- Featured in:
Find out what is the best resume for you in our Ultimate Resume Format Guide.
Additional Data Systems Administration Resume Samples
Information Security Officer Resume Samples
No results found
0-5 years of experience
Created a company information security plan to compliment the company vision and strategy that ensured company and customer information was adequately protected.
- Conducted thorough risk assessment of all IT and non-IT assets that identified gaps and areas for improvement
- Created and fine-tuned information security policies that supported the objectives and requirements defined in the company security plan
- Designed and implemented internal security controls that were successful in ensuring 100% compliance with company security policies
- Successfully completed an external SSAE 16 security assessment with no findings
- Engaged with IT managers as a key member of major project teams to ensure security considerations were addressed early and effectively
- Developed metrics for measuring and improving the effectiveness of the overall information security plan
0-5 years of experience
Developed policies, controls and procedures to safeguard organizational assets, ensure data integrity, availability and confidentiality. Supported business continuity and ensured compliance with all government and industry regulations. Performed security investigations and coordinated incident response.
- Automated account creation process by integrating Tivoli access manager with active directory and PeopleSoft, enhancing the security posture and reducing risk.
- Performed risk analysis and risk assessments improving HIPAA compliance by 43%.
- Developed and implemented IT security policies and procedures achieving regulatory compliance.
0-5 years of experience
Administer and enforce the Information Security Program. Serve as Security Advisor to the Chief Executive Officer.
Develop IT Security strategic plans. Serve as mobile Network Security Officer. Provide policy, direction and prioritization of activities for staff at multiple sites globally. Provide plans for secure voice, video, and data injection into strategic networks for mobile Senior Executives. Build coalitions with government agencies and departments.
- Secured stakeholder requirements to ensure information security solutions aligned with the business need
- Identified and classified sensitive data by enclave in order to apply appropriate access controls
- Ensured that Information Security personnel adhered to and enforced security policies at each geographic location
- Conducted security assessments of clients programs IAW ISO 27002, NIST, and DoD frameworks
- Directed and coordinated all Sr. Executive IT security projects to include budget and acquisition
- Researched emerging technologies and identified use cases for inclusion into the Defense Security Profile
0-5 years of experience
Performed duties as the Information Security Officer for various NY State Agencies. Developed security policies and procedures for NYS Agencies to reflect inter/intra-agency initiatives. Ensure compliance with NYS CSCIC Gap Analysis and NYS Information Security Policy.
- Facilitated the encryption implementation for the NYS Integrated Justice Advisory Board.
- Directed NYS Division of Parole’s compliance with federal CJIS level for authentication.
- Devised and delivered an Information Security Awareness program to Parole’s Staff Development department to implement agency wide.
- Point of contact for all third party audits performed at Division of Parole.
- Team member in creating and implementing NYS Department of Labor’s Continuity of Operations Plan.
- Team member in the creation of NYS Department of Transportation’s Disaster Recovery and Incident Response Plan.
0-5 years of experience
Developed Information Security Access database for tracking users’ access rights and entitlements to Business Critical systems.
- Provided monthly reports to the Board and senior leaders on risks and threats posed to the company, including Information Security related issues and incidents.
- Conducted periodic gap analysis reviews of the internal Information Security program using industry standards e.g. ISO27001 and National Institute of Standards (NIST) Special Publications (800 Series) including 800-53.
- Monitored and managed Information Security risks through Operational Risk Self-Assessment process.
0-5 years of experience
Governed all county security policies, procedures, designs, networks, application deployments, and implementation of all facilities for [company name]. Established and implemented security program policies and standards for 40+ departments/agencies and over 900 locations. Collaborated with engineering and developers on security concerns for network and application projects. Presented Information Security topics for business-specific issues to senior leadership, department heads and the board of supervisors. Served as the County HIPAA Security Officer, establishing programs and evaluating compliance.
- Perform security audits and recommend/approve WAN/LAN architectural changes.
- Developed countywide WAN topology with firewalls and intrusion detection systems.
- Coordinated Business Impact Analysis, Disaster Recovery, and Business Continuity plans, programs, and testing.
- Investigated, gathered and documented inappropriate use and internal security incidents.
