IT Security Analyst II Resume
Objective : IT Cyber Security Analyst that specializes in web application security. Looking to do more security penetration testing.
Skills : Web Application Security Tool Set AV, IPS And IDS (FireEye, (Burp Suite Pro, OWASP ZAP, Etc) CheckPoint, Symantic, Etc) Networking Security Tool Set Windows / OSX / Linux (WireShare, NMAP, Etc) SharePoint Python, HTML, CSS, JS, Objective C Back Track / Kali Linux Toolbox Swift 2.0
Description :
- Responsible for end to end security, ensuring that the confidentiality, integrity and availability of all Sports authority data is not breached, infected or compromised in anyway by outside malicious users.
- By utilizing a defense in depth approach and identifying areas of potential weakness.
- Primary IT security lead on high profile integration and implementation projects. Many of these projects helped generate cost effective, automated solutions that required ground up security architecture,.
- Performed full application security assessments and analysis on newly built and existing applications.Because of these efforts, many potential security threats were identified before being released into a production environment.
- Existing production security vulnerabilities were promptly remediated upon discovery, thus greatly reducing the overall security risk within sports authority.
- Continuous monitoring of the sports authority network and internal systems for malicious activity.
- Numerous attacks and security threats targeted at company have been prevented because of these efforts.
Experience
0-2 Years
Level
Entry Level
Education
Business
Vulnerability Analyst / IT Security Analyst Resume
Summary : A brilliant and detail oriented Information Security Auditor seeking a position in a growth oriented organization with focus on FISMA, Sarbanes-Oxley 404, system security monitoring and auditing; risk assessments; audit engagements, testing information technology controls and developing security policies, procedures and guidelines.
Skills : Information Assurance (IA), Certification and Accreditation (C&A), Risk Management, Authentication & Access Control, network and cyber security, System Monitoring, Regulatory Compliance, Physical and environmental security, Project Management, Incident Response, and Disaster Recovery.
Description :
- Conducted security control assessment to assess the adequacy of management, operational privacy, and technical security controls implemented. Security assessment reports (sar) were developed detailing the results of the assessment along with plan of action and milestones (poa&m).
- Developed risk assessment report to identify threats and vulnerabilities applicable to smart think systems. This report also evaluates the likelihood of vulnerability being exploited, assesses the impact associated with these threats and vulnerabilities, and identified the overall risk level.
- Assist in the development of an information security continuous monitoring strategy to help in maintaining an ongoing awareness of information security.
- Ensure effectiveness of all security controls, vulnerabilities, and threats to support organizational risk management decisions.
- Lead in the development of privacy threshold analysis (pta), and privacy impact analysis (pia) by working closely with the information system security officers (issos), the system owner, information owners and the privacy act officer.
- Develop a system security plan to provide an overview of federal information system security requirements and describe the controls in place or planned to meet those requirements.
- Responsible for the development of key security standards by performing an in-depth security assessment of information systems in order to maintain fisma compliance by implementing guidelines and standards identified in the national institute of standard and technology (nist) 800 series in facility.
Experience
7-10 Years
Level
Executive
Education
BA
IT Security Analyst (Contractor) Resume
Summary : Skilled Information Security Analyst with expertise in risk management framework (RMF), systems development life cycle (SDLC), risk management, and vulnerabilities management of a wide range of vulnerabilities and threats. Well-versed in direct and remote analysis with Strong critical thinking communication and people skills.
Skills : Assessment and Authorization (A&A), IT Security Compliance, Vulnerability Assessment, Vulnerability Scanning, Risk Assessment, Technical Writing, Project Management and Support, Impact Analysis
Description :
- Developed, reviewed, and updated information security system policies, system security plans, and security baselines in accordance with nist, fisma, omb app. Iii a-130 and industry best security practices.
- Applied appropriate information security control for federal information system based on nist 800-37 rev1, sp 800-53, fips 199, fips 200 and omb a-130 appendix iii.
