University of Illinois Springfield Springfield - Computer Science
Risk Response Innovator | Culture Influencer | Value Driver | Relationship Builder | Mission Contributor
Larry
Dunham, MS, CISSP, CRISC
Urbana, Illinois
Information Security must serve a purpose that directly contributes to achieving organizational goals. Larry's professional passion lies in finding creative ways to accomplish that purpose.
Implemented self-service web portal for multi-factor authentication system, lowered service times for end users, reduced manual intervention by support staff. Adopted as enterprise service. User base increased from 50 users to 500 users to over 70,000 users.
Provided leadership in implementation of university's first comprehensive, framework-based Privacy and Security program.
Over twenty years of enterprise IT experience, a Masters Degree in Computer Science with Information Security concentration, and hold CISSP and CRISC certifications.
Adjunct Instructor, Computer Science
Instruction and management of individual student progress for up to 75 upperclass and graduate students in the Computer Science program at UIS. Teaching assignments have included courses in Operating Systems and Information Security.
Senior Systems Administrator
Senior designer of disaster recovery site using VMWare, SQL Server, and IIS technologies
Appointed by CEO to represent company on parent corporation Information Security Committee
Big Brother systems/network monitor, with custom scripting
Primary Windows/Unix/Linux server administrator
Built server farm from 7 servers to over 100 servers in five years
Unix/Linux production shell scripting
Supervised desktop/printer support operation
Research, purchasing, business process analysis, cost analysis, contract negotiation
Project managenent
-- Transition from NT4 domain services to 2003 Active Directory
-- Transition from Linux QMail POP3 email server to cloud-hosted Microsoft Exchange
-- Backup system (Backup Exec) upgrades
-- SEIM installation, upgrades, custom scripts (Big Brother)
-- Database live replication (Doubletake)
-- WAN link upgrades (T1/T3)
IT Security Risk Manager - Governance, Risk and Compliance
Manage oversight and monitoring of risk mitigation, coordinate policy and controls with Chief Privacy and Security Officer and university compliance officers to ensure that other stakeholders are taking effective remeditation steps.
Advise senior leadership on information risks that exist which could drain resources away from the mission of the university, and consult on possible mitigations which might be employed to lower the likelihood and impact of untoward information security events.
Work with stakeholders and units to facilitate IT security risk analysis and risk management processes and identify acceptable levels of residual risk.
Work in cooperation with a diverse group of stakeholder clients, balancing all parties' interests to arrive at creative solutions that achieve maximum security and minimum risk, while enabling the university to achieve its world-class educational and research goals.
Accomplishments:
**Provided leadership in implementation of university's first comprehensive, industry framework-based Privacy and Security program
**Built relationships with previously siloed, un-partnered academic and research groups to pursue a common approach to information risk.
*Designed process to reduce risk from personally identifiable genetic data in university's largest medical research institute
**Implemented self-service web portal for multi-factor authentication system, lowered service times for end users, reduced manual intervention by support staff. System use increased from 50 users to over 70,000 users.
**Assisted with development of university-wide security assessment
**Developed data classification survey to locate pockets of information risk
**Developed compliance testing methodology for university central data centers
**Presented conference sessions on risk-based security management
**Oversaw creation of web portal to present the information security program
Department Lead
Certified PC Technician / Technology Sales
Master of Science (M.S.)
Computer Science
Bachelor of Science (B.S.)
Computer Science
Summa Cum Laude