William Zacharias
Details
Network Security and Administration
Central Technology Center
2006 : 2009
Finastra
Information Security Governance Engineering Expert
- Lead effort to contain and remediate damage from recent ransomware attacks.
- Perform security audits on all infrastructure, systems, and architecture to develop a plan for maturing the security posture of the organization.
- Manage the monitoring and investigations of Trend Micro Apex One antimalware, Cisco FirePower IDS, and Nagios LS SIEM solution.
- Make formal recommendations on short-, medium-, and long-range goals for IT Services team to adhere to industry “best practices” in the areas of information security and risk management.
- Cisco ASA 5515 : SSD upgrade, botnet filter enabling, Firepower upgrade.
- Install and configure Cisco Firepower Management Center.
- Configure and deploy Thycotic Secret Server PAM solution for password rotation on service accounts, admin accounts, and network device administration accounts.
2019 : 2020
Mears Transportation Group via Kavaliro
Cyber Security Consultant
• Provide guidance and lend effort towards completion of SOX audit.
• Develop policies and procedures to help establish company security framework within GDPR compliance.
• Provide general IT support as part of IT infrastructure team, including but not limited to : Active Directory administration, Office365 administration, key vault administration, physical security/badge system administration, Barracuda email security administration, troubleshooting various network and OS issues, troubleshooting folder permission issues, Box.com cloud storage administration, etc.
• Configure, update, and maintain Cisco AMP and Cisco Umbrella systems.
• Attend several vendor-sponsored workshops for hands-on instruction in use and management of Cisco AMP, Cisco Umbrella, and Cisco Firepower Management Console.
• Utilize Netwrix and Solarwinds Log and Event Management SIEM solutions to provide real-time analysis of potential indicators of compromise.
• Manage and develop company standards for Barracuda Email Security appliance.
• Manage global phishing campaign and security training via KnowBe4.
• Provide short-, medium-, and long-term goals and projects to successfully mature organizational security posture.
2019 : 2019
FARO Technologies
Senior Infrastructure Engineer - IT Security
• Lead effort to prepare company for SCA accreditation audit, as well as HIPPA and HITRUST gap assessments.
• Implement new Trend Micro anti-virus solution that meets needs of the AWS cloud infrastructure within the company.
• Lead the Risk Management Committee in efforts to increase security awareness and preparedness throughout the company.
• Utilize Alert Logic IDS product and investigate all security incidents to resolution.
• Create multiple policies, procedures, and forms to mature the security posture of the organization.
2019 : 2019
Therigy
Information Security Officer
• Create, maintain, and perform annual review of all security policies and procedures for the company
• Perform vulnerability scans and certify new systems for deployment via Tenable Nessus
• Work alongside Network Engineer to redesign the legacy network, revaluate the existing firewall rules and ACLs, and migrate physical server environment into VMware virtual environment.
• Gather evidence for annual SOC2, HIPAA, and RMF audits
• Manage multiple Trend Micro Anti-virus solutions across both physical and virtual environments (deployment, updates, configuration management, etc)
• Perform daily, weekly, and monthly reviews of various required reports generated through the Fortigate Fortinet firewall program
• Manage security-related incidents through the Black Stratus LogStorm SIEM appliance
• Manage the Visitor Management System for visitor tracking and auditing via TheReceptionist tablet- based solution
• Manage the Siemens Sipass physical security management system (creating access tables, schedule management, adding and removing badge access, etc)
• Review security video footage through ONSSI and ExaQ Vision applications for audits and security incidents requested by HR
• Successfully kicked off an Active Directory clean-up to clear over 2000 old accounts
• Helped the Sr. Security Engineer and the CISO to prepare company for HITRUST standards, including providing evidence during the initial gap audit
2017 : 2019
Data Dimensions
Security Engineer II
Skills
ACAS, Active Directory, Backup Exec, Computer Hardware, Computer Security, Customer Service, Enterprise Risk Management, Hardware, Help Desk Support, Information Security, Information Technology, Linux, Manage Engine, Microsoft Exchange, Microsoft Office, Networking, Network Security, NIST, Retail Sales, Sales, Security, Servers, Splunk, Symantec Endpoint Protection, System Administration, TCP/IP, Technical Support, Technology Needs Analysis, Tenable Nessus, Troubleshooting, VMware, Windows, Windows 7, Windows 8.1, Windows 10, Windows Server, Windows Server 2003, Windows Server 2008, Windows Server 2012, Windows XP
About
An IT Security professional with a focus on information security, personal and professional development, and making an impact. I am always looking to grow myself and my career with a passion for serving others and getting the job done.