Працював в 10 компаніях   16 років

IT, Телекомунікації / Зв'язок, IT - консалтинг / Послуги / Виробництво устаткування, Автомобільна промисловість та Автобізнес

CISO

Company name is under NDA

IT

9 місяців

07.2023 - 04.2024

Task and achievements are under NDA

CISO

RBI Retail Innovations

IT

3 місяці

12.2022 - 03.2023

- Management of InfoSec Team

- Build InfoSec strategy

- Build InfoSec Team KPIs

- Audits management & passage (Internal audits, physical security audits, outsourcingaudits, ISO27001, PCI-DSS)

- IT security policies/procedures/processes development & support

- IT security controls management

- Architecture security audit (AWS, GitHub, 3rd party services)

- Architecture vulnerability management (ORCA)- Architecture threats modeling (IriusRisk)

- Architecture security reports (Microsoft Power BI)

- Security incidents management (JIRA)

- Security tasks management (JIRA)

- BCM and BCP

Information Security Officer

PIN-UP.BUSINESS

IT

2 роки 1 місяць

10.2020 - 11.2022

- Built and managing InfoSec team from a scratch (Security Operators, SOC, SecDevOps,Network Security)

- IT security policies/procedures/processes development & support from a scratch

- Business infrastructure security audit (dedicated servers, VPS, AWS, GCP, GitLab)

- Business infrastructure vulnerability management

- Access Management and audit (business infra, internal services, 3rd party services)

- CyberSecurity management (CloudFlare, AWS, GCP)- SIEM integration and management

- Monitoring tools implementation and management (Grafana, Zabbix, Security Onion,Elastic, Wazuh, OSSEC)

- Corporate MDM implementation and management- Internal/External incidents investigations- IPS/IDS implementation and management

- DLP implementation and management

- 3rd party services financial management, audit and budgeting

IT Manager & Compliance Officer

PDFfiller.com

IT

1 рік 2 місяці

09.2018 - 11.2019

IT Manager main responsibilities:

  • IT strategy development
  • IT policies/procedures/processes development & support from a scratch
  • IT policies/procedures/processes implementation
  • Atlassian Jira processes development
  • Atlassian Confluence KB development & management
  • Team management
  • Conflict solving
  • 2nd Internet channel implementation
  • IPS/IDS implementation
  • DLP implementation
  • Office growth planning & support
  • Procurement planning & management
  • Vendor Management

Compliance Officer main responsibilities:

  • Compliance RFI/RFQ/RFP KB development & support
  • Audits KB development & support
  • Office access control rebuilding & support
  • Compliance policies/procedures/processes development, implementation, support
  • Audits support & successful passage
  • PCI DSS certification support & successful passage
  • HIPAA certification support & successful passage
  • GDPR certification support & successful passage
  • 21 CFR part 11 certification support
  • SOC 2 Type 2 certification planning, support & successful passage
  • US FedRAMP certification support
  • Customer communication & support
  • Auditors communication & support

Business Project Manager

Lucky Labs

IT

4 місяці

04.2018 - 08.2018

Main responsibilities:

  • Project plans development
  • Business plans development
  • IT & HR policies/procedures/processes development from a scratch
  • IT & HR policies/procedures/processes implementation
  • Building internal networking between departments
  • Atlassian Jira processes development
  • Atlassian Confluence KB development & management
  • HR CRM technical documentation development
  • HR CRM tenders organization and management
  • HR CRM implementation & management
  • HR CRM processes development & support
  • Vendor management

ICT Operations Manager

Ericsson Ukraine

Телекомунікації / Зв'язок

4 місяці

12.2017 - 04.2018

  • L1 Monitoring/Support team management (Kiev and Tbilisi)
  • Service Desk team management (Kiev and Tbilisi)
  • L2 Support teams management (System administrators, CCN, OSS, network and financial 3PP systems engineers)
  • Team load distribution
  • L1/L2/L3 incidents management/tracking
  • Set-up and execute MS delivery processes inside delivery team according to EIS-MSIP Operational Level Agreement (OLA)
  • Plan and Execute Internal governance with delivery team
  • Report on MS project KPIs \ SLAs to MSIP manager
  • Team cost management in line with budget baseline
  • As a line manager: perform day-to-day team management, handle all processes related to new hiring and dismissal, perform team performance review.
  • Handle escalation and conflict inside delivery team
  • Handle customer escalations, received via MSIP manager

Head of Support

Skywind Group

IT

3 місяці

08.2017 - 11.2017

  • Building, managing and leading L1 and L2 Support Team - Team load distribution
  • Incidents prioritization
  • Escalations management
  • SLA controlling
  • OLA adaption
  • Trainings implementation for new employees - Planning and organization individuals workloads - Liaise with related departments to ensure that all critical deadlines are met - Encourage and inspire excellence from all team members
  • Processes, procedures and policies development and implementation
  • Constant reporting to the customers and top management

L3 Development Support Team Leader

Wincor Nixdorf Sp. z o.o.