- Provided security expertise and guidance in support of security assessments. Review, analyze and evaluate business system and user needs, specifically in authorization and accreditation (a&a).
- Facilitated security control assessment (sca) and continuous monitoring activities. Executed examine, interview, and test procedures in accordance with nist sp 800-53a revision 4.
- Ensured cyber security policies are adhered to and that required controls are implemented. Validated information system security plans to ensure nist control requirements are met.
- Developed resultant sca documentation, including but not limited to the security assessment report (sar). Reviewed security logs to ensure compliance with policies and procedures and identifies potential anomalies.
- Updated and reviewed a&a packages to include core docs, policy & procedures, operations and maintenance artifacts, ssp, sar, fips 200, fips 199, poa&m, cptpr, bia, pta, pia, and more. Collected operation and maintenance artifacts on an ongoing basis so that security control assessment (sca) is seamless.
Experience
7-10 Years
Level
Consultant
Education
BS
IT Security Analyst (Consultant) Resume
Objective : Security Assessment and Authorization (SA&A) professional with 4 years of experience in Risk Management Framework (RMF), Systems Development Life Cycle (SDLC), security life cycle and vulnerability management using FISMA, OMB, HIPAA and applicable NIST standards. Proven enterprise experience in security management, aptitude for good customer service, leadership, and excellent communication and presentation skills.
Skills : Information Technology Management, Security, Data Mining, Project Management, Risk Management, Critical Thinking, Customer Service
Description :
- Provided security expertise and guidance in support of security assessments.
- Participated in weekly IT security team meetings to provide guidance and support for the development of enterprise security architecture.
- Executed examine, interview, and test procedures in accordance with nist sp 800-53a revision 4. Ensured cyber security policies are adhered to and that required controls are implemented.
- Validated information system security plans to ensure nist control requirements are met. Developed resultant sca documentation, including but not limited to the security assessment report (sar).
- Assisted team members with proper artifact collection and detail to clients' examples of artifacts that will satisfy assessment requirements.
- Reviewed security logs to ensure compliance with policies and procedures and identifies potential anomalies.
- Made input in data calls to ensure it security projects are on track. Worked with systems and network administrators to develop implementation statement for security controls.
Experience
2-5 Years
Level
Junior
Education
BS
Information Security Analyst II Resume
Summary : Detail-oriented Information Security Analyst with 10 years of experience in risk assessment, security controls, and compliance. Proven track record in developing security policies and implementing effective security measures to protect sensitive data.
Skills : HIPAA Compliance, Vendor Security Assessment, Risk Assessment, Incident Response
Description :
- Implemented robust security controls to safeguard sensitive data and resources.
- Conducted comprehensive risk assessments to minimize security and legal exposure.
- Performed vulnerability scans on systems to identify and remediate risks.
- Monitored security logs to detect and respond to suspicious activities.
- Managed web security gateways to control user access and mitigate threats.
- Executed quarterly user access reviews to enforce strict access controls.
- Reviewed and updated security policies to align with regulatory requirements.
Experience
10+ Years
Level
Consultant
Education
MS
Information Security Analyst I Resume
Summary : Dedicated Information Security Analyst with over 10 years of experience in safeguarding enterprise systems, conducting risk assessments, and ensuring compliance with industry standards. Proven track record in vulnerability management and incident response.
Skills : Windows Security, Mainframe Security, Incident Response, Risk Assessment, Vulnerability Management
Description :
- Administered identity and access management lifecycle, ensuring compliance across enterprise systems using SailPoint.
- Collaborated with developers and IT teams to integrate new applications into the identity management platform.
- Monitored identity controls and conducted risk assessments to identify compliance gaps.
- Managed role-based access control and access requests, ensuring adherence to security policies.
- Created, modified, and deleted user accounts and privileges in Windows environments via Active Directory.
- Configured access permissions for security groups across applications and network resources.
