Senior Cybersecurity Analyst Resume
Fairfax, VA
PROFESSIONAL SUMMARY:
Diverse experience in Information Technology that includes project management, network support, and risk management. Currently focused on Cybersecurity while holding several relevant certifications.
TECHNICAL SKILLS:
Relevant Disciplines and Tools: FISMA|NIST|RMF|CNSSI 1253|DIACAP|HBSS|McAfee ESM|Nessus| eMass |Xacta
PROFESSIONAL EXPERIENCE:
Confidential, Fairfax, VA
Senior Cybersecurity Analyst
Responsibilities:
- Working closely with Infrastructure and System Engineer to ensure accuracy of system design, installation, configuration, and hardening prior to introducing the component to the production environment;
- Documenting evidence to ensure all applicable security controls are properly implemented in accordance to NIST SP 800 - 53 rev.4 in preparation for Authorization Official signature
- Reporting daily written and verbal status of the authorization progress from Kickoff through Assessment
- Assigned as the lead for Security Impact Analysis (SIA), which entailed tailoring the ATO process to implement changes to authorized component and obtaining ISSO sign-off
- Providing leadership and guidance to team members
Chief Information Security Officer
Confidential, Washington, DC
Responsibilities:
- Responsibilities include the review of cyber security policies, procedures, system evaluations, and various documentation prepared by the ISSO team for accuracy and completeness in preparation for signing by the CISO.
- Reviewed ATO Package artifacts consisting of Business Impact Analysis, Configuration Management plan, Contingency Plan, HW/SW Inventory, Interconnection Agreement, System Boundary Diagram, System Security Plan, Security Assessment Report, plans of action and milestones (POA&M).
- Successfully completed the annual review and update of FCC cyber security policies to comply with the NIST SP 800-53 rev.4 standards.
- Defined, updated, and applied organizational-defined-values (ODV) to all baseline controls in compliance FISMA standards and according to NIST SP800-53 rev 4 and industry best practices. Identified key controls to be assessed by ISSOs in preparation for internal audits.
- Conferred with various System Owners to track progress and document evidence for POA&Ms, discussing compensating controls or initiating risk acceptance. Updated and disbursed minutes of the meetings to the office of the CISO and all relevant stakeholders.
Technical Project Manager
Confidential, Falls Church, VA
Responsibilities:
- Implemented and tracked various program and network solutions and provided Confidential management with daily/weekly/monthly written and verbal status updates for over 20 ongoing projects.
- Following the NIST SP800-37 Risk Management Framework (RFM) process provided the required artifacts for attaining system authorizations (ATOs) for General Support systems (GSS), infrastructure components, and applications at Confidential ’s Bethesda, Skyline VA, St. Louis, and Jacksonville detachments.
- Ensured that all system configuration changes were tracked and evaluated for risk throughout the systems development lifecycle (SDLC) using McAfee ePolicy Orchestrator, HBSS, and ACAS components including Nessus Vulnerability Scanner and Security Center. Monitored the network and analyzed log data using McAfee Enterprise Security Manager SIEM, Fortify Web, Inspect, and other approved or provided DISA tools.
Senior Network Security Engineer
Confidential, Washington, DC
Responsibilities:
- Created BindView scopes and database queries to generate reports that were loaded into a Scorecard application designed to rate the level of system security policy compliance for the Confidential program offices and regions.
- Supported Confidential HQ ISSO reviewing and updating System Security Plans (SSP) and System Configuration Documents (SSD) to assure that required controls and safeguards are implemented in compliance with FISMA Risk Management Framework (RFM) standards.
- Served as COMSEC Data Custodian for Homeland Security Data Network (HSDN) at the Confidential HQ Emergency Operation Center (EOC), supporting top Confidential Administration and DHS officials, ensuring secure access, storage, and transport of classified information on the HSDN system.
Confidential, Crystal City, VA
System Architect
Responsibilities:
- Responsible for the implementation of various new technologies into the BTA enterprise network utilizing the required phases of the project management life cycle and SDLC.
- Performed system analysis, evaluation, Concept of Operations (CONOPS), integrating, testing, and provided detailed documentation.
