Agile Systems and Security professional with a high degree of technical competence, a strong learning aptitude and an excellent work ethic. A technical expert in a number of network areas, in particular connectivity, performance, scalability and security. Possessing effective organizational skills and excellent knowledge of IT technologies and having a commitment of keeping up to date with latest developments.
Also an articulate communicator, has the ability to influence people at every level by ensuring that issues are discussed, conflicts are resolved and the best solutions are delivered
• Conducted threat modeling, business impact assessment, and end-point security management.
• Delivered security metrics and implemented improvements to enhance security posture.
• Monitored and responded to security events and incidents by utilizing a combination of security technologies and processes.
• Conducted incident investigations to identify root cause and recommended corrective actions.
• Participated in security architecture design reviews to provide input on secure solutions.
• Developed a security awareness program for all employees to ensure they are up-to-date on the latest threats and vulnerabilities.
• Conducted automated penetration testing of applications, including web servers, databases, and network devices using tools such as Nessus.
• Implemented security controls for web applications, including but not limited to OAuth2 and OpenID Connect for authentication, RBAC and ACLs for authorization, and data encryption techniques.
• Analyzed application codebase to identify potential vulnerabilities and developed solutions to mitigate the risk of exploitation.
• Provided technical expertise in identifying risks associated with new technologies or features and recommended mitigation strategies as well as best practices for implementation.
• Implemented privileged access management (PAM) assessment and enforced both least-privilege access management (LAM) and PAM controls to ensure adherence to best practices for identity and access management (IAM).
• Administered network and server scanning tools and reports, interpreted vulnerability results and created actionable remediation plans.
Systems and Network administration
CEH v11
Stanley Muchemwa
Telecel Zimbabwe
Head of Department(IT)
SMuchemwa@telecelzim.co.zw
0732010800
Caroline Masvivi
Telecel Zimbabwe
IT Infrastructure Manager
CMasvivi@telecelzim.co.zw
0732400136
Certified Information Systems Security Professional (CISSP)
Amazon Web Services Security Specialty
Microsoft Certified: Security, Compliance, and Identity Fundamentals
Certified in Cybersecurity
AWS Certified Cloud Practitioner
CEH v11
ISO/IEC 27001 Information Security AssociateTM
Microsoft Azure Fundamentals