Працював в 10 компаніях 16 років
IT, Телекомунікації / Зв'язок, IT - консалтинг / Послуги / Виробництво устаткування, Автомобільна промисловість та Автобізнес
CISO
Company name is under NDA
IT
9 місяців
07.2023 - 04.2024
Task and achievements are under NDA
CISO
RBI Retail Innovations
IT
3 місяці
12.2022 - 03.2023
- Management of InfoSec Team
- Build InfoSec strategy
- Build InfoSec Team KPIs
- Audits management & passage (Internal audits, physical security audits, outsourcingaudits, ISO27001, PCI-DSS)
- IT security policies/procedures/processes development & support
- IT security controls management
- Architecture security audit (AWS, GitHub, 3rd party services)
- Architecture vulnerability management (ORCA)- Architecture threats modeling (IriusRisk)
- Architecture security reports (Microsoft Power BI)
- Security incidents management (JIRA)
- Security tasks management (JIRA)
- BCM and BCP
Information Security Officer
PIN-UP.BUSINESS
IT
2 роки 1 місяць
10.2020 - 11.2022
- Built and managing InfoSec team from a scratch (Security Operators, SOC, SecDevOps,Network Security)
- IT security policies/procedures/processes development & support from a scratch
- Business infrastructure security audit (dedicated servers, VPS, AWS, GCP, GitLab)
- Business infrastructure vulnerability management
- Access Management and audit (business infra, internal services, 3rd party services)
- CyberSecurity management (CloudFlare, AWS, GCP)- SIEM integration and management
- Monitoring tools implementation and management (Grafana, Zabbix, Security Onion,Elastic, Wazuh, OSSEC)
- Corporate MDM implementation and management- Internal/External incidents investigations- IPS/IDS implementation and management
- DLP implementation and management
- 3rd party services financial management, audit and budgeting
IT Manager & Compliance Officer
PDFfiller.com
IT
1 рік 2 місяці
09.2018 - 11.2019
IT Manager main responsibilities:
- IT strategy development
- IT policies/procedures/processes development & support from a scratch
- IT policies/procedures/processes implementation
- Atlassian Jira processes development
- Atlassian Confluence KB development & management
- Team management
- Conflict solving
- 2nd Internet channel implementation
- IPS/IDS implementation
- DLP implementation
- Office growth planning & support
- Procurement planning & management
- Vendor Management
Compliance Officer main responsibilities:
- Compliance RFI/RFQ/RFP KB development & support
- Audits KB development & support
- Office access control rebuilding & support
- Compliance policies/procedures/processes development, implementation, support
- Audits support & successful passage
- PCI DSS certification support & successful passage
- HIPAA certification support & successful passage
- GDPR certification support & successful passage
- 21 CFR part 11 certification support
- SOC 2 Type 2 certification planning, support & successful passage
- US FedRAMP certification support
- Customer communication & support
- Auditors communication & support
Business Project Manager
Lucky Labs
IT
4 місяці
04.2018 - 08.2018
Main responsibilities:
- Project plans development
- Business plans development
- IT & HR policies/procedures/processes development from a scratch
- IT & HR policies/procedures/processes implementation
- Building internal networking between departments
- Atlassian Jira processes development
- Atlassian Confluence KB development & management
- HR CRM technical documentation development
- HR CRM tenders organization and management
- HR CRM implementation & management
- HR CRM processes development & support
- Vendor management
ICT Operations Manager
Ericsson Ukraine
Телекомунікації / Зв'язок
4 місяці
12.2017 - 04.2018
- L1 Monitoring/Support team management (Kiev and Tbilisi)
- Service Desk team management (Kiev and Tbilisi)
- L2 Support teams management (System administrators, CCN, OSS, network and financial 3PP systems engineers)
- Team load distribution
- L1/L2/L3 incidents management/tracking
- Set-up and execute MS delivery processes inside delivery team according to EIS-MSIP Operational Level Agreement (OLA)
- Plan and Execute Internal governance with delivery team
- Report on MS project KPIs \ SLAs to MSIP manager
- Team cost management in line with budget baseline
- As a line manager: perform day-to-day team management, handle all processes related to new hiring and dismissal, perform team performance review.
- Handle escalation and conflict inside delivery team
- Handle customer escalations, received via MSIP manager
Head of Support
Skywind Group
IT
3 місяці
08.2017 - 11.2017
- Building, managing and leading L1 and L2 Support Team - Team load distribution
- Incidents prioritization
- Escalations management
- SLA controlling
- OLA adaption
- Trainings implementation for new employees - Planning and organization individuals workloads - Liaise with related departments to ensure that all critical deadlines are met - Encourage and inspire excellence from all team members
- Processes, procedures and policies development and implementation
- Constant reporting to the customers and top management
L3 Development Support Team Leader
Wincor Nixdorf Sp. z o.o.
