Больше информации по резюме будет доступно после регистрации

Зарегистрироваться
Was yesterday at 18:42

Male, 52 years, born on 27 May 1973

Moscow, metro station Kuzminki, willing to relocate (Other regions, Russia), prepared for occasional business trips

IT Leadership role

Specializations:
  • Chief information officer (CIO)
  • Other
  • Chief technical officer (CTO)
  • Teacher, educator

Employment type: full time, part time, project work/one-time assignment

Work experience 28 years 3 months

March 2024currently
2 years 2 months
SafeQual Health, L.P.

USA, www.safequal.net/

CISO Advisory Board Member
Advisory Board
November 2023currently
2 years 6 months

Moscow, otus.ru/

Преподаватель
Преподаватель на курсах : DevSecOps IT Risk Management
February 2014currently
12 years 3 months
Dexia Credit Local

France, www.dexia.com/

SVP, Head of IT and Security
 Led 15 direct and 30 indirect IT and cybersecurity professionals in the bank's technology and cybersecurity function.  Defined, implemented, and maintained the Cybersecurity Risk Management Framework, Cybersecurity policies, and standards through understanding control requirements and industry standards.  Overseed the Cybersecurity program governance processes, including Cybersecurity risk reporting and Governance Council and board updates.  Liaised with Internal Audit and Corporate Compliance to remediate new and outstanding issues; tracked security-related issues.  Developed SDLC process to ensure all development projects met functional and business requirements, had proper security controls, and were implemented by best practices.  Established budgets, strategic road maps, internal standards, design principles, models, plans, and processes based on industry best practices, such as governing principles for infrastructure services design and deployment by COBIT, ITIL, and TOGAF methodologies.  Defined strategic action plans to guarantee that service level agreements (SLA) and helpdesk support-related key performance indicators (KPIs) are achieved.  Defined and drove all technology vendor-partner evaluation, engagement, management processes, and technology vendor-partner outreach, communication, and governance.  Standardized infrastructure services and systems to decrease numerous variances and improve security and operational activities.  Promoted automated strategy to improve process efficiency, speed, accuracy, errors, and reduction.  Established a threat-intelligence-driven internal vulnerability management program, which increased compliance with regulatory requirements, improved IT assets, and decreased cybersecurity and operational incidents. Most Recent Accomplishments:  Developed a comprehensive Information Security Program to address multiple regulatory issues on previously existing programs. (All issues were closed)  Developed a comprehensive Business Continuity Plan in alignment with FFIEC Guidelines and Coordinated all Disaster Recovery and BCP exercises.  Designed the security architecture aligned with the security program and with zero trust and defended in-depth concepts by leveraging different systems/services to mitigate cyber risks.  Established enterprise Information Security Awareness Training Program.  Successfully developed and executed a roadmap for transforming traditional IT services to hybrid and public cloud with IaaS (Azure) and SaaS (Office 365). The complete transformation was completed in two years, achieving 40 percent of the IT operational cost reduction.  Transitioned from traditional IT services/systems to Azure IAAS services, such as Azure Active Directory, Microsoft/Linux Virtual Servers; MS VDI, VNET, Blob/File Storage, Monitoring, Insights, Backup, Site Replication, automation, etc.  Redesigned the Security Program Document, Policies, and Procedures documents to align the new target architecture– MS Azure IAAS and Office 365 SAAS and compliance with FFIEC, NY DFS PART 500 guidelines and aligned with ISO, COBIT, and the zero.
January 2012February 2014
2 years 2 months
Brookfield Asset Management,

