Profiles search
Christopher Clardy
Information Security Analyst at Willis Towers Watson
Las Vegas, NV, United States
Details
Education:
Bachelor of Science
Economics
University of Nevada, Reno
2013 : 2017
General Education
General Education
Coronado High School
2010 : 2013
Economics
University of Nevada, Reno
2013 : 2017
General Education
General Education
Coronado High School
2010 : 2013
Experience:
Support a global client within internal Information Security team
• Responsible for working with internal Lines of Businesses to help them address Client queries regarding Client's information security posture, future strategy and current controls
• Facilitate completion of Client security questionnaires; manage requests, mailbox and send certifications and reports (e.g., SOC, ISO, Penetration Test etc.)
• Work with internal corporate teams to address questions in the area of IT, Infrastructure, Third Party Risk Management, Cyber Defense, and application teams to facilitate responses related to application functionality and security
• Manage ad hoc projects related to enhancing information and data security controls for business to meet commitments made in Contracts
• Help senior team members with contract negotiations, and application / security audit related activities
• Identify areas of process improvements in the support model and implement process enhancements
• Create process documents, guides and procedures for different areas of support within the Security Monitoring and Client Support functions
• Track audit findings, and client commitments, by aligning them to Client's key control areas
• Create metrics to help identify information security trends that will determine future priorities and strategies
• Coordinate updates to standard responses by working with subject matter experts and global function leads
• Internal Risk assessment(s) and analysis of security controls
2018 : Present
Willis Towers Watson
Lead Information Security Analyst
- Develop and maintain internal network, virtualized systems, and additional COLO sites
- Conduct all security related tasks including but not limited to : Network Security, DLP, Incident Response, Threat Hunting and Remediation
- Conduct vulnerability scans and vulnerability assessments using Qualys and Kali Linux
- Configuration, implementation, and use of antivirus solutions
- Perform external security audits, vulnerability assessments, and scans for client networks
- Provide hands on response and constant improvement in technology IR areas of : AV, EDR, Proxies, IDS/IPS, SIEM, Firewall, Network Analytics, Logging, Metrics, Email protection etc.
- Perform security audits and work with clients to develop a better security infrastructure
Product experience consists of :
- Carbon Black, Splunk, AlienVault, Trend Micro, Palo Alto, Cisco Switches, VMware vSphere 5.5, Windows Server 2008/2012, Exchange 2010, Office 365, SolarWinds Network monitoring, SolarWinds Helpdesk, SharePoint, Wireshark
2018 : 2018
Link Technologies
Contract - Information Security Engineer
ReliaQuest, LLC, provides Co-Managed IT Security Services delivered from 100% US Based Security Operations Center (SOC) including but not limited to SIEM, File Integrity Monitoring, Configuration Management, Intrusion Detection and Prevention, Threat Intelligence Automation, Mobile Device Management, Network Access Control, Web Application Firewalls. On premise field engineering services combined with remote co-managed offering to offer end-to-end support to customers.
- Experience with the following SIEM Technologies : Splunk, QRadar, LogRhythm, McAfee, AlienVault, ArcSight & RSA Security Analytics
- Experience with the following security tools : Carbon Black, Trend Micro DLP, Fidelis Endpoint Protection, FireEye SAAS, Cisco IronPort, Cisco ThreatGrid, McAfee EPO, CrowdStrike
- Monitor and manage security solutions for multiple large enterprises
- Provide root cause analysis and incident response for detected threats, malware investigation and reporting
- Pivot through multiple security tools and devices for event correlation
- Provide client recommendations to improve the security posture of the environment
- Threat hunting campaigns in order to discover potential threat vectors, APT's, and to baseline activity in order to discover abnormalities within the network
- Research customer environments to identity, implement, and tune custom content
- Perform Ad-Hoc customer investigation requests for potential compromise
- Test the effectiveness of security controls and procedures in order to identify areas of improvement
- Perform ongoing security audits to ensure customer environments are not compromised
- Perform health audits of customer's SIEM components, to troubleshoot and ensure all its components and log sources are up and functional
2016 : 2018
ReliaQuest
Information Security Analyst
After interning for TuneGO, I was asked to return the following year to help with extensive testing of the live site. It was my job to thoroughly test the functionality of the companies website and music discovery p[platform.
- Functional/Regression testing
- Bug reports
- End-to-end testing
- Analytics
2015 : 2016
TuneGO
Quality Assurance Engineer
I was selected to work along side the companies lead programmer in developing and organizing a beta website. I was able to work with a team to develop strategic solutions for functional and cosmetic issues throughout the site.
- Entry level experience with Java, PHP, and Apache.
