Senior Cyber Security Architect | Ssdlc Initiative Member
Current== sSDLC Framework Development:• sSDLC Framework Establishment:re-development of PDiG's sSDLC framework, laying a robust foundation for integrating security practices throughout the software development lifecycle.• Strategic Framework Audits and Executive Advisory:Conducted comprehensive audits of the sSDLC framework, providing critical insights into its adaptation and effectiveness. Offered expert advisory to the C-suite on enhancing sSDLC practices, directly contributing to the strategic direction of cybersecurity efforts and the establishment of a dedicated cybersecurity architecture layer within the organization.• LISO and Portfolio Owner Guidance: advised on both the sSDLC framework and broader cybersecurity operational practices to Local Information Security Officers and Portfolio Owners.• Deliverables Development for sSDLC:developed tools and deliverables to support the sSDLC framework, including asset classification, threat modeling and documentation templates.• AI Integration Research in Secure Design:Initiated and conducted forward-looking research into the integration of Artificial Intelligence in secure design practices, threat modeling, and asset classification.== Cybersecurity Architecture:• Security Audits: Conducted in-depth security reviews for 10-15 IT initiatives, crucial for identifying vulnerabilities in design and implementation and reinforcing the security posture within the PAG FDI2 ecosystem.• Security Processes Optimization: Identified and addressed optimization opportunities in our security concept processes, aiming for significant improvements in both the precision and efficiency of our cybersecurity operations, and to further increase trust between PAG and PDG.• Gap Analysis Tool Development: co-developed and design of a tool that efficiently aligns our PAG security requirements with NIST 800-53 standards of PAG third parties.