Results-oriented information security professional with 8 years of experience in information system security and risk management. Reputable for implementing and maintaining robust system and data protection controls in compliance with industry standards. Expert in third-party risk management and conducting comprehensive risk assessments to proactively identify network vulnerabilities.
Brought in to assess and mature the company’s TPRM program and ensure third party adherence to contractual obligations through monitoring activities.Responsible for identifying vulnerabilities, remediating risks and identifying gaps in the company’s systems and programs while recommending specific measures that can improve the company’s overall security posture.
Key Responsibilities:
Acted as the primary liaison between GSO and other business units on matters related to information security and provided guidance to the organization on industry best practices. Improved processes associated to vulnerability management and drove successful remediation efforts.
Key Responsibilities:
Supported the organization’s compliance initiatives by ensuring systems were operating, maintained and disposed of in accordance with internal security policies and practices outlined in the SSP. Responsible for supporting System Owners and ISSO in preparing Certification and Accreditation package for the company’s IT systems, making sure that all security controls adhered to well-established security requirements authorized by NIST SP 800-53 R4.
Key Responsibilities:
CISA