закрыть

Отправка почтового сообщения

На это резюме Вы можете отправить не более одного сообщения в сутки.
осталось символов: 500

Специалист по информационной безопасности

также ищу работу

2000 $/мес

03.10.1983 (28 лет)
Дата рождения:
мужской
Пол:
состою в браке
Семейное положение:
Просмотреть контактную информацию кандидата,
могут только зарегистрированные работодатели, работающие в Бизнес-блокноте с неограниченным доступом к резюме.
Контакты:
Цель:
Career objective To obtain a challenging management position within a prosperous international company, preferably in the field of IS consulting, IS auditing, information security, risk or project management. Personal summary Professional with more than seven years of successful experience in a variety of IT/IS related technologies and fields, including banking and telecommunication industries. Strengths in: • Delivering various IS/IT related consulting services, including: optimization and re-design of business processes, costs optimization in IT, improvement of efficiency, transparency and controllability of IT functions, design of architecture of IT systems and solutions. • Providing leadership: creating teams from scratch, hiring, educating, mentoring, managing and developing team members both locally and remotely. • Applying extensive experience of project-, risk- and resource-management. • Implementation of and ensuring compliance with a variety of international standards and best practices (detailed list included in Additional skillsLegislation and standards section). • Organizing and establishing of a complex corporate Integrated Security Management System. • Development and implementation of various methodologies, concepts and strategies, policies and procedures in the fields of IT and information security. Personal qualities such as self-starter, multitasking, decision-making, critical thinking, self-motivation and constant improvement make significant contribution to team and individual success.
Ключевая информация:

Technical background/buzzwords:

  • OS: MS Windows family, Mac Os, *BSD, Cisco IOS
  • Network: OSI model protocols, WLAN, VLAN
  • Security: Security Information and Event Management, SIEM (ArcSight ESM Sawmill, GFI Monitor, LogLogic)
  • Vulnerability assessment (XSpider, Nessus, nmap, Qualys, Acunetix)
  • Antivirus/End-Point Protection (MacAfee ePO, Symantec, Kaspersky, ESET)
  • Data Loss Prevention, DLP (McAfee, ZLock, DeviceLock, ZGate)
  • Password analysis (Elcomsoft PPA, Cain)
  • Network sniffing (Wireshark, Cain); Network/firewall/IPS (Cisco)
  • Information gathering and network enumeration (Maltego, nmap)
  • Crypto (TrueCrypt, DiskCryptor, PGP, CA IIT, CA Author)
  • Access control systems (StopNet, Access Net, Golden Gate, FortNet)
  • Video surveillance (Intellect, GeoVision, Video Net, Inspector, DigiNet)
  • Application software: RDBMS (SQL, Firebird, Access), SAP, 1C, Service Desk+, HP OV suite, IBM Lotus Notes, different bank operating systems
  • Microsoft: AD, IIS, ISA, TMG, Project, SharePoint, Exchange, Office, Visio
полный день
График работы:
готов
Командировки:
Киев
Ищу работу в городе:
Создано: 08 сентября 2011   /   Обновлено: 28 января 2012

