Cybersecurity Compliance Consultant Resume
Atlanta, GA
SUMMARY
- Strategic, Persistent and results focused Information Technology Security engineer with over nineteen years “Hands - On” experience.
- Proven record of success creating, implementing and managing People, IT Processes and Application suites to support large scale public/private sector organizations with a strong knowledge of EDR and Compliance.
- History of success securing and maintaining enterprise-wide software and implementing solutions. Strong sense of company and team loyalty and the ability to thrive in new environments quickly.
AREAS OF EXPERTISE
- DoD Security Clearance
- Accomplished and Goal-Oriented
- EDR with strong, IOC and IOA knowledge, MITRE Framework
- Configuration, Administration and Development in Linux, Windows and MAC OS
- Strong Interpersonal skills
- Excellent troubleshooting and technical support abilities in high pressure environments.
- Experienced in large scale project implementation
- Identity Management
- Productivity Improvement
- Operational Leadership
TECHNICAL SKILLS
Cloud: AWS, Azure, Google
Languages: HTML, JavaScript, MySQL, Perl, Python, SQL, Visual Basic, XML
Operating Systems: Linux, UNIX, Windows Server 2012, MAC OS
Software: Active Directory, ADP Workforce Now 8.0, Apache, ArcGIS, Aruba NAC, Azure RMS, Secrets and Vault, Citrix XenServer, Crowdstrike Falcon, CyberArk, Identity Management, Tenable Nessus, Trend Micro Deep Threat Security, Dell Sonicwall 2650, Exchange Admin Center, Group Policy, HyperV, Hyperion, JIRA, Macros, Meterpreter, Microsoft SCOM, Tenable Nessus, Office365/Azure, OKTA, One Note, Oracle R12 EBS, PowerShell and VB Scripting, Remedy, RSA, SALT, SEP14, SharePoint, SQL Server, ServiceNow, Splunk, Tanium, Virustotal, and Yubikey .
Standards: ANSI/ISA, CIM, FEDRAMP, FIPS 140-2, MITRE, NIST, PC I
PROFESSIONAL EXPERIENCE
Confidential, Atlanta, GA
Cybersecurity Compliance Consultant
Responsibilities:
- Executed Compliance reporting in preparation for quarterly audits (SOC, PCAOB and Shadow) for privileged access on Windows OS and Microsoft SQL database servers.
- Analyzed server list against CMDB within ServiceNow to ensure completeness and accuracy.
- Developed and Generated recurring server inventory reports in ServiceNow.
- Analyzed Application Manager Server lists against CMDB to ensure completeness and accuracy.
- Used Splunk Queries to generate reports that identify Active Directory Security groups and accounts for each server.
- Audit Active Directory using Powershell Scripting to verify Elevated Accounts and permissions.
- Flagged non-compliant groups and accounts and submitted requests for investigation and remediation.
- Communicated and validated that remediation requests were completed.
- Researched recurring issues to identify root causes and remediation plans.
- Assessed internal processes and advised management for potential opportunities for process maturity and automation.
- Maintained and audited organizational Dell Change Auditor Alert process.
Confidential, Atlanta, GA
Senior Security Engineer Consultant
Responsibilities:
- Design, build, integrate, and support information security solutions at First Data.
- Lead Engineer on development and creation of a Proof of Concept with Crowd Strike which resulted in the purchase of Crowdstrike for over 100,000 endpoints worldwide.
- Created a Comparative Analysis between SEP14 and Crowdstike which rated both products on controls exclusive to the Confidential environment.
- Deployed over 40,000 Crowdstrike Agents worldwide and tested compatibility with environment.
- Developed Splunk queries to collect event information used in the investigation process.
- Worked with Blue team to perform Investigations on detections and document and whitelist process conflicts.
- Created sensor and prevention policies that Comply with Corporate assessments.
- Support ed the Security Operations Center in their security efforts related to endpoints, as well as develop new endpoint authoritative endpoint solutions for First Data Corporation on a global level.
- Attended the 2019 Crowdstrike Fal.Con event in San Diego gaining knowledge on configuration, tactics and release management.
Confidential, Atlanta, GA
Senior Security Engineer Consultant
Responsibilities:
- Designed, Configured and Implemented EDR environment that included Crowdstrike, Nessus Scanning and Trend Micro Deep Security within mixed Linux/Windows AWS environment.
- Configured EDR software policies and dashboards to meet FedRamp and industry requirements.
- Deployed over 5000 agents to Linux, MAC and Windows endpoints inside the GOVCLOUD hosted by AWS as well as the on-premises corporate environment.
- Created integration from Crowdstrike, Trend Micro and Nessus Scanning through Splunk into JIRA helpdesk ticketing system.
- Wrote code inside Jira that would extract specific pieces of information and then send them to JIRA to create helpdesk ticket for the recently stood-up SOC.
