • Proactively monitor and evaluate risk exposure and mitigation
  • Identify and investigate security breaches, working with key business partners and executive leadership, and provide remediation and resolution.
  • Develop and maintain a strong information security awareness program.
  • Perform regular sessions (internal and external) to test and improve compliance with information security policies and procedures.

DCISO - Dir. of Sec. Architecture and Engineering

Diebold Nixdorf
North Canton, OH
06.2014 - 01.2021

Developed and maintained robust policies for information security and cybersecurity programs.

  • Partnered with business leaders to implement compliant practices meeting defined cybersecurity standards.
  • Conducted risk assessments to identify vulnerabilities in network systems.
  • Designed and implemented protocols for managing sensitive data securely.
  • Managed global information security operations, overseeing a team of over 40 professionals.
  • Investigated security breaches, documenting incidents and assessing damages.
  • Conducted regular physical and system security tests, reporting findings to the Board of Directors.
  • Developed a comprehensive enterprise information security program ensuring data integrity and confidentiality.
  • Provided strategic risk guidance for IT projects, recommending necessary technical controls.
  • Managed incident response efforts during security breaches or suspicious activities.
  • Researched emerging security technologies to enhance organizational defenses against attacks.
  • Deployed firewalls, IDS and IPS devices, anti-virus software, and content filtering systems. to protect against external threats.
  • Implemented technical solutions to improve network security posture and address identified vulnerabilities.
  • Enforced strong authentication protocols such as two-factor authentication where appropriate.

IT Security Engineer Lead

Kroger
Cincinnati, OH
01.2012 - 06.2014
  • Risk Management and Vulnerability Assessments
  • Execute company-wide best practices for IT security.
  • Provide computer security engineering through all phases of the Project Life Cycle.
  • Installation, configuration, and Maintaining Host Intrusion detection and prevention system.
  • Worked as the Information Security Engineer on various projects with the company.
  • Documents manages and provides operational support of security procedures (e.g. malware procedures, VPN access procedures, Firewall review procedures, physical or application access procedures, patching procedures)
  • Programming or Scripting Experience (VBScript, PowerShell)
  • Perform penetration testing. Work with IT teams to perform tests and uncover vulnerabilities.
  • Perform security monitoring to identify and resolve issues uncovered by various security applications and network security monitoring tools.

IT Engineer Lead

New Sabina Industries
Sabina, OH
02.2008 - 01.2012
  • Performed troubleshooting and maintenance of hardware and software components, including servers, routers, switches, firewalls, and other network devices.
  • Configured and maintained Windows Server 2008, 2012, and 2016 operating systems.
  • Monitored system performance to ensure the availability of all services to users.
  • Provided technical support for LANs, WANs, network segments, Internet connections, and intranet systems.
  • Installed new hardware and software solutions in accordance with company standards.
  • Implemented security measures such as patching systems regularly and setting up user authentication protocols.
  • Developed policies and procedures related to the use of computer networks.

Education

Bachelor of Science - Computer Science

Technical University of Sofia
Bulgaria
02-2007

Skills

  • Analytical and Critical Thinking
  • Analytical Thinking
  • Research
  • Information Protection
  • Managing security breaches
  • Protecting networks
  • Risk Assessment
  • Data Security

Certification

  • CISSP

Timeline

CISO & Head of IT Infrastructure

Silfex (Lam Research)
04.2023 - Current

Chief Information Security Officer

Lordstown Motors
01.2021 - 04.2023

DCISO - Dir. of Sec. Architecture and Engineering

Diebold Nixdorf
06.2014 - 01.2021

IT Security Engineer Lead

Kroger
01.2012 - 06.2014

IT Engineer Lead

New Sabina Industries
02.2008 - 01.2012

Bachelor of Science - Computer Science

Technical University of Sofia
Iasen Ognianov