Post Job Free
Sign in

Information Security Cyber

Location:
Charleston, SC
Posted:
October 19, 2020

Contact this candidate

Resume:

Matthew

Powell

Moncks, S. C. (Charleston

area)

***-***-

5086

LinkedIn.com/in/matthewcpow

ell *******@*****.***

CYBER SECURITY ACCOMPLISHMENTS

** *****’ experience in cyber security and have successfully managed a team of cyber security engineers for the last seven (8) years. 20 years of overall IT expeirence

As the highest ranking cyber security individual at South Carolina’s #2 credit union have managed and built a cyber security program from the ground up. Also responsible for designing the cyber security policies and procedures for SC Federal Credit Union.

Have successfully hired and managed the cybersecurity audit team. SC Federal Credit Union has been placed in the top 10% of credit unions audited by our 3rd parties.

Educated users on the methods used to compromise data and how to report suspicious activity. This included implementing and maintaining a social engineering training and testing program.

Tasked with speaking with the Board of Directors and addressing the current cyber security state and current cyber security topics.

Active member of INFRAGARD, ISACA, and ISC2 organizations. EDUCATION

BS - Business Administration, The Citadel – May 2011 Summa Cum Laude MS – Computer Science, Georgia Institute of Technology - May 2019 CERTIFICATION

CISSP, CEH 8.0 (Certified Ethical Hacker), CISM, CISA, AWS CCP, CompTIA Security+ & Network +

WORK EXPERIENCE

South Carolina Federal Credit Union 2001 to

Present

VP of Information Security – (2011 to Present)

This credit union, which ranks #2 in South Carolina, has twenty-three (23) locations, 160,000 members and $1.8 billion in assets.

Accomplishments

Converted the WAN connection to a new carrier without incurring downtime and reduced telecom expense by 50% over a 60-month contract with improved throughput.

Improved cyber security audit results every year with both the NCUA and independent auditors. Our independent auditors have credited the institution with being in the top 10 of their 200+ clients.

Leadership Experience

Managed and built a cyber security program that was only a firewall to a state of the art facility including researching and writing the policies and procedures.

In this leadership role, manage all cyber security programs and/or strategies that will keep both internal and external users and the member’s data safe. This includes implementing new technologies and driving employee cybersecurity awareness.

Directed a team of 12 IT engineers.

Negotiate contracts with third party vendors.

Keep the organization in compliance with FFIEC, NCUA, and other regulatory bodies. Responsible for keeping up to date with regulations such as Sarbanes- Oxley, GLBA, and PCI DSS. Implementing security frameworks such as NIST and ISO 27001.

Actively participate in developing the business plan of the security program and the IT department as a whole. This includes ensuring that IT business plans integrate with the overall organization business plans and digital strategies.

Responsible for creating and presenting reports to the board of directors.

Have worked with departments across the organization including facilities

(physical Security), Compliance (Regulations), and Finance (fraud) to review, suggest, investigate, and implement security practices and standards. Review SOC reports for the compliance department as part of our vendor management plan.

Technical Experience

Implemented, maintained, and managed EDR systems, NGFWs, DLP systems, SIEM systems, Email Gateways, Web Filtering systems/proxies, NAC solutions, VPN solutions, MFA, Web Application Firewalls, and patching/vulnerability management solutions.

Implemented a new network infrastructure with Arista switches.

Experience with Windows and Linux environments including some work with Kali Linux.

Experience with physical security systems including badging systems, door controls, and camera systems.

Familiar with programming languages including Python, Java, and have worked on some React.js projects. Experience working with supervised and unsupervised machine learning algorithms

Network Manager (2007 – 2011)

Leadership Experience

Began implementing the information security program for the organization based on NCUA and FFIEC guidance.

As the leader of a team of network administrators and a network security admin, was tasked with effectively coaching and scheduling.

Began developing and implementing information security policies and procedures to create a framework for the organizations information security program working from NIST and ISO 27001 frameworks.

Was also part of the change advisory board for any updates to systems or services.

Worked with third parties to find the most cost effective solutions to complete organizational goals which are maintaining safety and soundness, achieving world class member service, and sustaining an employer of choice culture.

Acted as an SME on cross departmental project teams. Technical Experience

Managed, implemented, and updated firewall and switching infrastructure.

Managed, implemented, and maintained a Microsoft Windows Active Directory network and associated server infrastructure.

Managed, implemented, and maintained some additional security systems such as web content filters, email filtering software, and anti-virus systems.

Implemented and maintained data center power and environmental controls such as generators, PDUs, CRAC units, and environmental monitoring systems. Senior Network Administrator (2003 – 2007)

Leadership Experience

As the most tenured network administrator, my role was to mentor the junior level network administrators as well as the PC Technical Specialists. I acted as a lead implementer on projects to implement new technologies.

Worked with third parties on projects to implement new systems.

Researched new ways to use systems and boost the ROI of the system. Technical Experience

Managed a Microsoft Windows Active Directory environment including daily maintenance, backups, and upgrades.

Created technical documentation for junior level admins to guide their completion of admin duties.

Prior work experience available on request (2000 – 2003)



Contact this candidate