IT - консалтинг / Послуги / Виробництво устаткування
10 місяців
07.2016 - 05.2017
Main responsibilities:
- L3 Support team management (Kiev and Hamburg)
- Team load distribution - L3 issues tracking - SLA management
- Escalations management
- Reporting to the Headquarters
- Acting as SinglePointOfContact for L3 support
- Daily communications with the development
- Work arounds development and implementation for NAMOS and MSSQL
- Customer HOS\BOS\POS remote support
- Customer L2 support education
- Global business trips
Head of Global ODC IT Operations
EPAM / Epam Systems
IT
5 років 8 місяців
02.2010 - 10.2015
1) IT Support Management of Global support team (financial sector):
- Managing Global IT support/IT Security team
- ITSM and SLA management
- ITSM reporting
- Escalations management
- Assets management
- RACI model development
- Personal development plans implementation
- Candidates interviewing
- Hardware and salaries budgeting
- Vendor management
- Financial management
2) IT Risk Management:
- IT risks self-assessment
- IT risks mitigation
- Compliance with ISO27001:2007 and :2013 standards
- Annual IT risks audits preparations and passage
- GAP analyzes
3) Compliance Management:
- Customer requirements implementation
- Internal and external audits passage (10 times per year)
Main responsibilities:
- ISO27001:2007, 2013 and ISAE3402 annual certification
4) Customer Relationship Management:
- Managing customer requirements
- Communication with customers over Skype, email and phone
- Customer interviews organization
- Customer pre-sales and sales management
- Customer care program participation
- Customer teambuilding organization
- Customer presentations management
- Being an escalation and compliance point for multiple customers
5) DDC (Dedicated Development Center) build out from scratch:
- Customer requirements implementation
- Build out process management (infrastructure and security)
- Billing of materials management
- Vendor management
- Tender management
- Site signoff
- Customer internal audit passage
- External audits passage
- Site certification
6) DDC migration:
- Site migration preparations
- Billing of materials management
- Site signoff
- Customer internal audit passage
- External audits passage
- Site certification
7) Internal/External audit processes management:
- Audit preparation management
- Processes, procedures and policies management
- Audit passage management
- Controls checklist development
- GAP analyzes
- Observations management
8) Auditor Relationship Management:
- Holding meetings with the auditors
- Onsite review management
- Control checklist passage
- Teambuilding with auditors
- Opportunity for improvements management
IT Engineer
Renault Ukraine
Автомобільна промисловість та Автобізнес
3 роки 8 місяців
06.2006 - 02.2010
System administrator:
1) User support (HelpDesk)
2) Incident management
3) Study of employees
4) Creating manuals
5) Office equipment support
6) Internet connection support (2 channels)
7) Servers support (AD, DHCP, DNS, Print Server)
8) Terminal servers support (Citrix)
9) PBX support (Siemens)
10) Network equipment support (CISCO)
11) NetApp servers support
12) Sun servers support (backup robot)
13) 1C 7.7 / 8.1 administrating
Ключова інформація
Technical qualifications:
End User Support experience L1/L2/L3 (13+ years)
Service Desk application experience (13+ years)
Microsoft Office applications package (Outlook, Word, Excel, PowerPoint, OneNote, Access,
Visio, Project)
Windows Server 2003/2008/2012, AD, DHCP, DNS, Terminal Server, GPO, IIS
Linux, UNIX, Mac OS
Networking
Networking equipment (Cisco, HP, Juniper) integration and support experience (8+ years)
Virtualization experience - Microsoft Hyper-V, VMWare, Citrix Xen/Presentation Server (7+ years)
1C 7.7 / 8.1 administrating (3+ years)
MSSQL/MySQL support/maintenance (6+ years)
C/C++ (2+ years)
Perl (1 year)
bash (6+ years)
Java (0.5+ year)
PowerShell (4+ years)
php (2 years)
IT security qualifications
ISO27001:2007 (6+ years)
ISO27001:2013 (4+ years)
ISO9001 (9+ years)
ISAE3402 (former SAS70, 6+ years)
Audit preparation (6+ years)
Internal/External audits passage (5+ years)
Customer requirements implementation (9+ years)
Compliance Officer (5+ years)
Gap analyze (5+ years)
Risk Assessment (5+ years)
Processes/Procedures/Policies development (6+ years)
Навчався в 2 закладах
Академия Муниципального Управления
Специалист автоматизированных систем и компьютерных технологий
Киев, 2009
Specialized School 80 with advanced learning of English
Kiev, 2004
Володіє мовами
Англійська
вільно
Може проходити співбесіду на цій мові
Може проходити співбесіду на цій мові
Французька
базовий
Німецька
базовий
Може проходити співбесіду на цій мові
Може проходити співбесіду на цій мові
Українська
рідна
Курси, тренінги, сертифікати
ITILv3 Service Strategy
ITILV3 Service Management
ITILv3 Foundation
Додаткова інформація
Цель
Find a position of CISO / Head/Lead of InfoSec / InfoSec Consultant (software engineering, integration, development, support of IT systems or IT support) at international company.
Михайло
Михайло
CISO

Київ
Готовий переїхати: Інші країни
повна зайнятість, неповна зайнятість, проектна робота
Характер роботи: віддалена робота, гібридна, в офісі/на місці
Оновлено 1 рік тому