Risk Management & Security at Kautex Textron and CIO & Co-Owner of Impact! Interior Design Solutions
Greater Detroit Area
Risk Management & Security at Kautex Textron and CIO & Co-Owner of Impact! Interior Design Solutions
Greater Detroit Area
Certified Technical & Security Architect, IT and Enterprise Security strategies, application security, auditing, conducting security assessments, ethical hacks. Business professional, experienced in customer engagements, streamlining business processes, global project management, and interacting with all levels of leadership.
CISSP, CISM, CISA, MCSE, MCSA, Security Management Practices, IS Policies and Procedures, Access Control Systems and Methodology, Applications and Systems Development Security, Security Architecture and Models, Consultative Sales, Network Design and Architecture, ISO 27001, ISO 27002, BS 7799-3, ISO 25999 , SOX, PCI-DSS, GLBA, HIPPA,Security Awareness Training, HIPAA, CA SB1386, Disaster Recovery Planning (DRP), Business Continuity Planning (BCP), Data Center security.
(Public Company; 10,001 or more employees; TXT; Automotive industry)
March 2007 — Present (2 years 5 months)
| michaeljrowley@gmail.com |
• Manage the development, implementation and publishing of global information security standards, procedures and guidelines for over 50 locations in 16 countries.
• Document and implement new procedures for Sarbanes-Oxley and lead locations worldwide with audit preparations.
• Create and drive compliance to the standards, policies and actions.
• Assist with the development, implementation, and maintenance of standard processes, procedures, policies, training and systems that will meet business goals and objectives for security, disaster recovery, and general controls.
• Provide consultation/advice to other Textron enterprise teams on the security requirements for their projects.
• Perform audits to investigate if Kautex infrastructure, applications, sites, and personnel are complying with all Textron policies, procedures, and processes.
• Assess, document and report on potential information security breech issues as necessary within the enterprise.
(Real Estate industry)
November 1999 — Present (9 years 9 months)
We are a professional full service Home Staging and Interior redesign Firm serving South East Michigan. We have been featured on local ABC, FOX, NBC TV affiliates, the National TODAY Show, and frequent appearances on the "Hire it Done" Radio show.
• Staging is the art of preparing a home for sale regardless of price, condition or location.
• Staged Homes Sell Faster And For More Money!
• Staging helps homeowners obtain the most money for their home in the shortest amount of time.
Our exclusive Staging process will create immediate interest in your house, help you sell it faster, and get you the most money! We have successfully staged over 400 homes over the last 4 years alone.
Our Services Include:
• Home Staging
• Improving Curb Appeal
• Staging for Living
• Interior Re-Design
• Move in Decorating and Unpacking
• Color Consultations
• Professional Organizing
"The Investment in Staging is always less than the first price reduction"
(Public Company; 10,001 or more employees; F; Automotive industry)
March 2006 — February 2007 (1 year)
• Managed global Vulnerability Assessment and Patch Management efforts by gathering security related vulnerabilities, advisories, exploits, and proof of concepts to assess enterprise and outsourced applications vulnerabilities.
• Determined impact of vulnerabilities and led global patching efforts.
• Monitored internal and external threat levels including conducting proactive vulnerability assessments (ethical hacks) to validate threats to Ford’s applications and infrastructure.
(Public Company; 10,001 or more employees; F; Automotive industry)
October 2002 — February 2006 (3 years 5 months)
• Principal consultant on all Ford security engagements for externally developed and/or externally hosted applications and processes.
• Led onsite audits consisting of reviewing of partner IT and security policies, assessing the physical environment, and gauging the security posture of the organization.
• Led engagements for over 600 applications /process certifications, including over 60 S-OX audits and operational audits of 22 JIT suppliers at 3 manufacturing plants.
• Performed or led hundreds of application “ethical hack” assessments, network penetration testing, and server and network auditing engagements.
