Information Security Manager
CurrentOversees Security, Compliance, and IT departments, driving cross-functional collaboration and aligning technical strategies with organizational objectives.Develop and Enforce Security Policies that reduce breach risks and ensure compliance with PCI-DSS, GDPR, and other regulatory standards.Directed efforts to automate compliance processes, ensuring seamless PCI-DSS and NIST compliance audits.Orchestrated Automation of Employee Onboarding and Offboarding, achieving a 96.7% reduction in process time.Achieved a 99% Reduction in PCI Audit Findings through the implementation of robust compliance policies, automation tools, and rigorous team collaboration.Reduced vulnerabilities by 87.9% and Mean Time to Resolve (MTTR) by 38.4% Drove Security Awareness Initiatives, reducing phish-prone score from 24.0% to 1.8% through targeted training, phishing simulations, and enhanced communication strategies.Manage security of AWS, optimizing scalability, resilience, and security through automation and best practices.Supervise IT Operations, including endpoint management, network security, and onboarding processes, to enhance user productivity while maintaining robust access controls.Led information security initiatives, implementing robust policies and managing team performance to safeguard critical data assets.Spearheaded AWS infrastructure redesign using Terraform, enhancing system resilience across multiple AZs and regions for improved operational efficiency.Conducted comprehensive risk analyses, developing strategic processes to mitigate security breaches and overseeing incident response protocols.Partnered with development and QA teams to streamline code deployment, while managing application servers, databases, and load balancers.Orchestrated task automation and configuration management significantly improving system reliability and reducing manual interventions.