SEAN E. HASS
Middleburg Heights, OH 44130
acg5lz@r.postjobfree.com
QUALIFICATIONS & SKILLS PROFILE
Analyze and remediate Access Control policies and procedures.
Analyze and remediate Active Directory Human IDs, Non-Human IDs and groups.
Network vulnerability monitoring, analysis and remediation.
Outline, create and monitor security baselines
Comprehensive knowledge of Compliance Regulations, financial privacy regulations, banking conduct, and ethics.
Strong Risk Management and Compliance experience, including internal control testing for financial, operational and compliance process.
Some experience with Linux
Some experience with PowerShell scripting
Strong in strategic design and implementation
EDUCATION
CompTIA A+ Certification
Cuyahoga Community College - Cleveland, Ohio
CISCO Router Configuration Fundamentals
CCNA Boot camp
New Horizons ? Garfield Heights, Ohio
Networking Essentials
Security+
CCNA
CCNA Security
CCNA Wireless
CCNP
CISSP
CEH
United States Navy
Aviation Machinist Mate
PROFESSIONAL EXPERIENCE
Key Bank National Association, Cleveland, Ohio
Information Security Analyst - Corporate Information Security, April 2007 ? October 2013
? Implement Data gathering and Remediation steps to identify developer access levels. Partner with the Lines of Business to remediate the users with inappropriate access and align them with corporate, SOX, OCC and GLBA guidelines.
? Routine access control and security baseline testing of the following Platforms: Windows, SAN, Unix, Sybase, Oracle, Tivoli Access Manager, Software Configuration Load Management, Webmethods, Websphere, DB2 Z/OS, Active Directory.
? Daily monitoring, analyzing and remediation of network vulnerabilities. Such as Missing security patches, network security baseline configurations.
? Evaluate access control design effectiveness, operating effectiveness to identify gaps and weaknesses.
? Participate in annual business compliance and operational assessments to ensure appropriate and consistent testing needs exist for each line of business, platform and database. Consult with business units regarding compliance risks, internal controls, and issues.
? Identify and monitor compliance violations, internal control weaknesses on the platforms, databases, Active Directory and LDAP, providing sufficient and timely reporting to management.
? Work with the network support teams to ensure their Authentication/Authorization processes met guidelines and there was separation of duty in granting the access.
? Partner with the business unit to establish and set priorities, and develop solutions to resolve control gaps and weaknesses identified as issues during internal and external, audit reviews.
? Recommend efficient and effective processes for managing risk. Formulate appropriate testing procedures to evaluate those controls, along with their testing requirements and frequency.
? Identify vulnerabilities in the network in regards to the server and applications on the servers. Determine best approach to resolve vulnerability with patching, code changes or access changes.
? Lead various sub-tasks and/or projects to drive progress. Such projects include: Developer Access, Server patching, Active Directory Management of Windows groups with Escalated Privileges.
? Liaison to the business unit when introducing new applications to the environment. Partner with the business unit to formulate proper controls to setup, monitor and maintain proper access to their application.
Key Bank National Association, Cleveland, Ohio
Field Engineer ? National Field Support, January 2006 ? April 2007
? Provide Windows and MAC desktop hardware and software support to the internal users within the Key Bank Corporation.
? Partner with the Windows server team to resolve and repair Windows Server hardware issues.
? Mobile device support
CompuCom Systems Inc, Brookpark, Ohio
Field Engineer - Key Bank National Association April 1998 ? January 2006
? Provide desktop hardware and software support to the internal users within the Key Bank Corporation.
? Partner with the Windows server team to resolve and repair Windows Server issues
Decision One, Broadview Heights, Ohio
Field Engineer, February 1997 ? April 1998
? Provide desktop hardware and software support to clients of many industries around Ohio
? Provide Server hardware and software support to clients of many industries around Ohio
COMPUTER SKILLS
Microsoft Office Suite: Excel, Word, PowerPoint, Access, Outlook; Extensive research skills, AD Toolkit, Exporter Pro, Active Directory, Group Policy Manager