Post Job Free

Resume

Sign in

SOX Compliance Analyst

Location:
Bellevue, WA
Salary:
100000
Posted:
May 12, 2017

Contact this candidate

Resume:

Robert Rendon Jr

**** ** **** **, ***** Bend, WA 98045 281-***-**** acz9zx@r.postjobfree.com

Summary

Along with my experience in compliance controls testing, draft, modify and improve policies, I am pursuing CISA certification.

Results-driven SOX compliance and IT security analyst. Proven record in recognizing risks, applying security solutions, improved efficiency and streamline processes. Extensive experience with Sarbanes Oxley Section 302, 404 and 409 audit including audit trail of access and activity to sensitive business information.

Leadership

Lead Project Manager for large scale Optimization project. Directed project to recover over 4MW of power from data center pilot project. Directed projects to recoup over 8 MW of power in multiple data centers

Documented process to improve project workflow. Formulated data collection for reporting and data analysis

Strong familiarity with server and IT based technologies

Strong analytical skills; strong bias towards data-based decision making, and comfort with operational analysis

Demonstrated ability to understand, summarize, and communicate complex data issues

Demonstrated track record of exceeded established goals on a consistent basis

Integrated company data to existing infrastructure for servers and hardware for multiple acquisitions and mergers

Served as team lead of Network Security team to complete complex projects and daily tasks

Experience

PROGRAM MANAGER MICROSOFT (CONTRACT) NOV 2016 CURRENT

Cloud and Enterprise Security, Azure Core Security Service Desk

Onboard Azure services teams to service desk model

Maintain SharePoint site for status/reporting

Provide Power BI reports for service desk from TFS/VSO, SQL and excel data sources

Provide tier two support for Azure supported services

PROGRAM MANAGER II T-MOBILE (CONTRACT) MAR 2016 TO JUNE 2016

Worked with project sponsors, network architects and business units to define ambiguous project scope

Managed cross-functional teams during discovery to refine project charter and deliverables

Established strong relationships with stakeholders while gaining confidence in project plan

Managed project schedule to keep deliverables aligned with requirements

Created and maintained SharePoint site for status/reporting

Utilized Excel/Pivot tables for reporting and dataset sampling

PROGRAM MANAGER MICROSOFT (CONTRACT) APRIL 2013 TO OCT 2015

As a Program Manager planned and executed optimization and migrations of Microsoft data centers. Gathered migration and decommission requirements from internal customers (Property Groups). Drove cross team collaboration to ensure migration plans are timely, cost effective, and clearly communicated. Successfully directed project to recover over 4MW (Megawatts) of power from data center pilot project. Also completed projects to recoup over 8 MW of power in multiple data centers. Provided solutions to navigate through ambiguous situations, managed and mitigated risks and delivered results. Developed and prepared reconciliation reports, documentation and metrics required for updating management, tracking progress, quantifying and mitigating risks; Created Program level status reporting and communication cadence. Utilized Excel pivot tables for dataset reporting and SharePoint. This role required taking ownership of projects to drive results.

SECURITY SPECIALIST SOX IT ENTERPRISE PRODUCTS CO. JULY 2006 TO APRIL 2013

As Network Security Compliance Lead coordinated with various business units and development groups to drive projects and manage complex IT security issues. Coordinated tasks to align with SOX audit controls including Section 404 audits. These included internal controls, network activity, database activity, login activity, user activity and information access. Coordinated with SOX compliance officer to develop procedures to monitor and log all audited controls. Also included hardening of servers and file server shares for SOX compliance. In this role also coordinated Active Directory (9000 users) maintenance of company user, group and computer accounts as well as maintained NTFS (file system)/ACL (access control list) on file servers. Provided audit reporting for SOX audit and compliance. Quarterly database audit for internal audit. Exchange 2010 maintenance of user mailbox and public folders. Managed internal dev apps for migration (code and reports).

Internal controls- Review and improve processes to remediate unauthorized access for all deficiencies/violations. Database activity- reviewed in-scope SOX database accounts and validated access levels. Remediate access for any account not in compliance. This included research and review with DBA's to revoke any unauthorized access. Train and review controls for all DB access.

Login Activity- Review and provide audit trail of failed login attempts. Research and remediate any user account login issues including Active Directory, internal apps and remote access.

Account Activity- Review Active Directory, internal app and DB accounts to remove unused or stale accounts (inactive). Review and set parameters for service accounts. Review all accounts to comply with company policy (shared accounts, console account and any mail enabled accounts). Provided parameters for terminated user account policy, management access to mailbox accounts and user accounts transferring to other roles (groups). Review and manage AD groups and all Exchange dist lists including set parameters for sending or replying to large dist lists.

User Activity- Review user access to Sox in-scope apps, security level and vetting all access.

Information Access- Review access to Sox in-scope file shares, servers (Administrator access) and SharePoint sites. Review and validate any unauthorized access and review process to remediate.

NOC (NETWORK OPERATIONS CENTER) ENTERPRISE PRODUCTS CO. MARCH 2000 TO OCTOBER 2005

This role included Active Directory maintenance for 5500 users. Maintained NTFS directory structure. VPN certificate maintenance Access Control Server support. Print server maintenance. Active Directory in DMZ and external accts maintenance. Microsoft Exchange user maintenance. Network Ops remote sites support, worked with service providers and internal customers to maintain circuits.

NETWORK ADMINISTRATOR AKER MARITIME, INC NOV 1997 TO MARCH 2000

As Network Admin managed daily maintenance of 15 Win NT servers and support of 3 remote sites. Also monitored and troubleshooting of Cisco and Ascend routers. WAN support of remote sites. Maintained ARCServe server backups. Provided 3rd tier support for internal support center

Education

ASSOCIATE OF APPLIED SCIENCE 1989 TEXAS STATE TECHNICAL INSTITUTE

Computer Science/Programming



Contact this candidate