Deyan Tsanov

Deyan Tsanov

Followers of Deyan Tsanov417 followers
location of Deyan TsanovLozenets, Sofia City, Bulgaria

Connect with Deyan Tsanov to Send Message

Connect

Connect with Deyan Tsanov to Send Message

Connect
  • Timeline

  • About me

    Senior Manager IT, Information Security Risk Management at Тhermo Fisher Scientific

  • Education

    • Unibit Sofia

      -
      Master of Science - MS Information Security
    • Unibit University, Sofia, Bulgaria

      -
      Master’s Degree Information security
    • Sofia University St. Kliment Ohridski

      -
      Bachelor’s Degree Primary education with foreign language
  • Experience

    • HP

      Sept 2011 - Sept 2012

      Installed or upgraded software on user equipment. Assisted clients in troubleshooting and resolving problems with computer equipment. Ensured all software configurations meet company standards. Performed follow-up on tickets, ensuring that the issues are solved and had met the deadline.  Worked and cooperated with other IT departments for maintaining the IT establishment of the company and the workstations of the employees. Edited data on HTML. Complied the information to a software specific requirements. Ensured the information is not changed or damaged.

      • Remote Support Specialist

        Oct 2011 - Sept 2012
      • Knowledge Management Author

        Sept 2011 - Oct 2011
    • PPD

      Sept 2012 - now

      Responsibilities include:• Lead the information security risk management team• Design, build, execute and maintain information security risk management program• Maintain 3rd party risk management activities and internal security assessments• Support U.S. federal government security compliance (FISMA, NIST)• Work in cooperation with computer systems validation (CSV) and 21CFR11 compliance• Coach and mentor security analysts• Collaborate well across various departments including IT, finance, sales, services, legal, business, and operations teams to achieve team goals• Use business insight and highly analytical skills to contribute in the continous improvement of the information security posture of the company. Show less Responsibilities include:• Lead the information security risk management team• Design, build, execute and maintain information security risk management program• Maintain 3rd party risk management activities and internal security assessments• Support U.S. federal government security compliance (FISMA, NIST)• Work in cooperation with computer systems validation (CSV) and 21CFR11 compliance• Coach and mentor security analysts• Collaborate well across various departments including IT, finance, sales, services, legal, business, and operations teams to achieve team goals• Use business insight and highly analytical skills to contribute in the continous improvement of the information security posture of the company. Show less Driving vendor security assessments.Contributing to vulnerability managementContributing to the design, development and maintenance of global InfoSec Awareness PolicyConducting risk assessments across projects, new technologies, information assets, applications and other supporting assets.Highlights and escalates residual risks to relevant contacts and information security management.Identifies and recommends improvements to the vendor information security risk assessment program.Works with information asset owners and data custodians to determine appropriate controls to mitigate identified risks, and performs stakeholder role in controls implementation initiatives. Show less Manage all vendor risk assessments submitted to information security, including continued monitoring and review of vendors for any changes that could impact on their information security posture.Collaborate with all relevant contacts to see vendor security assessments through to completion, including communicating areas requiring remediation.Highlight and escalate residual risks to relevant contacts and information security management.  Identify and recommend improvements to the vendor information security risk assessment program.Provide input into other risk assessments conducted by information security, such as technology and process.Work with relevant information asset owners and data custodians on determining appropriate controls to mitigate identified risks, and perform stakeholder role in controls implementation initiatives. Contribute to the vulnerability management program including analysis of identified vulnerabilities. Manage inbound requests for information security assistance, submitted through the ticket system. Provide reports to management on the status of all risk assessments. Show less Maintained IT Service Desk by answering or responding to calls, emails, IT self-service tickets, logged incidents as tickets, resolved problems and provided required assistance to customers. Performed follow-up on tickets to ensure all problems are resolved fully and in a timely manner. Installed or upgraded software on user equipment. Assisted clients in troubleshooting and resolving problems with computer equipment. Ensured all software configurations meet PPD standards. Worked and cooperated with other IT departments from TIP. Determined the appropriate priority of a certain issue to outline its resolution timeframe in accordance to the company’s/employee’s needs.Took on-call shifts in non-business hours to maintain the correct workflow and to react to high priority issues that occurred during non-business hours. Provided direct support to users over the phone or via remote desktop sessions to resolve issues on first contact. Was responsible for specific study data access. Sent “alarms” over email/telephone to specific technicians when immediate action was required. Monitored and was responsible for sending major outage notifications within 15 minutes of their official announcement. Was responsible for establishing fax accounts for cooperation with internal/external users and their maintenance. Show less

      • Manager IT, Information Security Risk Management

        Oct 2021 - now
      • Associate Manager IT , Information Security Risk Management

        Aug 2020 - Oct 2021
      • InfoSec Analyst II

        Apr 2018 - Aug 2020
      • Information Security Analyst

        Dec 2015 - Aug 2020
      • Senior IT Service Desk Technician

        Jan 2015 - Dec 2015
      • IT Service Desk Technician

        Sept 2012 - Jan 2015
    • Thermo Fisher Scientific

      Dec 2021 - now
      • Senior Manager IT, Information Security Risk Management at Тhermo Fisher Scientific

        Jun 2023 - now
      • Manager IT, Information Security Risk Management at Тhermo Fisher Scientific

        Dec 2021 - now
  • Licenses & Certifications

    • Practitioner Certificate in Information Risk Management (PCiIRM)

      BCS, The Chartered Institute for IT
    • CISSP

      (ISC)²
      Jan 2017
    • ITIL: Foundation

      ITIL Certified
    • Security+

      CompTIA
    • Certified Ethical Hacker

      EC-Council
      Mar 2018
    • Information Systems Security Management Professional (ISSMP)

      (ISC)²
      Jun 2021
      View certificate certificate
    • MS Exchange Office 365

      ITCE
    • AWS Certified Solutions Architect - Associate

      Amazon Web Services (AWS)
      Feb 2020
    • Certified Cloud Security Professional (CCSP)

      (ISC)²
      Jan 2020
    • CCNA

      Cisco