Опыт работы

Information Security Officer октябрь 2010 - до текущего времени ProCredit Bank (www.procreditbank.com.ua)
Обязанности и достижения:
  • Development and establishing of Information Security processes in the Bank (proper design of process controls, coverage of information systems and processing facilities).
  • Implementation of Information Security Management System in the Bank in compliance with ISO/IEC 27001 and СОУ Н НБУ 65.1 СУИБ 1.0/2.0:2010 (design, education, audits).
  • Building up and managing IT/IS Security group (direct supervising over 3 team members).
  • Performing security activities and checks required by National Bank of Ukraine and PCI DSS.
  • Development and implementation of statutory acts (standards, procedures, security baselines and recommendations). Monitors, evaluates and improves information security policies and procedures;
  • Active participation in development and implementation of Group policies and standards: Information Security, Business Continuity and IT Infrastructure.
  • Creation and implementation of security awareness program.
  • Inventory and classification of information assets.
  • Member of IT/IS/RM Committee (presenting IS-related issues, providing consultancy).
  • Participation in IT Steering Committee as an independent consultant for the Management Board on various IS related issues.
  • Planning and project management for information security.
  • Information risk management (analysis, evaluation and treatment).
  • Incident management (prevention, reaction on incidents, fraud investigations, providing consultancy).
  • Group budgeting, presentations, reporting and tender activities.
  • Coordinating the activities of the Information Security Committee
IT Security Administrator январь 2009 - октябрь 2010 ProCredit Bank (www.procreditbank.com.ua)
Обязанности и достижения:
  • Performing security activities and checks required by National Bank of Ukraine.
  • Preparation of IT and security infrastructure for PCI DSS certification procedure (gap analysis, preparing recommendations and action plan).
  • Responsible for maintenance of: EPP/antivirus, antispam, proxy and web monitoring, log management systems.
  • Development of statutory security policies and requirements.
  • Participates in the development, implementation, testing and update of Business Continuity and Recovery Plan.
  • Vulnerability Assessment and Management (XSpider, Qualys).
  • Cryptography protection maintenance.
  • Access rights management system maintenance
  • Serving as an internal information security consultant to the Bank.
  • Internal information security and IT auditing.
  • Consulting on security aspects in a new core banking system development.
  • Support and maintenance of physical access control and video surveillance systems.
  • Regular execution of access right recertification for all information assets with information owners.
  • Periodically analyzes IS/IT security associated risks, identifies possible scenarios, defines and proposes countermeasures.
  • Maintains a database of legal requirements, regulations, alerts, vulnerabilities and IS/IT security technologies;
  • Prevention and investigation of IT and information security incidents.
  • Analytical support of IT department initiatives and all IT related projects.
  • Provides security-related input to strategic and tactical planning, budget preparation, initiatives and project planning and other management activities as planned.
Information Security Manager, июль 2006 - январь 2009 МТС (UMC) (www.mts.com.ua)
Обязанности и достижения:
  • Active participation in development and implementation Information Security Management System in compliance with ISO/IEC 27001:2005.
  • Monitoring compliance with the Bank's information security policies and procedures among employees, contractors, alliances, and other third parties and referring problems to appropriate department managers or administrators.
  • Project and product management, full project lifecycle: from initiation to post-implementation analysis.
  • Participation in creation and implementation of security awareness program.
  • Participation in development and implementation of statutory acts (standards, procedures, security baselines and recommendations).
  • Support and maintenance of physical access control, video surveillance and alarm systems.
  • Security monitoring: SIEM and log correlation, vulnerability management program, IDS/IPS systems.
  • Dealing with security incidents: detection, investigation and remediation, developing and implementing preventive controls.
  • Information security, IT and risk management expertise in various major infrastructure projects of the company (implementation of a new billing software, customer self-care web-portal, network security, SIEM).
  • Participation in internal IT audits and external SOX-404 audit.
  • Deputy information security group lead.
  • Mentoring for new employees. Supervising trainees.
  • Dealing with contractors: contracts, service agreements, SLAs, tender procedures.
  • Performing various technical security tests and assessments.

Образование

Высшее Национальный Технический Университет Украины «КПИ» ( Украина, Киев ) Информационная Безопасность сентябрь 2004 - июль 2006
Неполное высшее Национальный Технический Университет Украины «КПИ» ( Украина, Киев ) Защита Информации в Компьютерных Системах и Сетях сентябрь 2000 - сентябрь 2004

Знание языков

Украинский - свободно
Русский - свободно
Английский - продвинутый
Резюме, которые Вам могут подойти:
Администратор баз данных, Специалист информационной безопасности, Киев Информация скрыта 29.05 Опыт работы Не указан Образование Высшее Национальный авиационный университет ( Украина, Киев ) Безопасность информационных и коммуникационных...
Помощник системного администратора, Специалист по защите информации, Киев Информация скрыта 29.05 Опыт работы Промоутер сентябрь 2011 - декабрь 2011 ASUS Обязанности и достижения: консультация клиентов по продукции ASUS Продавец-консультант...
Системный администратор, Специалист по защите информации, 7000 грн, Киев Информация скрыта 29.05 Семейное положение: состою в браке Дети: дети есть (2 ) Готовность к командировкам: готов Ищу работу в: Киев Ключевая информация и навыки работы:...
Специалист по информационной безопасности, Системный администратор, Инженер системы безопасности, Киев Информация скрыта 29.05 Опыт работы Старший специалист январь 2007 - январь 2012 военная часть К1410 Бюджетная государственная организация. Военная часть. Не МВД и...
Адміністратор комп\'ютерних систем, Системний адміністратор, Системний адміністратор позаштатний, Спеціаліст інформаційної безпеки, Администратор web сайта, Інженер програміст, 4000 грн, Киев Информация скрыта 29.05 Семейное положение: не состою в браке Готовность к командировкам: готов Ищу работу в: Киев Цель: Бажання навчатись і розвиватись в сфері...
к началу