Canada

Manager of Enterprise Architecture
Served as part of a senior team providing tactical and strategic leadership to technical teams delivering service to more than 3,000 users across diverse geographical locations Developed and maintained strategic plans, formulated and implemented recommendations that aligned IT objectives with business objectives, created business cases to support IT driven initiatives, established and negotiated strategic partner relationships, and managed direct and indirect reports located around the world Interfaced with the Internal Compliance Team in ensuring security framework supported the ISO 27000 framework and aligned with COBIT and corporate counsel in describing data governance requirements and risks. Drafted request for proposals for migration services, while completing architecture for subscription design, operational support models, administration using roles-based access controls, chargeback approach, and resource tagging and reporting Selected Accomplishments: Directed complex initiatives to support the successful global delivery of technology services, which involved creating and executing strategic plans and recommendations that aligned IT goals with business objectives Supervised various projects to establish a Cloud adoption approach, with focus on multitenancy across various Cloud models and platform Implemented an enterprise architecture and information security practice based on TOGAF and SANS 20 critical security controls, which resulted in significant decrease in operational and cybersecurity incidents Expertly handled negotiations for a contract that consolidated seven service providers into a single provider to deliver network services, which brought forth significant savings in costs and streamlined procurement and vendor management processes Optimized infrastructure cost by 48% upon transitioning servers from three Data Centers to cloud infrastructure (AWS and Azure). Develop strategies for secure cloud-based services.
January 2011January 2012
1 year 1 month
Ford Foundation, New York, NY

USA

Head of IT
Performed a wide range of senior management functions, including department budget planning, enterprise security architecture design, and enterprise security policy implementation Managed staffing requirements, which included recruiting, hiring, guiding, motivating, and leading top-performing teams Led the design and deployment of critical business infrastructure, including oversight of local outsourced datacenter operations encompassing over 150 servers and 200 TB of storage Conducted feasibility studies with technical personnel on new or upgraded systems, and managed prioritizations, submissions, and implementation of requests for service to the department Served as key liaison on network engineering, system security, and datacenter operations tasks Provided leadership to the entire life cycle of projects to guarantee within-budget and on-time completion based on contract requirements Authored security documents to be used as standards, guidelines, policies, and procedures for the deployment of access control in applications, databases, and operating systems Selected Accomplishments: Led the implementation of converged VoIP solutions, which involved migrating from analog phone systems to a converged solution that utilized Cisco VoIP integrated with Microsoft Lync, Exchange, and SharePoint; achieved 30% decrease in recurring cost and 50% increase in interdepartmental interaction following the implementation of the redundant system Directed all aspects of a planned transition of all datacenter systems and networks to a data pipe facility while achieving zero downtime Deployed a strategic plan that brought forth 25% increase in customer satisfaction Rendered problem analysis and support to technical areas, which drove productivity and technology integration into operations Worked with all application and business partners on upgrades and deployments, and redesigned approach to achieve smooth delivery and minimal disruption to business operations Collaborated with application owners and project managers to create scalable, maintainable, and highly available storage architectures aligned with business goals and relevant SLAs Created customized security solutions within Active Directory for the implementation of separation of duties, delegation of roles, and concept of least privilege based on Microsoft Security best practice
February 2004January 2011
7 years
Schroders Investment Management, Inc

Great Britain

Manager of Engineering
 Directed a multinational team of system engineers in handling the maintenance and architecture of business-critical infrastructures, which entailed analyzing, designing, implementing, and supporting core infrastructures encompassing more than 250 servers and 300 TB of storage  Established long-term vision, strategy, and roadmaps for hosted storage services across the organization  Provided leadership to internal teams in developing a global security policy and incident management process, which included engaging with business stakeholders to support the adoption of the policy  Led annual vulnerability assessment and penetration tests, and offered strategic insights on new technology threats and strategies for mitigation  Managed and monitored security vulnerabilities and network and host system intrusion threats, as well as performance and system health for all IT services Selected Accomplishments:  Spearheaded the creation of a SunGard based fully functional host backup site, which served as a failover data center to support business continuity process  Developed server build procedures and system build standards to align with server functions  Deployed an automated solution for compliance policy management, Tripwire, to identify unauthorized changes on critical business systems  Built and supervised the Security and Virus Response teams to efficiently address potential enterprise-wide threats  Oversaw the migration of 152 servers to a virtualized platform, which decreased datacenter footprint by 75%; heating, ventilation, and air conditioning (HVAC) cost by 45%; and total cost of ownership (TCO) by $10K annually
August 2000January 2004
3 years 6 months

