Post Job Free

Resume

Sign in

Access Management Information Security

Location:
Greensboro, NC
Salary:
120000
Posted:
September 07, 2023

Contact this candidate

Resume:

SHIPARA HUGHES

**** ****** ***** **. * Greensboro, NC 27406 r 743-***-**** r adzjui@r.postjobfree.com

Summary of Skills

A highly accomplished, dedicated, and disciplined information technician supervisor/manager/security/project/risk manager seeking to contribute and grow with a progressive and innovative organization. Recognized as a team player and a performer, consistently completing assignments on time. A tenacious problem solver focused to effectively and efficiently resolve issues, meet and achieve challenging goals and objectives. Accomplished researcher who turns challenges into building blocks to learn new technology, master advanced skills and streamline processes. Applies natural talent to translate a love of learning into a love of teaching, and helping others to learn.

Technical Skills

IT Security

Windows 95, XP, 7, 8, 10

Risk Management Analysis

LDAP Authentication

Relationship Building

LAN Administration

HIPPA, SOX, and PCI

Service Now

Rolebased Access

Server Backup Operator

Active Directory

TCP/IP

UNIX (AIX, Linux, Solaris)

ISeries/EPIC

Triole/Service Center

Access Provisioning

Oracle Identiy & Access Mgmt

Project Management

Access Management

Priviledged Access Management

Systems Administration

Outlook Email

OS390 Mainframe

Remedy

Putty

RACF Mainframe

Rally

Education

SANS Cyber Security – SANS Institute - 2020

BS COMPUTER Information systems – Chowan University Murfreesboro, NC – 1995

Associate business administration – Chowan University Murfreesboro, NC – 1993

Professional Experience

BB&T/TRUIST JULY 2018 – SEPTEMBER 2023

CYBERSECURITY ENGINEER – IDENTITY & ACCESS MANAGEMENT – CORPORATE CYBER SECURITY

Cybersecurity Engineer performing numerous functions including the process of adding, maintaining, and removing user access to multiple systems, ensuring the right level of access at the right time. Providing training to coworkers to ensure all procedures and processes are followed correctly. Work with application owners to learn access provisioning procedures for applications onboarded onto the Identity & Access Management system. Work with peer teams in Identity & Access Management to modify access roles, answer questions, and support merger related tasks. Work with Security team and Token team as needed to provision access for users to Active Directory and UNIX platforms.

Provision access to Identity and Access management roles, RACF Mainframe, Active Directory, UNIX/LINUX platforms.

Work closely with the Mainframe team to implement security updates and ensure teammates are granted access according to updated security policy.

Create and update documentation needed to ensure policy and procedures are accurate and access is granted according to auditing requirements.

Assist with project related tasks to test the policy and procedures of onboarded applications requiring access provisioning.

Assist managers and delegates with guidance regarding how to submit access requests. This includes but isn’t limited to sending documentation, walking them through the processs, and submitting requests on their behalf.

Support training of less experienced personnel.

Establish and execute processes to monitor and report on information security technology infrastructure compliance to policies, standards and best practices.

Educate information / resource owners in the implementation of necessary information security controls or new upgraded security technologies.

NATIONAL GENERAL INSURANCE 2017 – 2018

IT SECURITY ADMINISTRATOR III/IT SUPERVISOR – IDENTITY & ACCESS MANAGEMENT

IT Security Administrator II performing various functions including the process of creating, maintaining, and removing user access to multiple systems, ensuring the right level of access at the right time. In addition, providing supervision to junior members of the Identity Access Management team while acting as an escalation path to senior management. Ensures compliance with various regulatory frameworks such as PCI, HIPPA, and NY DFS as it relates to Identity and Access Management.

Provide coaching, mentoring, and task prioritization for junior team members.

Acts as an escalation point for security problems not resolved by the IT Support Desk or other team members.

Administers security of system(s) and user IDs which include account creation, deletion, modification, reset, or extension.

Manages security for local, group, and user accounts within a mixed Windows, Unix, and Linux environments.

Conducts extensive analysis to ensure that security on all platforms complies with published company procedures and regulatory requirements.

Respond to internal, external, and regulator requests during reviews and/or audits.

Serve as an escalation point for issues with other groups as needed including Audit, Risk Management, Compliance, and Federal/State Regulators.

Creates and maintains information security systems and procedures documentation.

Works with other technical teams on security projects and system integrations as needed to include SSO implementations.

Ensures compliance and adherence with corporate security controls, standards, and applicable regulatory frameworks.

Partner with the architecture and information security teams to identify the long-term role of directory services across the company.

Participate in a 24x7 on call rotation.

FUJITSU 2014 – 2017

IT SECURITY ANALYST / PROJECT COORDINATOR – IDENTITY & ACCESS MANAGEMENT

IT Security Analyst working on daily requests related to security access for Fujitsu and Blue Cross Blue Shield. Project coordinator for Identity and Access Management department working primarily on project and non-standard requests which have a large amount of access required for a department, team, or project.

