Information Technology Security Administrator
Current• Develops and maintains secure configurations for VPN infrastructure, authentication schemes, firewall infrastructure, malware protections, web application firewalls, web filtering protections, and intrusion prevention systems. • Monitor activity and event logs to identify security breaks (intrusion detection).• Aligns security posture to industry standard security controls.• Configures and uses toolsets such for vulnerability management and anti-malware.• Configures and administers security systems, analyzes security requirements, and recommends improvements.• Creates and implements IT security policies, standards, guidelines, and procedures to support the Information Security Program.• Creates, manages, and provides security awareness training including best practices, protocols, and controls. • Acts as the subject matter expert in identifying and defending against threats and develops disaster recovery plans.• Manages the vulnerability patch management process and ensures all moderate to high risks are identified, assessed, and mitigated.• Acts as an IT security subject matter expert for hardware and software implementations.• Develops cyber security requirements which address identified risks and business security requirements.• Proposes changes to existing policies and procedures to ensure operating efficiency and policy compliance.• Serves as an active and consistent participant in the information security governance process.• Serves as an active participant of MS-ISAC for security landscape awareness and reporting.• Coordinates and performs vulnerability assessments using industry tools and techniques; reports the findings to custodians and stakeholders. • Remains current on new viruses, hardware and software security patches and known system vulnerabilities to ensure proper policies and procedures are current.