Professional Documents
Culture Documents
RECENT EXPERIENCE
Symantec Corp., Mountain View, CA
Information Security Manager January 2016 - Present
Manage IT security audits and auditors for enterprise risk management, PCI DSS, ISO 27001 / 27002,
SOx, FISMA, FEDRAMP, COSO, COBIT. Test, analyze, validate and record technical controls
including: IDS/IPS, routers, firewalls, DLP, splunk / log files, DCS, Red Seal, FIM, network security,
vulnerability scans, policies and procedures, penetration tests, vendor SLA / MSA / SOW, physical
security, network diagrams, databases, biometrics, SaaS / IaaS / cloud, and cryptography / encryption.
Perform data analytics to identify trends, anomalies, and critical areas for IT Security audit. Developed
PCI and IT security risk programs. Report IT security posture, compliance, control effectiveness and risk
to senior and executive management. Address inquires of external auditors, stakeholders, and regulators.
Michel & Associates P.C., Long Beach, CA
Regulatory Compliance Law Clerk, Senior IT Consultant 2014 - 2016
Advised commercial clients and industry organizations in several highly regulated industries
with internal and external compliance and best practices. Consulted on IT matters.
Law Offices of Nate Kelly, Beverly Hills, CA
Senior IT Consultant, Expert Witness 2013 - 2014
Consulted on IT systems, data center operations, IT security, leases, SLAs, M&A, and application
development. Expert witness in legal disputes involving information systems and applications.