- Automated repetitive tasks using VBScript, enhancing operational efficiency.
Experience
10+ Years
Level
Management
Education
Bachelor Of Engineering
Information Security Analyst I Resume
Summary : Detail-oriented Information Security Analyst with over 10 years of experience in safeguarding sensitive data, implementing security protocols, and leading security initiatives. Proven track record in risk assessment and compliance management.
Skills : Database Security, Data Protection, Identity Governance, Documentation Skills, Network Security
Description :
- Led information security projects ensuring timely delivery, budget adherence, and quality standards.
- Evaluated security impacts of new initiatives and provided guidance to maintain security posture.
- Managed implementation and maintenance of identity management solutions, enhancing user access security.
- Directed user provisioning and role evaluations, producing entitlement reports for compliance reviews.
- Acted as a subject matter expert in security discussions with stakeholders and vendors.
- Ensured compliance with SOX controls, executing security measures consistently.
- Developed and updated security policies to address evolving threats and business needs.
Experience
10+ Years
Level
Consultant
Education
BS
Information Security Analyst (SOC) Resume
Objective : Detail-oriented Information Security Analyst with 5 years of experience in risk assessment, vulnerability management, and security compliance. Proven track record in implementing security measures to protect sensitive data and enhance organizational security posture.
Skills : Identity and Access Management, Vulnerability Assessment, Incident Response, Security Auditing, Network Security
Description :
- Collaborated with cross-functional teams to assess and enhance security protocols for Unix server environments.
- Documented and analyzed current access structures, translating business requirements into effective security solutions.
- Provisioned new access requirements based on job roles, ensuring secure server communications and account management.
- Prepared documentation and support files for server migration, ensuring compliance with security standards.
- Provided on-site support during scheduled migrations, representing the security management team.
- Resolved post-migration access issues, ensuring minimal disruption to business operations.
- Tracked and reported on privileged access reductions to meet project compliance goals.
Experience
2-5 Years
Level
Junior
Education
BSc Cybersecurity
Jr. Information Security Analyst Resume
Objective : Detail-oriented Information Security Analyst with 5 years of experience in risk assessment, security controls, and incident response. Proven ability to enhance security posture and ensure compliance with industry standards.
Skills : Security Operating Systems, Risk Assessment, Incident Response, Vulnerability Management, Security Auditing
Description :
- Participated in risk assessment meetings to identify vulnerabilities and develop mitigation strategies.
- Updated System Security Plans (SSP) in compliance with NIST SP 800-18, enhancing security documentation.
- Reviewed and evaluated security controls to protect organizational data effectively.
- Applied ISO and COBIT standards to maintain acceptable risk levels within information systems.
- Developed and enforced policies for management, operational, and technical security controls.
- Conducted network configuration audits to ensure compliance with regulatory standards.
- Provided expert analysis on security systems, offering recommendations for improvements.
Experience
2-5 Years
Level
Junior
Education
BSc Cybersecurity
Information Security Analyst Resume
Summary : Dedicated Information Security Analyst with over 10 years of experience in safeguarding sensitive data and ensuring compliance. Proven expertise in risk assessment, vulnerability management, and security policy implementation.
Skills : Security Policy Development, Vulnerability Assessment, Incident Response
Description :
- Conducted comprehensive audits of firewall configurations using SolarWinds FSM, ensuring compliance with change control protocols.
- Managed nodes, rules, and user access in SolarWinds LEM, enhancing security event monitoring and response.
- Performed vulnerability assessments on servers and network devices using QualysGuard, identifying and mitigating risks.
- Analyzed web application vulnerabilities with QualysGuard WAS, providing actionable remediation strategies.
- Monitored endpoint security across devices using Sophos, enforcing policies for antivirus and malware protection.
- Implemented encryption and device protection policies with Sophos, safeguarding sensitive data across the organization.
- Configured Barracuda WAF to protect web applications, optimizing security settings and blocking malicious traffic.
