Gretchen Kerns
Details
American Express in Phoenix, AZ
CDI Contract Technical Lead / CISO - USM
• Coordinate, implement, troubleshoot Change Requests (CMR & RFC) , format batch process input data and review output for Team RACF and application specific security initiatives that regulate access to business critical data and Role Based initiatives. • Collaborate with and support Team involvement to help Business Owners closure of MAP initiatives and audit requests for access information. • Collect, analyze and present data / monthly reports to support Team initiatives and Business owners requests using MySQL and php. • Participate in discussions, analysis of data and assistance in implementing changes to user system access to support Team Goals as well as Company Standards and Compliance. • Serving as RACF SME, participate in architectural discussions, analyze data and provide assistance in implementing changes to system access supporting migration from legacy security system to RACF.
2014 :
American Express in Phoenix, AZ
Positive Track Consultant Technical Lead / Information Security Engineering
Planned, coordinated and implemented security measures for information systems to regulate access to business critical data and prevent unauthorized modification, destruction or disclosure of information. •Developed and refined department operational procedures for the management of 300,000+ LDAP, UNIX and Windows accounts and 80,000+ Mainframe accounts. •Created new and maintained existing menu driven user-friendly department mainframe account administration tools. •Monitored compliance and provided consultation on security technology for company's information security policies and standards, through cooperative efforts with internal audit, security organizations and peer groups for 20+ systems. •Conducted Risk Assessments on detected security anomalies across UNIX, Windows and Mainframe platforms associated with information system resources. •Analyzed new and maintained existing information security policies and standards •Trained new Information Security Administrators and existing Analysts on new security policies and revised procedures.
2004 : 2009
DHL/Airborne Express
DHL, Scottsdale, AZ IS Security Engineer / Sr. IS Security Engineer
Facilitated system user access administration activities that provided access to and the protection of information systems by granting, revoking and monitoring user account access to systems, applications and data resources within SLA +90% of time. •Verified authorization from information asset owners for granting access to systems, applications and data resources. •Ensured proper adjustment to access privileges associated with changes in employee status and business relationships with non-company entities •Maintained access control profiles for system, application and data resources. •Identified information system security deficiencies and initiated corrective action. •Internet monitoring and analysis using company created tools, •Supported conversion from Top-secret to RACF security software on mainframe •Supported conversion from Netware to Active Directory software on distributed platform
1991 : 2004
Airborne Express
Airborne Express Systems Security Administrator I, II & III
•Data Control Officer (1989 – 1991) •Associate Data Control Officer (1987 – 1989) •Data Management Assistant II (1985 – 1987) •Data Management Assistant I (1984 – 1985) •Trust Clerk (1983 – 1984) •Reconciling/Transit Supervisor (1978 – 1983) •Reconciling Clerk / Sr. Reconciling Clerk (1977 – 1978)
1977 : 1991
Bank of America
Various Positions
About
Experienced security administrator with broad experience and knowledge in complex IT infrastructures supporting multi-platform and multi-technologies for nationwide and global operations. •Active Directory, NETIQ, Microsoft Exchange, LDAP (Softerra), Wintel (native), Unix (scripts) and Internet platforms. •Consult with and provide testing for the development and implementation of security initiatives, supporting processes to assist in streamlining end-user support structure. •Liaison with internal and external auditors to ensure both applications and operating systems comply with Corporate Information Security Standards •Excellent customer service skills communicating with all levels of organization •Consistent productive high performer Specialties: •Comprehensive knowledge of IBM's RACF Security System. Program language expertise including IBM Clist, REXX, SPF Dialog Manger, O/S JCL and utilities.