Christina Finn
*********@*****.***
Cell: 561-***-****
www.linkedin.com/in/christinabfinn
GE for Synchrony Bank – Cloud Security Analyst ll 5/21 - 10/24 Data Protection Operations, GRC Compliance, PCI, DSS, Detection, NIST, CIS Benchmark, OWASP, ISO, Software Development Life Cycles (SDLC) Atlassin Jira, Align, Kanban, Qualys Vulnerability scanner, Service Now, SOX
• Responsible for securing the automation process with DevOps and Application Teams. 50,000 Applications across the globe. Secure and analyze comprehensive vulnerability reports to remediate, mitigate and automate processes. Web Applications SOC3, across the globe w/ PCI platforms for Cloud Infrastructure
(Cloudstrike, Cloudflare, AWS, Amazon for Client side services, Lamda functions) Network Appliances (Cisco UCS, Enterprise OS Legacy Equip,) Servers and Web Application Vulnerabilities. zScaler, Windows, Linux, mitigate throughout lifecycles and Proof of concept processes with the API and Application teams to secure before release.
• Encryption - PKI API Security for PCI DSS Internal and external applications global.
• PII - Encryption for data
• Technical document processes towards automation and planning. Remediation and Mitigation
• SLAs, Risk Assessments, build Pivotal reports with Excel, Technical documentation IBM Southeast Credit Union – Cyber Security Network Engineer 12/19 – 5/21
Checkpoint Security Siem systems w/ Networking of ATM Machines across USA
Assist IT Audit & Mitigation for Cyber Security & PCI Compliance
SOC3 Managed Security Services
Nessus Vulnerability Scanning
SCCM Microsoft IAM, SSO, PowerShell
Dell Unity SAN 2 Petabytes w/ Fibre Channel
IAM, Identity Access Management w/ AD integration, 2FA
Provide recommendations for IT Security System air gapped architecture
Cisco Open DNS external Networking
Cisco ASA NexGen Systems, static routing tables, NAT
PowerShell for Storage and Administration in Hyper-V, Hypervisors
Bash shell for all L2, L3 devices and NexGen NexGen Systems and vmware Infrastructure
Otis Elevator - Cyber Compliance & Security Analyst 12/19 – 6/20
• IT Audit Mitigation & Compliance System-Wide. Documentation and apply controls to comply and pass audits externally and Internally
• Controls in place and applying proper controls
• Business Continuity
• IT SOX Compliance IT Infrastructure Security & Cyber Security Risk Compliant
• GRC Compliance
• Risk Assessments
• Linux, Unix Operating Systems, ERP Systems,IBM Mainframes, JDE, ERP Systems with RSA GRC Compliance System RSA Archer, Blackline, JDE, SAP and SailPoint Labor Finders International (Builder) HQ – Florida, USA Cloud Security Engineer 12/12 – 6/19
Cloud Security includes a CIS benchmark framework for Systems IaaS, PaaS, SaaS BaaS
& Mobile Apps for the entire Infrastructure SOC3. Security Groups per Network Service only needed. Transformed the IT Security System to adapt 16and adjust strict services down to SIEM Threat Preventions, IDS, IPS Intrusions, Email NexGen Systemss & Content filters for seamless access, FL of Clients for the delivery of Services we provide.
NIST Frameworks 800, ISO 27001, Security Groups & Protocols for only utilize services per type of Server and/or Service needed.
IANA guidelines, Lifecycles & Change Management
Network Security includes a redesign the Checkpoint NexGen Systems Systems, Palo Alto & Fortinet with CISCO Protocols, utilizing the Access Control Lists to replace missing EIGRP Protocol in Software, for direct routing and Fault Tolerance in the event of failed IP or Failed physical failure. Routes would direct statically with a customer drop. Container, Nutanix set up and maintain. Naigos Monitoring Tools.
Checkpoint Datacenter Appliance Security System Network Design, Migrations into Cluster environments SIC, programming and Implementation into live environments with no downtime. VPN Sites over Layer 3 switch, SSL3 & SHA256, Monitoring
Deploy Software across the network to Branches across the USA& HQ
Maintain upgrades & updates for Tripwire systems.
IAM w/ AD, IDS, IPS, Intrusion Protection, Threat Preventions, logging and build Security Rule sets to custom Protocols & Ports SQL, IIS, Mail and Remote Checkpoints across the USA.
Design Rule sets per Platform, Implement Networks and deploy Remote Checkpoint Appliances for Branches across the USA
Virtualize, maintain and transform Legacy systems, migrate & deployment of VMware vSphere ESX Host Servers- Virtual Infrastructure Systems on EMC SAN Storage systems with ISCI on Dell Managed switch(s). Maintain upgrades, maintenance and core firmware software for interoperability
Build MS, Linux, IIS Web Servers, TeamBuilder for Developers with SSLvs SHA256 encryptions. Certificates and proper NAT routing on NexGen Systems networking.
GoDaddy MX Records, DKIM, Demarc, SPF Records with NAT Routing to Private IP networking.
RAID and Storage Group Designs. Domain Controllers, Windows Servers, Linux Appliances, Exchange Server, Database Servers & Mdaemon mail Server.
APC Power Distribution Datacenter Center Design, transform into APC Green Energy Datacenter equipment and migrate seamless for hurricane season power to generator fail over
Veeam Backup & Replication, Symantec Enterprise for Business Continuity and Disaster recovery for all Virtual Infrastructures and Physical Network Systems.
Maintain all Datacenter Enterprise systems and Equipment with Core & Proprietary Software upgrades. Patches Management & Builds
Cisco WiFi w/ AP Access Points for Corporate location, Implement deploy software upgrade across networks
AD, Active Directory Security levels, Objects, Restructured GPOs Exchange mail server Administrator, DNS, DHPS, Application Roles, Federated Services.
Escalations and assist IT Support in Desktop Implementation with Security, Laptops, VPN and Remote Sites
MS SQL Server database Servers build design virtually w/ Storage for long term capacity of the Company future growth and Secure remote access to database apps & over CISCO WiFi Access Point & Checkpoint WiFIs.
Build & assist Remote sites across the USA with Small Business Checkpoint Appliances Networking and implementations of Applications
Corporate Windows 10 Pro PCs w/ Office 365 & Security for all Users and C-Suite Support deploy images across the board
Apple, MAC, MacBooks Pro Systems Implementations with Apps
All Systems Server upgrades, migrations and updates, upgrade via manual or deployment software per system
Cyber Risk Assessments
Utilities Engineering of Boynton Beach, FL Systems Engineer 10/06 – 11/12
SME Responsible for SOC3 and structuring three vSphere, Enterprise Datacenter Infrastructures. Implementation of all Virtual Operations. Migrations and Conversions P2V of the
Business Operations- Planning, Implementation and training employees after all test have been performed. NERC CIP
Project Lead- Virtual Infrastructure Datacenter and for IT groups to deploy in sequence with no downtime to entity or customers.
Deployment of Virtual Infrastructure Systems on EMC SAN systems with Zoning on Brocade Fabric Switch(s). RAID and Storage Group Designs.
Build and test all systems prior to implementations into production.
Virtual Consolidate Backup proxy- Business Continuity, Back-ups and Disaster recovery for all Virtual Infrastructures and Physical Network Systems.
Maintain all Datacenter Enterprise systems and Equipment.
Negotiate Enterprise maintenance contracts and components as needed or planned with vendors and Executive staff.
Splunk Monitoring, custom Rule sets, logging, Threat Prevention
Cisco w/ Nortel- Security System Design, programming and Implementation for Telemetry ICS SCADA Systems network lockdown.
Primarily AD, Active Directory Security KCC levels, Objects, Restructuring, GPOs and AD Infrastructure Design, Implementation and Deployment. IAM, SSO, Federated Services, ADAM
Exchange mail Engineer
Linux Servers and Desktops- SuSe, Xen, Red Hat, Cent OS
All Systems Server upgrades, migrations and updates Education:
Florida Atlantic University – Computer Science Undergraduate - 2027 University of Miami – Storage Engineering
Vendor: Palo, Panarama, Checkpoint Expert, vmware, ESXi, Cisco, Enterprise Microsoft Security, Enterprise, Linux +, CEH, AWS Practitioner, CISSP in progress ISC2, pending exam
MCSA