KENNETH L. MITCHELL
** ******** **** ********, ** 10509 (h) 845-***-**** (c) 845-***-**** *******@*****.***
PROFESSIONAL PROFILE
IT Security Manager / IT Manager / Sr. IT Technical Security Staff
Accomplished and award-winning IT professional with expertise in delivering highly effective finance, audit, and corporate
security solutions to support achievement of business goals. Dedicated, well-rounded IT business partner and IT leader with
proficiency at contributing to bottom-line company objectives by leveraging technical / business acumen to design and implement
secure business processes, applications, and networks globally. Hands-on, motivational team leader who maintains authoritative
presence in all areas of security compliance, design, implementation, and infrastructure technical support. Resourceful, proactive,
and results driven problem-solver with exceptional interpersonal and communication talents.
Selected Achievements
Led $6M project for worldwide security compliance initiative; identified goals and problem; architected; implemented the
solution; and set the security standards for the initiative in collaboration with Altria CIO and CISO.
Selected from a group of worldwide leaders to manage the Altria Compliance Service and Process; received an award
from the CIO for the implementation, leadership, and overall contribution to the business.
Reduced business operating costs by delivering and supporting security technology that provided Altria secure Internet
Access for business partners and allowed Altria web applications to book over $100M in business orders annually.
Architected, implemented and supported the infrastructure at AT&T / IBM Global Network for Fortune 100 financial and
business clients to provide secure e-Commerce and support of the clients’ business objectives.
Areas of Expertise
IT Security / Compliance Organizational Leadership Security Consulting
Data Center Security Management Business Planning Computer Forensics
Application and Security Architecture Process Engineering Vulnerability Assessment
Security Policy and Standards Project Management Network Security
Windows, UNIX/Linux and AS400 ISO27000 / ITIL Firewalls / AV / IDS
PROFESSIONAL SUMMARY
EDS - Altria and Kraft New York, NY
$21B IT services corporation providing expertise to clients including Altria and Kraft (Altria outsourced in 2006)
Security and Compliance Manager / Information Technology Security Engineer 2000 to 2009
Lead and direct all security and compliance activities and projects in US Data Centers; provided worldwide compliance
support for Kraft using ITIL processes. Provided security consultation for internal projects and new technologies.
Subject Matter Expert for security compliance and security services for Altria headquarters and operating companies.
Responsible for departmental budget, planning, operations personnel and service levels agreements.
Established and authored Global Server Baseline Standards; supported and collaborate with Altria CISO, CIO and
internal / external auditors to ensure security / compliance for Windows, UNIX and iSeries (AS/400).
Orchestrated worldwide implementation of security compliance process, software, and tools; authored the RFP to select
tools, and managed the evaluation / investigation / selection process. Led the $6M implementation project to establish
baseline security standards and policy for end point security compliance and security event monitoring.
Monitor and provide proactive security assessments of environment, including reporting, remediation, and alerts.
Supervise vendors and third parties conducting independent assessment of Data Center security.
Directed and provided technical security support and design, including intrusion detection and monitoring for internal
Internet and business partner connectivity, including incident handling and investigations.
Improved audit readiness by providing security expertise for internal projects for Windows, UNIX and iSeries.
NAME Page Two
Citi Group Englewood Cliffs, NJ
$27 billion Company providing a wide range of financial products and services to corporations and consumers
VP Security Engineering 2000
Recruited by the VP Operating Unit of a new business venture, Crossmar Worldwide E-Commerce, to lead 100+
contractors who were responsible for the Software Development Life Cycle (SDLC) and integration activities.
AT& T / IBM GLOBAL NETWORK White Plains, NY
Multi-billion dollar network and IT service provider
Manager / Technical Staff 1997 to 2000
Architected, led and provided security services, including troubleshooting hardware, software, and client configurations /
upgrades; held responsibility for effectiveness of departmental deliverables, personnel, and service levels. The security
services included firewalls, VPN, IDS/IPS, OS, DNS and network design and architecture.
Leveraged technical and business acumen to design / implement custom firewalls and security solutions supporting
business goals and customer requirements.
Supervised and technical lead for staff and provided firewall support and UNIX and Windows administration.
Supported and administrated US-based firewall service using IBM Firewall, including load balancing.
Delivered 24x7 management / customer support, server monitoring, usage reporting and backup / recovery with ADSM.
Implemented and supported Intranet Web Server and HTML development.
ADVANTIS White Plains, NY
Multi-million dollar network and IT service provider; joint venture of IBM
Senior Technical Staff 1992 to 1997
Played key role as Project Manager and technical lead for the technical design, development, and implementation of
network support applications.
Provided business metrics and service levels to management and customers by developing and supporting an Intranet
Web Server.
Designed, implemented, and supported client / server application that effectively captured billing transaction records.
IBM Armonk, NY
$26.3B Technology Service and Manufacturing Corporation
Program Manager / Manager / Sr. Technical Staff 1968 to 1992
Directed, implemented, and managed corporate security program for inter-enterprise communications; established
standard for communications between IBM and customers, vendors, and contractors.
Developed and implemented corporate instruction and policy, and prepared organizations for Internet connectivity.
Build and managed domestic inter-enterprise security program in conjunction with IBM anti-virus and Computer
Emergency Response Team (CERT).
Conducted site information system and security audits, and authored / delivered inter-enterprise security program
education.
Created and implemented internal equipment planning, control, and measurement system. Combined distributed
operating unit plans, product forecasts, manufacturing plans, and customer data into relational databases, using DB2. Led
implementation project.
Led and built multiple internal business applications and managed the SDLC of the applications.
Oversaw internal equipment resources by delivering control and measurement information to senior management.
EDUCATION & PROFESSIONAL DEVELOPMENT
Western Connecticut State University, Danbury, CT
Master of Science Administration, Finance, and International Business
Pace University, Pleasantville, NY
Graduate Telecommunications Program Certificate
Bachelor of Business Administration Data Processing
NAME Page Two
AWARDS, ASSOCIATIONS, & AFFILIATIONS
Certifications CISSP / CISM / CCSA - Check Point Firewall / CCE
Awards Multiple CIO Awards from Altria and IBM Divisional Award for contributions supporting business goals
Affiliations Information Systems Audit and Control Association (ISACA) Information System Security Association (ISSA)
International Information Systems Security Consortium International Society of Forensic Computer Examiners (ISFCE – CCE)