Proven leader, committed to ensuring the integrity of security systems across multiple industries. Expert in Security Operations, Infrastructure Engineering and Architecture, Threat and Vulnerability Management, and Email Security. Possesses strong technical skills with the ability to take the lead in architect and designing, testing, implementing, and troubleshooting major security initiatives for both global and domestic companies of all sizes.Accomplishments:Served as a trusted advisor to clients by evaluating their needs and recommending product upgrades to meet requirements, establish best practices, and ensure timely delivery of all contracted deliverables.Conducted audits and tests of deployed applications and security controls to ensure compliance with industry standards and best practices.Conducted vulnerability assessments, penetration tests, and security audits, utilizing advanced techniques to identify potential security threats, and worked collaboratively with cross-functional teams to implement remedial measures.Managed and developed a Vulnerability Assessments and Remediation program utilizing vulnerability and compliance scanning techniques to identify and remediate potential security threats.Skills: Information Assurance | Security Program Management | Security Architecture | Network And Systems Management | Systems Engineering | Systems Integration | Network Engineering | Systems Analysis | Enterprise Architecture | Incident Response | Disaster and Recovery | SIRT Team | Sarbanes-Oxley | Mitigation of incidents | Project ManagementTechnical Skills: SIEM: Splunk | QRadar | LogRhythmCloud: AWS| Azure | CloudTrail | CloudWatch | Azure Security Center | SaaS | PaaS| IaaSVM Manage: Rapid7 INSIGHTVM | Nessus | Qualys | Metasploit | Core Impact | Threat Modeling | MSIP |Netsparker | InsightAppSec | InsightConnect | OWASP | DAST | MITFirewall/SWG: CheckPoint | Palo Alto | McAfee (SWG) | Netskope | Websense | MenloSecurity | Algosec | TufinEmail/DLP: Proofpoint | Symantec DLP | Digital Guardian DLP | 0365Applications: Cylance EDR | FireEye HX | CyberArk |Thycotic Secret Server| OKTA | SAML |Framework: NIST | SOX | PCI | HIPPA | FedRAMP | ISO | GDPR | CISNetwork: Cisco Firepower | FireEye NX | Snort | Enterasys Dragon IDS |Tipping Point IPSMobility: Microsoft Intune | BlackBerry | Good | VMware Airwatch | MaaS360 | Citrix XenMobile
-
Technical Account ManagerMenlo Security Inc. Sep 2021 - Feb 2023Mountain View, California, UsSoftware developer of Secure Web gateway applications.TECHNICAL ACCOUNT MANAGER (TAM)Managed multiple accounts including Defense Information System Agency (DISA) and Department of Defense (DOD), helping to implement and integrate software, identify required enhancements, assist with resolving problem tickets and working with engineering to solve problems. • Served as a trusted advisor to clients by evaluating their needs and recommending product upgrades to meet requirements, establish best practices, and ensure timely delivery of all contracted deliverables.• Collaborated closely with customers to define business requirements, identify enhancements, and deliver robust and valuable Menlo Security solutions, while providing technical coordination and addressing product-related queries in a timely manner.• Deployed and documented solutions according to the statement of work, trained customers on product use and capabilities, and provided feedback to developers to identify potential new features or products.• Showcased the effectiveness and relevance of the Menlo Security solution in meeting the unique requirements of clients.• Delivered technical coordination to clients throughout the pre- and post-sales process, effectively managing and promptly addressing all product-related inquiries. -
Security EngineerBankunited Sep 2016 - Sep 2021Miami Lakes, Fl, UsSecurity EngineerAssumed the responsibility of managing all cybersecurity applications for the Bank, improving cybersecurity architecture and implementing robust security measures strengthening against cyber threats.• Managed Proof of Concept (POC) for Cylance, Splunk, Netskope, and Digital Guardian then deployed them successfully. • Architected and managed Bring Your Own Device (BYOD) solution within Azure Intune, implementing security controls for secure mobile device access.• Developed and managed security training and skills improvement programs for staff using platforms such as RangeForce, InfoSec Institute and Udemy for Business.• Collaborated with external Pen Testing team to develop testing plans and remediation strategies, ensuring compliance with regulatory requirements.• Conducted audits and tests of deployed applications and security controls to ensure compliance with industry standards and best practices.• Responded to alerts and incidents of monitored systems leading workgroup meetings to determine appropriate actions. • Investigated, reported, and remediated potentially compromised assets based on attack surfaces and threat intelligence.• Performed threat modeling assessments for applications, mitigating security risks and vulnerabilities in the design phase. • Managed BankUnited’s Vulnerability Management Program which included utilizing Nexpose, Metasploit and Appscan.• Performed security audits, penetration testing, and vulnerability assessments to identify potential threats, collaborating with cross-functional teams to implement remedial measures..• Leveraged threat intelligence and research to detect and prevent cyber-attacks, applying insights to safeguard IT assets.• Responded to security alerts and incidents, addressing suspicious network traffic, phishing emails, and malware. • Provided monthly briefings to senior management, recommending measures to maintain a secure environment and ensure compliance. -
Computer ScientistComputer Sciences Corporation (Csc) Apr 2000 - May 2016Lead Security Architect Global Network Solutions North AmericaManaged team to design and implement best of breed solutions for Security of CSC’s and client systems.•Headed development, testing, and implementation of security policies. Provided technical analysis and guidance, and formulated effective resolutions.•Enhanced CSC's information infrastructure security through regular scans, creating procedures and defining risk management process.•Developed and implemented robust security policies and processes, including security vulnerability assessments of CSC's network comprised of 1000’s if devices and auditing firewalls for both CSC and its clients.•Conducted quarterly internal audits in strict adherence to Sarbanes-Oxley and SAS-70 standards.•Managed Semi-Annual Vulnerability Assessments and audits of CSC's 800 internal firewalls (Check Point and Cisco ASA).•Performed comprehensive vulnerability assessments of networks and addressed security vulnerabilities.•Gathered information and reports on hardware and software vulnerabilities, analyzed their nature and impact to devise effective strategies for detecting and remediating such vulnerabilities.•Designed, implemented, and maintained Intrusion Detection Solutions for various clients.•CSC SIRT member developed security policies, evaluated software and hardware for security flaws, and proactively identified and minimized threats.•SIRT Team member responsible for conducting Vulnerability Assessments (VA) testing, addressing security audit queries, and formulating policies for VA testing across all clients of CSC.•Conducted extensive training sessions to equip clients and colleagues with the requisite knowledge and competencies to efficiently employ CSC's advanced security auditing procedure.•Guided a team through three external audits, resulting in successful outcomes for each.•Created confidential documents addressing critical security concerns for CSC clients.
Frequently Asked Questions about Alexis Figueroa
What is Alexis Figueroa's role at the current company?
Alexis Figueroa's current role is Senior Security Engineer | Cloud Security | Vulnerability Management | Security Architecture | Incident Response | Mitigation of Incidents.
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial