This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
User:Sjahangir
•I protect profitability by creating and leading corporate-wide information technologies, security, compliance, assurance, continuity and risk management programs. I have proven success designing, building and managing secure information, communication and data solutions for NYSE, Island ECN, JPMC, Bear Stearns, NYPD, DoITT, HP, Verizon, ADP, Bloomberg, and many others. • Collaborating with corp. entities to achieve efficient, secure, synergistic organizations • Establishing cost-saving and asset mgmt/protection initiatives • Responding to emerging trends to assess environments and maintain competitive advantage • Recruiting, training and leading high-performance, multi-national IT and security teams • Forming professional relationships with business unit leaders, internal and external clients Co-Authoring Ent.-Wide Sec Directives. NYC needed to develop scope and content for City Security Standards. Conducted full business, tech and ops audit. Wrote citywide standards for IDM, infrastructure and sec arch. Instantiated processes for CM, SDLC, PCI DSS, and SOX reg mgmt and incident response. Actualizing Risk Analysis and Mitigation Programs. Gartner and SAIC needed to perform Security Risk Analysis on $600M+ programs for the NYC ECTP and CityTime progs. As a member of the PMO, I spearheaded teams comprising of employees and vendors to establish a Security Risk Mgmt program and devel mitigation strategies based on PCI DSS, ISO 27001 and CoBIT stds. to produce attack surfaces and with risk and remediation measures. Developing IT Security Organization. Serving as the CSO and VP of Tech for Island ECN and Strike Tech, I developed the security frameworks progs for the financial institutions encompassing setting up of the security architecture, risk assessment methodologies, regulatory compliance programs, DR & BC, security awareness and training programs, data management and classification, threat management and response teams, and professional services for LoBs