Information Security Program Director
El Segundo, California, Us
• Managed multi-million-dollar Information Security Program initiatives comprising of more than 20 projects such as Vulnerability Management, Managed Endpoint Protection, DLP, Identity and Access Management.• Established Vulnerability Management program – policy, process, standards and procedures.• Established automated Patch Management solution from ground up, for Enterprise IT Infrastructure and Endpoints - Windows, Non-Windows & Network devices.• Established automated patch management for unique mobile offices.• Managed multiple SCCM implementation projects for multi-domain, multi-geography environments, mobile offices and devices on cloud infrastructure• Directly responsible for policy refresh on a wide range of Information Security policies.• Accountable for quarterly Access Certification for the Enterprise via SailPoint. • Played a key role in security audits and compliance functions.• Accountable for compliance of all Servers and Workstations with respect to Microsoft Security updates, patches and hot fixes. • Generated compliance reports status for IT Director and CISO on a weekly and monthly basis.• Gathered asset inventory source of truth from several sources such as SCCM, DNS, McAfee EPO and reconciles to provide close to 100% accurate Asset Inventory, via use of CMDB for better asset management.• Served as a trusted security advisor for application and business owners – created security awareness.• Prepares patch calendars, stakeholder communication, testing and sign-off processes.• Analyzed the security requirements of the client’s organization and makes specific recommendations for implementation. Created management dashboards for IT Directors and CISO.• Ransomware prevention and remediation experience.