Director - It Security And Commercial Applications Resume
0/5 (Submit Your Rating)
SUMMARY:
- Responsible for protecting Confidential brands ( Confidential, Confidential, Confidential, Confidential, Confidential, Confidential ), digital media/content and all aspects of enterprise information security/risk management strategies and architecture on a global basis.
- Also responsible for development and execution of policies, standards, guidelines, security awareness and vulnerability assessment programs to comply with Sarbanes - Oxley (SOX), Health Insurance Portability and Accountability Act (HIPAA), Gramm-Leach-Bliley (GLBA) and data privacy requirements.
- Manage external and cloud service provider (e.g. Confidential ) security requirements and provide security advice to resources, business units and clients, as well as staff management, team leadership and client relations.
- Proficient in security product evaluation/selection, budgeting, risk management, technology governance and desktop support with solid hands-on background in technology.
- Successfully managed Level 1 PCI of three billing applications required to comply with the with Payment Card Industry (PCI) standard while Confidential .
PROFESSIONAL EXPERIENCE:
Director - IT Security and Commercial Applications
Confidential
Responsibilities:
- Responsible for overall implementation of security standards and guidelines relating to operating systems, data communication, voice communication, infrastructure devices, and network security components. Oversee development of technology and security policy, regulatory compliance, and business continuity/disaster recovery planning. Perform risk and security assessments to validate compliance of SOX and HIPAA requirements. Lead the company’s security awareness initiatives. Oversee security and compliance requirements involving third party SaaS cloud providers such as Confidential, Confidential and Salesforce.
- Manage group of eleven IT security/MS application/database technicians responsible for security operations, applications and access management solutions.
- Responsible for SOX-404 and compliance reporting of all Corporate IT Controls.
- Serve as a member on the Corporate Fraud and Risk Management Committee chaired by the VP of Internal Audit.
- Manage an operating budget of $5M.
Director - Global Information Security
Confidential
Responsibilities:
- Implemented security programs to comply with Payment Card Industry (PCI) standard, Health Insurance Portability and Accountability Act (HIPAA), Gramm-Leach-Bliley (GLBA).
- Helped establish, with the assistance of Confidential, a Corporate Privacy Office.
- Ensured compliance with clients’ security policies and requirements.
- Reviewed and analyzed client needs, and conduct presentations of existing internal controls to client Management, Directors and Senior Managers.
- Co-chaired internal cross-functional Security Advisory Council of 10-15 individuals Confidential the Vice President and Director level.
- Established and maintained close working relationships with corporate security, internal auditing, risk management and legal aspects for 4 domestic data centers as well as offices in EMEA, LATAM, India and ASIA PAC.
- Responded to RFPs from a security aspect for Sales and Marketing departments.
- Initiated contacts with third-party security vendors to evaluate their products, negotiate contracts and sign off on purchases.
Internet Security Manager
Confidential
Responsibilities:
- Managed the enterprise Simple Mail Transfer Protocol (SMTP) gateways.
- Implemented SurfControl content filtering application.
- Evaluated and directed the installation and implementation of Neoteris SSL VPN (now known as Juniper).
- Additionally managed the staff responsible for supporting VOIP implementation to India office.
Senior Technical Manager
Confidential
Responsibilities:
- Responsible for architecture design, development and supervision of 7 developers in creating a Cellular Digital Packet Data (CDPD) application.
- The primary purpose of the application was data collection and billing of call detail records from CDPD enabled switches; it was a 3-tier client server application written in C++ on a Solaris 2.x platform with an Oracle 7.x database; clients using the application included Confidential &T Wireless, Confidential, Confidential and Confidential .
Manager Technical Support, Data Center
Confidential
Responsibilities:
- Oversaw the maintenance and support of Internet gateway and DNS naming services.
- Budgeted for and negotiated hardware maintenance contracts with vendors.
- Provided system performance analysis and consultation to application groups.