Information Security Specialist with passion for aligning security architecture plans and processes with security standards and business goals. Extensive experience developing and testing security framework for cloud-based software. Versed in robust network defense strategies.
Overview
6
6
years of professional experience
1
1
Certification
Work History
IT DATA ANALYST
TELUS INTERNATIONAL
12.2021 - Current
Developing and maintaining analytic systems, taking complicated problems, and building frameworks
Analyzing data to answer key questions from stakeholders with an eye for what drives business performance
Produced monthly reports using advanced Excel spreadsheet functions.
Worked with business intelligence software and various reports to glean insights into trends and prospects.
Investigating and communicating areas for improvement in efficiency and productivity
Implementing data acquisition and integration logic, selecting the appropriate combination of methods and tools within the appropriate combination of methods and tools within the defined technology stack to ensure optimal scalability and performance of the solution
Evaluating internal systems for efficiency, problems, and inaccuracies to develop and maintain protocols for handling, processing, and cleaning data
Creating reports based on data mining, analysis, and visualization
Identifying trends and opportunities for growth through analysis of complex data sets
Building scripts to make data evaluation process more flexible and scalable across data sets
Identifying critical metrics and KPIs and delivering actionable insights to relevant decision-makers
Designing and maintaining database, including security threats
Building out data infrastructure from ground up using Tableau and SQL to provide real-time insights into product and business KPI
Analyzing documents to report user survey results to improve customer commercials, Developing and maintaining analytic systems, taking complicated problems, and building frameworks.
Synthesized business intelligence or trend data to support recommendations for action.
Implemented and developed policies to satisfy regulatory obligations.
Developed metrics that measured programmatic success and outcomes.
Generated reports and obtained data to develop analytics on key performance and operational metrics.
Utilized data analysis to monitor process efficiencies and identify data integrity exceptions.
IT Compliance Analyst
Minerva Information Security Service LLC
08.2019 - 08.2021
Review security documentation such as System Security Plans, Policy and Procedure documents and Security Authorization Package
Assist in developing Security assessment report (SAR) based on security assessment conducted
Track Plan of Action and Milestones (POA&Ms) for controls that are other than satisfied
Assist in maintaining Information Security Continuous Monitoring (ConMon) strategy through tracking of POAMs and updating security documentation that are due for signatures
Participate in training new interns on the cybersecurity task
Develop gap analysis to determine security gaps with the security environment
Review ConMon scans to identify the appropriate POC in remediating the findings
Maintain and analyze all required audit logs for administrative system
Helping to identify the current security posture
Executed Security Test and Evaluation (ST&E)
Provide (SME) support for security control testing and penetration to our clients
Performing vulnerability scans on Information using Nessus and Qualys
Reviewing and incorporating security controls
Reviewing Security Plans to ensure documented controls are addressing all control requirements within the implementation description
Supporting in Cybersecurity Test & Evaluation activities of system security engineering and program protection activities
Tracking and addressing security requirements throughout the project life cycle of all projects that are within the accreditation boundary of assigned systems
Facilitating and helping the organization to identify the current security posture
Drafting and finalizing 14 security policies aligned with NIST 800-53 requirements
Collaborated with leadership to devise strategies to improve processes and risk controls as well as implement new systems and best practice guidelines.
Provided compliance risk control consultation to committees and leadership.
Conducted periodic compliance audits and reviews to identify areas of improvement.
SOC Analyst
Liviasoft Technologies
01.2020 - 12.2020
Worked with other teams to enforce security of applications and systems.
Investigated and resolved incidents of unauthorized access to sensitive information.
Educated and trained users on information security policies and procedures.
Conducted security audits to identify vulnerabilities.
Administered and monitored firewalls, intrusion detection systems and anti-virus software to detect risks.
Skilled at working independently and collaboratively in a team environment.
Developed plans to safeguard computer files against modification, destruction, or disclosure.
Engineered, maintained and repaired security systems and programmable logic controls.
Executed penetration testing to identify security weaknesses and develop disaster recovery plans.
Monitored use of data files and regulated access to protect secure information.
Encrypted data and erected firewalls to protect confidential information.
IT Security Analyst
LEGACY CYBER TECH
09.2017 - 07.2019
Assisted in the development of Privacy Threshold Analysis (PTA), and Privacy Impact
Conducted meetings with the IT client team to gather evidence, developed test plans, testing procedures and documented test results and exceptions
Conducted walkthrough, formulated test plans, documented gaps, test results, and exceptions, and developed remediation plans for each area of testing
Analysis (PIA) by working closely with the Information System Security Officer (ISSO), the System Owner, the Information Owners and the Privacy Act Officer
Developed PowerPoint presentation documents for kick-off meetings
Reviewed security documents to ensure readiness for the third-party security control assessments
Assisted in developing SAR for Government client.
Analyzed system risk to identify and implement appropriate security countermeasures.
Audited networks and security systems to identify vulnerabilities.
Analyzed security procedure violations and developed plans to prevent recurrence.
Designed, implemented and maintained security systems and controls.
Built firewalls and encrypted data to secure confidential information.
Worked successfully with diverse group of coworkers to accomplish goals and address issues related to our products and services.
Worked closely with team members to deliver project requirements, develop solutions and meet deadlines.
Investigated and resolved incidents of unauthorized access to sensitive information.
Developed plans to safeguard computer files against modification, destruction, or disclosure.
Skilled at working independently and collaboratively in a team environment.
Reviewed violations of computer security procedures and developed mitigation plans.
Conducted security audits to identify vulnerabilities.
Education
Associate of Arts - Criminal Justice/Law
Anne Arundel Community College
Arnold, MD
05.2021
Associate of Arts - Cyber Operations And Warfare
Anne Arundel Community College
Arnold, MD
05.2021
Skills
Risk Assessment
Great knowledge of IT technology, internal audit, and security
Excellent written and interpersonal communication skills
Linux System Administration
Mounting Firewall and implementing inbound and outbound rules
AI Training/Search Result Evaluator and Safety Rate at Telus Digital FKA Telus InternationalAI Training/Search Result Evaluator and Safety Rate at Telus Digital FKA Telus International