Summary
Overview
Work History
Education
Skills
Websites
Timeline
Generic

Lazaro Asiatico

New York,NY

Summary

Results-driven Senior IAM/IT/Project Manager/Risk Management professional with a proven track record in designing and implementing robust IAM/IT solutions. Seeking a challenging role to leverage expertise in driving strategic initiatives, optimizing access controls, and ensuring compliance. Proficient in information security, risk management, and process improvement, with a strong background in security issue management. Expertise in identifying, analyzing, and summarizing security issues for escalation. Strong communication skills, capable of bridging gaps and working collaboratively within a team. Proven track record of maintaining a clear overview and facilitating groups on security-related content. Adept at translating technical concepts into understandable language. Familiarity with various IT and security capabilities and processes. Passion for continuous learning and professional development in the field of information security. Reputation for providing exceptional customer service. Excellent team-building and interpersonal skills; works well with individuals on all levels. Effective verbal and written communication, analytical, technical, and problem-solving skills.

Overview

20
20
years of professional experience

Work History

Senior Risk Analyst

FEDERAL RESERVE BANK of NEW YORK
09.2024 - Current
  • Partnered with IAM and Compliance/Risk Teams to assess the Research Group's adherence to IAM compliance standards and frameworks
  • Analyzed and aligned with National IT and Federal Reserve Bank of New York (FRBNY) policies and standards to ensure compliance
  • Designed and implemented RBAC structures for Research and Statistics Group, including Birthright access, team-specific roles, and application/platform-based access
  • Conducted cleanup and optimization of 56 business roles across Research, Data & Statistics, and Group Shared Services
  • Successfully consolidated 3,721 out of 3,934 total entitlements into roles, reducing redundant access and enhancing security
  • Key Outcomes Achieved: 75% Reduction in Access Risk Streamlined and minimized access vulnerabilities
  • 80% Role Adoption Rate Improved adoption of IAM roles across teams and platforms
  • 75% Role Maintenance Effort Reduced complexity and time spent managing IAM roles
  • 100% Access Review Accuracy Enhanced precision in periodic access reviews
  • 80% Time to Provision Access & Cost Savings Accelerated access provisioning while lowering operational costs
  • Compliance Audit Success Rate Improved audit performance through efficient IAM role management
  • Tableau Reporting and RBAC Maturity Assessment: Created a comprehensive Tableau runbook to guide users in evaluating RBAC maturity for FRBNY
  • Developed and refined Tableau dashboard reporting capabilities, ensuring user-friendly features and accurate reporting functionality
  • Active Directory (AD) and Enterprise Directory (ED) Group Management: Untangled and restructured AD/ED groups to eliminate nested complexities
  • Mapped entitlements within AD/ED groups and analyzed downstream impacts of modifications
  • Performed ongoing maintenance of IAM roles and AD/ED groups, ensuring optimal entitlement management

Assistant Coordinating Manager

NEW YORK CITY HEALTH & HOSPITAL CORP
04.2011 - Current
  • Providing a single point of contact for end user assistance to receive technical support for desktops, printers, scanners, devices and equipment
  • Perform onsite analysis, diagnosis, and resolution of complex desktop problems for end users
  • Recommend and implement corrective solutions including offsite repair for remote users as needed
  • Install, configure, test maintain, monitor, and troubleshoot end user workstations and related hardware and software in order to deliver required desktop service levels
  • Assess the need for and implement performance upgrades to PC boxes, including the installation of CPUs, I/O and NIC cards, hard disks, ribbon cables, hard drives, RAM, memory chips, CD-ROMs, etc
  • Collaborate with other groups such as LAN technicians/network administrators to ensure efficient operation of the company’s desktop computing environment
  • Where required, administer and resolve issues with associated end-user workstation networking software products
  • Receive and respond to incoming calls, pages, and/or e-mails regarding desktop problems
  • Answer to and perform moves, adds, and changes (MAC) requests as they are submitted
  • Ensure that physical desktop connections (i.e., RJ-45 Ethernet jacks, RJ-11 telephone modem jacks, connectors between PCs and servers, etc.) are in proper working order or escalate as appropriate
  • Assist in preparing, maintaining, and upholding procedures for logging, reporting, and statistically monitoring desktop operations
  • Develop and maintain an inventory of all monitors, keyboards, hard drives, modems, network cards, and other components and equipment
  • Accurately document instances of desktop equipment or component failure, repair, installation, and removal
  • Provide accurate and detail documentation of resolution in the ticketing system
  • If necessary, liaise with third-party support and PC equipment vendors
  • Established performance goals for employees and provided feedback on methods for reaching those milestones.
  • Planned, created, tested and deployed system life cycle methodology to produce high quality systems to meet and exceed customer expectations.

