Security Analyst Resume Profile
4.00/5 (Submit Your Rating)
OBJECTIVE
Desktop Support / System Administration Tiers II - III / HIPAA Security/ Cyber Security / Compliance / Information Assurance
COMPUTER TECHNICAL SKILLS
- Perform microcomputer fault isolation and restoration functions. Supervise and operate home-stationed and deployed communications-computer systems. Remain current on knowledge of all network technology.
- Perform User/Group Account Administration and File Management manage clientele email accounts via Microsoft Exchange Server. Maintain and exchange back-up tapes on Veritas backup servers.
- Communicate and execute directives distributed by Defense Information Infrastructure Network and Security Control Centers in global, regional and local regions.
- Protect critical resources from threat of information warfare through network boundary protection applications designed for Secure/Non-secure Protocol Router Networks.
- Manage/support communications computer systems security programs and activities including information protection and emission.
- PROFESSIONAL EXPERIENCE Confidential Wing-Level Cyber Systems Surety Journeyman: Information Technology Specialist
- Cryptographic Software: RSA PKI Asymmetric Digital Signature Key Exchange Tokens, Entrust PKI, Pretty Good Privacy PGP , OTAR Keys for the AN/CYZ-10 communications security COMSEC data transfer device.
- Software: Microsoft Office 2000/2003/2007 , Microsoft Windows Operating Systems 98/NT/2000/XP/Vista , Windows Servers 2003 2008 Active Directory, Group Policy, Exchange E-mail, McAfee ePO Orchestrator 4.0 Host-Based Security System , Symantec Ghost Imaging, Gold Disk, NetIQ Directory and Resource Administration and Security Management Consoles, Veritas Back-up servers, Nessus Network Scanning Tool and eEye Retina Enterprise Network Scanning Tool, NIPERNET, SIPERNET, Remedy and Track-IT Enterprise Databases, Focus and Interactive Query Utility IQU , and IP Address Management System IPAMS , WireShark, StealthWatch, MS-DOS Command Interpreters
- Hardware: Dell, Hewlett-Packard, Sony, Acer, Toshiba, Compaq, Gateway and Apple Macintosh
- Report security breaches, incidents and computer/enterprise network system deficiencies to senior level assessment teams.
Confidential
Cyber Security Analyst:
- Evaluated Certification Accreditation documentation for the Department of Energy's Health, Safety Security Organization for classified/unclassified information systems according to FIPS PUB 199, FISMA and NIST 800 series guidance.
- Interfaced directly with all levels of Federal Management to monitor and assess all phases of certification accreditation.
- Prepared written technical documentation and status reports modeling the System Development Life Cycle processes SDLC , Capability Maturity Model Integration CMMI methodologies and interpreted vulnerability scans.
Confidential
Information Assurance Officer
- Performed a vinculum of system security assessments using automated tools in accordance with guidelines defined by the Department of Defense, National Security Agency and DISA e.g. Security Technical Implementation Guides, DISA Field Security Office Gold Disk, Vulnerability Management System VMS , eEye Retina Scanner Security Management Console appliance, etc. .
- Provided maintenance and security support to IT networks in the JSC facility under the NEXGEN contract vehicle. Installed patches, virus updates and maintained access control lists.
- Ensured networks and infrastructure communication networks maintain confidentiality, integrity and security protection for data transmitted over both CONUS and OCONUS networks.
- Scanned all connected information systems using eEye Retina Scan Engine Management console in accordance with JSC policies and responded to Information Assurance Virus Alerts IAVAs .
- Performed Information Assurance Levels I II Certification and Accreditation: Preserved a healthy, secure, certified and accredited IT infrastructure in accordance with the DoD Information Technology System Certification and Accreditation Program DITSCAP , remained positioned to conform to the mandates specified in the new DoD Information Assurance Certification and Accreditation Program DIACAP , as delineated in DoD Directives 8500.1, 8500.2 and DIACAP 8510.01. Assisted with the creation of accreditation packages, and prepared IA related Power Point presentations.
- Implemented and enforced system classification level controls e.g. classified/unclassified , Mission Assurance Controls and information sensitivity disclosure controls e.g. SBU, Confidential, Secret, FOUO, and Top Secret in accordance with program and policy guidance.
- Assisted with the development and enforcement of JSC security and risk management policies. Informed IT Team including Network Engineers, System Administrators and Help Desk Staff of new JSC security policy updates. Certified/tracked changes to the IT asset baselines.
Confidential
AEF Central Command Terminal Area Security Officer
- Deployment and Stewardship: Served as a Terminal Area Security Officer TASO under J6's Tactical Communications Directorate in support of Operation Enduring Freedom in the United States Central Command theatre.