USA

Industrial Equipment, Machine Tools and Components... Show more

Senior systems engineer
• System administration duties in supported environment – Windows NT and 2000 domain structure, Windows 2000 Advanced Server cluster, Active Directory, Linux, Novell 4.11, Sun Solaris 6, 7, 8, 9, EMC Clariion, PostOffice, Trend Viruswall, Norton NAVC, RSA, Checkpoint, Linux Squid and MS ISA Proxy servers, Nortel VPN, Cisco 2600s and OpenRoute routers, Netbay switches, Cisco PIX, Alteon • Special projects – implementation of Windows 2000 domain infrastructure; SAN implementation – EMC Clariion; implementation of Active Directory with Windows 2000 Advanced Server cluster; VPN setup utilizing Cisco PIX, implementation of Veritas BackupExec 9.0 disaster recovery strategy • Accomplishments – 30 minutes downtime over the course of 2 years for all servers; zero virus penetration of corporate network and servers during corporate tenure; SAN implementation project completed 10 days ahead of schedule; overall, 99.9999% server and network availability
February 1998August 2000
2 years 7 months
ESSC/GENICOM CORPORATION / NASDAQ

USA

Senior engineer
• Trading floor support duties in supported environment – Sun Solaris workstations, Windows NT servers and workstations, MS Exchange and MS Mail • Accomplishments – promoted from level 1 to level 2 trading floor support within 6 months

Skills

Skill proficiency levels
ITIL
Project management
Leadership Skills
ISO 9001:2008
AWS cloud services
AZURE Cloud services
Data Center Management
COBIT
Team management
Information Technology
Information Security
Risk management
Budgeting
Contract Management
Bank Software
Strategic Planning
Performance Improvement
Business Continuity Planning
Penetration Testing
Vulnerability Management and Remediation
Threat Intelligence
Incident Response
Vendor Management
Zero Trust and Defense in Depth Security
Executive Leadership Innovator and Change Catalyst
Digital Transformation
Information Governance
Cloud Security

About me

Goal-driven and seasoned professional with extensive experience in all cybersecurity and IT operations management aspects, including leading cybersecurity and IT infrastructure, systems design, development, implementation, and support activities. Expert in overseeing technical initiatives to significantly improve organizational efficiency and productivity and numerous enhancement and deployment projects within budget and schedule requirements. Well-versed in identifying IT execution and management improvement opportunities and establishing standards and processes to achieve repeatable positive results. Equipped with articulate communication and interpersonal skills in building positive work relationships with clients and professionals of all levels. Core Competencies • Cloud Transformation – private; hybrid; public (AWS & AZURE) • Cyber Security Architecture and Program • Disaster Recovery and Business Continuity • Cybersecurity Risk Management Framework • Control Frameworks that meet the requirements associated with client contract terms and the standard of due care in their industries, including but not limited to NIST, ISO 27001, SOC1, SOC2, FFIEC, NY DFS PART 500 and ICD 3503 RMF

Higher education (master)

2006
Higher education (master)
School of Business NY
Business (MBA), Business Administration (MBA)
1997
Higher education (master)
City University of New York
Computer Science, Computer Science

Languages

Russian — Native

English — C2 — Proficiency

Professional development, courses

2017
CISSP
ISC2, Certified Information Systems Security Professional

Tests, examinations

2019
ISACA
ISACA, CISM
2018
ICS2 (CCSP)
ICS2, CCSP
2017
ICS2 (CISSP)
ICS2, CISSP
2017
ISACA (CRISC)
ISACA, CRISC
2014
VMware Certified Professional
Vmware, Data Center Virtualization
2011
ITIL
ITIL, ITIL V3
2011
Open Group (TOGAF)
Open Group, TOGAF
2001
Cisco (CCNA)
Cisco, CCNA
2000
Microsoft (MCSE)
Microsoft, MCSE

Citizenship, travel time to work

Citizenship: Russia

Permission to work: Russia

Desired travel time to work: Doesn't matter