Enode Florvilus, MIT, GSEC
Details
Management Information Technology with a concentration in Information Security
Nova Southeastern University
2008 : 2010
Bachelor's degree
Information Technology
American Intercontinental University
2004 : 2005
AS
Computer Science
Florida Metropolitan University
2002 : 2004
A+ Certified
Hardware & Software
Broward College
2000 : 2001
• Define long term Information Security Strategy in line with governance and business operational requirements, define the tactical goals, and prepare yearly budget requirements, purchase, and deployment of the solutions defined with the Infrastructure teams.
• Recruit, train and manage the IT Security team.
• Responsible for PCI compliance. Responsible to plan and organize the tasks required to obtain and maintain compliance with PCI. Manage and facilitate PCI audit and follow up of remediation activities. Manage the development of processes and solutions inline and supporting PCI compliance.
• Work with multiple IT and business entities and properties to educate, consult, support, and improve understanding of Security requirements. Participate in design, review, and consult on new projects, execute deployment.
• Lead IT security incident response. Participate in threat suppression, forensics trail, process definition, and development of operational monitoring of security pre- and post-incident.
• Operational integration of information security within the project lifecycle and change management process. Security design review and solution advisory. Implementation of metrics and provision of monthly reports on security performance.
• Vendor and partnership management, product selection, testing and POC, selection.
2023 : Present
Seminole Hard Rock Support Services
Director of Information Security
- Monitor security infrastructure to ensure that confidentiality, integrity and availability of systems are ensured.
- Participate in security audits, risk assessment and analysis.
- Review change requests to ensure compliance with policies and best practices.
- Administer and monitor firewalls and VPNs solutions.
- Implement Next-Gen AV Solutions
- Implement and Administer PKI Solutions
- Monitor vulnerabilities and participate into the remediation and patching.
- Analysis and reporting on security events, potential anomalies or malware.
- Participate in PCI and PII audits, execute reports.
- Implement security policies and procedures.
- Work with multiple IT teams, business teams, and management to manage security vulnerabilities.
- IDS, IPS
- Implement Mail filtering Solutions
- Administer Firewall and Implement CASB Solutions
- Forensic Tool
- SIEM Solutions
- Experienced with Incident handling
2014 : 2023
Seminole Hard Rock Support Services
Sr. IT Security Engineer
• Ensure and monitor security compliance with industry and government rules and regulations
• Performs Internal Controls, PCI, SOX and internal risk assessments
• Report security performance against established security metrics
• Ensure security complies and meets all service level agreement requirements
• Coordinate with technology and business groups to assess, implement, and monitor IT-related security risks/hazards
• Create, maintain an information security awareness program to ensure staff members across the organization understand the trade-off between risk and return
• Participates in drafting policies and procedures
• Responsible for the documenting the Business Impact Assessment and the Business Continuity plan readiness and testing
• Participate in key system and user acceptance testing efforts
2013 : 2014
Prestige Cruise Holdings
Sr. Information Security Analyst and Compliance
• Hands-on security systems operation for IDS, Security Auditing / Vulnerability Scanning , leveraging Intrushield, McAfee Vulnerability Manager / Foundstone
• Developing and coordinating security policies, standards, and procedures; collaborates with other Bayview divisions, data owners and division managers in the development of policies to ensure proper security safeguards are achieved.
• Assist in developing and implementing an ongoing risk assessment program, including recommending methods and overseeing vulnerability detection and testing.
• Assist in developing security awareness training and training materials on information security for employees and other authorized users.
• Developing and implementing incident reporting and incident response processes and procedures to address a security incident and breach, violation of policy or complaint; serves as a point of contact for information security inquiries and audits; performs other duties as assigned.
• Managing audit issue remediation efforts.
• Hands-on and coordination of remedial measures for security events, incident and vulnerabilities.
• Co-ordinate technical resources to support network security incident handling for virus outbreaks.
• Generate ad hoc reports on network security posture : event aggregation, detection statistics, access violations, remedial actions.
• Assist in IT security governance development and gap analysis.
• Keep abreast of industry security trends and current network threat profiles.
• Support and coordinate vulnerability management services for the organization.
• Provide backup and support for business continuity service.
2008 : 2013
Bayview Asset Management, LLC
Sr. IT Security Analyst
Respond to end-user service requests reported to the IT Help Desk. Documents, tracks, and monitors issues to ensure a timely resolution with the aid of the HelpDesk work order system. Escalate issues appropriately.
Comply with Corporate and IT policies and procedures.
Assist other IT Departments, i.e. Network.
Participate in IT projects when required.
Install and support Blackberry Handhelds
Lotus Notes installation/Configuration and Programmer.
Manage employee setup Matrix
Assist in development of desktop support procedures and end-user documentation
Respond to incident/ticket tracking system and prioritize appropriately.
Comply with corporate and IT policies and procedures
Set up LCD Projector, laptop and screen for presentations and meetings
Support remote offices similar to local office
Understand and follow the Bayview Financial Company Tenets.
Managing User accounts, groups, folders and printers using Active Directory.
2007 : 2008
Bayview Financial
Sr. Operations Specialist
Skills
Active Directory, Antivirus, Blackberry Enterprise Server, Checkpoint, Citrix, Computer Security, Disaster Recovery, ePolicy Orchestrator, Foundstone, Guardium, HP Fortify, Incident Response, Information Security, Internet Protocol Suite (TCP/IP), IT Management, IT Operations, McAfee, Mobile Device Management, Networking, RSA enVision, RSA SecurID, RSA Tokens, Security, Sophos SafeGuard Encryption, SQL, System Administration, TCP/IP, Tripwire Enterprise, Troubleshooting, Tufin, Venafi, Vulnerability Management, WinMagic
About
-Active Directory
-IT Management
-Security Administration
-Symantec Webserver Scan Engine
-ePolicy Orchestrator
-Venafi
-HP Fortify
-Guardium
-Tripwire Enterprise
-Mobile Device Management (MDM)
-Tufin
-Checkpoint Encryption
-RSA SecurID
-RSA enVision
-RSA Tokens
-WinMagic
-Foundstone
-Port Control (CheckPoint)
-Sophos SafeGuard (FDE)
-Rapid 7
- Anti-Virus: McAfee (ATD, DXL, TIE, MAR), Cylance, Carbon Black, SentinelOne, FireEye HX
-FireEye NX
-Mail filtering tool: Messagelabs, Websense/Forcepoint
-Firewall and Proxy: CheckPoint, Palo Alto, BlueCoat and Websense/Forcepoint
-Encase, FTK Imager, ect...
-SIEM: LEM, LogRhythm