Senior Project Manager

WELLS FARGO CORPORATE & INVESTMENT BANKING
05.2024 - 09.2024
  • Created and executed project plans and timelines in Microsoft Project for Program Expansion 2.0 and CIB Used applications
  • Performed user access validation for CIB used applications 113 applications that were used by CIB based on the BCP list
  • Worked diligently to drive team success and accelerate project completion
  • Before transitioning to a new role, achieved 80% completion of both the Program Expansion 2.0 and CIB Used Application workstreams within just 3 months, significantly ahead of the December 2024 project deadlines
  • Performed Audit remediation's, Fine grained entitlement certification centralization for Markets 2.0 applications, newly identified high-risk assets, and strategic technology for IAM pilot and integration
  • Responsible for standing up Identity and access management projects and handing over to Information Security management Team (ISMT) once fully completed
  • High-Risk CIB owned applications were identified because of a revised risk rubric reassessment
  • Current state assessments (CSA’s) performed for in scope applications determined by risk rubric score
  • Partnered with ATO (application technical manager) to opine on applications technical landscape and ABO to validate changes utilized Risk Rubric to conduct application remediation's
  • Responsible for remediating applications creating, performing, and executing Metadata review and ASOD (application segregation of duties) to identify and address toxic combinations
  • Recorded new business rules for toxic combinations as well as identified and removed toxic access combinations for users and SIMBA (RBAC) role profiles
  • Updated SIMBA Matrices for CIB applications, updated job functions to include application entitlements and disposition (Derived, Discretionary, and Elective) For all current CIB users with access to in scope applications
  • Planned and built Metadata and ASOD toolkits for applications in all Sprints for Program Expansion 2.0 & CIB Used workstreams

Senior Identity & Access Management Consultant

ABN AMRO
12.2019 - 12.2023
  • Hired to assist in building out the new Identity & Access Management New York team and transition security administration responsibilities from the Information Technology Service Desk
  • Accountable for how users within an organization are given an identity and how it is protected, including saving critical applications, data and systems from unauthorized access while managing the identities and access rights of people both inside and outside the organization
  • Took responsibility for collecting application and system inventory, assuming the security administration of 128 applications
  • Conducted routine security audits and vulnerability assessments to pinpoint and mitigate IAM-related risks
  • Collaborated with Operational Risk Management and Audit to assess current audit findings, initiating projects to address and resolve all Information Security and IAM audit findings
  • Collaborated and provided guidance on the strategic development and execution of the IAM roadmap, aligning with business goals and objectives
  • Collaborated on the creation and execution of the US IAM department and was responsible for handling all daily operations
  • Demonstrated strong understanding of Identity and Access Management user lifecycle processes, including user activity monitoring, access re-certification, IAM practices, and reporting
  • Onboarded all US 3rd party targeted applications into Sail Point utilizing CSV delimited files for connectors
  • Created all authorization matrices, intake forms, user dumps, and work instructions for 3rd party applications
  • Sail point SME and liaison for all US users
  • Worked closely with NL access management, CISO Access Control, Information Security Desk, Cross functional support teams, and product owners to solve complex technical access related issues and to troubleshoot and resolve IAM Sail Point data administration issues
  • Regularly conducted risk assessments to define risk scores for CIA rating for all US applications
  • Conducted contract reconciliations to identify and address accounts no longer in use
  • Implemented disaster recovery from Bloomberg Open account holders, facilitating remote access to shared terminals from home
  • Developed and implemented RBAC US business role project ensuring access for each department was correct and properly aligned with business needs by conducting interviews with department heads to uncover the specific nature of their business

