Summary
Overview
Work History
Education
Skills
Certification
Featured Platforms
Timeline
Generic
Patrick Andoh

Patrick Andoh

Accra

Summary

To Utilize both offensive and defensive approach for proactive cyber defense on the modern enterprise network infrastruture. Highly-motivated employee with desire to take on new challenges. Strong work ethic, adaptability, and exceptional interpersonal skills. Adept at working effectively unsupervised and quickly mastering new skills.

Overview

11
11
years of professional experience
1
1
Certification

Work History

Cheif Cyber Security Engineer

HEROES WORLD
Accra
02.2024 - Current
  • Cybersecurity Strategy Development: Develop and implement a comprehensive cybersecurity strategy aligned with organizational goals and regulatory requirements.
  • Security Architecture Design: Design and oversee the implementation of a robust security architecture, ensuring it aligns with industry standards and best practices.
  • Risk Assessment and Management: Lead risk assessment activities, identify vulnerabilities, and develop mitigation plans to minimize security risks across the organization.
  • Incident Response Management: Develop and manage the incident response plan, coordinate the response to cybersecurity incidents, and lead post-incident reviews to improve resilience.
  • Security Operations Center (SOC) Oversight: Supervise the daily operations of the SOC, including threat monitoring, detection, analysis, and response.
  • Compliance and Regulatory Management: Ensure compliance with relevant laws, regulations, and industry standards, such as GDPR, HIPAA, PCI-DSS, and NIST.
  • Cyber Threat Intelligence: Develop and maintain a threat intelligence program to proactively identify and mitigate emerging threats and vulnerabilities.
  • Penetration Testing and Vulnerability Management: Oversee regular penetration testing, vulnerability assessments, and remediation efforts to protect organizational assets.
  • Security Awareness and Training Programs: Design and implement security awareness programs to educate employees on security best practices and reduce human-related risks.
  • Leadership and Team Development: Lead and mentor a team of cybersecurity professionals, fostering a culture of continuous learning and improvement.
  • Cybersecurity Technology Evaluation: Evaluate, select, and implement advanced cybersecurity tools and technologies to enhance the organization’s security posture.
  • Vendor Risk Management: Manage relationships with third-party vendors, conduct security assessments, and ensure their compliance with organizational security policies.
  • Security Policy Development and Enforcement: Develop, update, and enforce security policies, standards, and guidelines to protect sensitive information.
  • Data Protection and Privacy Management: Ensure the protection of sensitive data through encryption, access controls, and data loss prevention (DLP) measures.
  • Disaster Recovery and Business Continuity Planning: Develop and maintain disaster recovery and business continuity plans to ensure organizational resilience against cyber-attacks and other disasters.
  • Board and Executive Reporting: Provide regular reports to the board of directors and executive management on the organization’s cybersecurity posture, incident status, and strategic initiatives.

Head of Cyber Security

Akwaaba Network
Accra
01.2023 - 01.2024
  • Configured firewalls, intrusion detection systems, encryption algorithms, and other network security devices.
  • Safeguarded data through installation of firewalls and data encryption programs.
  • Conducted penetration tests to uncover security system weaknesses.
  • Provided technical support related to security product installation and use.
  • Designed and implemented high-availability applications to meet strategic goals.
  • Created technical documentation for various aspects of the cyber security application's architecture and processes.
  • Maintained documentation of security and disaster recovery policies and procedures.
  • Implemented software tools to assist in threat detection, prevention and analysis.
  • Performed code review for peers and provided recommendations for improvements.

Cyber Security Engineer

Sophos Cyber security
Accra
03.2022 - 06.2023
  • Coordinated with vendors to troubleshoot hardware-related issues impacting firewall operations.
  • Provided technical assistance to internal customers regarding firewall issues or concerns.
  • Trained personnel on proper use of firewalls as well as general security awareness topics.
  • Assisted with the design and implementation of new firewall solutions.
  • Provided technical support related to security product installation and use.
  • Evaluated current system architecture against emerging threats and identified areas of improvement.
  • Configured and maintained firewalls in accordance with security policies.
  • Performed regular maintenance of firewalls to ensure optimal performance.
  • Investigated suspicious network activity to identify possible threats or vulnerabilities.
  • Reviewed audit logs daily to detect any unusual or suspicious activity across the network environment.

Head of Cyber Security

IPMC GHANA LTD
05.2021 - 06.2022
  • Perform Red team assessment for banking sectors
  • Monitor clients' network infrastructure from cyber intrusion 24/7 (MSSP)
  • Selling third party cyber security products
  • Designing Top-Notch presentations for clients
  • Perform External black box penetration testing for clients
  • In charge of daily day to day operations of the security operation center (SOC)
  • Perform vulnerability assessment for clients
  • Performs Cyber security training for companies.

Ethical Hacker

Callens Solutions
Accra
04.2016 - 10.2020
  • Perform penetration testing on Corporate Client's network infrastructure
  • Perform Malware analysis and threat hunting
  • System vulnerability investigation on applications and writing of exploit as a proof of concept
  • Perform black box advanced penetration testing for top-notch banks in Ghana
  • Prepare communications, workflows and train system administrators of clients
  • Conduct Mobile app analysis using both dynamic and static approach.

Network Engineer

Ultralaser Ltd.
Accra
10.2013 - 02.2016
  • Design plans as well as lead initiatives for the optimization and restructuring of network architecture
  • Resolve operational, infrastructure or hardware incidents at the data center
  • Install, configure, and maintain switches, servers, firewalls, and Storage systems
  • Troubleshoot network systems to identify and fix performance issues
  • Collaborate with IT handlers, sales, and data center.

Education

Systems Administration

IPMC
Accra
03-2012

Skills

  • Dark Trace
  • Alien Vault
  • Cyflare
  • AttackIQ
  • Sophos Firewall
  • Sophos EDR
  • Sophos MDR

Certification

  • Offensive Security Certified Professional (OSCP)
  • Certified Ethical Hacker (CEH)
  • Ec-Council Certified Security Specialist
  • Diploma in System Administration
  • sophos certified engineer
  • sophos certified architect

Featured Platforms

Live hacking documentary with CNN
(NOTE: Identity hidden documentary.
Evidence can be provided upon
request)
2. Featured in FLYAWA magazine
(https://www.landmarine.org/l
m/flyafrica-magazine-issue-10/
- PAGE 41-43)
3. Speaker at CyberTech
Conference
https://cybertechconferenc
e.com/- Israel 2020

Timeline

Cheif Cyber Security Engineer

HEROES WORLD
02.2024 - Current

Head of Cyber Security

Akwaaba Network
01.2023 - 01.2024

Cyber Security Engineer

Sophos Cyber security
03.2022 - 06.2023

Head of Cyber Security

IPMC GHANA LTD
05.2021 - 06.2022

Ethical Hacker

Callens Solutions
04.2016 - 10.2020

Network Engineer

Ultralaser Ltd.
10.2013 - 02.2016

Systems Administration

IPMC
Patrick Andoh