Frank L.
Senior Specialist, Information Security @NIO蔚来
Signup · Get unlimited contacts
WORK HISTORY
Senior Specialist, Information Security @NIO蔚来
San Jose, CA, US
Led and participated in enterprise security audits, third-party risk assessments, and vendor security reviews, identifying control gaps and coordinating remediation to strengthen organizational security posture.• Supported ISO 27001 certification and recertification initiatives, including transition support from ISO 27001:2013 to ISO 27001:2022, ensuring ISMS alignment with enterprise security policies and control requirements.• Monitored and investigated security threats and vulnerabilities across enterprise systems using CrowdStrike Falcon, Microsoft ATA, IBM QRadar, and Elastic, supporting security monitoring and incident response activities.• Supported enterprise vulnerability lifecycle management, including vulnerability identification, risk analysis, remediation coordination, and verification across infrastructure and application assets.• Produced vulnerability reporting, remediation metrics, and trend analysis using Qualys, enabling improved visibility into vulnerability posture and remediation progress.• Collaborated with system owners and engineering teams to prioritize remediation efforts based on CVSS severity, exploitability, asset exposure, and operational impact.• Coordinated vulnerability remediation workflows through Jira and ManageEngine, improving accountability and resolution tracking across engineering teams.• Supported enterprise Data Loss Prevention operations, including monitoring and triage of alerts, and assisted with the migration from Digital Guardian to Cyberhaven DLP, maintaining monitoring continuity during the platform transition.• Partnered cross-functionally with engineering, infrastructure, and governance teams to advance security operations, vulnerability management processes, and compliance initiatives across the organization.NIST 800-53 · Information Security Management System (ISMS) · Third Party Risk Management (TPRM) · ISO 27001 (Compliance) · Data Loss Prevention · Vulnerability Management
EDUCATION
San Francisco State University
B.S, Business; Marketing
Harvard University
Programming in Python, Computer Programming (CS50P)
UC Berkeley Extension
Certificate, Cybersecurity (COMPSCI 857)
SKILLS
ABOUT FRANK L.
Highly organized entrepreneurial, computer technology professional with exceptional attention to detail and critical thinking skills. Skilled in Data Loss Prevention (DLP), Vulnerability Management (Qualys/ Tenable), Third Party Risk Management (TPRM - UpGuard/ BitSight), Crowdstrike, Microsoft Defender, JIRA, Kali Linux, Ubuntu, Parrot Linux, Linux Systems Administration, and Hardening, Windows Systems Hardening, Wireshark, Metasploit, Burp Suite, Ansible, Docker, Azure, Splunk, QRadar, Cloud Security, and Network Security.Holds a Bachelor\'s Degree from San Francisco State University and UC Berkeley\'s Cyber Security Boot Camp with a top-of-class ranking and grade. Currently pursuing my CompTIA Security+ Certification due to a lifelong passion for computer security since the age of 7, and driven to stay up-to-date on the latest trends and tools in the InfoSec community.Aims to leverage over a decade of entrepreneurial background as a successful business owner to bridge the gap between computer security and the people element of organizational protection and training/ understanding. Perpetual security enthusiast who is motivated by collaboration, innovation, and cross-team knowledge-sharing to ensure compliance with security best practices aspiring to be an exceptional Blue Teamer with a strong GRC emphasis on compliance and certification.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.