Identify and develop access controls to safeguard systems against accidental or unauthorized modification, destruction or disclosure. Responsible for user account administration in a multi-platform environment and ensure that administration procedures are aligned with overall Information Security policies and standards through audit and oversight processes. Assist in development and delivery of procedures, documentation, and training and knowledge sharing opportunities across the team. Assist in investigation and addressing client escalations and issues and at times serve as a point of contact for other technology groups and service delivery management.

Maintain user access to securable Fujitsu & BCBSNC system resources (UNIX [AIX, Linux, & Solaris], Windows / Active Directory, Outlook Exchange, OS390 Mainframe, iSeries, and secondary applications) performing tasks such as creation / configuration of user login Ids and updating access control lists as needed.

Provide and coordinate security involvement in projects and large, non-standard requests, serve as the direct point of contact and engagement for project managers when Identity and Access Management involvement is requested.

Manage request and incident ticket queues and maintain SLAs and negotiate SLA as needed for large scale requests.

Assist network and application resource owners and IT staff in understanding and responding to security-related audit issues and security access exceptions.

Educate information / resource owners in the implementation of necessary information security controls or new upgraded security technologies.

Assist network and application resource owners and IT staff in understanding and responding to security-related audit issues and security access exceptions.

May provide systems security consulting on complex issues.

Develop, test, and implement approved information access controls.

Perform standard and non-standard processing of security authorization requests for internal and customer projects.

Communicate status reports on requests related to projects and ensure action items are resolved within a timely manner.

Respond to inquiries regarding status requests and expedites / escalation requests.

LABCORP OF AMERICA 2005 – 2013

IT SUPERVISOR/MANAGER – IT Risk Management & Security

IT Supervisor of Identity Management/User Administration, a department of 5 employees with responsibilities including but not limited to access management for LCA domain, Active Directory, Novell, PeopleSoft, AIX, Datalink, IBM Mainframe, Microsoft Outlook, File access, project management including migrating acquisitions (users and objects) into local area network, contractor access/revocation, weekly/monthly/yearly internal and external audits. Managed day to day duties and responsibilities of all staff members to make sure all Service Level Agreements (SLAs) and Standard Operational Procedures (SOPs) are met. Worked to make sure all customer service requirements were met and users were satisfied to the best of the department’s ability.

Created logon ids and granted access to users based on request forms and ticket requests.

Responsible for the security of all areas of responsibility. Created, implemented, and assigned security protocols and procedures that were audited on a quarterly and yearly basis.

Provided management leadership skills by introducing, organizing, assigning, and overseeing projects making sure all timelines and agreements were met.

Managed project risks, developed mitigation and contingency plan assess impact of changes to project scope and requirement, issue and risk management.

Provided daily, weekly, and monthly reports to executive management regarding the team, process compliance, and status. Manage issue tracking and resolution for projects. Reported all work statistics to assist with departmental growth.

Policy and Procedures - Develop guidelines for user agreement, system audits and system modification such as data storage, naming conventions, expiration dates on objects, shared data, and migration.

Worked closely with staff to assist with day to day responsibilities and projects providing a knowledge base for questions and how to handle unforeseen issues.

Handled all personnel issues related to hires, terminations, vacation, disability, performance appraisals, monitoring performance, etc.

Responded to all departmental compliance regulations realted to SOX, HIPPA, and PCI.

Worked with other departments to migrate acquisitions into LAN. This included meeting with all parties to ensure data, objects, and client resources were migrated successfully. Trained new IT staff on policies and procedures related to requesting new accesses for users.

LABCORP OF AMERICA 2001 – 2005

IT SUPERVISOR OF NETWORK ADMINISTRATION – computer information Network Services

IT Supervisor of Network Administration, a department of up to 10 employees responsible for access administration of local and remote LabCorp sites. Areas of expertise included but were not limited to access to Microsoft and Novell databases, GroupWise email, Identity Management provisioning application, PeopleSoft user/access administration, daily/weekly backups for servers, reports as needed, projects involving migrating acquisitions into the network, setting up contractor accounts and monitoring access and revocations as needed. Creating and maintaining standard operation procedures for monthly/yearly audits, working with customers to create and ensure standard level agreements, etc. Managed day to day duties and responsibilities of all staff members to make sure all Service Level Agreements (SLAs) and Standard Operational Procedures (SOPs) are met.

Worked as the primary point of contact for all remote LabCorp sites and provided assistance with nightly/weekly/monthly backups, all server related issues, and any local user/pc administration issues.

Worked closely with staff to assist with day to day responsibilities providing a knowledge base for questions and how to handle unforeseen issues.

Handled all personnel issues related to hires, terminations, vacation, disability, performance appraisals, monitoring performance, etc.



Contact this candidate