Information Security Engineer
Current• I troubleshot authentication issues, optimized client installations, refined access control policies, and implemented secure network protocols for targeted hosts, which resulted in a 100% reduction in unauthorized access and internal movement risks.• I enhanced system protection by analyzing and addressing security incidents in Microsoft Defender and Sentinel.• I safeguarded sensitive information in compliance with privacy regulations by establishing vendor agreements and conducting data privacy reviews of digital tools.• I cut response time to critical alerts from minutes to seconds by creating security orchestration and automated security playbooks, which terminated sessions, reset passwords after users clicked malicious links, and isolated hosts during ransomware incidents.• I developed an external vulnerability scanning program with CISA to improve cyber hygiene and secure web applications:• I automated scheduled scans of data center hosts within specific IP ranges and generated reports for vulnerability management by installing scanners on virtual machines.• I remediated all critical vulnerabilities within 30 days, adhering to cybersecurity insurance requirements.• I transitioned 99% of contractors to a secure VPN for remote access by assessing their business needs and improving security for internal network and infrastructure applications.Skills: Authentication & Access Control Optimization, Incident Response & Security Automation, Data Privacy & Compliance Management, Vulnerability Management & Remediation, Secure Remote Access Implementation