- Teamed with law enforcement in the investigation of network compromises that led to arrests and convictions.
0-5 years of experience
Provided day to day operations of enterprise security consulting, in the area of information asset management, risk and vulnerability management, audit and compliance, security awareness and training.
- Served as HIPAA Security Officer for (8) North Carolina Hybrid Agencies – interpreted regulations, wrote policies, developed and facilitated security training and managed compliance process.
- Developed training documentation for GLBA, SOX, AML and HIPAA compliance processes.
- Developed FISMA, ISO and NIST crosswalks and mapping.
- Provided guidance on developing, implementing and effectively managing security processes and programs (BCP, Incident Response Planning, Risk Management, Vulnerability Management, and Privacy)
- Led research and development of intrusion prevention models using a trusted framework and an anomaly approach.
6-10 years of experience
Served as an Architect in developing an integrated Information Security Strategy. Reports directly to the CIO.
- Designed OAS Information Security Architecture, a customized solution to centralize and correlate security
- Designed and developed a visual dashboard with an interactive world map, to visualize in realtime current
- Developed OAS Information Security Policies and standards.
- Developed and oversaw the implementation of the Bring Your Own Device strategy.
- Managed and developed the OAS mobile security lab and cyber security technical exercises simulating
0-5 years of experience
Expertly served as a LAN Manager maintaining and upgrading the local network resulting in 20% network speed increase.
- Utilized Retina Network Scanner to identify PC vulnerabilities and apply the appropriate patches.
- Repaired and diagnosed PC’s in person, via phone, and by electronic means.
- Diagnose and resolve IT related hardware and software issues.
- Worked outside of the standard business hours as necessary to maintain a high customer satisfaction rating.
- Experience with MS active directory to manage over 200 users and 130 PC’s.
0-5 years of experience
Directed a staff of 15 team members who supported a 24×7 Internet banking system.
- Coordinated security audits from multiple agencies including federal banking (OCC, FDIC, FRB, etc.), IBM, Ernst & Young, ICSA, etc. with excellent results.
- Directed the implementation and review of security audits for multiple agencies.
- Wrote security policy and procedures in accordance with senior management guidelines.
- Provided vision for network and network and security systems technology direction, modernization, and continuous process improvement.
0-5 years of experience
Responsible for the development, implementation, and management of policies, procedures, standards, controls, and awareness for Information Security best practices in UW-Platteville’s Information Technology environments. Coordinate the mitigation of security threats, vulnerabilities, and risks to include preventative measures, disaster recovery (DR), and business continuity planning (BCP). Work with senior management, business partners, the UW-System, and auditors in the development and implementation of compliance with applicable laws e.g. PCI-DSS, HIPAA, FERPA, etc.
- Identified gaps in current business process recovery capabilities. Created multi-phased plan for analysis and implementation of BCP/DR framework including planning, technical capacity, exercises and reporting.
- Analyzed environment to identify security awareness needs and coordinated procurement and implementation of a security awareness tool.
- Worked with internal partners and external consultants to identify gaps, needs, and best practices for PCI compliance.
- Served as interim Co-Chair of the [company name] Technology and Information Security Council (UW-TISC)
0-5 years of experience
Provided information security policy assistance on multi-million dollar contracts;
- Researched clearance reciprocity between nations;
- Worked closely with the President of Palantir USG to enhance security awareness enterprise-wide;
- Prepared and submitted Facility Security Clearances and DD254s for sub-contractors to Palantir USG;
- Completed System Security Plan and worked with the company’s information technology specialists to complete a classified local area network (LAN) within 4 days;
- Assisted with providing security responses for RFPs;
0-5 years of experience
Administrative Director of the electronic health record program for a large multi-facility healthcare organization.
- Led the implementation team and developed programs and materials to enhance the [company name] implementation and user training experience.
- Assessed the software and hardware specifications and requirements for the system and recommended and customized the changes as needed.
- Periodically met with and updated the board of directors.
- Assured that the staff complied with HIPAA privacy and security rules.
- Conducted administrative, physical, and technical risk analysis and assessments of all clinical and patient financial software per HIPAA and HITECH requirements.