Senior Information Systems Security Engineer Resume
SUMMARY:
Disciplined and dedicated IT professional, with outstanding analytical, technical, presentation skills and client service; seeking to utilize and expand my current skill set in the areas of Network Security, Information Assurance, Business Continuity, IT Disaster Recovery, Public Key Infrastructure, Identity Management and Information Systems Security Engineering. Over 20 years of Defense and Intelligence Community Information Assurance experience.
KEY QUALIFICATIONS:
- Project Management
- Identity Management and Biometrics
- Information Systems Security Engineering and Management
- Cyber Security
- Information Technology Disaster Recovery
- Business Continuity Planning
- Policy Development and Implementation
- Risk Management
- Security Standards Analysis
- Management of Authorization and Accreditation on program level
PROFESSIONAL EXPERIENCE:
Confidential
Senior Information Systems Security Engineer
Responsibilities:
- Coordinated Planning, Scheduling, Monitoring and Controlling Functions required for successful delivery of IA capabilities and services.
- Implemented standards and produced artifacts in accordance with Confidential 503 specified security controls.
- Demonstrated strong coordination, collaboration and communications skills in the delivery of crucial IA systems.
- Developed Assessment and Authorization artifacts required for approval and acceptance of developed systems.
- Provided regular briefings to multiple tiers of customer organizational leadership
Confidential
Senior Cybersecurity and Biometrics Consultant
Responsibilities:
- Managed multiple ongoing Cybersecurity Projects in the areas of IT Audit and Perimeter Defense for high visibility programs.
- Ensured all aspects of the projects were competed on - time or ahead of schedule to the specified requirements.
- Coordinated Planning, Scheduling, Monitoring and Controlling Functions required for successful delivery of IA capabilities and services.
- Provided requirements analysis associated with customer requests for modifications and translated these changes into implementation plans and schedules.
- Managed projects through the customer’s project readiness review lifecycle.
- Developed and conducted design reviews to provide implementation guidance and support to impacted organizations adopting delivered IA solutions.
- Implemented standards and produced artifacts in accordance with Confidential 503 specified security controls.
- Demonstrated strong coordination, collaboration and communications skills in the delivery of crucial IA systems.
- Developed Assessment and Authorization artifacts required for approval and acceptance of developed systems.
- Provided regular briefings to multiple tiers of customer organizational leadership.
Section Manager/Computer Systems Security Analyst
Confidential
Responsibilities:
- Section Manager leading a team of 10 Information Technology and Program Security Specialists.
- Developed and promulgated Information Security Policy for the US Army CIO, COMSEC Branch.
- Information Systems Security Engineer for three Intelligence Community member agencies.
- Conducted Information Systems Security Manager duties in support of an Intelligence Community member agency.
- Provided guidance and strategies to Program Managers and key decision makers on overall IT system operations.
- Developed and authored policy documents for the United States Army to manage their Insider Threat program.
- Contributed to numerous successful proposal efforts by writing, formatting and editing critical documents.
- Crafted RFP response strategy based upon expertise and intimate workspace knowledge.
- Defined, advised and influenced proposal strategies through extensive Information Assurance and client knowledge.
- Conducted interviews of candidates under consideration for major RFP efforts.
- Prepared and delivered Interconnection Security Agreements among DoD and Intelligence Community members.
- Performed gap analysis on IT systems to ensure that the highest standards of IT security were met and adhered to.
- Developed and recommended remediation strategies on IT systems with architectural or system security deficiencies
- Experienced and knowledgeable in both DCID6/3 and Confidential 503 requirements, standards and compliance.
- Approved System Security documentation prior to submission for Certification and Accreditation.
- Collected and analyzed audit logs for illicit and unauthorized user activity.
- Monitored and ensured adherence to established Certification and Accreditation standards and statuses.
- Worked with programs to identify and remediate security issues impacting National Security Information Systems.
- Generated security requirements through purposeful analysis, research, risk management, coordination and integration to existing systems.
- Integrated functional security requirements into existing acquisition lifecycle phases and milestones.
- Provided expertise and identified key areas of deficiency in Intelligence Community IT systems.
- Ensured application and adherence to established security standards and improved security measures when possible.
- Coordinated with Program Security Officers, Information Systems Security Managers and program leadership to implement security standards.
- Identified, reported and met with senior leadership to brief critical security issues affecting emerging IT systems.
- Coordinated with system personnel to ensure the currency of approval to operate, managed mitigation of issues affecting systems which required approval.
- Developed and presented document outlines to improve outdated policies.
- Identified and worked to rectify issues which lacked proper policy guidance.
Confidential
Senior Consultant
Responsibilities:
- Developed and delivered a series of White Papers in support of The Executive Office of the President of the United States, National Strategy for Trusted Identity in Cyberspace (NSTIC) initiative.
- Collaborated on the National Strategy for Trusted Identities in Cyberspace Management Policy for the National Security Staff, Executive Office of The President of the United States.
- Developed publication advisories for the internet website of the White House.
- Developed Identity Management and Information Security Policy for U.S. Dept. of Health and Human Services.
- Specialized in the areas of Personal Privacy, Identity Management and Biometric Policy Development.
Confidential
Associate
Responsibilities:
- Developed Information Assurance Policy for the Office of the Chief Information Officer (OCIO) of two separate Intelligence Community member agencies.
