Experienced Information Security Senior Manager, proficient in managing, reporting, budgeting, mentoring and compliance areas. Adept at updating and working with executive leadership. Bringing superior skills in EndPoint Protection and Vulnerability Management. Over 20 years of Information technology experience.
Overview
12
12
years of professional experience
1
1
Certification
Work History
Manager, Cyber & Information Security
Point32Health
05.2024 - Current
Maintain up-to-date knowledge of the cyber and information security industry including awareness of new or revised security solutions, improved security processes, and the development of new attacks and threat vectors.
Manage staff, supervision, assigning work, professional development, performance evaluation, recruitment, and coaching/mentoring, constructive feedback and direction to staff to ensure successful achievement of projects and initiatives
Ensures adequate and effective technical and non-technical controls exist to meet current and future security compliance requirements.
Identify/recommend tools, processes, software, and hardware to improve or replace current security infrastructure practices, services, or technologies.
Oversee the deployment, integration and configuration of all new and existing security solutions.
Define clear targets and objectives and communicated to other team members.
Provide Continuous capability improvements via configuration, enhancement requests, and coordination of updates with IT/vendor support resources.
Support Cyber & Information Security colleagues by providing technical expertise.
Provide engineering and automation capabilities to the other functional areas within security.
Develop procedures and guidelines to support consistent delivery of services.
Consult with other Cyber & Information Security colleagues to continuously evaluate and implement security solutions.
Communicate potential security concerns/exposures to appropriate leadership.
Coordinate and collaborate with business organizations and IT groups to ensure quality solutions are delivered
Engage in ongoing communications with peers in the IT groups to ensure enterprise wide understanding of security goals.
Cybersecurity Manager – EndPoint and Data Protection
Florida Blue
08.2023 - 05.2024
Manage 14-member Cybersecurity team that supports EndPoint Protection in the scope of project work and operational support in the areas of: Malware, NextGen AV, EDR, EndPoint App Control, Cloud Security & Data Loss Prevention
I communicate, plan, and provide leadership to the team
We are directly responsible for technology review, research, design, testing, implementation, and operation, providing endpoint safeguards for datacenter and user workloads
I Provide technical direction to project and functional resources within and outside their reporting structure, gather, support, and develop the resources needed to execute the plan, champion the tactical direction of work, and remove barriers within their sphere of influence
Lead cross function initiatives, projects and discussions and is relied upon to anticipate and mitigate cross functional issues
Performance management and salary administration for the team as well as assisting with career development planning, coaching, training, and teambuilding my 14 direct reports.
Senior Manager - Security/Defensive Engineering
Gap Inc
05.2022 - 08.2023
Manage End Point Protection Team/Vulnerability Management Team/ and Workspace and Core Services Team
Lead a global team of 12 experienced engineers that are required to be hands-on as we support defensive engineering team efforts with AV/EDR/FIM/PAM/Vuln Management tools
Collaborate with Operating System teams and Product Lines to update and manage Antivirus and EDR tools for coverage and to remediate vulnerabilities
Set security policy/hardening standards/HIP VPN Checks for all end points in the Gap Environment Evaluate and provide proof of value on security and vulnerability tools
Root cause issues/research problems/collaborate with Vendors and cross-functional teams on Security
Support objectives, checkpoints and timelines, managing team members to meet project tasks and expectations
Maintain adequate staffing to meet objectives within budget
Develop and lead process improvements to optimize operations and reduce costs
Oversee vendor relationships to foster performance monitoring, issue resolution and statement of work reviews
Lead and/or support troubleshooting of operational issues to reduce project bottlenecks or delays
KPI/OKR and Metric reporting for Senior Leadership to capture a variety of data regarding: Vulnerability/Asset Management/System availability/Asset Coverage and any other information requested from leadership.
