CISO Archives ~ fitzmoskal https://fitzmoskal.me/tag/ciso/ You are _here_ Thu, 29 Feb 2024 16:56:36 +0000 en-GB hourly 1 https://wordpress.org/?v=6.9.4 https://fitzmoskal.me/wp-content/uploads/2024/02/cropped-result_880649-32x32.jpeg CISO Archives ~ fitzmoskal https://fitzmoskal.me/tag/ciso/ 32 32 11678478 Public Utility Company – Digital Transformation https://fitzmoskal.me/public-utility-company-digital-transformation/ Thu, 22 Feb 2024 14:06:55 +0000 https://fitzmoskal.me/?p=1423 ITAM Solution As part of my time as a Delivery Manager I worked with an account to deploy an IT

The post Public Utility Company – Digital Transformation appeared first on fitzmoskal.

]]>
ITAM Solution
This image has an empty alt attribute; its file name is DALL%C2%B7E-2024-02-22-14.05.12-An-industrial-water-treatment-plant-exterior-during-daytime.-The-scene-includes-large-metal-water-storage-tanks-a-network-of-pipes-connecting-the-ta-1024x585.webp

As part of my time as a Delivery Manager I worked with an account to deploy an IT Asset Management solution as part of a Global Programme, and to fill in as Test Manager for the new Workday HR system.

The account management team for this company had been selected interally, and did not have a choice about taking the solution so there was a lot of resistance, particularly using security as a blocker. This was overcome by a global CISO sign off, however I listened to the concerns of the account that the licensing would take them over their budget and knew there was a better way to create a Win-Win scenario for them and for us.

I advised the Programme Manager that we needed to not only deploy the ITAM solution but create a package of benefits for them – which required setting up some reporting an analytics. I asked the account director to provide a breakdown of their charges for services and an export of their current asset data.

With this information, using Discovery, I was able to identify that they were underbilling by £50k annually, primarily on database services to their client. Another highlight was to replace their manual spreadsheet tracking of software with the product’s up to date OOTB software lifecycle reporting, allowing them to save time on querying manually and implement accurate, up to date record keeping.

HR Solution

I was asked to fill in as a Test Manager for a HR system rollout already in progress after the current test manager had left. The issues over resourcing meant that the delivery team had fallen behind and the deadline for implementation was at risk.

The key was to commit to being fully onsite, and obtaining buy in from the team to work extra hours to get catch up. I was in charge of ensuring that all the test scripts were completed, bugs were handled by the onsite developer, or exeptions were signed off.

With the combined effort of the team, we managed to pull the project back on track and able to deliver the implementation of the HR system to client satisfaction. Not all of the test scripts had been completed, but it was agreed with the client all significant bugs had been resolved and so the outstanding backlog were not critical to functionality and could be handed post go-live.

The post Public Utility Company – Digital Transformation appeared first on fitzmoskal.

]]>
1423
Management Consulting – Global Programme Software Rollout https://fitzmoskal.me/management-consulting-global-programme-software-rollout/ Thu, 22 Feb 2024 13:42:28 +0000 https://fitzmoskal.me/?p=1420 I was hired as a Delivery Manager and Enterprise Architect for the global rollout of Discovery and CMDB for an

The post Management Consulting – Global Programme Software Rollout appeared first on fitzmoskal.

]]>

I was hired as a Delivery Manager and Enterprise Architect for the global rollout of Discovery and CMDB for an international Managment Consulting company. This was a 2 year programme directed at North America and European regions worth €2m.

In the first year I identified and implemented €90k worth of cost savings to the programme by automating level 1 support so that the resources were no longer required. I led a team of 8 offshore engineers in India and Poland and was responsible for their training and managing their progress on the the deployment to individual accounts.

I reported to the Programme Manager and was responsible for not only the software architecture but the security design needed to obtain global CISO sign off and allow the programme to proceed when it hit a major hurdle and was blocked by security compliance. One of the many hurdles was implementing RBAC into the solution which had not been designed for full RBAC control.

I worked with one of my lead engineers to find and document all the group permissions available in the tool, then employed a hack to prevent certain pages from loading without the right permissions. This satisfied the requirements of Global CISO. During the process we even discovered a vulnerability that allowed access without permissions, which was reported back to the vendor. The vendor was so impressed that they asked if they could see our documentation.

The post Management Consulting – Global Programme Software Rollout appeared first on fitzmoskal.

]]>
1420