Information Security Officer
CurrentIn this role I wear many hats:Compliance Management and Delivery: - PCI DSS - PCI 3DS - PCI SSF - CyberEssentialsCybersecurity: - Application Pentesting - Infrastructure Pentesting - API Pentesting - Cloud Pentesting - AI Attack Surface - Subject Matter Expert - across all domains - SAST\DAST tools (Semgrep, Sonarcube, Snyk) - Training (SANS25, OWASP10)Frontend Product: - Website Administration - Webserver Administration - Utility Application DevelopmentPlatform Exeperience: - Cloudflare - Qualys - Lacework - DatadogNew product and platform discovery. I actively seek out new platforms that can be used to strengthen the security posture of the business.