Senior Information Systems Professional in Governance, Risk Management, Compliance (GRC), Cybersecurity, Information Security, Business Continuity Disaster Recovery (BCDR), and IT Audit across multiple industries. Seasoned team player experienced in functioning as lead or as an independent. Ability to adapt in changing environments while promptly resolving GRC, Security, BCDR, and Audit issues.Specialties: Cybersecurity Maturity, GRC, Risk Assessment, Infrastructure Control management/ testing, Gap Remediation, Policy/Procedure, Audit Plans, ID and Access Management, OS Security, Network Security, Physical security, Database security, Business Continuity Disaster Recovery planning/testing, SOX, ISO/IEC 27001/2/5, NIST CSF/ 800-53/ 800-171. CMMC.Utilized skills:-Information Security Program Framework, Security Architecture, Security Administration/ Design/ Implementation, Security Engineering, IDS/IPS, LAN/WAN, Firewalls-IT Audit (Test, Reports), TeamMate, Technical Risk Management, RCSA, RSA Archer Risk Management -Standards - PII – Data Privacy Act, CCPA, HIPAA, GDPR, PCI DSS, NERC/CIP, SSAE 16-Framework – COBIT, COSO, ITIL-IT Management, Communication Management, Project Management, Project Delivery Framework, Change Management, System Development Life Cycle, SLA Management, Technical Writing, IS Training-Impact Analysis, Interpersonal Skills, Likeability, Reasoning Skills, Team Building -Active Directory, SAP – Basis/Security, Windows Server, Linux, Unix, AS/400, Oracle, SQL Server, Sybase-Microsoft Office Suite, Visio, SharePoint, Lotus Notes, IDEA, Tableau, Splunk, ArcSight, WireShark, Nessus, NMAP
Listed skills include Cisa, Information Technology, Coso, Information Security, and 46 others.