Rebecca Shoulders
CYBERSECURITY COMPLIANCE MANAGER
Montgomery, TX 832-827-440 ***************@*****.***
Objective
Experienced IT professional specializing in cybersecurity compliance, information security, and auditing. Seeking a rewarding position as a Cyber Security Compliance Manager to leverage my expertise in regulatory frameworks, GRC tools, and compliance processes in a remote work environment.
Experience
OpenText Penetration Testing Coordinator 2024 - Current
Perform penetration testing activities for web applications, APIs, infrastructure, cloud environments, and devices.
Specialize in compliance-related requirements, including PCI, NIST, FedRAMP, and ISO.
Conducted Red Team activities to identify gaps in security controls and system configurations.
Developed in-depth reports and remediation plans for penetration tests and red team engagements.
Delivered executive-level vulnerability reporting to stakeholders.
Utilized Bloodhound for Active Directory cyber hygiene
Blue Yonder Information Security Architect 2022-2023
Conducted security control assessments in accordance with NIST 800-53 guidelines.
Developed security plans and compliance documentation.
Ensured compliance with industry regulations, including the GDPR, HIPAA, ISO 27001, FedRAMP, NIST 800-53, and other relevant standards.
Managed IAM project for AWS, GCP, and Azure platforms.
Designed security architectures for On-Prem and Cloud environments.
Implemented security controls within Azure and GCP environment
Texas Department of Insurance Information Security Officer 2022-2022
Remediated vulnerabilities identified through Tenable Nessus scans and Microsoft Defender Endpoint Security.
Managed Netwrix Auditor security tools for auditing Active Directory Azure, SharePoint, OneDrive, SQL databases, and Windows logon.
Monitored security alerts and incidents for Microsoft 365 and Azure.
Project manager for Proofpoint rollout, focusing on email security.
Ethos Energy Group IT Security Consultant 2020-2022
Led migration project to Azure Intune and O365 platforms.
Deployed Windows Defender for Endpoint.
Provided weekly and monthly reports on OT Security developments.
Collaborated with IT and business partners to implement data governance best practices
XTO – Exxon Mobil IT Security Analyst 2018-2019
XLAdministered IAM policies using CyberArk.
Conducted security audits for Azure cloud security.
Monitored sensitive data files and regulated access using CyberArk
XL Catlin Network Security Engineer
Integrated IAM controls across Microsoft 365.
Performed network diagnostics and resolved hardware, software, and network problems.
Managed enterprise migration project to Windows 10 deployment.
OXY Mobile Communications Manager
Managed Blackberry phase-out migration to iPhone, Android, and Windows phones using MobileIron.
Provided system support including Active Directory, Exchange user account management, and Citrix Receiver account management.
Managed Mobile device inventory, Cellular Business Accounts, Mobile Device Lifecycle.
Education
American Intercontinental University, MS in Information Technology 2026
Major: Information Technology Minor: Cybersecurity
Everest University, BS in Information Technology 2015
Major: Networking Minor: Security
Skills & abilities
Industry Regulations and Frameworks: PCI, HIPAA, Data Privacy Laws, ISO27001/2, NIST, HITRUST
GRC Tools: ServiceNow, Archer
Compliance Processes: Regulatory audits, compliance management, metrics, risk and performance indicators
Information Security: Security controls, testing, auditing, network and system security
Project Management: Agile, LEAN, Six Sigma
Communication: Ability to express complex technical concepts in business terms
Certifications
CompTIA A+ Certification
CompTIA Network+ Certification
CompTIA Security+ Certification
Microsoft Azure Fundamentals Certification
Certified Ethical Hacker (CEH) training
AWS Solutions Engineer training
CISSP training