We provide IT Staff Augmentation Services!

Cybersecurity Consultant / Vulnerability Manager Reston, Va

5.00/5 (Submit Your Rating)

SUMMARY:

  • Seasoned, technical - minded, and multi-certified cybersecurity consultant with 9 years of record success in a dynamic range of cybersecurity and network defense with an exceptional aptitude for threat analysis, vulnerability assessment, incident handling, and risk mitigation. Proven ability to secure networks, protect data, and investigate cybercrime. Experienced in leading incident response teams, developing risk management plans, and conducting security audits. Demonstrable knowledge of application security, risk assessment, security pen test results validation, and vulnerability resolution. Skilled problem identifier and troubleshooter comfortable managing systems, projects, and teams in a range of IT environments.
  • Cyber Security
  • Network Security
  • Firewalls
  • IDS/IPS
  • Malware
  • Vulnerability Assessment
  • Risk Assessment
  • Penetration Testing
  • Vulnerability Assessment
  • Cybersecurity Operations
  • Vulnerability Management
  • Active Directory
  • Network Administration
  • Network Monitoring
  • Intrusion Detection
  • Threat Analysis
  • Incident Handling
  • Disaster Recovery
  • Tenable Security Center
  • Nessus Scanners
  • Qualys
  • Burp Suite
  • Netsparker
  • ServiceNow
  • Kaseya
  • Cylance/Blackberry Protect
  • ServiceNow
  • IBM BigFix
  • Jira
  • AppScan
  • Sunflower Systems
  • Absolute
  • ESET
  • DbProtect
  • CyberArk
  • MacAfee
  • CIS Benchmarks
  • NIST Framework
  • FedRAMP
  • FISMA
  • RMF
  • OWASP
  • Networking (LAN/WAN, TCP/IP, VPN, IPSEC, HTTP, HTTPS

PROFESSIONAL EXPERIENCE:

CYBERSECURITY CONSULTANT / VULNERABILITY MANAGER

Confidential - RESTON, VA

Responsibilities:

  • Coordination and leadership of remediation efforts for vulnerabilities identified during scans. Management and remediation of vulnerabilities using Tenable Security Center (SC), securing systems/applications, and providing continuous diagnostics.
  • Responsible for maintaining partnerships with stakeholders and drive end-to-end vulnerability remediation.
  • Risk management and security posture assessment include network analysis, identification of vulnerabilities, and remediation steps. Performing health checks, troubleshooting, and upgrading security tools as necessary to maximize their effectiveness.
  • Leveraging Netsparker, AppScan, Tenable, or Blackberry Protect in identifying compliance violations and vulnerabilities and establishing a schedule for vulnerability management activities.
  • Developing, finalizing, and reviewing key cybersecurity contract deliverables, implementing SharePoint wikis, contributing to penetration test analysis and post-test remediation, and ensuring the system owners take the correct remediation actions.
  • Maintaining regular communication with senior management and customers regarding strategic security projects and ensuring systems are configured in accordance with NIST cybersecurity frameworks.
  • Providing weekly vulnerability analysis and reports for management.
  • Providing mentorship & structure to other members of the security team as a lead.
  • Responsible for developing and execution of PO&AMs and waivers to meet organizational standards.
  • Perform security compliance and vulnerability assessments developing and applying STIG and CIS baselines for environment.

CYBERSECURITY ANALYST

Confidential - VIENNA, VA

Responsibilities:

  • Developed standards and protocols to protect information systems' integrity and security. Acted as the ISSO Team technical advisor and analyzed security data to determine countermeasures against malicious actors.
  • Managed projects from beginning to end, including legacy accounts, operating systems, and applications. Patched servers, networks, workstations, and anti-virus programs to keep them secure.
  • Detected vulnerabilities and anomalies using vulnerability security scanning tools, such as Tenable Security Center and Splunk, and Analyzed and remedied vulnerabilities in networks, devices, and applications.
  • Followed up with customers daily to ensure satisfactory resolution of existing cybersecurity incidents. Assessed various security risks and issues, and recommended solutions.

INCIDENT RESPONSE

Confidential - BETHESDA, MD

Responsibilities:

  • Assisted with disaster recovery, continuity of operations, incident response, and risk management needs; documented all end-user support and staff procedures, including configuring workstations and upgrades with third-party vendors.
  • Implemented best practices for maintaining network performance and core services for staff (internet, email, phones, wireless, and print services, including software and hardware).
  • Achieved successful completion or escalation of unresolved cases through identifying and communicating improvements to case processing and improved the efficiency and effectiveness of incident management.
  • Contributed to developing and maintaining the incident management system and supported the monthly deliverables required by the program contract for the Incident Response Team.
  • Supported the Critical Incident Response and Security teams by providing reports and metrics; achieved compliance with the incident management process for each incident by all IT teams.

TECHNICAL SUPPORT

Confidential — WASHINGTON, DC

Responsibilities:

  • Monitored performance, upgraded hardware, optimized client resources, and maintained and enhanced the organization's computer software systems and network connections.
  • Provided networking/desktop support and performed mainframe/account maintenance, monitoring, diagnosing, and resolving hardware, software, and network connection issues
  • Supported all partners and staff members with tier-1 technical support, including backup of system files, data recovery, migration, and software installation and configuration, maintenance, and upgrades.

HELP DESK SUPPORT

Confidential - ALEXANDRIA, VA

Responsibilities:

  • Assisted with managing computer software systems, network connections, and a ticketing system, as well as continued performance improvements, hardware upgrades, and resource optimization on behalf of clients.
  • Diagnosed and resolved IT-related problems, including issues with email, blackberries, iPhones, laptops, PCs, and printers. Assured the client's expectations were met was a key component of the follow-up process.
  • Provided analysis and monitoring and responded to network problems. If escalation was required, worked with tier-2 and tier-23 staff.

We'd love your feedback!