- Created processes and performed hardening to the environment resulting in successful compliance earning FEDRAMP certification.
- Utilized hacking tools to hack and break test environments resulting in more secured production environments.
- Performed pentesting Nmapper, Wireshark and the Metasploit Framework. Created a full threat and vulnerabilities report for all assets of the GovCloud network.
- Project lead representing Manhattan Corporate IT team through working with the Manhattan Government team and auditors to meet over 2,000 controls and processes and successfully obtain FEDRAMP Certification.
- Created Proof of Concept regarding Identity Management Systems such as CyberArk, Centrify and Thycotic.
- Deployed and Configured CyberArk Test environment to mixed Windows and Linux environment. Project consisted of rollout of clients, configuration and hardening of the CPM and PVWA servers. Experience with Classic and Version 10 interfaces and creating GPOS that align with best practices.
- Developed numerous custom Splunk queries and dashboards resulting in greater machine learning data and quick investigations.
Confidential
IT Director
Responsibilities:
- Supervised the implementation and maintenance of the organizational IT systems on premise and in the cloud.
- Managed a team of nine IT professionals including 3 principals responsible for all systems including applications, cloud operations, data center, servers and storage, endpoints and telecom.
- Within first six months on job, managed a 6-month BANA remediation process that included the development of a new Security Policy, Procuring and Installation of multiple Safeguards and the Implementation of new processes. These changes directly resulted in over $70K operating expense savings from the previous year and brought the firm SOC2 and PCI Compliant.
- Maintained and Controlled McAfee total protection with over 200 endpoints to include customization of dashboard, deployment of agents and remediation of events. Created policies and exemptions based on software and industry standards.
- Procured and managed the successful migration from Mcafee total Protection to Trend Micro Office Scan 12.0, Endpoint Control and Vulnerability Protection on over 1000 endpoints in less than a month.
- Migrated Disaster recovery environment to more cost-effective and stable cloud based environment and created process for Bi-Annual Disaster Recovery testing.
- Maintained and updated CyberArk Identity Management software. Was responsible for monitoring and pulling Access reports for upper management.
- Procured and managed the successful implementation and integration of Aruba ClearPass Virtual Appliance 500 for Network Access Control.
- Procured and managed the successful implementation and integration of Symantec VIP Access for 2-factor authentication on all Production servers.
- Successfully managed the migration of 2000 mailboxes from on premise Microsoft Exchange 2010 to Microsoft Office 365/Azure and ensured 1000 users had little to no downtime.
Confidential, Jacksonville, Florida
IT Services Manager
Responsibilities:
- Provided guidance, management, and direction to a staff directly supporting JAA technology needs and report to Director of IT.
- Developed and tracked key metrics using BMC remedy/Track-IT, KPIs, and reports to manage and optimize user experience and application and team performance leading a team that closed over 3200 tickets this year.
- Primary project manager over Jacksonville International Airport’s Visual communication project with over $250K budget adding virtual servers, workstations, lcds and software including touch devices.
- Utilized Microsoft SCOM and SolarWinds Network monitoring to track availability and performance for highly populated node environment.
- Support ed and Maintained the CCure 9000 environment to include assisting with upgrades, implementations and creating customizations for the Airport Operations Center.
- Established relationships with numerous software vendors and created Vendor scorecard which held vendors accountable to their contract.
- Successfully managed camera project that tripled the number of cameras at Jacksonville International Airport which required addition of encoders, cabling and storage arrays and reconfiguration of the current VIDOS software.
- Managed .NET HR software Workforce Now and Benefits portal upgrade project, organizing user training and meeting all deadlines for Go Live.
- Played Key role in development of IT Disaster Preparedness Implementation and Recovery to include Servers hardware/software and databases and was successful in September 2016 with Hurricane Matthew.
- Successfully completed deployment of Office365 to include SharePoint, Lync, Directory Synchronization and email migration and coordinated training for over 1000 users.
- Primary Administrator over a diverse group of applications including Flight information, Accounting, telephony, Wi-Fi, Asset Management, Police, AutoCAD, GIS, Access Control and Oracle 10g.
- Migrated Company from a physical server environment to over 150 virtual servers utilizing both Citrix Platinum 7.6 and VMWare 5.5 platform and continued to administer and maintain daily.
- Developed and IT Change management & Control Plan and played key role in evaluating requests.
- Maintained endpoint security of over 500 endpoints with McAfee total protection. Responsibilities included the testing and deployment of live agents. Customization of dashboards, creating policies and exemptions to fit company and framework standards.
- Administration of MS Windows Server based Network consisting of approximately 150 servers (IIS, SQL, DC, DNS, Application Servers and Exchange).
- Migrated on premises environment to Azure and configured/managed Azure tools suite.
- Maintained patch/update compliance for VMWare and Windows Server system, created a maintenance schedule for all servers and applications, minimizing downtown and ensuring proper change control flow from Development to Production.