Senior IT Support Specialist/Security Administration

ABN AMRO
05.2018 - 12.2019
  • Trade floor support-Provided immediate real-time white glove service in response to end-user requests, questions and trouble reports
  • Provided technical assistance to users in such areas as: customizing off-the-shelf software, coordinating the resolution of data communication problems, installation of IT equipment, patching, configuring systems and servers
  • Provisioned and processed all new hires, transfers, and terminations for the region
  • Responsible for the support and security administration of internal applications and 3rd party vendor systems (Bloomberg, Tableau, Bony BDC, Bony Access Edge Bony Treasury Edge, Impact, DTTC, Royal Bank of Canada, and JP Morgan Access
  • Responsible for handling Identity & Access Management responsibilities for the IT Service Desk
  • Troubleshoot and support Virtual Private Network (VPN) and Secure ID Token support for remote users
  • Prioritize resolving issues based on their impact on business operations, formulate and create solutions in line with the urgency of the issue, establish permanent resolutions whenever possible, take ownership of reported issues from their initial notification to resolution, provide regular updates to users as per the severity of the problem and document relevant details in the system, escalate any issues with potential financial or reputational implications to the appropriate manager, collaborate with Product Teams and Project Teams when necessary to ensure the support team can adequately handle ongoing queries, and identify opportunities for enhancing standard processes and procedures
  • Installed and configured application software in response to requests
  • Provided 'one-on-one' new-user orientation and training for end-users
  • Provide support in preparing special application projects to assist the end-users with automating their business processes
  • Coordinate, set-up, and breakdown ad hoc classified and unclassified computing environments to support VIP visitors, inspections, meetings, and events
  • Provide support including desktop configuration, remote access connectivity, and remote access administration
  • Create and design Microsoft Web-based online tutorials
  • Create User Guides, which are short and simplified instructions on topics, such as remote access e-mail from laptops

Clinical Systems Administrator

NEW YORK CITY HEALTH & HOSPITAL CORP
09.2013 - 05.2017
  • Single point of contact responsible for completing morning sweeps of all operating rooms ensuring all life support systems Drager, Phillips and computers were operational and communicating with each other before surgeries began
  • System Administrator for multiple Clinical and Business Applications within NYC Health & Hospitals
  • Responsible for troubleshooting and repairing all OR\Labor and delivery equipment and software installations\upgrades
  • System Engineer for multiple Clinical departments throughout 11 Public City Hospitals including Labor and Delivery’s Ante Partum, Triage, OR, Mother-baby, and NICU departments, Pathology and Emergency department
  • Software Administrator for GE Centricity, Philips OB Trace VUE, Pathology Voice brook, and Nuance Speech/Dragon Medical Dictation
  • Manage multiple Corporate-initiative projects simultaneously
  • Management of Multiple Service lines including Project Management, VMWare Team, User Engagement Active Directory, Desktop Support and Bio Medical Engineering
  • Assist in the creation of Standard Operating Procedure and Policy
  • Manage Project Managers and Desktop Support service line to plan and implement upgrades, maintenance fixes, and vendor-supplied patches for each Business and Clinical system when needed
  • Perform preventative maintenance, including the installation of service packs, patches, hot fixes, antivirus software and so on
  • Work with vendor support contacts to resolve technical problems with desktop computers, peripheral equipment, and software
  • Led the successful integration of a secure messaging platform with end-to-end encryption, enabling compliant communication of sensitive patient data among healthcare providers and staff, resulting in improved efficiency and a 40% reduction in HIPAA violation risks

Help Desk Associate

NEW YORK CITY HEALTH & HOSPITAL CORP
02.2007 - 03.2011
  • Provided level 1 phone support for all end users and authorized software
  • Created track service desk requests for end user and Workstation staff, reset Windows and Novell AD passwords, Misys business apps accounts as well as provide level 2 support for all business application accounts
  • Process paperwork for Group Wise Internet accounts for all Bellevue hospital and satellites
  • Processed all requests to Corporate Account Management team regarding issues with accounts such as: account add-ons, new account creations, information changes to user profiles, account moves between facilities, disabling accounts, making sure active accounts are not deleted during Corporate Account Management audits
  • Provide support for various functions within the GroupWise application including creating archives, sharing calendars, signatures, away messages
  • Maintained records of daily data communication transactions, problems, and remedial actions taken.
  • Assisting physicians, nurses, social workers and other users with their daily needs and issues within Misys
  • Misys desktops
  • Resetting passwords, remote installation of the application when necessary

