Bogdan Dragomir

is available. ✅

Angestellt, IT Security Manager, SilentSecurity LLC

Bucharest, Rumänien

Über mich

I am an EU and US citizen with proven track record of over 30 years in the industry. I have an outstanding record of utilizing information technology to positively impact organizations service delivery as well as projects’ course and recover projects with minimal added effort. Due to my diverse extensive background in the IT security industry, I am ,and have been for years a constant trusted partner with senior management, ensuring sound collaboration at all levels, from the boardroom to technical specialists. People that I worked with describe me as high-energy contributor and change agent who consistently delivers revenue, profitability, and productivity results by aligning IT with business goals. Strong business acumen and technology savvy.

Fähigkeiten und Kenntnisse

IT Risk Management
IT Project Management
PCI
IT Security Consulting
IT Change Management
Enterprise Architect
ISO 27001
ISO 31000
BCDR
IT-Risiko
Management
Controlling
IT Security
IT-Compliance
Compliance
Audit
Information Security
Reporting
ISO
Risk management
Information technology
IT Governance
SIEM
Business engineering
Business Continuity Management
Information Systems
Security Risk Management
Computer Science
CObIT
Risk Controlling
Web Security
Risk Analysis
Internal Control System
Risk Management / Risk Control
IT baseline protection
Information Security Management System
IT Baseline Protection Catalogs
Internal Control
critical thinking
Problem Solving
Reliability
Team work
Communication skills
Commitment
Flexibility

Werdegang

Berufserfahrung von Bogdan Dragomir

  • Bis heute 9 Monate, seit Aug. 2023

    IT Security Manager

    SilentSecurity LLC

    Provide IT security implementation know-how and assistance. Provide Compliance audit assistance and know-how. Performed audits based on GDPR, ISO2700 and PCI-DSS Performed ethical penetration testing for large clients. Trained over 20 junior security professionals in various domains including ethical penetration testing, vulnerability assessments, architecture design. Coached over 10 CISO's on leadership skills and methods helping them to maximize their efficiency and potential.

  • 2 Jahre, Aug. 2021 - Juli 2023

    Chief Information Security Officer (CISO)

    SwayPay LLC

    Maintenance of enterprise security and compliance with US and EU regulations Responsible for hiring personnel Responsible for evaluating and approving new IT security technologies. Accountable for security posture of the organization and data security Responsible and accountable for multi years technology strategies. Responsible and accountable for ensuring business-ICT alignment Managed 5 Director roles each with 12-25 direct reports Managed the security for remote branches 6 in the USA, 3 in EU, 3 in Asia

  • 1 Jahr und 5 Monate, Apr. 2020 - Aug. 2021

    IT GRC expert

    USAA

    Supervised and assisted developing the GRC framework needed to comply with FFIC and NIST audits. Defined the standardization common denominator to ensure future GRC maintenance and updates. Evaluated control design and efficacy to appropriately address outstanding risks

  • 4 Jahre und 4 Monate, Jan. 2016 - Apr. 2020

    IT Security and Risk Management Expert

    Visa Inc.

    Identify, evaluate risks and recommend further actions to mitigate or lower inherent risks. Managed a team of 10 Risk Managers. Act as liaison between project teams and GIS partners. Advise network team on architecture changes Evaluate the need for security testing and define the level of engagement. Managed resiliency planning and global encryption key rotation Created the strategy to migrate from exception based risk management to controlled change risk management

  • 4 Jahre und 8 Monate, Mai 2010 - Dez. 2014

    Chief Information Security Officer

    1st Solutions LLC

    Foster increased organizational maturity, and consulting services; Set new strategies to manage organization's portfolio of IT-enabled business investments. Managed acceptable boundaries for organizational risk appetite and defined the risk treatment in balance with the business objective and forecast-ed disaster impact. Defined, documented, implemented and managed new strategies targeted to maximize the quality of business cases for IT-enabled business investments.

  • 2 Jahre und 1 Monat, Okt. 2008 - Okt. 2010

    Senior IT Manager

    Dell SecureWorks

    Strategic consulting enterprise project management, incident response management, information risk management, security strategy, gap analysis and controls assessment, policy development, business impact analysis, and best practices assessment (PCI, NIST, ISO, ITIL, and COBIT) and management support. Project Management engagements for effective IT Governance based on CobIT, ISO 27000 NIST 800-53 FISMA HIPAA PCI and SOX. Acted as consulting CISM for multiple clients and coordinating cross technology teams

  • 4 Jahre und 9 Monate, Jan. 2004 - Sep. 2008

    Chief Information Security Officer

    Savvis Communications (SVVS)

    Managed Penetration testing programs and US and UK. Managed audits and audit remediation based on CobIT, ISO 17799, PCI, HIPAA, FISMA, SAS-70 and Sarbanes Oxley. Responsible for hiring technical personnel, conducting interviews, evaluating personnel performance. Designed and documented IT workflows, Business Continuity & Disaster Recovery solutions. Managed datacenter and professional services. Compiled financial revenue forecast and reporting.. Ensured oversight of Global Datacenter design and deployments

  • 3 Jahre und 3 Monate, Sep. 2000 - Nov. 2003

    IT Security Manager

    State Farm Insurance

    Improved corporate security policy, based on federal regulations (OTS), Sarbanes Oxley, HIPAA, standards such as ISO 17799, CobIT, and CISP. Performed comprehensive vulnerability assessments including Social engineering, penetration testing, physical perimeter and network and application security controls strength evaluation third-party companies. Application vulnerability testing, network and wireless security assessments. Trained IT security teams for CISCO technologies and Ethical Hacking.

Ausbildung von Bogdan Dragomir

  • 2 Jahre und 3 Monate, Mai 2005 - Juli 2007

    Management du système d'information

    University of Phoenix

  • 4 Jahre und 11 Monate, Sep. 1987 - Juli 1992

    Engineering Management

    University of Bucharest

Sprachen

  • Englisch

    Muttersprache

  • Rumänisch

    Muttersprache

  • Italienisch

    Gut

  • Französisch

    Grundlagen

Interessen

Classic cars
Sports
Travel
Reading

21 Mio. XING Mitglieder, von A bis Z