David Newman
Sr. Security Engineer at Stored Value Solutions (SVS)- Claim this Profile
Click to upgrade to our gold package
for the full feature experience.
-
English Native or bilingual proficiency
Topline Score
Bio
Credentials
-
Certified Information Systems Security Professional (CISSP)
(ISC)²Aug, 2020- Nov, 2024 -
Certified Incident Handler (ECIH)
EC-CouncilSep, 2019- Nov, 2024 -
Systems Security Certified Practitioner (SSCP)
(ISC)²Jul, 2019- Nov, 2024 -
IC3
Certiport - A Pearson VUE BusinessSep, 2010- Nov, 2024 -
CSSS - Systems Support Specialist
CompTIAJun, 2017- Nov, 2024 -
A+
CompTIAAug, 2016- Nov, 2024 -
LPIC-1
Linux Professional InstituteJun, 2017- Nov, 2024 -
EC-Council Certified Encryption Specialist (ECES)
EC-CouncilMay, 2019- Nov, 2024 -
CSIS - Secure Infrastructure Specialist
CompTIAApr, 2017- Nov, 2024 -
CIOS - IT Operations Specialist
CompTIAOct, 2016- Nov, 2024 -
CLNP - Linux Network Professional
CompTIAJun, 2017- Nov, 2024 -
Network+
CompTIAOct, 2016- Nov, 2024 -
Security+
CompTIAApr, 2017- Nov, 2024 -
Advanced HTML5 & CSS3 Specialist
CIW -
Certified Internet Webmaster Web Security Associate
CIW -
Cloud Essentials
CompTIA -
Linux+
CompTIA -
Project+
CompTIA -
SUSE Certified Linux Administrator
Novell -
User Interface Designer
CIW
Experience
-
Stored Value Solutions (SVS)
-
United States
-
Financial Services
-
100 - 200 Employee
-
Sr. Security Engineer
-
Aug 2020 - Present
Report to the office of the VP. Responsible for monitoring security events internally and externally while providing support for all security operational needs. Mitigate and prevent security risk while enhancing company protocols, providing recommendations, completing implementations and assisting with SOC, PCI and SOX compliance auditing. · Assess the physical security of the buildings and locations for vulnerabilities · Build and review vulnerability scans across the cloud environment · Track day-to-day emerging cyber events and identify those with the greatest impact on our enterprise and our customers · Tune and monitor SIEM applications and fine tune applications used by the business · Work with the database team to assist with automating security alerts. · Administer systems that enforce email security policies · Develop attack detection & response playbooks, counter-measure definition, and strategies to mitigate emerging threats · Coordinate and lead threat and vulnerability management meetings weekly · Ensure documentation and processes are well defined so that the engineered solutions are understood and repeatable. · Proactively communicate and collaborate with the business on how to maintain security posture. Show less
-
-
-
Equian
-
United States
-
Information Services
-
200 - 300 Employee
-
Security Engineer
-
Jan 2019 - Aug 2020
• Provide analysis in order to identify threats, quantify vulnerabilities of current threats in order to develop timely and actionable alerts, briefs and analytical assessments • Provide Tier 2 and 3 support to assist other IT staff for administering of various security policies such as MDM, user account management, permissions, and other information security systems • Implement and provide best practice knowledge of HITRUST, SOC, and other compliance standards for auditing and reporting requirements • Manage systems related to enterprise SIEM, Antivirus, Penetration Testing, Vulnerability Scanning, and other systems to protect the enterprise • Develop and design enterprise solutions to ensure compliance with various standards, and security best practices • Provide incident management by responding to and remediating security threats and breaches. • Security planning to achieve business goals by prioritizing defense initiatives and coordinating the evaluation, deployment, and management of current and future security technologies. • Engineered, developed and maintained DLP, Threat & Vulnerability Analysis (TVA), Incident Management, KRI/KPI Metric and Vulnerability Scanning solutions • Work as Incident Response commander and lead IR&H meetings with IT stakeholders to identify threat actor, threat, and vulnerability, develop containment resolutions, and a long-term remediation plan to eradicate the threat. • Lead and direct ongoing Incident Management, KRI/KPI Metric and TVA meetings Show less
-
-
-
Parallon
-
United States
-
Hospitals and Health Care
-
700 & Above Employee
-
Security Analyst II
-
Oct 2014 - Dec 2018
• Initial assessment, triage, research, and resolution of user access requests • Aid in system access, problem solving, and maintaining appropriate access • Enforce HIPAA guidelines and regulations with respect to the maintenance and transference of PHI. • Configure, analyze, & reconcile multiple system reports to SOX audit standards • Aid in the reporting of data security incidents and support investigations • Conduct security audits and assessments of application and third party websites to mitigate risk and vulnerabilities • Create and distribute threat and vulnerability bulletins, reports, and updates • Develop and execute complex offshore vendor and finance system access audits • Improve in-house auditing strategies with SQL databases and in-house applications • Participate in development/review of security processes and procedures • Perform and review vulnerability assessments • Develop, maintain and update multiple RBAC models for 7 sites consisting of 4,000 people and 200+ job roles Show less
-
-
-
CHI
-
United States
-
Hospitals and Health Care
-
700 & Above Employee
-
IT Field Technician
-
Sep 2013 - Sep 2014
Troubleshoot desktop and network issues Work onsite or at a client office providing superior IT customer service Manage and troubleshoot specialized computers across 7 locations Troubleshoot desktop and network issues Work onsite or at a client office providing superior IT customer service Manage and troubleshoot specialized computers across 7 locations
-
-
Education
-
Western Governors University
Bachelor of Science - BS, Cybersecurity and Information Assurance -
Western Governors University
Bachelor’s Degree, Information Technology -
Jefferson Community and Technical College
Associate’s Degree, Information Security