Cybersecurity Analyst with over 6 years of hands-on experience in IT security, risk management, and compliance. Expertise in Security Operations, IT Risk Management, Privacy, and Vendor Risk Management, with a strong understanding of industry standards such as NIST, PCI-DSS, SOX, CCPA, and GDPR. Certified Information Systems Auditor (CISA), CompTIA Security+, and AWS Certified (SAP C02). Proficient in risk management tools (OneTrust, Navex IRM), firewall management, intrusion detection systems, endpoint security, cloud security, and vulnerability scanning. Experienced in conducting risk and vulnerability assessments, penetration testing, control testing, change management, and developing security strategies for diverse environments. Skilled in implementing Security Information and Event Management (SIEM) systems, utilizing penetration testing tools, and performing network analysis. Proven track record of managing multiple projects, leading cross-functional teams, and conveying complex technical concepts to non-technical audiences. Expertise in designing, planning, and executing security frameworks that mitigate risk and ensure compliance. Known for delivering results in fast-paced environments with a focus on continuous improvement and operational excellence. Diligent IT AUDITOR with comprehensive background in identifying and mitigating cybersecurity risks. Adept at developing risk assessments and implementing security protocols to protect sensitive information. Demonstrated expertise in vulnerability management and incident response.
Oversee implementation and maintenance of Enterprise GRC tool
Molina Healthcare, Prisma Cloud, Metasploit, Metasploit, Kali Linux, SIEM (Security Information and Event Management):Splunk, IBM QRadar, LogRhythm: ,CrowdStrike Falcon:, COSCO, COBIT, PCI DSS, SOC 27001, SOX ACT, CrowdStrike Falcon, Carbon Black, Nessus, Prisma Cloud (Palo Alto Networks),Wireshark, Nagios
What excites me most about is the opportunity to continuously learn and tackle new challenges The rapid pace at which technology evolves means that there’s always something new to discover, whether it’s new threats, tools, or methods of securing systems I also find it incredibly rewarding to be part of a team that works to protect sensitive information and maintain trust within organizations