Experience
10+ Years
Level
Management
Education
M.S. Cybersecurity
Information Security Analyst Resume
Objective : Detail-oriented Information Security Analyst with 5 years of experience in vulnerability assessment, risk management, and security compliance. Proven ability to enhance security protocols and mitigate risks in fast-paced environments.
Skills : Open Source Tools, Vulnerability Assessment, Risk Management, Security Compliance, Incident Response
Description :
- Installed and configured Security Content Automation Protocol (SCAP) software to enhance system security.
- Applied Microsoft and Windows updates to ensure compliance with security standards.
- Executed SCAP protocol, documenting vulnerabilities for management review and policy compliance.
- Utilized configuration management checklists to assess and manage security configurations across devices.
- Conducted automated network vulnerability scans and configuration assessments to identify security gaps.
- Compiled data from Information Assurance Vulnerability Alerts (IAVAs) to inform security strategies.
- Monitored and reported IT security violations, ensuring prompt remediation.
Experience
2-5 Years
Level
Entry Level
Education
BSc Cybersecurity
Information Security Analyst Resume
Summary : Results-driven Information Security Analyst with 10 years of experience in risk management, security assessments, and compliance. Proven track record in developing security protocols and mitigating risks to protect organizational assets.
Skills : Data Protection, Security Information and Event Management, Threat Analysis, Incident Response, Vulnerability Assessment
Description :
- Acted as a Subject Matter Expert in IT risk management, guiding projects to enhance security posture.
- Collaborated with business units to evaluate the impact of strategic decisions on security risks.
- Conducted audits and documented compliance with security policies across departments.
- Developed and maintained security dashboards to monitor compliance and risk metrics.
- Designed management reports to provide insights into security performance and vulnerabilities.
- Led the implementation of the Archer SmartSuite framework for risk management.
- Revamped the vulnerability management program, improving tracking and reporting of security issues.
Experience
10+ Years
Level
Management
Education
M.S. Cybersecurity
Information Security Analyst (InfoSec) Resume
Summary : Results-driven Information Security Analyst with 10 years of experience in risk management, compliance, and cybersecurity. Proven track record in implementing security measures, conducting audits, and enhancing organizational security posture.
Skills : Network Security, Incident Response, Vulnerability Assessment, Security Compliance, Risk Management
Description :
- Served as a key liaison to integrate cybersecurity efforts across federal energy regulatory bodies.
- Reviewed and enhanced FISMA compliance measures, leading to improved governance initiatives.
- Developed and executed a comprehensive anti-phishing training program, increasing user awareness.
- Authored a detailed SOW for external vendors to conduct penetration testing on critical networks.
- Evaluated cloud service providers for security accreditation and operational authority.
- Established new SOPs for Security Operations Center, enhancing daily operational efficiency.
- Analyzed DHS cybersecurity assessments to identify and remediate vulnerabilities in systems.
Experience
7-10 Years
Level
Management
Education
M.S. Cybersecurity
Information Security Analyst Resume
Summary : Results-driven Information Security Analyst with 10 years of experience in risk assessment, vulnerability management, and compliance. Proven track record in enhancing security protocols and safeguarding sensitive data across diverse industries.
Skills : PCI Compliance, Network Security, Risk Assessment, Incident Response, Vulnerability Management
Description :
- Led security certification projects, ensuring compliance with industry standards and regulations.
- Verified policies and controls in alignment with ISO 27001, ISO 9001, and PCI standards.
- Organized documentation for PCI and ISO certifications, streamlining the audit process.
- Identified security gaps in internal policies, enhancing overall security framework.
- Conducted audits to pinpoint process improvements, increasing operational efficiency.
- Built strong relationships with internal and external stakeholders to foster a security-first culture.
- Managed certification body relationships, overseeing audit scheduling and compliance activities.
Experience
7-10 Years
Level
Senior
Education
BS