IT Security Manager / HIPAA Security Officer
Manage all aspects of IT security
- Assist in the operation and management of information security technologies such as endpoint and email data loss prevention, endpoint and mail encryption, security event correlation, and vulnerability scanning tools.
- Continuously monitor system security events and identify threats and vulnerabilities against organization assets. Investigate, report, and recommend corrective actions.
- Create and manage information security and risk management awareness training programs.
- Coordinate internal and external network and systems vulnerability assessments for HIPAA and Meaningful Use compliance. Validate the completion of the annual information security risk assessments.
- Work with the information security team and corporate compliance, audit, legal and HR management teams as required.
- Manage security incidents and events to protect corporate IT assets.
- Access and identity management
- Implemented Source One email archive
workforce
at this job
IT Security Manager
- Working Manager and supervised two employees on the Security team.
- Identify and plan for data security for data, software applications, hardware, network, and computer installations.
- Develops and implement data and computer security policies and procedures.
- Develops and maintains security systems and practices to protect the integrity, accuracy, confidentiality and recoverability of data and information procedures on Windows(4.0,2000, XP, 2003), UNIX(Sun Box), AS400(IBM), and OS390(IBM) systems.
- Develop and analyze security software for data security.
- Review all computer Firewall, proxy and system logs and messages for security violations.
- Install, monitor, and update Virus protection software.
- Install security patches from Microsoft.
- Perform semi-annual computer access reviews.
workforce
at this job
IT Security Manager
Responsible for all data security for the bank. Lead team of two supervisors and eleven staff in all aspects of data security, to include identity management and user authentication, compliance, employee investigations, firewalls, VPN, enterprise encryption strategies, intrusion detection/prevention, anti-virus, content filtering, etc.
- Responsible for getting IT to pass all audits, including Sarbanes/Oxley, GLBA, HIPAA, and VISA/Mastercard PCI. Also responsible for engaging external vendors to conduct penetration tests and vulnerability assessments.
- Responsible for directing data security strategy efforts of the bank, to include recommending new processes/policies as well as new security technologies. Responsible for maintaining documentation of IT Security and ensuring it complied with federal regulations (e.g. SEC & OCC) and IT Governance/Risk Management. This included management of technical projects and their design, implementation, testing, and documentation.
- Performed all duties from previous job as IT Infrastructure Security Manager.
workforce
at this job
IT Security Manager
- My current role is to handle IT Security for our cloud hosting environments that span two data centers.
- I have to make certain we are in compliance with our corporate IT security policies (to not only protect assets but to also position us to pass our SSAE 16 and HIPAA audits) as well as design complex VPN solutions and to allow internet originated traffic to our cloud hosted network resources/services while adhering to our 3-tier security model.
- I have to make certain the appropriate access control systems are in place to only allow the necessary access to resources/services (to security principals) via various access connectivity methods (SSL, VPN (SSL, IPsec), RDP, SSH etc.) and as such I have to make certain we have the proper tools/services/systems in place to allow for IAM and SIEM/LM.
- I am presently a working hat Ohio (IT) Security manager with a security engineer reporting to me.
workforce
at this job