IT - консалтинг / Послуги / Виробництво устаткування

10 місяців

07.2016 - 05.2017

Main responsibilities:

  • L3 Support team management (Kiev and Hamburg)
  • Team load distribution - L3 issues tracking - SLA management
  • Escalations management
  • Reporting to the Headquarters
  • Acting as SinglePointOfContact for L3 support
  • Daily communications with the development
  • Work arounds development and implementation for NAMOS and MSSQL
  • Customer HOS\BOS\POS remote support
  • Customer L2 support education
  • Global business trips

Head of Global ODC IT Operations

EPAM / Epam Systems

IT

5 років 8 місяців

02.2010 - 10.2015

1) IT Support Management of Global support team (financial sector):

  • Managing Global IT support/IT Security team
  • ITSM and SLA management
  • ITSM reporting
  • Escalations management
  • Assets management
  • RACI model development
  • Personal development plans implementation
  • Candidates interviewing
  • Hardware and salaries budgeting
  • Vendor management
  • Financial management

2) IT Risk Management:

  • IT risks self-assessment
  • IT risks mitigation
  • Compliance with ISO27001:2007 and :2013 standards
  • Annual IT risks audits preparations and passage
  • GAP analyzes

3) Compliance Management:

  • Customer requirements implementation
  • Internal and external audits passage (10 times per year)

Main responsibilities:

  • ISO27001:2007, 2013 and ISAE3402 annual certification

4) Customer Relationship Management:

  • Managing customer requirements
  • Communication with customers over Skype, email and phone
  • Customer interviews organization
  • Customer pre-sales and sales management
  • Customer care program participation
  • Customer teambuilding organization
  • Customer presentations management
  • Being an escalation and compliance point for multiple customers

5) DDC (Dedicated Development Center) build out from scratch:

  • Customer requirements implementation
  • Build out process management (infrastructure and security)
  • Billing of materials management
  • Vendor management
  • Tender management
  • Site signoff
  • Customer internal audit passage
  • External audits passage
  • Site certification

6) DDC migration:

  • Site migration preparations
  • Billing of materials management
  • Site signoff
  • Customer internal audit passage
  • External audits passage
  • Site certification

7) Internal/External audit processes management:

  • Audit preparation management
  • Processes, procedures and policies management
  • Audit passage management
  • Controls checklist development
  • GAP analyzes
  • Observations management

8) Auditor Relationship Management:

  • Holding meetings with the auditors
  • Onsite review management
  • Control checklist passage
  • Teambuilding with auditors
  • Opportunity for improvements management

IT Engineer

Renault Ukraine

Автомобільна промисловість та Автобізнес

3 роки 8 місяців

06.2006 - 02.2010

System administrator:

1) User support (HelpDesk)

2) Incident management

3) Study of employees

4) Creating manuals

5) Office equipment support

6) Internet connection support (2 channels)

7) Servers support (AD, DHCP, DNS, Print Server)

8) Terminal servers support (Citrix)

9) PBX support (Siemens)

10) Network equipment support (CISCO)

11) NetApp servers support

12) Sun servers support (backup robot)

13) 1C 7.7 / 8.1 administrating

Ключова інформація

Technical qualifications:

  • End User Support experience L1/L2/L3 (13+ years)

  • Service Desk application experience (13+ years)

  • Microsoft Office applications package (Outlook, Word, Excel, PowerPoint, OneNote, Access,

    Visio, Project)

  • Windows Server 2003/2008/2012, AD, DHCP, DNS, Terminal Server, GPO, IIS

  • Linux, UNIX, Mac OS

  • Networking

  • Networking equipment (Cisco, HP, Juniper) integration and support experience (8+ years)

  • Virtualization experience - Microsoft Hyper-V, VMWare, Citrix Xen/Presentation Server (7+ years)

  • 1C 7.7 / 8.1 administrating (3+ years)

  • MSSQL/MySQL support/maintenance (6+ years)

  • C/C++ (2+ years)

  • Perl (1 year)

  • bash (6+ years)

  • Java (0.5+ year)

  • PowerShell (4+ years)

  • php (2 years)

    IT security qualifications

  • ISO27001:2007 (6+ years)

  • ISO27001:2013 (4+ years)

  • ISO9001 (9+ years)

  • ISAE3402 (former SAS70, 6+ years)

  • Audit preparation (6+ years)

  • Internal/External audits passage (5+ years)

  • Customer requirements implementation (9+ years)

  • Compliance Officer (5+ years)

  • Gap analyze (5+ years)

  • Risk Assessment (5+ years)

  • Processes/Procedures/Policies development (6+ years)

Навчався в 2 закладах

Академия Муниципального Управления

Специалист автоматизированных систем и компьютерных технологий

Киев, 2009

Specialized School 80 with advanced learning of English

Kiev, 2004

Володіє мовами

Англійська

вільно

Може проходити співбесіду на цій мові

Може проходити співбесіду на цій мові

Французька

базовий

Німецька

базовий

Може проходити співбесіду на цій мові

Може проходити співбесіду на цій мові

Українська

рідна

Курси, тренінги, сертифікати

ITILv3 Service Strategy

Минск, 2013

ITILV3 Service Management

Минск, 2012

ITILv3 Foundation

Киев, 2011

Додаткова інформація

Цель

Find a position of CISO / Head/Lead of InfoSec / InfoSec Consultant (software engineering, integration, development, support of IT systems or IT support) at international company.

Михайло

CISO

Київ

Готовий переїхати: Інші країни

5 500 $

38 років

повна зайнятість, неповна зайнятість, проектна робота

Характер роботи: віддалена робота, гібридна, в офісі/на місці

Оновлено 1 рік тому