♛ Paul Oyelakin
Details
Oversight on policy improvements (i.e. Incident Response, Contingency Plan, Security awareness, etc.)
Architected major enhancements to Security Programs : WAN and LAN development, Azure Cloud development, system accreditation and authorization (A&A).
Published Author and Instructor. Highest rated Udemy course – Learn FISMA Compliance. Amazon Kindle : How to Become a Cyber Security Analyst – Phase 1 & Phase 2
Testimonials :
Capital Diabetes and Endocrine Associates – Prime Contractor for IT and ITSec Support
“Paul's company has been instrumental in assisting our practice with the creation of a security risk assessment plan for my healthcare company. PJ Pros has saved us thousands of dollars with their knowledge and implementation of security practices.” - Erica Clements, System Owner, CDEA
USDA IT-Sec sub-contract Award
PJ Pros was Responsible for conducting security assessments on both new and existing high-visibility, enterprise-wide IT systems. Paul and his team have consistently exceeded expectations. Paul’s project management expertise, knowledge, availability and ability to parse complex data will provide you with the situational awareness and clarity required to understand your organizations Information Security posture.” – Bryan Mulvenna, Project Manager, USDA
USPS/OIG - Excellent Performance Awards for firewall migration, MFA implementation and SAS Implementation and other projects
“The Information System Security Program key projects were focused on technical initiatives that had high visibility and impacted all users across the agency. Paul showed exemplary leadership and command of his projects on a consistent basis. He could quickly and effectively Identify and create project milestones and schedules. In addition, he designed a project report dashboard framework for collaboration with cross-functional stakeholders by gathering input and chairing working sessions.” – Rodney Daniels, CISO, USPS/OIG
2019 : Present
PJ Professional IT Services
Information Security Consultant
• Provide FISMA compliance leadership for several major IT projects.
• Lead the effort to develop the agency FISMA security compliance program. This include the development of a security library that include System Security Plans, Security Assessment Reports, POA&M reports Incident Reports, Monthly Security Reports.
• Incorporate a stakeholder involvement culture throughout the project lifecycle to effectively monitor project development, cost, performance, quality and minimize risk.
• Customize a hybrid strategy between Project management Institute (PMI) and USPS/OIG unique culture to develop the most effective processes for managers to follow throughout project life cycles.
• Provide executive stakeholders with recommended solution to existing business processes that require improvement.
• Weekly preparation and presentation of project performance and earned value. Planning and conducting comprehensive test plans including User Acceptance Testing (UAT) before project release to increase quality and minimize risk after project closure.
• Leverage common project management tools to ensure compliance with established standards and present a centralized location for stakeholders to receive updated information on-demand.
Selected Accomplishment and awards :
• Develop a Vulnerability Management Program (VMP). The program established and leverages a communication plan, streamline remediation process and present an organized platform to investigate and measure remediation performance.
• Successfully managed the migration of the Application development team from on-prem into Microsoft Azure Infrastructure as a Service (IaaS) platform.
• Develpped the SPUNK for Windows Infrastructure app. This is a free SPLUNK app with significant cost savings.
• Developed and published project plan templates
• Successfully Managed the effort to implement Multifactor Authentication (MFA) on the network.
• Successfully managed a migration of a firewall and VPN client
2015 : 2019
USPS OIG
IT Security Project Manager
• Created the Security Operations Center for the Foreign Agricultural Services (FAS) during a network migration project. Post migration, my objective was to strengthen the posture of the new network by configuring, implementing and testing security controls, ensuring the functionality of the security stack and authoring the necessary Assessment and Accreditation (A&A) documents required for an Authority to Operate (ATO).
• Manage the project's Security Operations Center and the Business Operations Center
• Securing authorized access by configuring security tools (Log Logic, Nessus, Tripwire, McAfee & Tivoli) to alert and report improper access, missing patches and vulnerabilities. Reports are then audited, delegated to remediation personnel and ensure that a Plan of Action and Milestones (POA&M) processes are issued as necessary.
•Manage business operation needs (inventory, license/maintenance tracker, etc.) within the triple constraints of time/schedule, scope/quality and cost/resource.
•Managing an online proposal library, create Statement of Work (SOW) for projects, design templates, and technical writing.
•Leading several special projects such as PIV implementation, migration initiatives (i.e. win 7 migration), System Assessment and Authorization (A&A)
2010 : 2015
USDA
Information System Security Manager
• Perform Forensic analysis and Incident response utilizing a security tools such as SPLUNK, NCircle, Trend Micro, Wireshark, Net Witness and others.
• Providing consultation advice on vulnerabilities within Architecture. Following up with remediation personnel.
• Communicate with excellent oral and written skills. Providing informative high level report to CMS and white house executives on demand
• Develop and provide weekly security reports inclusive of trend analysis
• Immediate leadership response to all cyber incidents while on duty in a 24/7 security operation center
2014 : 2015
U.S. Department of Health and Human Services
Shift Lead
About
Results-oriented IT Security Professional with over 13 years supporting Information System Security Programs supporting large, multi-location network systems.
Senior Adviser to the federal Chief Information Security Officers (CISOs), CEOs and CIOs, providing subject-matter expertise to promote security Awareness, Improve Information Security Programs, Process Improvement and applying innovative approaches to solve complex IT issues.
Developer of new enterprise systems Providing Information security leadership for the development and major enhancements to IT policies and operations at the USDA, USPS/OIG, HHS and others. Development projects include and is not limited to: SPLUNK implementation, Azure Cloud Security, Risk Management Framework, SAS implementation (data analytics), continuance of operations plans (COOP), Disaster Recovery, Contingency Planning, and Security Awareness Training.
Experienced with Cloud Systems and obtaining FedRAMP accreditation. Experienced working with the customer on their IaaS, PaaS and SaaS platforms. Ensuring new cloud systems receive its Authority to Operate prior to going live.
Effective Oversight as a CISO. Commanding the Information System Security Programs (ISSPs) of small, medium and large private organizations.