Security Technical Leader at Softtek Information Services (GDC Aguascalientes)
Aguascalientes Area, Mexico
Security Technical Leader at Softtek Information Services (GDC Aguascalientes)
Aguascalientes Area, Mexico
• 10 years of experience in IT Security and Technical Leader (Vulnerability scanning, Patch management, Intrusion Detection Systems, Anti-virus management, Firewalls, Database Scanning and Encryption), as well as Windows and Unix administration.
During my professional career I have obtained extensive international experience in USA, Mexico and Europe, mainly in the Information Technology industry, especially IT Security.
I have had different roles such as Telecom and Networking coordinator, IT Security Project Leader, Security Engineer and IT Security Leader. These functions have covered areas such as networking, IT security, operations, management, strategy and business development.
Throughout my professional career, I have been widely recognized for exceeding expectations, where my technical skills have always played a key role for achieving such goals.
-Infrastructure Security
-Vulnerability Assessment
-Pen test
-Application Security
-Anti-virus Management
-Forensic Analysis
-Risk Management
-Information Systems Audit
-Incident Response
(Privately Held; Information Technology and Services industry)
April 2009 — Present (9 months)
IT Security Technical Leader for GE Corporate Treasury.
Managing and leading the following Security projects:
•Monthly Security Scans (Vulnerabilities).
•Security metrics, reporting, auditing.
•PGP Security.
•Application penetration testing (Black Box).
•Opsware Management.
•Anti-Virus Administration (OfficeScan and Sophos).
•Firewall Administration.
•SoX audits.
(Privately Held; Information Technology and Services industry)
September 2008 — March 2009 (7 months)
IT Security Leader
Security Project Management and Execution for the following projects:
•Develop awareness training program. Follow up for all the initiatives to certify business is in compliance with security standards. Perform Security evaluations: Support business for the correct application and execution of the information security revisions.
•Pen-Test.
•Application Security.
•Encrypted email (Ironport).
•Vulnerability and Patching Management.
(Privately Held; 1001-5000 employees; Information Technology and Services industry)
March 2008 — September 2008 (7 months)
Web Application Security review of a Banking Institution from Spain.
Main tasks:
•Application Security Audit (Black Box).
•Internal Security Audits
(Privately Held; 1001-5000 employees; Information Technology and Services industry)
January 2006 — March 2008 (2 years 3 months)
Security Engineer for GE Corporate Treasury
Main tasks:
•Database scanning over business (Oracle, SQL and Sybase).
•Monthly Security Scans (Vulnerabilites).
•Safeboot Administration.
•Application penetration testing (Black Box).
•PGP Administration.
•Encrypted email (Ironport) Administration.
•Opsware Management.
•Anti-Virus Administration (OfficeScan, Sophos and SAV).
•Firewall Administration.
(Privately Held; 1001-5000 employees; Information Technology and Services industry)
August 2000 — January 2006 (5 years 6 months)
Security Team Leader for GE Commercial Finance.
Main Tasks:
•Support team leader SOCOE (Security Operations Center of Excellence):
•Responsible to run Monthly Security Scans and Ad-hoc Scans over GE COMFIN businesses.
•Responsible to compile the Monthly Security Metrics for GE COMFIN businesses (report results to Corporate) and provide vulnerability reports with the remedy to the appropriate team (Patching process).
•Responsible to perform Database scanning over all the business (Oracle and SQL) and provide vulnerabilities reports to the appropriate Team.
•Blackice administration, Proventia -> RSDP (Real Secure Desktop Protector), personal firewall, updating client versions and firewall rules.
(Education Management industry)
January 1998 — July 2000 (2 years 7 months)
•Windows and UNIX administrator.
•Networking.
•Security.
•Manage and administration of CISCO routers, Switches, WAP and Novell Border Manager.
•Responsible to create and maintain user accounts (600+- Windows accounts).
•Responsible to create and maintain email accounts (600+- Sendmail accounts).
•Responsible to perform Security scans and patch management to 150+- computers and servers.
•Responsible to manage VLAN’s and access control (RADIUS).
OWASP