- Supported the ISSO and System Security Engineer to ensure that all system architecture satisfied FISMA requirements using eMASS to guide and document the DIACAP Certification and Accreditation (C&A) process.
- Created detailed system architecture documentation, BTA, SSP, HW/SW inventories, system boundary and Interconnection diagrams, and security controls implementation plans.
- Hardened hardware and applications using DISA Security Technical Implementation Guides (STIGs).
- Delivered daily project status updates, written and verbally, to BTA federal management.
- Prepared and delivered presentations to BTA management and provided knowledge transfers to the Systems Administrators and provided Tier IV support for all implementations.
Duty Manager
Confidential, Arlington, VA
Responsibilities:
- Monitored the performance of the TSA nationwide enterprise and managed the resolution of all network outages including system incidents and planned maintenance.
- Compiled and delivered various reports to TSA management including daily status and shift turnover reports.
Active Directory Migration Specialist
Confidential, Washington, DC
Responsibilities:
- Technical lead for the successful migration of the Army Operation Center (AOC, Confidential ) MS Windows Active Directory domain into the Confidential ’s NETCOM CONUS forest.
- SAN escalation manager for all AOC disk storage requirements which included performing trend analyses of disk usage, then submitting and tracking the necessary RFC’s accordingly.
Senior Security Engineer
Confidential, Washington, DC
Responsibilities:
- Member of the Confidential HQ Systems Security Compliance team creating BindView scopes and database queries to generate reports that were loaded into a Scorecard application designed to rate the level of system security policy compliance for the Confidential program offices and regions.
Senior Systems Administrator
Confidential, Alexandria, VA
Responsibilities:
- Performed the MS Windows Active Directory migration of the Confidential forest to the Confidential 's NETCOM forest at Confidential Operations Center, and various ports throughout the US.
- Daily responsibilities included MS Active Directory, Group Policy (GPO), MS Exchange, Windows Server Update Service (WSUS), Symantec Anti-virus administration, IAVA security patch installations, and Tier III system support.
Senior Systems Engineer
Confidential, Washington, DC
Responsibilities:
- Led several NT4-to-Active Directory (AD) migrations at various Joint Force Head Quarters throughout the United States and US territories.
- Performed several migrations of the Reserve Component Automation System (RCAS) database from Oracle 8i to Oracle 9i; installed and configured upgraded versions of the Retirement Points Account Management (RPAM) web and client applications and IAVA security patch installations.
Sr. Network Engineer/ Support Desk Manager
Confidential, Washington, DC
Responsibilities:
- Server Support Manager on the TASC/OASIS contract supervising a 15-member team of system engineers, system administrators, and help desk personnel.
- Performed technical project planning and management, server change management, server security, and supervised all server related activities such as network operating system upgrades, migrations and rollouts.
- Served as the project lead for the successful implementation of open-systems architecture Storage Area Network (SAN) at the Department of Transportation.
- Deployed and provided technical support to the FAA Washington Operation Command Center (WOCC) which monitored all FAA security incidents nationwide..
Project Manager/ Deployment Manager
Confidential, Washington, DC
Responsibilities:
- Project manager at the Confidential IRM InfoCenter, Information Technology Support Services supervising 16 technical support representatives supporting DoS sites worldwide.
- Deployment manager for INS Application Support Centers accomplishing the successful deployment of over 35 Application Support Centers throughout the United States.
Confidential, Tyson Corner, VA
Project Manager/ Deployment Manager
Responsibilities:
- Project Manager at the Confidential IRM InfoCenter, Information Technology Support Services supervising 16 technical support representatives supporting network engineers deployed at DoS outposts worldwide.
- Led a team of 30+ network and system engineers as a Deployment Manager for Immigration and Naturalization Service Application Support Centers (ASC) accomplishing the successful deployment of over 35 Application Support Centers throughout the United States.
Confidential, Washington, DC
Senior Systems Administrator
Responsibilities:
- Deployed and supported departmental LANs throughout the medical administration campus.
Confidential, Lanham, MD
Senior Field Engineer
Responsibilities:
- Supported IBM 370 compatible mainframes, high speed tape, and large-scale DASD at federal installations in the DC metropolitan area.
- Received the HDS President’s Award, an honor awarded to the top 100 achievers worldwide.