Scott Saganich, CISSP
Details
MIT Lincoln Laboratory
Information Security Analyst
2016 :
MIT Lincoln Laboratory
Security Engineer
IT leader seeking the best fit for experience and skills. Continuing to add value by advancing my technical skills particularly in security. Currently focusing on ethical hacking and network security.
Certifications :
► CISSP; 12/10/2015
► ITIL Foundations 11/7/2015
► Certified Ethical Hacker (In Process)
Classroom Education :
► Certified Information Services Professional - October 2015
► ITIL Foundations - November 2015
► Ethical Hacking and Countermeasures - December 2015
Independent Study of :
► Cloud Security
► Risk Management
► Vulnerability Scanning tools (NMAP, Nexpose)
2015 : 2016
Information Services
IT Leader
Reorganized the Infrastructure group, stabilized the environment and laid the foundation for a sustainable enterprise. Streamlined budget, managed asset inventory and vendor relationships.
► Rebuilt Network Operations team, improving performance and morale as well as system stability
► Created high availability environment by implementing standards, policies and procedures
Included :
• Policies for incident reporting, security, data, network, asset and change management
• Standards and procedures for project management, inventory and budget preparation
► Moved the on premises data center to a hosting facility, improving availability and performance Included :
• Refreshing production systems, networking and storage
• Assessment of sites, contract negotiations, and review of services and SLAs
• Upgrading WAN including migrating MPLS to new provider and addition of Ethernet point to point connections
► Improved Disaster recovery by refreshing DR site and implementing Vranger and SRM
► Assessed and remediated enterprise security by implementing vulnerability scanning by Rapid7 and industry best practices for servers, switches, firewalls and AD
2012 : 2015
AEW Capital Management
Vice President , IT Infrastructure
Recognized by CIO as “Role Model” and promoted to Director, IT Operations and Networks. Lead a 20-person technology team. Managed infrastructure of 6,000-user, 24x7 global enterprise, including data center, WAN/LAN planning, builds refreshes, upgrades, security, and remote access. Defined and managed change control and incident reporting. Prepared budget for data center, storage, telephony, telecom, and security.
► Exceeded SLA's (service level agreements) by standardizing configurations and build procedures
► Insured business uptime by closely collaborating with stakeholders through five large acquisitions
► Strategically supported the company’s rapid growth by moving to managed and cloud-based services
► Maintained SOX narrative and matrix and adherence to regulations, ensuring 100% compliance
► Drove initiative to implement innovative solutions to resolve rapidly expanding storage growth
► Further reinforced enterprise security posture by defining security procedures and implementing IPS
2006 : 2012
Hologic Inc.
Director, IT Operations and Networks
About
IT Infrastructure and Security leader, recognized for exceptional delivery of services and solutions. My focus on team cohesion and continuous improvement helps drive execution and maintain high morale.
I have consistently provided the vision necessary to define sustainable strategies by balancing new, sometimes disruptive technologies with traditional approaches. Augmented this by building strong relationships with stakeholders and business partners.
While at Hologic initiated early adoption of:
► Firewalls and remote access hardware from Netscreen (now Juniper)
► Intrusion prevention systems and NextGen firewalls from Palo Alto
► Cloud based solutions for SIEM by EiQ and Email filtering from Postini (now Gmail)
► Storage and virtualization solutions from EMC such as VMware, Clariion and Isilon
► WAN acceleration from Cisco
AEW has a more modest enterprise but manages billions in dollars of assets, so the stakes are just as high. Some accomplishments while there:
► Moved the high risk on premises data center to a secure and robust top tier hosting facility
► Ensured high availability and reinforced disaster recovery with SRM and vRanger
► Implemented security policies and introduced vulnerability scanning from Rapid7
► Made this possible by reorganizing the team into a group of skilled and motivated engineers
I am passionate about technology and love helping to resolve technical issues such as asynchronous routing and storage bottlenecks. But even more so about building; Team building, data center building, WAN building, SAN building…
My philosophy is that there is a right way to do things which is:
► Provide the technology the business needs to succeed and make it available 24/7
► Deliver innovation that helps users succeed in their jobs
► Overestimate your staff’s abilities, then delegate and mentor accordingly
► Be a technical resource to your team by understanding the solutions you put in place
► Secure enough isn’t good enough