Summary
Successful "hands-on" experienced IT professional in with extensive
expertise in the following areas: infrastructure, operations, information
security, disaster recovery, business continuity, risk and project
management. Highly motivated, results-oriented, self-starter with solid
background designing, integrating, managing and managing small to large
scale information technology systems. Strong experience leading high
performance teams, managing budgets, contract negotiations, vendor
relations and daily departmental operations. Balanced background of
technical skills, managerial experience and education. Project leader for
multiple multi-billion dollar mergers, acquisitions and divestitures.
Professional Experience
Information Technology Security Manager
PERNOD RICARD USA,
Purchase,
NY
9/2008 - Present
Primary responsibilities are to provide effective leadership, management
and oversight of the following functions: information security policies and
procedures, operations, infrastructure and application change management,
disaster recovery, business continuity and project management.
Establish a process in coordination with IT, Business and Internal Audit
groups to assess and continuously improve the effectiveness and compliance
key IT controls.
Assess existing and potential risk and determine consistency with the
polices and directives of corporate information security policies and
industry best practices.
Play a lead role in drafting audit report to communicate results of IS
audits to senior management.
Design audit objectives and procedures and prepare audit program; execute
audit program and procedures and Identify audit issues and provide
recommendations to senior management.
Identify and evaluate information security risks and communicate findings
to senior management; develop and implement security standards, procedures,
and guidelines for diverse platforms and systems.
Monitor and respond to security alerts and incidents; devise and implement
mitigation techniques and strategies.
Review the development, testing, and implementation of security plans,
products, and control techniques; evaluate the effectiveness of information
technology systems controls.
Provide security and project management services on highly complex
information security projects and issues.
Identify security risks to the organization and ensure that appropriate
data security procedures and products are implemented.
Review security controls to ensure compliance with policies, standards,
procedures, and other regulatory and legal guidelines (e.g., Sarbanes-
Oxley, HIPAA and PCI).
Primary lead for all E-Discovery initiatives; work closely with internal
and external legal business partners.
Provide leadership, support and mentoring to the IT Support groups in
resolving complex security, operational and infrastructure problems.
Educate employees on security-related best practices and awareness.
Senior Network Administrator
PERNOD RICARD USA,
Purchase,
NY 8/
2000 - 9/2008
Designed, configured, and administered the US based network infrastructure
for a multi-billion dollar 1500 node international company.
Responsibilities included direct management: LAN, WAN, server farms
(NAS/SAN), firewalls, switches, access points, datacenters and
communication systems. Researched, pilot-tested, upgraded and implemented
Active Directory infrastructure (forests and trees) and clustered messaging
systems. Implemented highly available network systems; Service level
agreements increased to 99% within a 3 year period.
Project Leader for 5 major mergers, acquisitions and divestitures:
Seagram's, Yoo-Hoo, Allied Domecq, Absolut (V&S Spirits) and Wild Turkey.
Improved external and internal auditing results for all network-related
systems within a 2 year period; external and internal audits performed bi-
annually.
Project leader for major network migrations and large scale projects;
manage all aspects of projects including developing charter, requirements,
budgets, project plan, execution and close out.
Managed the company's network disaster recovery projects; developed and
authored the company's business continuity procedure manual.
Senior Network Engineer
Beth Israel Medical Center/Continuum Health Partners, NY, NY 1998-2000
IT Project leader for major merger between Beth Israel Medical Center, St
Luke's and Roosevelt Hospitals.
Led a team of 25 IT employees and consultants in the management of an
enterprise network with more than 100 Novell Netware and 40 Windows NT
Servers.
Oversaw network integration during multi-billion dollar merger with St.
Luke's Hospital. Served more than 10,000 end users with 60,000 devices.
Ran large application, database, file, and printing systems. Audited
systems and compiled technical research data to create written and oral
security assessments and forecasts.
Researched, designed, and managed a multi-million dollar Novell ZENWorks
and Y2K project.
Senior Security Analyst
Mutual of America, NY, NY
1996-1998
Administered network and security systems for the $10 billion company in a
multi-server environment with 1,000 employees.
Entrusted with security analysis for the company; received FBI clearance
before employment.
Prepared policies, procedures, and detailed reports on network security
auditing.
TECHNICAL SKILLS
Extensive working experience procuring, configuring, implementing and
administering the following products and technologies: Microsoft Systems
(including Active Directory, all versions of Windows Operating Systems,
SQL, ISA, Exchange, Share Point and MS Office), Cisco Products (including
routers, switches, firewalls and wireless access points), Checkpoint
Firewalls, Nokia Security Appliances, Linux, VMWare,SolarWinds, CobIT, HP
Openview, VPNs, and IDS/IPS systems. Solid skills working with TCP/IP and
all major routing and security protocols (e.g. HTTPS, DNS, SSL, IPSEC and
PKI), network topologies, ethical hacking and forensic analytical tools (to
many to list; working with over 200 on the job and in certification
training) and telecommunications systems. Strong ability to quickly test,
learn and utilize new software packages.
EDUCATION, CERTIFICATIONS & AFFILIATIONS
Masters of Science in IT Security, Risk Management and Business
Continuity
Boston University
Boston, Massachusetts
(Expected graduation date:5/ 2012)
Master of Business Administration
American International College
Springfield, Massachusetts
Graduation Date: 5/1994
~ GPA: 3.66
Bachelor of Arts
Kent State University
Kent, Ohio
Graduation Date: 5/1990
CCNA, (2000)
CISSP: #122347, (ISC2 Sponsorship- 4/ 2009)
CEH Candidate, (Examination date: 10/2010)
CHFI Candidate, (Examination date: 12/2010)
Memberships: ISSA and ISACA
ACHIEVEMENTS
Honored with CEO Achievement Award for leading a successful integration
with newly acquired company, Seagram's; led billion-dollar acquisition
integrations with Allied Domecq and Yoo-Hoo. Served as the technical lead
for the company's first business disaster recovery test in 2003. Direct
participation in community volunteer work: "Humane for Habitats".
REFERENCES
Furnished upon request.