Information Security Manager
Skybec Technologies
01.2021 - Current
- Managed a team of 5 IT professionals responsible for the organization IT infrastructure, applications, security and support services.
- Managed teams responsible for implementing new technologies that enhance overall cybersecurity posture.
- Contributed to IT steering committee in developing and implementing IT security strategy, resulting in 50% decrease in security incidents and successful compliance with industry regulations.
- Collaborated on IT steering committee to manage IT budget and vendor relationships, negotiate contracts, and implement cost-effective solutions.
- Served as security focal point within organization's IT infrastructure, monitoring alerts from all IT-managed systems and taking actions to mitigate security risks or vulnerabilities.
- Modeled IT operations and security policies according industry standards (ISO 27001, NIST)
- Managed software development projects using SDL techniques from concept to execution.
- Translated monthly cybersecurity reports and assessments into actionable insights for management decisions
- Provided advanced Level 4 support to troubleshoot and resolve complex software issues, replicating customer environments and network problems as needed.
- Installed and configured firewalls, antivirus software, and other security solutions.
- Documented issues and collaborated with Risk Assessment Department to provide solutions when needed.
- Performed risk assessment and threat analysis to identify security gaps in the organization's IT infrastructure.
- Researched latest developments in cybercrime prevention strategies.
- Trained personnel on best practices for information security management.
- Conducted regular system audits to ensure compliance with established security requirements.
- Ensured monitoring and update of software licensing for network and software infrastructure to implement latest security measures and patches
- Lead procurement process of acquiring IT digital assets.
- Conducted security assessments, ensured compliance with industry standards and regulations, and delivered user training.
- Developed and implemented regular backup strategies to ensure the recovery and security of confidential data.
- Ensured systems were developed according to standards, policies, and system requirements.
- Planned and implemented organizational IT policies.
- Collaborated with cross-functional teams to develop and implement IT disaster recovery plan, ensuring business continuity in the event of a disaster.