
Experienced IT security professional specializing in the design and implementation of security solutions in high-availability settings. Proficient in threat detection and incident response, with a focus on effective risk management. Committed to safeguarding sensitive data and ensuring system integrity.
· Act as Technical Asset Owner for PCI cloud workloads, ensuring alignment with information security policy, PCI DSS controls, and operational resilience expectations for critical banking applications and data.
Led PCI-scoped cloud security gap assessments, identifying control weaknesses in access, logging, encryption, backup/restore, DR, and vulnerability management, driving risk-based remediation with cloud and engineering teams to enhance security posture.
· Own remediation of audit and scan findings across application security, data backup and restoration, and DR compliance, validating that fixes meet PCI and internal security standards.
· Oversee infrastructure, application, and code‑level vulnerability remediation in cloud and hybrid environments, leveraging automated tools and security baselines to reduce exploitable risk.
Collaborated with engineering teams to develop and implement risk-based remediation strategies for critical banking applications, ensuring compliance with security standards.
Led L3 support team in resolving incidents and problems for fraud platforms, reducing customer-impacting outages.
Executed root cause analysis and established permanent fixes for recurring issues in on-premises and cloud fraud solutions.
Validated recovery procedures and ensured environment integrity to enhance backup failover and disaster recovery readiness.
Conducted impact assessments for outages to inform risk-based recovery decisions and enhance business communication.
Maintained PCI compliance for card and payment fraud systems through secure access logging and monitoring.