Douglas Staz

Senior Security Engineer @Atmos Energy

Carrollton, TX, US
EMAILS
d••••••••@atmosenergy.com
MOBILE NUMBERS
+12•••••••78

Signup · Get unlimited contacts

WORK HISTORY

Jan 2015 — Present

Senior Security Engineer @Atmos Energy

View department →

Dallas, TX, US

Manages all process implementation to monitor and assess potential malware or security breaches. Vendor Risk Lead providing security risk assessments to all stakeholders. PCI Compliance Lead for Atmos Energy which is a Level 1 merchant that processes more than six million card transactions per year. Successfully obtained Report on Compliance for PCI DSS v3.2 since 2019. Conducted Security Awareness Training for all new hires and managed phishing campaigns for the entire organization.

EDUCATION

1987 — 1991

Messiah University

Bachelor of Arts (BA), Mathematics

ABOUT DOUGLAS STAZ

INFORMATION SECURITY RISK MANAGEMENT PROFESSIONAL Ambitious Information Security Professional with over 22 years of progressive training and experience in information secur vulnerability management, compliance, vendor risk management, and network management. A proven track record of managing large enterprise projects, meeting project deadlines, performing multiple tasks, and providing cost effective solutions to complex issues. Professional certifications include CISSP (Certified Information Systems Security Professional), GCFE (GIAC Forensic Certified Examiner), and many others. Adept at creating and executing project work plans, identifying appropriate resources, and managing day-to-day project activities. Comfortable interfacing with all levels of management regarding technical and project issues. A detailed-oriented professional committed to integrity, the team’s success, and continuous learning. CORE COMPETENCIES VULNERABILITY MANAGEMENT (DOD VULNERABILITY MANAGEMENT SYSTEM, DIACAP, DOD SECURE TECHNICAL IMPLEMENTATION GUIDES AND CHECKLISTS, DISA GOLD DISK, PLANS OF ACTIONS AND MILESTONES, EYE RETINA/REM, NMAP, NESSUS, QUALYS, NETWORK/UNIX SECURE READINESS REVIEWS, AND FEDERAL DESKTOP COMPUTING CONFIGURATION) • SOP CREATION (MALWARE TRIAGE, INCIDENT RESPONSE PLANS) • SECURITY AUDITS (PCI AND NIST) • ROUTER & SWITCH HARDWARE (RIVERBED STEELHEAD, JUNIPER SSG 350M FIREWALL, CISCO ROUTERS AND SWITCHES, ASA) • MULTIPLE OS EXPERTISE (WINDOWS/LINUX/MACOS) • CARD ACCESS SYSTEMS • CCTV (ADT AND CHAMPION FIRE AND SECURITY) • SECURITY AWARENESS TRAINING • MULTIPLE SERVER APPLICATION SOFTWARE SYSTEMS ( VMWARE, SYMANTEC ENDPOINT, MCAFEE, IMATION ENTERPRISE IRONKEY, ACTIVE DIRECTORY, WSUS, CITRIX XENAPP, POWERSHELL, METASPLOIT, RSA SECUREID, SPECTOR 360, TOR BROWSERS, CARBON BLACK RESPONSE, POLYCOM VIDEO TELECONFERENCING, FTK, VOLATILITY) • NETWORK MANAGEMENT ( WINDOWS GPO, DHCP, DNS, TCP/IP, IPV4, IPV6, SMTP, NTP, IPS, PALO ALTO FIREWALLS, WIRESHARK, RAID MANAGEMENT, BACKUPS AND RESTORES, STORAGE AREA NETWORK) • REMOTE ACCESS (VPN, T1, T3, ISDN, FRAME RELAY, ADTRAN CSU/DSU, WAN) • CLOUD COMPUTING (AZURE, AWS, SAAS, NETSKOPE) • VENDOR RISK (BITSIGHT, SOC 2 TYPE I & II) • SECURITY INCIDENT AND EVENT MANAGEMENT (LOGRHYTHM SIEM, IMPERVA DAM, FIREEYE ALERTS) • INFORMATION COMPLIANCE DOCUMENTS – PCI DSS V3.2, DOD SECURITY POLICY (8500 SERIES OF DOD DIRECTIVES AND INSTRUCTIONS), PORTS PROTOCOLS AND SERVICES MANAGEMENT (PPSM) 8551.1, CERTIFICATION AND ACCREDITATION (DITSCAP AND DIACAP), NIST POLICY (800-53 AND 800-117)

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.