Summary

Experienced technical liaison and advisor, security engineer, incident response analyst, and architect. Experience in securing cloud (SaaS and IaaS) environments, email systems, and data. Solid understanding of proactive policies designed to minimize cybersecurity risk and mitigate issues quickly and effectively. Able to leverage tools to properly defend against a variety of threats, and maximize the value of cybersecurity infrastructure.

Work Experience

Senior Manager, IT Security · athenahealth

2025–Present · Boston, MA
  • Manage teams responsible for Access Control and BPO partner oversight.
  • Maintain role as Principal Member of Technical Staff in InfoSec.

Principal IT Security Engineer · athenahealth

2023–2025 · Franklin, MA
  • Principal Member of Technical Staff in InfoSec
  • Manage operational challenges and strategic initiatives
  • Provide architectural recommendations on datacenter, cloud, zone builds
  • Recommend security based practices for product feature integration
  • Prepare and present critical security metrics for leadership
  • Provide technical assistance and guidance to various technical teams within the InfoSec organization leveraging historical expertise and knowledge of the broader strategy
  • Evaluate and test new software solutions as part of creative solutioning for unique business problems
  • Principal security liaison for organizational projects
  • Secure integration efforts with external partners, including controls review, auditing, and testing

Senior Engineer, Cybersecurity · Boston Scientific

2022–2023 · Marlborough, MA
  • Lead security liaison and engineer for a large merger-acquisition.
  • Deployed state-of-the-art email security platform and reported associated time and cost savings.
  • Technical lead on Enterprise Data Protection/DLP program.
  • Scope security gaps and identify solutions
  • Evaluate solutions to best address cyber security use cases.

Senior Analyst, Cybersecurity · Boston Scientific

2020–2022 · Marlborough, MA
  • Built out the Cloud Security Incident Response procedures.
  • Built and maintained Cloud Access Security Broker policies including DLP, configuration monitoring, and Shadow IT.
  • Identified organizational risk in the cloud infrastructure.

Analyst II, Cybersecurity · Boston Scientific

2018–2020 · Marlborough, MA
  • Built and maintained DLP policies for email, Office365, McAfee Endpoint.
  • Performed incident response duties including response to DLP violations, malware infections, dangerous browsing activity, etc.
  • Conducted corporate investigations as requested - lost/stolen devices, suspicious browsing, etc.

Cybersecurity Analyst · National Grid

2016–2018 · Northborough, MA
  • Worked as an level 1 analyst in the US Cyber Security Operations Center as part of a 24/7 team.

Security Operations Center Technician · Amwell

2016 · Boston, MA
  • Monitored and reviewed security logs to ensure user and network software are up to date and safe.
  • Identify threats to the network, from both internal and external sources.
  • Ensure security policies are comprehensive and sufficient for the protection of Protected Health Information and are in compliance with HIPAA regulations.
  • Provide application support.

Education

Bachelor's Degree, Cybersecurity

Southern New Hampshire University

Certifications

Contact

Email: akeating6388@gmail.com
LinkedIn: linkedin.com/in/andy-keating-002b7a40/
Location: Franklin, MA