Michael Smith
Details
Computer and Information Systems Security/Information Assurance
Lewis University
2015 : 2017
Bachelor of Science (B.S.)
Criminal Justice/Law Enforcement Administration/Homeland Security
Western Illinois University
2010 : 2012
General Studies
Rock Valley College
2009 : 2010
Plante Moran
Manager - Cybersecurity
Cybersecurity Risk Assessment – Assisted numerous clients, in assessing risks from their current use and non-use of technology. Evaluated the controls in place and needed to meet the current risks and developed a multi-year risk based audit plan to continuously evaluate these risks and controls.
Cybersecurity Consulting - Assisted numerous clients with year-round cybersecurity consulting efforts, including best practice recommendations related to people, processes, and technology. Consulting focus for security best practices has ranged between small businesses with IT completely outsourced.
Information Systems Auditing – Assisted numerous clients with their internal and external IS audit needs, including compliance with regulations including , FFIEC and GLBA.. Also assisted with the implementation of security best practices and guidelines.
Cybersecurity Assessments – Assisted numerous clients, in managing their internal and external IT security risks.
2021 : 2022
Plante Moran
Senior Information Technology Consultant
• Conducting annual audits in various subject and processes areas to investigate and identify risk
• Planning audits to assure the adequacy and effectiveness of technological internal controls
• Validating compliance with corporate policies and procedures to identify opportunities to enhance operating efficiencies
• Ensure acceptable solutions to mitigate risks are identified and implemented
2019 : 2021
CME Group
Senior Information Technology Auditor
• Tracked and reported KPI to improve overall performance for customer service representatives
• Managed, lead, and continuously fostered growth for 68 customer service representatives
• Trained customer service representatives for companywide software upgrade and rollout
• Initiated an inclusive work environment to inspire excellence and teamwork
2016 : 2017
Performance Health
Customer Service Supervisor
• Provided quality assurance (QA) on Infrastructure Survey Tool (IST) and Site Assistance Visit (SAV) for 200+ surveys ensuring information accurately correlated with the information on the IST for Protective Security Coordination Division (PSCD)
• Provided research and analytical skills to multiple Office of Cyber and Intelligence Analysis (OCIA) tasks to include : National Risk Estimate (NRE) on Failing Infrastructure concerning commercial aircraft, profiles for two energy companies, and Sector Risk Profiles for multiple infrastructure sectors
• Supplied security for expansion of a Secure Compartmented Information Facility which included strict access control, visual and physical searches, and acting liaison between contractors and project manager.
• Developed documents to ensure construction of Secure Compartmented Information Facility (SCIF) was in compliance with UL 2050, the Standard for National Industrial Security Systems
• Provided logistical support for Transportation Security Agency (TSA) Pipeline Training Course, Introduction to Risk and Resilience Course
• Actively participated in development of Cyber Analytics Training Course for DHS Office of Intelligence and Analysis (I&A)
2013 : 2015
Argonne National Laboratory
Infrastructure Research Assistant
Skills
Critical Infrastructure, Customer Service, Intelligence Analysis, IT Audit, IT Consulting, ITGC, Leadership Development, Microsoft Office, Military, Military Experience, Military Training, Physical Security, Public Speaking, Quality Assurance, Report Writing, Risk Assessment, Security, Surveillance, Team Leadership, Technical Writing, Text Editing, User Acceptance Testing, Vendor Management
About
Expert in risk management, information security, IT audit in several industries, including financial institutions, service and technology, banks, and credit unions. Experience includes cybersecurity framework audits, IT general control audits, FDICIA / Sarbanes-Oxley (SOX404) regulatory compliance audits. Extensive experience with investigative techniques such as threat and vulnerability assessments as well as physical security practices and procedures. Military veteran skilled in asset protection, personnel management, coupled with an exceptional attention to detail.
Specialties:
Information security risk assessments | Asset protection strategies (Physical & Non-Physical) | Information technology audits | Financial Institutions (Banks & Credit Unions | Military | Leadership | Project Management | Customer Service