Yarome Kuhn

Information Security Manager at USAN, Inc.
  • Claim this Profile
Contact Information
us****@****om
(386) 825-5501
Location
GE

Topline Score

Topline score feature will be out soon.

Bio

Generated by
Topline AI

You need to have a working account to view this content.
You need to have a working account to view this content.

Credentials

  • CISM
    ISACA
  • CISSP
    (ISC)²
  • Certified Information Security Manager® (CISM)
    ISACA
  • Certified Information Systems Security Professional (CISSP)
    -
  • ITIL Foundation V3
    -
  • MCP + I
    Microsoft
  • MCSE
    Microsoft

Experience

    • United States
    • Telecommunications
    • 100 - 200 Employee
    • Information Security Manager
      • Jun 2017 - Present

    • Business Information Security Officer
      • Jan 2016 - Mar 2017

      Provided vision and leadership in developing and supporting key information security initiatives in a ‘federated’ environment. Oversaw and directed the planning and implementation of a global enterprise IS security program. Reducing the overall risk posture of both operating companies by aligning information assurance to business operations and compliance. Management Experience: - Evaluated state of information security using a risk based approach aligned with business objectives/initiatives, and the IS security strategy. Providing executive leadership, a summary of the overall security posture, and risk landscape. Making recommendations based on current and future state to elevate overall security posture, and reduce risk. - Participated as a member of the senior leadership team in governance processes of the organization’s security strategies. - In concert with parent company, defined and communicated corporate plans, procedures, policies and standards for the organization for acquiring, implementing and operating new security systems, equipment, software and other technologies. - Led strategic security planning to achieve business goals by prioritizing defense initiatives such as SOC role out and coordinating the evaluation, deployment and management of current and future security technologies. - Developed and wrote in concert with parent company numerous security polices, standards, procedures, guidelines supporting IS security governance e.g. DDOS Mitigation Strategy, EMEA DR/BCP plan, SIRP run books. - Assessed, tracked, and communicated security risks associated with contractual compliance for Master Service Agreements (MSA’s) signed by the operating companies, its vendors and, clients. - Member of the legal review board responsible for delivering quarterly review of the IS security program to executive leadership. - Responsible for the information security training and awareness program. - Participated in contract review/negotiations.

    • United States
    • Advertising Services
    • 700 & Above Employee
    • Information Security Analyst
      • Aug 2015 - Jan 2016

      Under general guidance from the Business Information Security Officer (BISO) the ISA performs three core functions. The first is the identification, investigation and resolution of data security breaches on premise, or cloud as it pertains to systems, applications, and or services. Providing a tactical level response role for the Security Incident Response Process (SIRP). The second to protect data in internal and external systems used by the company and the prevention of breeches mitigation the insider threat. The ISA will support the BISO in the implementation of new security solutions and training for employees, participation in the creation and or maintenance of policies, standards, baselines, guidelines and procedures as well as conducting vulnerability audits and assessments as they relate to the company in accordance with both local and federal laws. The third is participation in the day-to-day operations of data security language review and creation within contracts, request for proposals and master service agreements. Full aware of the enterprise’s security goals as established by its stated policies, procedures and guidelines and to actively work towards upholding those goals.

    • United States
    • Staffing and Recruiting
    • 700 & Above Employee
    • Systems Analyst Infrastructure, Enterprise Operations
      • Feb 2013 - Aug 2015

      Responsible for the engineering, support and operations of all infrastructure technologies and solutions at MarketSource. Experience: - Solutions Architect - Networking - Cisco Wireless - WAN multi-campus - Telecom (Avaya, Shortel, Cisco) - Contact Center solution - Cloud Services (SaaS, IaaS) Responsible for the engineering, support and operations of all infrastructure technologies and solutions at MarketSource. Experience: - Solutions Architect - Networking - Cisco Wireless - WAN multi-campus - Telecom (Avaya, Shortel, Cisco) - Contact Center solution - Cloud Services (SaaS, IaaS)

    • United States
    • Advertising Services
    • 700 & Above Employee
    • Manager of Information Services
      • Sep 2000 - Feb 2013

      12 years of IT management experience, directing and managing large scale projects. Conduct and direct Penetration (PEN) testing. Responsible for the configuration and security testing of the software suite and backend SQL database. Provide guidance and direction to the Firewall administrator in support of the Firewall configuration. Manage company Telecommunications equipment. Responsible for the daily management of the IT infrastructure including network and telecommunications insuring the integrity, availability, and confidentiality of the IT computing environment is met at all times. Directed security policies in Active Directory. Directed the build out and design of all access control systems for domain, which included B2B VPN, Client VPN and Terminal Services for the domain. Managed B2B VPN project between Marketsource and AT&T to comply with AT&T’s access security policy for external business partners. This impacted 4 vendor sales centers in the CPE market generating over 60 million a year in revenue. Setup and configured IDS for network security monitoring of both internal and external threats. Customized CRM tool for AASC in salesforce.com. Functioned as a Network Architect, designed and built multiple networks for various projects. Managed numerous Telephony deployments Cisco, Alcatel Lucent, ShoreTel, Nortel, and Avaya. Wrote numerous documents as the Manager of Information Services, which included the Disaster Recovery Plan for BCP, and the IT daily administration handbook. Provided guidance and training to sales center employees on all aspects of security.

    • Telecommunications
    • 700 & Above Employee
    • Network Administrator
      • Jan 2000 - Sep 2000

      Responsible for all servers for the Windward campus and the local SAN. Built new computer accounts in Active Directory for local domain. Responsible for server security and the daily review of server logs. Guided and directed desktop technicians in support of desktop services. Responsible for all servers for the Windward campus and the local SAN. Built new computer accounts in Active Directory for local domain. Responsible for server security and the daily review of server logs. Guided and directed desktop technicians in support of desktop services.

    • Electronics Technician
      • Jul 1999 - Dec 1999

      Tier III technician at a Regional Support Activity Center (RSAC) which provided upper level support for all vertical phone services throughout BellSouth’s nine state regions. Troubleshot daily phone problems to resolve issues for BellSouth customers after all other technical support had failed to resolve the problem. Tier III technician at a Regional Support Activity Center (RSAC) which provided upper level support for all vertical phone services throughout BellSouth’s nine state regions. Troubleshot daily phone problems to resolve issues for BellSouth customers after all other technical support had failed to resolve the problem.

    • United States
    • Armed Forces
    • 700 & Above Employee
    • Electronic Warfare Technician Petty Officer
      • Jun 1991 - Jun 1999

      Operated and conducted preventive maintenance on computer-controlled electronic equipment used for detection, analysis, and identification of radar emissions. Responsible for interpreting incoming electronic signals to determine their source and location. Operated systems that produce high-power electronic signals used to deceive and jam enemy electronic sensors, including those associated with electronically guided weapons. Routinely worked with classified information and technical material in support of national security. Held NATO and US Security Clearance. Managed Electronic Warfare junior enlisted personnel as work center supervisor and underway as the Electronic Warfare watch supervisor.

Education

  • University of Georgia - Terry College of Business
    BBA, Business
  • The University of Georgia
    Bachelors of Business Administration BBA

Community

You need to have a working account to view this content. Click here to join now