Senior Manager Security Engineering
Aetna a CVS Health Company
05.2019 - 05.2022
Interim Director - Security Engineering department for a year
Oversight of 48 Security Applications in the following disciplines: EndPoint Protection/EndPoint Detection & Response/Client Encryption, Data Loss Prevention, IT Hygiene, Key Management/Encryption Management, Next Generation Authentication, Identity and Access Management/MFA/Password Reset, Container/Docker Management, Legal Hold and Privileged User/Access Management
25 Security Engineers, Managers, Architects, and Contractors that are direct reports to me
Approve all changes, clarity time, schedules, on call rotations, off hours and weekend work
Secure workstations, servers, VDI’s, and mobile devices with Anti-Virus/FIM/EDR/DLP/DCS/MFA/VIP applications
Responsible for remediation of Qualys vulnerabilities across the enterprise with security patching through SCCM, Tanium, Ansible, Chef and Blade Logic
Provide infrastructure support for all security tools in the organization including Provisioning and Recertification systems as well as Privileged Access Management Systems
Assigned work, recruit and train and monitored performance of employees
Provided leadership, insight and mentoring to employees
Organized team activities to build camaraderie and foster pleasant workplace culture
Maintained Infrastructure Applications
Using Linux, applying patches, hot fixes, and software upgrades
Coordinate Infrastructure projects with Solution Engineers, Solution Architects and the business.
Professional System Engineer
AT&T
04.2017 - 05.2019
Maintained servers, software, and operating system equipment
Provided needs assessment, systems analysis, troubleshooting and resolution
Employed critical-thinking skills, excellent judgement, creativity, and innovation in solving problems
Business Manager and Program Lead for DevSecOps, oversaw virtual and location-based training
Head effort in transitioning dynamic applications from ATT cloud to Azure Hybrid Cloud
Peer group lead and trainer and coordinator for virtual and location based corporate wide training
Collaborated with Solution Architects and Development teams to introduce new data sources and resolve issues
Oversaw the implementation and development of new hardware and software, corrected software errors in existing systems and improved performance through hardware and software upgrades.
Specialist Business Management
AT&T
03.2013 - 04.2017
Coordinated and managed various programs or projects to achieve established objectives
Leveraged specialized knowledge to act as subject matter expert within organization
Application Support of Production Databases and Web Tools using Access, VB Script, Cold Fusion, SharePoint, HTML and SQL for Release Management and Project Management teams
Moving code into production using SCM tool and Site Mover for Production Releases
Vendor Management responsibilities
Worked with offshore vendors setting up ID's, and Access to AT&T systems
Metric reporting for Senior Management
Business Continuity Plan Steward
Communicate and run test disaster scenarios with leadership
RIM (Records and Information Management) Record Agent
Working with Application groups and Legal to manage record retention based upon the law
Maintained multi-tier client server production Credit Card payment application.
Education
Bachelor of Arts - Communication Science
University of Connecticut
Storrs, CT
01.1990
Skills
IT Infrastructure Management
Strong Analytical Skills
Collaboration Skills
Vulnerability Management
Leadership Skills
Strategic Planning
Technical Expertise
Cybersecurity Frameworks
Decision Making
Advanced Problem-Solving Skills
Ability to Adapt and Grow
Contract Negotiation
Vast background in Security Applications
Process Improvement
Project Oversight
Willingness to learn new things
Product Development
Communication Skills
Cross-Functional Team Leadership
Project Management
Critical Thinking
Certification
Microsoft Azure Fundamentals, 2019
SAFe Agile Certified, 2021
Training
Oasis Leadership Training, 2020
Open Stance Leadership Course, 2021
Regional Leadership Program, 2021
Timeline
Manager, Cyber & Information Security
Point32Health
05.2024 - Current
Cybersecurity Manager – EndPoint and Data Protection
Florida Blue
08.2023 - 05.2024
Senior Manager - Security/Defensive Engineering
Gap Inc
05.2022 - 08.2023
Senior Manager Security Engineering
Aetna a CVS Health Company
05.2019 - 05.2022
Professional System Engineer
AT&T
04.2017 - 05.2019
Specialist Business Management
AT&T
03.2013 - 04.2017
Bachelor of Arts - Communication Science
University of Connecticut
Similar Profiles
SELENA SUTTONSELENA SUTTON
Member Service Representative at Point32HealthMember Service Representative at Point32Health