Infosec Ops Assurance Sr Manager
I reported directly to the InfoSec Assurance Sr. Director and led a team of six, including four Assurance Audit Analysts and two Developers. I spearheaded the InfoSec Ops Assurance team, overseeing internal policy controls assessments, automating compliance audit evidence collection, conducting on-site audits, and performing critical vendor security assessments. My focus was on driving compliance by automating audit evidence processes, enhancing customer experiences, and conducting vendor security audits. I also collaborated with Internal Audit to address governance, risk, and compliance (GRC) issues in support of all cloud services.► I implemented and managed a formal enterprise customer audit program, which streamlined responses to information security audits and alleviated stress on sales, account management, product, and support teams. This initiative not only delivered high-quality service that exceeded customer expectations but also supported $1.2B in contracts. The program enhanced information security assurance, strengthened customer trust, and reinforced long-term business partnerships, with feedback reflecting high confidence in our security measures.► I also led the Compliance Evidence Automation project, which involved creating automated solutions for collecting information security compliance evidence. This innovation eliminated the need for manual evidence collection, saving over 25,000 hours and reducing overhead and operational costs by approximately $2M.► I streamlined the Policy Control Assessment program, reducing turnaround time from 16 to 9 months by re-engineering processes and increasing departmental headcount. This improvement enabled faster awareness and implementation of corrective actions, significantly enhancing our organization's security posture.► I developed a training program that led to eight security certifications in one year, including CISSP, CISA, PCI DSS, CSA Star, and AWS, ensuring the team's skills stayed up-to-date.