- Primary responsibility was to serve as a liaison between the Navy's NCTAMS Information Assurance Officers and Managers, ADPE, TACNET and the Joint Forces end users of the J6 Directorate. Ensured that information systems used within the directorate operated within the scope outlined in the Network Security Officer Guidebook, Information Assurance, and Personnel Physical Security Programs.
- Expedited any security procedures and tasks assigned by Information Assurance Managers and Officers. Ensured all users of any information system within J6 were properly cleared, and had successfully completed Information Assurance training for the current fiscal year. Conducted periodic security awareness training classes. Enforced the importance of complying with current and new security procedures.
- Performed duties as a J6 Tactical Communications Radio Operator: Installed, operated, maintained, and troubleshot communication support systems and terminal devices to include radios, iridium satellite phones, video phones, voice over secure IP VOSIP , Inmarsat phones, wire and battlefield automated systems.
- Installed, operated, and maintained designated Harris radios PRC-117s PRC-148 V3/V4s and data distribution systems.
- Performed remote communication support functions and ground-to-air communication support with Air Force pilots.
- Under vicarious authority, forward deployed to various remote and isolated locations, worked with small teams in tactical environments.
- Installed, operated and maintained secure/non-secure HF, VHF UHF Tactical Satellite TACSAT voice/data equipment.
- Received a concise training session on the Navy-Marines' Horn of Africa Support Wide Area Network HSWAN mobile satellite communications SATCOM procedures. Worked on router terminal consoles, and loaded crypto into TACLANE devices.
- Conducted independent operations.
- Confidential Staff Information Security Specialist
- Performed fundamental intrusion detection event handling including, data investigation, analysis, reporting and response. Monitored and increased overall integrity and availability of the Department of State's security infrastructure through detection and reporting of suspicious unauthorized activities on Department of State networks/systems.
- Deployed intrusion detection software tools including Internet Security Systems ISS Site Protector, SmartWhois.net, ITSecurity.com and Dragon to monitor the Department of State networks and detect in near real-time cyber threats and intrusion attempts.
- Handled security monitoring for internal intrusions, identified internal end-users including contractors, civil servants, and government employees downloading potentially pernicious content and other unauthorized files.
- Penetration Prevention and Protection Management: Visually patrolled and examined Internet signature tags and IP packets for common attacks, unwarrantable affects on host workstations, host-based intrusion detection system sensors HIDs , network-based intrusion detection system sensors NIDs and foreign intrusion detection network system sensors FIDNETs . Reviewed daily IT security, cyber threat/crime reports and remained abreast of current security news.
Staff Help Desk Specialist
- Spearheaded small projects such as E-mail Migrations, Windows XP Upgrades, McAfee Anti-Virus updates, and installation of SpyBot Search Destroy Anti-Spyware software for over 215 customers.
- Exchanged secure information using Pretty Good Privacy PGP and Entrust cryptographic products to avert network eavesdropping.
- Responded to IT security incidents directing inquiries, reporting incidents, implementing corrective actions and attending briefings.
- Assigned IP addresses and performed corrective actions for routers, hubs, switches and other network infrastructure components.
- Configured/monitored hardware and software for system operation, processed and controlled data flow and client-server multi-user system support including network management and administration.
- Participated in creating and updating operational procedures/checklists and generated trouble ticket reports for weekly IT management meetings. Provided end user training for Windows operating systems and applications.
- Answered microcomputer system status inquiries and supported trouble ticket functions for a large number of end-users of varying skill levels in a local cluster of seven buildings on the campus of National Aeronautics and Space Administration NASA : Goddard Space Flight Center. Routed service and support requests to the appropriate technician via Track-It trouble ticketing system database. Identified issues and provided resolution to all desktop, laptop, network, and application problems.
- Safeguarded agency's confidential resources complying with NASA's IT security policies, Federal Information Security Management Act and NASA's Policy Directives. Met all requirements of the NASA-STD-520.20 Electrostatic Discharge Control Programs.
- Performed Local System, Domain Administration and Alternate Computer Security functions for Mechanical Systems Divisions Branch. Implemented system and software upgrades including performance monitoring and tuning.
- Actively coordinated efforts with NASA's Goddard Space Flight Center Excess Warehouse, Code 549 Property Management and Code 442 Hubble Space Telescope HST Project Development Office with the procurement of computer equipment.
- Implemented process to acquire 2-year old refurbished hardware for NASA Goddard Space Flight Center's Associates significantly eliminating additional expenses totaling 67,000 dollars.
- Built all refurbished systems according to ISO system build processes/checklists, ensuing protection from threats and vulnerabilities.
