Profiles search
Anthony Scaturro
Information Security Officer at University of Houston-Clear Lake
Houston, TX, United States
Details
Experience:
The Information Security Officer role has been established to ensure that the information either created by or entrusted to the University, wherever it is located, is protected in a manner that is commensurate with the information's confidentiality, integrity and availability requirements. To this end, I collaborate with and serve all members of the UHCL community - faculty, staff, students and other affiliates - in their efforts to protect the University's information and systems.
My job functions include :
- Assisting University personnel in the development of effective technological and procedural strategies for :
... Identifying and addressing information risk,
... Complying with information security-related legal and contractual obligations,
- Promoting information security awareness among faculty, staff, students and other members of the UHCL community through :
... An information security-focused web site,
... Formal training sessions,
... Campaigns and promotional materials,
- Evaluating the security of proposed departmental and enterprise-wide solutions, and providing effective, business-sensitive alternatives where necessary,
- Coordinating University-wide information security program efforts,
- Managing cross-functional security projects,
- Monitoring compliance with the University's information security-related policies and its legal and contractual obligations,
- Ensuring that any weaknesses in the University's information defenses are promptly and appropriately remediated.
2015 : Present
University of Houston-Clear Lake
Information Security Officer
As the Senior Advisor for Information Security, I primarily focused on information security-related outreach to faculty, staff, students and other campus constituencies. In this role, I :
- Established the University’s first Information Security program for all University constituencies.
- Developed the University’s initial information security policy, procedures and technology roadmap.
- Selected and implemented information security technologies necessary to address security threats.
- Ensured that system designs and business processes comply with applicable laws and contractual obligations, e.g., PCI-DSS.
- Assisted the University’s academic and administrative departments by reviewing their application systems designs and implementation strategies and proposing alternatives where necessary.
- Improved end user awareness of security threats and countermeasures through classroom training and communications. Personally conducted training classes for over 1,600 staff and faculty across the University.
- Played a major role in the design of the University’s identity management solution.
2002 : 2015
Princeton University
Senior Advisor for Information Security
- Designed/directed the implementation of all computer and networking technology for the new Princeton Public Library.
- Managed the implementation efforts of technical contractors and in-house personnel.
- Supported library staff as necessary.
2004 : 2005
Princeton Public Library
Project Manager for Technology Implementation (Part-time Volunteer)
- Directed the implementation of system controls across the company.
- Developed security policies for employees/contractors, for systems managers and for business managers.
- Supplement the Corporate systems department by designing and implementing software solutions for the company’s business groups as necessary.
- Designed and developed custom application software to calculate and manage payments to cable program providers, such as HBO, Cinemax, Showtime, etc., and to reconcile data across Human Resource systems.
- Developed a revenue sharing payment system and a system to improve inventory management.
2001 : 2002
RCN Telecommunications
Information Security Director and Internal Consultant
- Led a group of twelve project managers. Developed and implemented standard methodology.
- Established Quality Assurance/Change Management function for client/server and Web applications.
- Created Lewco’s Information Security Policy and Security Awareness Program, and managed the deployment of all hardware/software in support of the security policy, including firewalls, virtual private network technology, vulnerability assessment tools and log analysis and review products.
- Designed and developed software to support both the security and Quality Assurance functions.
1997 : 2000
Lewco Securities
Information Security Officer
My job functions include :
- Assisting University personnel in the development of effective technological and procedural strategies for :
... Identifying and addressing information risk,
... Complying with information security-related legal and contractual obligations,
- Promoting information security awareness among faculty, staff, students and other members of the UHCL community through :
... An information security-focused web site,
... Formal training sessions,
... Campaigns and promotional materials,
- Evaluating the security of proposed departmental and enterprise-wide solutions, and providing effective, business-sensitive alternatives where necessary,
- Coordinating University-wide information security program efforts,
- Managing cross-functional security projects,
- Monitoring compliance with the University's information security-related policies and its legal and contractual obligations,
- Ensuring that any weaknesses in the University's information defenses are promptly and appropriately remediated.
2015 : Present
University of Houston-Clear Lake
Information Security Officer
As the Senior Advisor for Information Security, I primarily focused on information security-related outreach to faculty, staff, students and other campus constituencies. In this role, I :
- Established the University’s first Information Security program for all University constituencies.
- Developed the University’s initial information security policy, procedures and technology roadmap.
- Selected and implemented information security technologies necessary to address security threats.
- Ensured that system designs and business processes comply with applicable laws and contractual obligations, e.g., PCI-DSS.
- Assisted the University’s academic and administrative departments by reviewing their application systems designs and implementation strategies and proposing alternatives where necessary.
- Improved end user awareness of security threats and countermeasures through classroom training and communications. Personally conducted training classes for over 1,600 staff and faculty across the University.
- Played a major role in the design of the University’s identity management solution.
2002 : 2015
Princeton University
Senior Advisor for Information Security
- Designed/directed the implementation of all computer and networking technology for the new Princeton Public Library.
- Managed the implementation efforts of technical contractors and in-house personnel.
- Supported library staff as necessary.
2004 : 2005
Princeton Public Library
Project Manager for Technology Implementation (Part-time Volunteer)
- Directed the implementation of system controls across the company.
- Developed security policies for employees/contractors, for systems managers and for business managers.
- Supplement the Corporate systems department by designing and implementing software solutions for the company’s business groups as necessary.
- Designed and developed custom application software to calculate and manage payments to cable program providers, such as HBO, Cinemax, Showtime, etc., and to reconcile data across Human Resource systems.
- Developed a revenue sharing payment system and a system to improve inventory management.
2001 : 2002
RCN Telecommunications
Information Security Director and Internal Consultant
- Led a group of twelve project managers. Developed and implemented standard methodology.
- Established Quality Assurance/Change Management function for client/server and Web applications.
- Created Lewco’s Information Security Policy and Security Awareness Program, and managed the deployment of all hardware/software in support of the security policy, including firewalls, virtual private network technology, vulnerability assessment tools and log analysis and review products.
- Designed and developed software to support both the security and Quality Assurance functions.
1997 : 2000
Lewco Securities
Information Security Officer
Company:
University of Houston-Clear Lake
Spoken Language:
English
About
A flexible, customer-focused, self-starter with a history of delivering effective solutions with an extensive background in information security and all levels of technology. A trusted advisor with considerable experience protecting information appropriately and in compliance with legislation and contract terms, skilled in oral and written communication, presentations and educating staff, and committed to team building and promoting a cooperative work environment.