2015 : 2015
TuneGO
Intern
• Responsible for working with internal Lines of Businesses to help them address Client queries regarding Client's information security posture, future strategy and current controls
• Facilitate completion of Client security questionnaires; manage requests, mailbox and send certifications and reports (e.g., SOC, ISO, Penetration Test etc.)
• Work with internal corporate teams to address questions in the area of IT, Infrastructure, Third Party Risk Management, Cyber Defense, and application teams to facilitate responses related to application functionality and security
• Manage ad hoc projects related to enhancing information and data security controls for business to meet commitments made in Contracts
• Help senior team members with contract negotiations, and application / security audit related activities
• Identify areas of process improvements in the support model and implement process enhancements
• Create process documents, guides and procedures for different areas of support within the Security Monitoring and Client Support functions
• Track audit findings, and client commitments, by aligning them to Client's key control areas
• Create metrics to help identify information security trends that will determine future priorities and strategies
• Coordinate updates to standard responses by working with subject matter experts and global function leads
• Internal Risk assessment(s) and analysis of security controls
2018 : Present
Willis Towers Watson
Lead Information Security Analyst
- Develop and maintain internal network, virtualized systems, and additional COLO sites
- Conduct all security related tasks including but not limited to : Network Security, DLP, Incident Response, Threat Hunting and Remediation
- Conduct vulnerability scans and vulnerability assessments using Qualys and Kali Linux
- Configuration, implementation, and use of antivirus solutions
- Perform external security audits, vulnerability assessments, and scans for client networks
- Provide hands on response and constant improvement in technology IR areas of : AV, EDR, Proxies, IDS/IPS, SIEM, Firewall, Network Analytics, Logging, Metrics, Email protection etc.
- Perform security audits and work with clients to develop a better security infrastructure
Product experience consists of :
- Carbon Black, Splunk, AlienVault, Trend Micro, Palo Alto, Cisco Switches, VMware vSphere 5.5, Windows Server 2008/2012, Exchange 2010, Office 365, SolarWinds Network monitoring, SolarWinds Helpdesk, SharePoint, Wireshark
2018 : 2018
Link Technologies
Contract - Information Security Engineer
ReliaQuest, LLC, provides Co-Managed IT Security Services delivered from 100% US Based Security Operations Center (SOC) including but not limited to SIEM, File Integrity Monitoring, Configuration Management, Intrusion Detection and Prevention, Threat Intelligence Automation, Mobile Device Management, Network Access Control, Web Application Firewalls. On premise field engineering services combined with remote co-managed offering to offer end-to-end support to customers.
- Experience with the following SIEM Technologies : Splunk, QRadar, LogRhythm, McAfee, AlienVault, ArcSight & RSA Security Analytics
- Experience with the following security tools : Carbon Black, Trend Micro DLP, Fidelis Endpoint Protection, FireEye SAAS, Cisco IronPort, Cisco ThreatGrid, McAfee EPO, CrowdStrike
- Monitor and manage security solutions for multiple large enterprises
- Provide root cause analysis and incident response for detected threats, malware investigation and reporting
- Pivot through multiple security tools and devices for event correlation
- Provide client recommendations to improve the security posture of the environment
- Threat hunting campaigns in order to discover potential threat vectors, APT's, and to baseline activity in order to discover abnormalities within the network
- Research customer environments to identity, implement, and tune custom content
- Perform Ad-Hoc customer investigation requests for potential compromise
- Test the effectiveness of security controls and procedures in order to identify areas of improvement
- Perform ongoing security audits to ensure customer environments are not compromised
- Perform health audits of customer's SIEM components, to troubleshoot and ensure all its components and log sources are up and functional
2016 : 2018
ReliaQuest
Information Security Analyst
After interning for TuneGO, I was asked to return the following year to help with extensive testing of the live site. It was my job to thoroughly test the functionality of the companies website and music discovery p[platform.
- Functional/Regression testing
- Bug reports
- End-to-end testing
- Analytics
2015 : 2016
TuneGO
Quality Assurance Engineer
I was selected to work along side the companies lead programmer in developing and organizing a beta website. I was able to work with a team to develop strategic solutions for functional and cosmetic issues throughout the site.
- Entry level experience with Java, PHP, and Apache.
2015 : 2015
TuneGO
Intern
Company:
Willis Towers Watson
Years of Experience:
9
Spoken Language:
English
Skills
Creative Solutions, Cyber-security, information security, Information Technology, Leadership, Management, Network Security, Project Management, Public Speaking, Research, Security, Social Media, Social Networking, Software Development, Time Management
About
A passionate and dedicated individual focused on developing an extensive skill-set in current and future information technologies. I challenge myself mentally and competitively in order to achieve the highest personal goals.