Business Applications Analyst

NEW YORK CITY HEALTH & HOSPITAL CORP
11.2004 - 01.2007
  • Organized data by department and location to facilitate revenue collection
  • Provided comprehensive support for business applications, including but not limited to Unity, OAM (SMS Net), OTPS resets
  • Assisted with user interactions related to Omni-pro, TAPS (payroll), account creations, function assignments, and level access
  • Collaborated on template creations in Unity to enhance application functionality
  • Proven experience in data entry and maintaining data accuracy
  • Business Analyst - Data Entry and Application Support
  • Responsible for accurate data entry of ancillary batches, with a focus on keying in service codes for services provided to patients by HHC, sorted by department and location to ensure the efficient collection of revenue
  • Provided vital support for various business applications and programs, ensuring seamless operation and user satisfaction
  • Basic understanding of revenue collection processes
  • Proficiency in data organization and departmental categorization
  • Played a crucial role in maintaining accurate data records and ensuring the smooth operation of various business applications
  • Collaborated with team members and users to provide exceptional support and maintain data integrity, which is vital for efficient revenue collection
  • Data entry of ancillary batches, responsible for keying in the service codes for services rendered to patients by HI-IC sorted by department and location to collect revenue
  • Provided support for all Business apps related programs such as Unity, OAM (SMS Net), OTPS password resets, access issues

Education

B.S - IT Management

Western Governors University
Millcreek, Utah
09.2025

CIGE - Identity Governance Expert certification

Identity Management Institute
Chatsworth, CA
12.2024

A General approach to Risk Management

University System of Georgia
03.2024

Dominant Risk Management Standards and Frameworks

University System of Georgia
03.2024

Cyber Security Foundations for Risk Management

University System of Georgia
02.2024

Microsoft certified: Azure Security Engineer Associate - Certification AZ-500 Specialization

Microsoft
03.2024

Microsoft Security, Compliance, and Identity Fundamentals - Certification SC-900

Coursera
01.2024

Google IT Support Specialization -

Google
03.2024

Microsoft Cybersecurity Analyst Professional Certificate -

Microsoft
01.2024

Business Analysis & Process Management Certification

Coursera
11.2023

Risk Management Framework for Systems and Organizations Introductory course Version 2.0

University of Michigan
Ann Arbor, MI
08.2023

Bloomberg Technical training certification -

Bloomberg
03.2021

CIAM - Identity & Access Manager certification

Identity Management Institute
Chatsworth, CA
05.2021

Skills

  • Identity Governance
  • IT Service Delivery
  • Risk Management
  • Data analytics
  • Change management
  • Strategic thinking
  • Analytical thinking
  • Project management
  • Process optimization
  • Hardware installations
  • End user support
  • Information security
  • Excellent interpersonal skills

Timeline

Senior Risk Analyst

FEDERAL RESERVE BANK of NEW YORK
09.2024 - Current

Senior Project Manager

WELLS FARGO CORPORATE & INVESTMENT BANKING
05.2024 - 09.2024

Senior Identity & Access Management Consultant

ABN AMRO
12.2019 - 12.2023

Senior IT Support Specialist/Security Administration

ABN AMRO
05.2018 - 12.2019

Clinical Systems Administrator

NEW YORK CITY HEALTH & HOSPITAL CORP
09.2013 - 05.2017

Assistant Coordinating Manager

NEW YORK CITY HEALTH & HOSPITAL CORP
04.2011 - Current

Help Desk Associate

NEW YORK CITY HEALTH & HOSPITAL CORP
02.2007 - 03.2011

Business Applications Analyst

NEW YORK CITY HEALTH & HOSPITAL CORP
11.2004 - 01.2007

B.S - IT Management

Western Governors University

CIGE - Identity Governance Expert certification

Identity Management Institute

A General approach to Risk Management

University System of Georgia

Dominant Risk Management Standards and Frameworks

University System of Georgia

Cyber Security Foundations for Risk Management

University System of Georgia

CIAM - Identity & Access Manager certification

Identity Management Institute

Microsoft certified: Azure Security Engineer Associate - Certification AZ-500 Specialization

Microsoft

Microsoft Security, Compliance, and Identity Fundamentals - Certification SC-900

Coursera

Google IT Support Specialization -

Google

Microsoft Cybersecurity Analyst Professional Certificate -

Microsoft

Business Analysis & Process Management Certification

Coursera

Risk Management Framework for Systems and Organizations Introductory course Version 2.0

University of Michigan

Bloomberg Technical training certification -

Bloomberg
Lazaro Asiatico