(Public Company; 10,001 or more employees; F; Automotive industry)
April 2002 — October 2002 (7 months)
• Performed risk assessments of infrastructure and applications based on threats and vulnerabilities; responded to threats and incidents, including development and implementation of solutions to mitigate and/or eliminate risk.
• Conducted forensic investigations on workstations, servers, peripherals, and documents for Human Resources, business management, the Office of General Counsel, and local law enforcement. Cases included breach of policy, violations of standards of business conduct, or other unlawful acts.
• Prepared dozens of termination cases for HR, senior management, and law enforcement agencies.
• Assessed internal and external security-related reports to identify specific events for investigation or escalation within the enterprise.
• Evaluated vendor products and solutions; authored proposals to increase enterprise security.
• Assisted with the evaluation, recommendation, and planned implementation of network security products, tools, and methodologies.
(Public Company; 5001-10,000 employees; CBR; Management Consulting industry)
January 2002 — April 2002 (4 months)
• Led the team that implemented and administered the global intrusion detections architecture after purchase of Decision Consultants.
• Conducted a global infrastructure audit to meet established properly administered host guidelines.
• Troubleshot hardware / software issues and administered over 2000 servers.
• Tracked all suspicious Internet activity and interpreted findings to identify the source of attacks and breaches; identified specific events for investigation or escalation.
(Privately Held; 1001-5000 employees; Information Technology and Services industry)
October 2001 — January 2002 (4 months)
• Led the team that implemented and administered the global intrusion detections architecture.
• Conducted a global infrastructure audit to meet established properly administered host guidelines.
• Troubleshot hardware / software issues and administered over 2000 servers.
• Tracked all suspicious Internet activity and interpreted findings to identify the source of attacks and breaches; identified specific events for investigation or escalation.
(Public Company; 10,001 or more employees; Dell; Computer Hardware industry)
August 2000 — April 2001 (9 months)
• Led inside sales and technical team in solution design, project management, proposal development, including RFI/RFQ/RFP’s, product demos and evaluations in a four state territory.
• Provided pre-sales consultation regarding industry technologies, including servers, storage, (SAN & NAS), appliances, network hardware, Client/Server applications, network operating systems, Wireless LAN’s, ASP, and enterprise management applications.
(Public Company; 10,001 or more employees; EDS; Information Technology and Services industry)
February 1997 — August 2000 (3 years 7 months)
• Led a team that administered, architected and secured an automotive dealership network of over 600 AS/400’s and over 1000 facilities located in North America and Japan. (this business is now part of ADP Dealer Services)
(Public Company; 10,001 or more employees; EDS; Information Technology and Services industry)
January 1996 — January 1997 (1 year 1 month)
* Managed a team that conducted nationwide hardware upgrades of automotive facilities from S/36, CISC midrange servers to RISC AS/400 Midrange servers.
(Public Company; 10,001 or more employees; EDS; Information Technology and Services industry)
January 1994 — February 1996 (2 years 2 months)
• Led a team that focused on negotiating vehicle repurchases, settlements with attorneys, streamlining the repurchase inventory, and complying with state lemon laws.
(Public Company; 10,001 or more employees; EDS; Information Technology and Services industry)
April 1992 — November 1993 (1 year 8 months)
• Authorized warranty and policy adjustments for GMC dealerships and customers.
(Privately Held; 201-500 employees; Information Technology and Services industry)
May 1991 — February 1992 (10 months)
• Sucessful outside Sales Account executive for an Large Office Equipment provider.
MBA , Business Management , 2004 — 2006
Bachelor of Arts , History, English & Organizational Leadership , 1987 — 1991
* Managed 3 Student Union Food shops while attending full time
* Held Every Major office in Fraternity of 120 Live in Members
Computers and Technology, Digital Photography, Collecting Fine Wine, Gourmet Cooking, Dining Out, Smoking Great Cigars, Working Out,
CISSP, CISM, MCSE, MCSA, Information Systems Audit and Control Association (ISACA), Institute of Internal Auditors (IIA)
Six Sigma Certified Green Belt, 4x awarded Ford "Best of the Best"