Profiles search
Keith D.
VP, Specialist; Information Security Engineer
Ballston Lake, NY, United States
Details
Experience:
Manage a security team that provides automated and manual assessments services, penetration testing and vulnerability assessments. This information is provided to our partners to further enhance how decisions are made.
2022 : Present
Bank of America
Manager - GCAV Manual Assessment Team
Currently working on threat research and analysis, control function assessments and leadership through mentoring a new generation of information security professionals into the ranks of responsible ethical hacking.
Successfully demonstrated skillset by providing comprehensive reports to Senior Leadership Teams (SLT) through penetration testing and Quality Control (QC) analytics and acting as a Subject Matter Expert (SME) through remediation cycles.
Contributes to the growth of a new generation of Information Security Engineers by volunteering time through mentorship programs to help the next generation of Information Security Engineers to have the proper tools to enter the job market and make a lasting contribution to properly securing large infrastructure environments.
This culmination of experience in finding zero-day (0 Day) exploits, standardization of reporting, communicating risk, and leadership has made a lasting contribution that reduces risk and financial spending on unnecessary security design.
2013 :
Bank of America
VP, Specialist; Information Security Exposure Management Specialist - GIS GCAV
Worked with Lines of Business's (LOB's) to remediate issues that were identified through security assessments (manual and automated hacking).
Created strong relationships with managers of applications, provided relevant data to Business Information Security Officer's (BISO) and penetration testers that transitioned into a more technical position.
Successfully remediating findings in assessments reduced risk and saved the company money by eliminating vulnerabilities.
2011 : 2013
Bank of America
VP, Specialist; Information Security Engineer - GIS Vulnerability/Analysis Remediation
Designed, purchased and implemented a security infrastructure for a large network that managed State and Federal contracts including IRS Lockbox systems. Oversight included VPN, IDS/IPS, Data Loss Prevention, Anti-Virus, Authentication mechanisms, and Wireless network administration. Acted as interim manager of the IT Security team for 1.5 years.
Completed the transition of a security infrastructure through a divestiture. Was able to complete the upgrade to the specified baseline and standards technologies in less than two years. This resulted in a large financial savings by consolidating security teams and eliminating unnecessary technology.
Calculated the total British Thermal Units (BTU's) generated by servers in a data processing center allowing for the proper upgrade of a HVAC system that had repeatedly failed during a historical brown out in Upstate New York.
2003 : 2011
Bank of America
Specialist - Information Security Engineer
Worked in a financial institution with limited technical capabilities that required rewriting the backend database and upgrading the network infrastructure. Improved financial acumen and technical skills to deliver a more reliable network and data management interface for the entire company.
2001 : 2003
Ayco
Database Administrator/Network Engineer
2022 : Present
Bank of America
Manager - GCAV Manual Assessment Team
Currently working on threat research and analysis, control function assessments and leadership through mentoring a new generation of information security professionals into the ranks of responsible ethical hacking.
Successfully demonstrated skillset by providing comprehensive reports to Senior Leadership Teams (SLT) through penetration testing and Quality Control (QC) analytics and acting as a Subject Matter Expert (SME) through remediation cycles.
Contributes to the growth of a new generation of Information Security Engineers by volunteering time through mentorship programs to help the next generation of Information Security Engineers to have the proper tools to enter the job market and make a lasting contribution to properly securing large infrastructure environments.
This culmination of experience in finding zero-day (0 Day) exploits, standardization of reporting, communicating risk, and leadership has made a lasting contribution that reduces risk and financial spending on unnecessary security design.
2013 :
Bank of America
VP, Specialist; Information Security Exposure Management Specialist - GIS GCAV
Worked with Lines of Business's (LOB's) to remediate issues that were identified through security assessments (manual and automated hacking).
Created strong relationships with managers of applications, provided relevant data to Business Information Security Officer's (BISO) and penetration testers that transitioned into a more technical position.
Successfully remediating findings in assessments reduced risk and saved the company money by eliminating vulnerabilities.
2011 : 2013
Bank of America
VP, Specialist; Information Security Engineer - GIS Vulnerability/Analysis Remediation
Designed, purchased and implemented a security infrastructure for a large network that managed State and Federal contracts including IRS Lockbox systems. Oversight included VPN, IDS/IPS, Data Loss Prevention, Anti-Virus, Authentication mechanisms, and Wireless network administration. Acted as interim manager of the IT Security team for 1.5 years.
Completed the transition of a security infrastructure through a divestiture. Was able to complete the upgrade to the specified baseline and standards technologies in less than two years. This resulted in a large financial savings by consolidating security teams and eliminating unnecessary technology.
Calculated the total British Thermal Units (BTU's) generated by servers in a data processing center allowing for the proper upgrade of a HVAC system that had repeatedly failed during a historical brown out in Upstate New York.
2003 : 2011
Bank of America
Specialist - Information Security Engineer
Worked in a financial institution with limited technical capabilities that required rewriting the backend database and upgrading the network infrastructure. Improved financial acumen and technical skills to deliver a more reliable network and data management interface for the entire company.
2001 : 2003
Ayco
Database Administrator/Network Engineer
Company:
Bank of America
About
Veteran cybersecurity expert with a demonstrated history of discovering clear and present danger (CaPD) findings, Quality Control (QC) testing initiatives, threat research & analysis, Data Loss Prevention (DLP) and extensive knowledge of the banking industry's laws rules and regulations.
Skilled in designing and developing cybersecurity programs that provide assurance and validation that ensures a company's controls function as expected.
These combined skills have eliminated unnecessary processes, improved cybersecurity programs and reduce the cost of protecting a complex Information Technology infrastructure.