Profiles search
Diana Esparza
Cybersecurity Training & Awareness
Irvine, CA, United States
Details
Experience:
2022 : Present
Alteryx
Information Security Engineer
Information technology risk expert driving and promoting risk ownership and best practices at all levels of the organization.
2020 : 2022
Zions Bancorporation
Information Technology Risk Manager
Head of an Enterprise Application Security team with a team of 7 in the U.S and India.
Develop, own, and lead the enterprise’s application security strategies and processes that includes :
-Vulnerability Assessment
-Application Security Training
-SDLC Security Integration
2018 : 2020
First American
Manager, Enterprise Application Security
Leading the Enterprise Application Security team to ensure the security of First American’s applications and data.
Focused on maintaining awareness of the current landscape and recommend mitigations against threats.
Communicate and educate software development staff on how to mitigate threats using vulnerability frameworks and guidance such as OWASP, SANS, CVE, and NIST.
Administration and support of user-facing security tools in support of the vulnerability management program as well as the rollout of new security technologies and processes.
Spearheaded and implemented a pattern-based Threat Model capability and program for the Enterprise Application Security team; including documentation and processes.
2016 : 2018
First American
Sr. Information (Cyber) Security Analyst
Assist clients and their legal counsel collect, preserve, and analyze large amounts of electronic stored data for investigations and complex litigation, utilizing discovery and forensics tools.
All applications cover all portions of the Electronic Discovery Reference Model (EDRM) and the processes used uphold the standards of the Federal Rules of Civil Procedure (FRCP).
2010 : 2016
First American
eDiscovery Analyst
Alteryx
Information Security Engineer
Information technology risk expert driving and promoting risk ownership and best practices at all levels of the organization.
2020 : 2022
Zions Bancorporation
Information Technology Risk Manager
Head of an Enterprise Application Security team with a team of 7 in the U.S and India.
Develop, own, and lead the enterprise’s application security strategies and processes that includes :
-Vulnerability Assessment
-Application Security Training
-SDLC Security Integration
2018 : 2020
First American
Manager, Enterprise Application Security
Leading the Enterprise Application Security team to ensure the security of First American’s applications and data.
Focused on maintaining awareness of the current landscape and recommend mitigations against threats.
Communicate and educate software development staff on how to mitigate threats using vulnerability frameworks and guidance such as OWASP, SANS, CVE, and NIST.
Administration and support of user-facing security tools in support of the vulnerability management program as well as the rollout of new security technologies and processes.
Spearheaded and implemented a pattern-based Threat Model capability and program for the Enterprise Application Security team; including documentation and processes.
2016 : 2018
First American
Sr. Information (Cyber) Security Analyst
Assist clients and their legal counsel collect, preserve, and analyze large amounts of electronic stored data for investigations and complex litigation, utilizing discovery and forensics tools.
All applications cover all portions of the Electronic Discovery Reference Model (EDRM) and the processes used uphold the standards of the Federal Rules of Civil Procedure (FRCP).
2010 : 2016
First American
eDiscovery Analyst
Company:
Alteryx
About
15 years’ experience delivering on strategic and tactical objectives in multiple areas of Information Security.
Specialties:
Application Security
SAST | DAST | Manual Penetration Test
Physical Security
Program Management
Business Continuity
eDiscovery
ITIL
SDLC
Security Training
Vulnerability Management
IT Risk Management
Cloud Security