We provide IT Staff Augmentation Services!

Cyber Security Engineer Resume

0/5 (Submit Your Rating)

Hampton, VirginiA

SUMMARY:

  • Cyber Warfare Operator and Cyber Threat Hunting Instructor with 9+ years’ success and experience in information security, incident response, and cyber threat hunting for the private sector, federal government, and Department of Defense.
  • Cyber Threat Hunting
  • and Mentorship
  • Data Analysis and Reporting

TECHNICAL SKILLS:

Technology and Tools: Security Information and Event Management (SIEM), Digital Forensics and Incident Response (DFIR), Malware Analysis, Vulnerability Assessment, Computer Network Operations/Exploitations (CNO/CNE), The Elastic Search Platform, ArcSight, Suricata, Zeek/Bro, Kibana, Arkime/Moloch, Wireshark, CyberChef, Endpoint Detection and Response (EDR), Elastic Endpoint Security (Endgame), Red Hat Enterprise Linux (RHEL), Security Onion, SIFT Workstation, Python, PowerShell, Git, GitHub, Version Control Systems, Docker, Cobalt Strike, Metasploit, NMAP, MimiKatz, Cisco CLI, Brocade CLI, Nessus, SolarWinds

PROFESSIONAL EXPERIENCE:

Cyber Security Engineer

Confidential, Hampton, Virginia

Responsibilities:

  • Created and enhanced custom queries and dashboards within Kibana. Troubleshot and tuned queries as new threats emerged and data sources were added or changed.
  • Conducted in - depth and detailed analysis of cyber security events to obtain a sequence of events, conducted root cause analyses, and provided hypotheses of cyber incidences.
  • Made mitigation recommendations to countermeasures personnel based on the root cause analysis.
  • Conducted threat hunting through the environment for adversary TTPs.
  • Searched for and analyzed IoCs based on cyber threat intelligence reports and open-source research.
  • Analyzed risk and prioritized vulnerability remediations using the MITRE Confidential &CK matrix and Cyber Kill Chain framework and methodologies.
  • Performed real-time continuous monitoring, detection, threat analysis, digital forensics, and incident response for critical Air Force systems suspected of being manipulated by a potential nation-state actor.
  • Worked with allied nation-state partner (Israeli Home Front Command) to share and develop Tactics, Techniques, and Procedures (TTPs) to thwart attacks from potential Advanced Persistent Threats (APTs).
  • Worked with private sector partner (Dominion Energy) to train, assist, and advise the defense against a simulated APT and insider threat attack on their Industrial Control Systems and Supervisory Control and Data Acquisition (ICS/SCADA) systems.
  • Utilized offensive cyber security tools to develop multiple realistic cyber exercises that lasted from days and up to a week in length. Provided cyber effects for teams of defenders to validate their qualification skill statuses.
  • Implemented anomaly analysis on the Washington State election system.

Cyber Program Analyst

Confidential, Hampton, Virginia

Responsibilities:

  • Orchestrated, planned, and briefed four monthly meetings for Air Force cyber enterprises. Facilitated information,, and tasks to 100+ participating members across 30+ cyber enterprises.
  • Served as a cyber technical Subject Matter Expert (SME) and direct point of contact for 12 cyber enterprises. Acted as a consultant and assisted with, standardization, and evaluation program development.
  • Developed objectives, milestones, and reports derived from both quantitative and qualitative data analysis to brief General Officers and senior-level staff.

Network Engineer

Confidential, Bothell, Washington

Responsibilities:

  • Implemented and established Information Assurance and Cyber Security procedures in accordance with DoD, NIST 800-series, and Navy instructions, directives, and publications.
  • Reviewed and assisted in the development of detailed System Security Plans, risk assessments, contingency planning, and documentation for Authority to Connect (ATC) and Authority to Operate (ATO) packages.
  • Reviewed vulnerability assessments and made recommendations to mitigate or remediate findings.
  • Conducted security assessments on information systems and analyzed processes and configurations to validate previously identified vulnerabilities that have been corrected and documented.
  • Validated compliance with Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRG) for enterprise routing and switching devices. Maintained POA&Ms for each package and updated them when findings were corrected or discovered.

System Administrator

Confidential, Hampton, Virginia

Responsibilities:

  • Successfully maintained server uptime of about 99.9%, which processed over twenty terabytes of data daily.
  • Led and coordinated Windows 10 upgrade project. Created and executed a mission plan to ensure all required devices were systematically updated before the final cutoff date.

We'd love your feedback!