We provide IT Staff Augmentation Services!

Information System Security Officer Resume

3.00/5 (Submit Your Rating)

SUMMARY

  • A Cyber Security Analyst/Linux Administrator, with more than 6years of experience in teh information technology industry. Experience in Federal Information Security Management Act (FISMA), NIST Cyber Security Risk Management Framework(RMF), Security Control Assessment (SCA) and Developing Security Configuration Standards according using DISA STIG, CIS, vendor and NIST Standards and guidelines.

PROFESSIONAL EXPERIENCE

Confidential

Information System Security Officer

Responsibilities:

  • Work closely with teh System Owner to identify any additional controls dat are applicable to teh system to maintain a favorable security posture.
  • Perform oversight of Information System Vulnerability Management (ISVM) inquiries and ensure dat teh inquiries are addressed and reported within teh allotted timeframe and report via teh accepted methods and formats identified by teh DHS CISO for private and public cloud systems.
  • Generate Plan of Actions (POA&Ms) for each non - compliant control for each managed IT system.
  • Manage all applicable POA&Ms throughout teh lifecycle of teh IT system includes but not limited to teh drafting of well documented waivers detailing teh potential risk to teh Authorizing Official (AO).
  • Reviewed security scans, advised on triaging vulnerabilities, and provided recommendations on mitigating security risks.
  • Support teh ongoing development of Security Configuration Standards for all SSA approved. platforms to include: Windows, Unix, Linux, Cisco, IBM zOS and MAC OS.
  • Enhance teh security configuration standards development, review and publishing process by improving existing security standards documents and develop standards for approved platforms dat are not currently documented, mature teh current security standards development process, and revise/improve teh review, update and publishing process.
  • Research SSA, government, and vendor sources to determine applicable configuration settings.
  • Provide analytical support including: Researching and applying NIST and DISA standards, ensure any changes meet agency needs, developing a user friendly and consistent format, developing a strategy for incorporating into teh OIS ecosystem and related OIS intranet sites.
  • Analyze existing Security Configuration Standards content for accuracy, ensures any changes meet agency needs, and developing a user friendly and consistent format.
  • Ensures successful and timely review of Security Standards.

Confidential

Information Security Analyst

Responsibilities:

  • Conduct security control assessment using teh defined procedures in teh security assessment plan to ensure dat Information Systems are operating within strong security posture.
  • Assist with teh development of an Authority to Operate (ATO) package dat contains objective information for teh client to make an informed Authorization decision.
  • Developed, reviewed and updated Information Security System Policies, System Security Plans (SSP) and Security baselines in accordance with NIST, FISMA, OMB, NIST SP 800 -18.
  • Create and track POA&M and also follow up with all point of contacts to make sure dat all POAM items are remediated in due time.
  • Create, update and revise System security Plans, Contingency Plans, Incident Reports and Plan of Action & Milestone.

Confidential

Linux Systems Administrator

Responsibilities:

  • Performed large scale configuration and installation of Red hat instances using kick start.
  • Performed Operating Systems hardening.
  • Created and configured LVM partitions.
  • Performed Server Decommission.
  • Setup and administered user and group accounts, setting permissions for users.
  • Implemented security by using ACL's & special file permissions.
  • Worked as part of a dynamic team to keep systems maintained and optimized through daily, weekly, and monthly patching, upgrades, and tuning when system maintenance was required.
  • Installed, upgraded, and managed packages via RPM and YUM package.
  • Wrote basic bash shell scripts to automate repetitive tasks using crontab.
  • Troubleshoot user account issues and network-related connectivity issues.

We'd love your feedback!