Manager Of Information Security
Marlborough, Ma, Us
I designed the strategic direction for a companywide information security program. I thoroughly reviewed the existing environment, identified underperforming areas, and implemented improvements to increase productivity while streamlining business processes. Built and managed high performing InfoSec architecture and InfoSec Engineering teams charged with executing strategic plans to ensure delivery of quality solutions and services. Built and instituted effective security policies, guidelines, and standard operating procedures (SOPs) to mitigate risks, and enhance security measures. I supported procurement, budgeting, and project management business critical security projects, and built meaningful relationships with third-party vendors and consultants to negotiate security technology purchases, and enhance new business development efforts through networking and referrals. Key member of the Enterprise Architecture steering committee, tasked with defining, leading, and finalizing security initiatives.* Effectively decreased system variance and downtime while simultaneously enhancing system reliability by improving and maintaining security infrastructure and increasing visibility.* Led deployment of antivirus solutions across datacenters and retail locations. Instituted system health monitoring, and investigative services to track antivirus activities and incidents.* Functioned as Subject Matter Expert (SME) in SOX, PII, PCI, and legal compliance issues to execute and finalize internal and external audits, including addressing gaps found during audits to ensure compliance with regulatory requirements.* Collaborated with Enterprise Architecture and Security Solutions teams to investigate privileged password management and identity management solutions, performing all associated tasks including needs analysis and vendor discussions, to develop management recommendations.