- Authored a White Paper for an Intelligence Community member agency detailing the requirement in the establishment of a Business Continuity Program for their organization.
- Developed, delivered and presented an IT resiliency briefing to at an Intelligence Community member agency.
- Researched and wrote an Information Assurance Policy Directive on Logical Access Control and IT System Usage for the US Marine Corps.
- Actively utilized AR 25-1, AR 25-2, HSPD-12, DODI 8510 and DODI 8500.1 in crafting Identity Management and Privacy Protection Policy for the US Army CAC/PKI office, office of the US Army CIO.
- Developed PKI, Cryptographic Modernization, KMI policy guidance
- Leveraged encryption techniques in development of Personal Privacy and Identity Management Strategies for DoD.
- Lead a team of analysts in designing the architecture of an Information Assurance Vulnerability Alert (IAVA) Division for an Intelligence Community member agency.
- Authored both a Position Paper and White Paper outlining the architecture and establishing the necessity of having such a division. Emphasis was placed upon strengthening network security and achieving economies of scale.
- Developed and delivered Identity Management, PKI, KMI, Cryptographic Modernization and Biometric Policy for the US Army CIO/G6.
- Developed and delivered access control strategies for Cryptographic Modernization and KMI to the US Army.
- Developed and delivered implementation and usage strategies for PKI, KMI and Cryptographic Modernization to the US Army CIO/G6.
- Authored and published a White Paper on the structure, uses and benefits of Biometrics within the military.
- Prepared Analysis of Alternatives for future direction of the US Army PKI Program to in corporate PKI, Biometrics and KMI into one consolidated, effective program.
- Developed KMI strategies which focused on the strategies of Role Based and Rule Based Access Controls.
- Developed a presentation for the Assistant Secretary of Defense on Identity Protection and Identity Theft.
- Conducted Business Impact Analysis study and site visits for the US Air Force, Air Combat Command on IT systems at Air Force Bases across the continental United States.
- Researched and crafted policy on PKI implementation extensively for Common Access Card project.
- Business Continuity Lead for an Intelligence Community member agency.
- Represented Mission Continuity Office in Risk Management efforts a new Intelligence Community facility.
- Managed IT Disaster Recovery ( Confidential ) operations for the largest facility of an Intelligence Community agency.
- Lead all Confidential Efforts for an Intelligence Community member agency for the Eastern United States IT systems.
- Represented an Intelligence Community member agency seeking, and receiving, ISO 9000 accreditation.
- Achieved a 100 percent Confidential compliance rate, the only site within a client agency to accomplish this.
- Represented the Mission Continuity group in high-level, crisis briefings to an Intelligence Community CIO.
- Achieved Confidential compliance rates of over 90 percent for both systems with completed plans and systems with plans tested- months in advance of established suspense dates.
- Trained client leadership and personnel on Mission Continuity, Continuity of Operations and Confidential .
- Developed an automated Confidential Metrics system for leadership to review progress and present status of client sites.
- Integrated Confidential into mainstream BCP efforts to achieve higher economies of scale in supporting our client.
- Presented numerous Confidential -Business Continuity briefings within my client agency to educate the user community.
- Supported a task calling for 3 Full Time Senior Employees, single-handedly at a high level for over 11 months.
- Contributed to the Army’s adaptation of Biometrics into daily military operations to enhance Identity Management.
- Oversaw deployment, installation and training of personnel in the establishment of Identity Management systems.
- Developed information system security metrics for the Defense Information Systems Agency ( Confidential ).
- Incorporated existing Intrusion Detection technology into metrics, thus giving a thorough understanding of current DOD IDS systems and more comprehensive scope to areas of focus.
- Managed facility and logistical operations; Oversaw budget for Confidential Cross-Domain Communications facility.
- Served as a Certified Verifying Official for Confidential PKI Common Access Card project.
- Educated military personnel about PKI applications, logical security and physical security.
Confidential
Senior Systems Analyst
Responsibilities:
- Developed customized software for clients ranging from industrial to military services.
- Focused primarily on software and database operations for clients of merchandise and warehouse management systems.
Confidential
Information Technology Specialist
Responsibilities:
- Performed Year 2000 conversions of COBOL programs and Confidential for the merchandising and logistics departments
- Prepared and cataloged test data and results of programs and utilities.
- Documented analysis for Confidential applications in addition to Point-of-Sales (POS) systems.
- Corrected a wide range of IT problems within the client’s retail outlets with a high degree of proficiency and effectiveness. These problems included: data recovery and transmission; hardware reconfiguration and integration; and deployment of the latest software upgrades.
Confidential
Data Systems Analyst / Business Analyst
Responsibilities:
- Collected, analyzed and reported performance data for a fighter aircraft squadron.
- Analyzed data for trends of both deficiency and high efficiency in aircraft and organizational performance.
- Interacted with personnel of all ranks and vocations in researching components or systems with notable deviations.
- Developed and maintained suggestions for improving aircraft maintenance planning and programming procedures to ensure optimum use of Air Force resources.
- Reported these findings to echelon levels both within the local base and to command headquarters.
- Coordinated hardware and software of the support computer system as well as development of new projects.
- Applied collected data into local database for analysis and reporting purposes.
- Received academic honors for analysis study curriculum.
