1. WELCOME TO MODULE 7 OF WRITING IT RESUMES!
IT security management is a fast-growing career.
As companies continue to expand their use of connected devices with cloud-based software and platforms, the need for infosec analysts and cybersecurity/IT security managers will continue to grow.
The primary goal of IT security managers is to harden the company's security specific to:
- Employee practices
- Network security
- Cybersecurity
- Software/apps
This includes detecting and reducing overall risks, best practices/compliance, and leveraging tools and technology to protect further and safeguard company assets.
There are physical assets, such as routers and switches, yet there are others that can't be valued as easily:
- Intellectual property
- Proprietary company information/data
- Individual/collective team productivity
- Company reputation
With such a growing industry, expect the number of resumes you write for professionals pursuing IT security to increase.
2. ACHIEVEMENTS FOR IT SECURITY MANAGERS
No doubt, uncovering achievements for those in IT can be challenging.
Achievements often result from revenue increases, cost reduction, and time/resource savings.
Since most IT professionals don't have a clear path to revenue, reductions in costs, time, and resources present the best place to uncover client achievements.
So, what exactly are you looking for?
Here are a few potential achievements for IT security managers:
- Limited exposure during a recent attack
- Measured reduction of risk exposure
- Department cost savings
- Lessons learned & benefits of X
- Optimal network uptime/limited to zero serious incidents
For example, your client may have successfully reduced costs associated with penetration testing or time spent on a specific project, such as a network consolidation or migration.
Time, which can be connected to savings, can also be found in other areas. Rebounding from a cyberattack faster than expected can prove a viable achievement to include in a resume for an IT security manager.
A restructuring of the IT security team can also look great on a resume. We often think of restructurings as bad for employees. Yet, as position titles and job roles grow stale, managers need to realign the infrastructure of their teams to fit with changing technology.
In today's environment, you'd think ALL companies would have optimal security policies. Yet, surveys repeatedly show that employers are too relaxed with their IT security, which means in-depth security policies, procedures, and systems are desperately needed.
For IT security managers who remain on the cusp of global security incidents and keep a watchful eye on what security SMEs are doing to avoid being victims,
3. KEYWORDS FOR IT SECURITY MANAGERS
Access Controls
Application Penetration Testing
Application Security
Automated Security Monitoring
Business Continuity Planning
Business Impact Analysis
Business Process Mapping & Improvements
Continuous Process Improvements
Corrective Action Recommendations
Credential/Digital Mapping
Cybersecurity
Data & Asset Damage (Loss)
Data Loss Prevention (DLP)
Data Privacy Practices
Department Budgeting/Cost Controls
Device-Specific Security
DevOps Architecture
Domain Best Practices
Employer Reputation Management
End-to-End Testing
Enterprise IT/System Security Solutions
Enterprise Security & Compliance
Event/Session Monitoring
GAP & Impact Analysis
Governance/Risk/Compliance (GRC)
Hardware/Software/Networking Services
IDS/IPS Solutions (Host, Network)
Incident Management
Incident Response
Identity & Access Management
Information Security (InfoSec) Strategies & SOPs
Information Security Management/Compliance
Intrusion Detection System (IDS)
Investigations & Escalation Handling
Issue & Compliance Management
IT Governance
IT Health Checks
IT Operations Management/Planning
Key Data & Performance Tracking (KPIs)
Major System Migrations/Enhancements/Upgrades
Multimillion-Dollar Budget Planning/Cost Controls
Multi-Layered Security Measures & Best Practices
Multi-System Security Architecture/Management
Network & Infrastructure Security
Network Log Monitoring
Network Security
Network Security Tools
Network Stability & Cybersecurity
Network Forensics
New Project Development
Operational Stability & Contingency Planning
Penetration Testing
Personnel Security
Policy & Process Documentation
Project & Program Development to Delivery
Ransomware Detection & Prevention
Reporting (User Behavior, SWOT, Data)
Resource Management & Allocation
Risk & Incident Management
Risk Assessment
Risk Mitigation
Sales & Tech Team Training
Scalable & Future-Minded Functionality
Security Audits & Monitoring
Security Breach Prevention & Response
Security Information & Event Management (SIEM)
Security Operations
Security Policies & Procedures
Security Standard Operating Procedures (SOPs)
Security Threat Modeling
Security Tool Configurations
Service Lifecycle (ITIL) / Processes
Staff Training - Security Procedures & Policies
Staff Hiring/Training/Management
Synthesize Actionable OKRs
System & Business Analysis/Sophisticated Solutions
System & Information Integrity
System Software Issue Resolution
Threat Intelligence
Threat & Vulnerability Analysis
Threat Vulnerability Assessment
User Authentication & Authorization
Virtualization, Consolidation & Enterprise Planning
Vulnerability Assessments
Vulnerability Management & Remediation
4. CERTIFICATIONS
- Certified Cybersecurity Analyst (CCA)
- Certified Ethical Hacker (CEH)
- Certified Information Security Manager (CISM)
- Security+ Certification
- Global Industrial Cyber Security Professional (GICSP)
- Global Information Assurance Certification (GIAC)
- Systems Security Certified Practitioner (SSCP)
- Certified Information Systems Professional (CISSP)
