Experienced Information Security Systems Engineer
Experienced Information Security Systems Engineer with over 5 years of hands-on expertise securing enterprise IT environments within the financial sector. Proven track record of delivering security projects, including DLP implementations, firewall management, and identity access controls across global banking infrastructure. Skilled in managing a wide range of security tools such as CyberArk, CrowdStrike, and Palo Alto, and ensuring compliance with frameworks like NIST, ISO 27001, and COBIT. Known for a disciplined, proactive approach to protecting critical systems in highly regulated environments.
Key Achievements
- Managed Palo Alto and Check Point firewalls, enhancing network security across 10,000+ users, and helped reduce unauthorized access events by 30% through optimized rule sets and policy enforcement.
- Administered and maintained key security tools including CyberArk, CrowdStrike, Imprivata, Varonis, Imperva, Illumio, and multiple SIEM solutions reducing response time to threats by 40%.
- Enhanced identity and access management across Active Directory and Azure AD, ensuring secure and role-based access for 6,000+ internal users and external stakeholders.
- Delivered and supported a Data Loss Prevention (DLP) project across 5,000+ endpoints, safeguarding sensitive financial data and aligning with global compliance standards.
- Supported the execution of security projects, contributing to project planning, documentation, risk assessments, and timely delivery in a highly regulated financial environment.
- Participated in audits and risk assessments aligned to NIST 800-53, ISO 27001, COBIT, and FS-ISAC, contributing to a clean audit track record and maintaining compliance with internal and external regulations.
- Implemented and supported secure browser environments (e.g., Island.io), decreasing shadow IT and unsanctioned access by 25%.
- Developed and maintained technical documentation, process flows, and knowledge base content to improve consistency across the security operations team.
- Collaborated with infrastructure, compliance, and application teams to secure business-critical banking systems while supporting change and release management processes.
- Demonstrated strong communication skills, regularly briefing leadership and stakeholders on risk posture, project status, and incident response actions.