It Security/information Assurance Subject Matter Expert Resume
Washington, DC
SUMMARY:
A highly skilled Security and Operations Management Professional with over 30 years of IT experience. IT Security and Operations Leader with a proven track record of effectively managing security risks, threats and vulnerabilities at all levels of the organization. Proactive strategic planner with accomplishments implementing risks mitigation processes to ensure IT infrastructures and assets are secure. Extensive IT Operations and Security management experience coupled with great technical, communication and relationship management skills. Successfully identify and implement technical solutions in alignment with customer and executive management goals and objectives.
PROFESSIONAL EXPERIENCE:
Confidential, Washington, DC
IT Security/Information Assurance Subject Matter Expert
Responsibilities:
- Utilize the Risk Management Framework (RMF) and IT Security and Compliance (NIST, OMB, FISMA, and ISO) policy, standards and procedures to guide system owners, system managers, ISSO, through multiple and critical Authorization and Accreditation’s (A&A) of major Department’s systems
- Instrumental with the inter - offices coordination and collaboration which significantly contributed to the Enterprise Network Management (ENM) directorate achieving a post-Assessment and Authorization (A&A) remediation closure of 100%, exceeding the department CIO’s goal of 90% a month prior to the scheduled deadline; and significantly improving Department’s IT security posture
- Successfully manage, administer and facilitate the remediation of security risks and system vulnerabilities associated with the Plan of Action and Milestones (POA&Ms) from an external agency
- Provided weekly risk management status reports to the Department’s under-secretary personnel for review and evaluation to drive executive management’s decisions
- Create security control processes to establish security baselines and matrices, that provide crosswalk mappings between different technical security identifiers with traceability back to their authoritative sources to reduce the overall costs associated with post-assessment remediation efforts
- Participate in the third-party security controls assessors’ attestations of A&A systems on behalf of the Directorate
- Liaise with multiple departments to identify and address IT security compliance and information assurance issues
- Provide consulting services and guidance to the Department in support of current cybersecurity initiatives to drive the development of a more resilient and effective IT security program, in collaboration with the Chief Information Security Officer (CISO) and the Directorate Director
Confidential, Washington, DC
Network Operations Task Manager
Responsibilities:
- Achieved contract AQL performance ratings of “Excellence” five out of the last six months
- Responsible for the management of all project, tasks and activities for a core team of 21 IT professionals
- Managed the technical implementation of Personal Identity Verification (PIV)
- Managed Security Control Assessment Project utilizing SCAP compliant tools to identify and remediate security vulnerabilities and address security compliance issues
- Created a Security Tiger Team to address system vulnerabilities to achieve ISACA security goals and objectives
- Responsible for process improvements to increase network and system operating efficiencies and effectiveness
- Responsible for the SDLC of the following:
- Critical Business Services - Statistical Reporting, Email, IIS, Citrix, BES, DNS, Security, Patch Management
- Critical Business Applications - SAS, Exchange, IIS, ePolicy, Weblogic, SCCM, WSUS
- Critical Business Systems and Environments:
- Systems - Over 250 Microsoft Windows, RedHat Linux and Solaris systems
- Environments - Development, Test, User Acceptance Testing (UAT) and Production
- Desktop and Laptop Imaging - Create, test and deploy BLS core software images to all systems
- Ironport configuration, management, operation and support
- Single Sign-on (SSO) Implementation, management, operation and support
- Continuous system monitoring and management via Solarwinds and NetIQ
- Tier-3 and after hours technical support to include:
- Active Directory and GPO management, administration and support
- Triage and Resolution Tier-1 and Tier-2 escalated customer issues
Confidential, Washington, DC
Senior Technical Project Manager
Responsibilities:
- Technical Project Manager responsible for management of programs and projects for the Confidential ( Confidential ), Executive Secretariat (S/ES)
- Program/Project Manager responsible for the oversight and management of Confidential technical projects and security tasks working in an agile environment
- Utilized Risk Management Framework (RMF) expertise in support of the Accreditation an Authorization (A&A) efforts to achieve four “Authority to Operate” (ATO) of major application systems
- Managed Plan of Action and Milestones (POA&M) to successful completion
- Program Manager responsible for the implementation of Event Management
- Project Manager responsible for the following:
- Implementation of Microsoft System Center Service Manager - Incident Manager
- Implementation of Exchange 2010 on Classified and Unclassified networks
- Upgrade of System Center Operations Manager 2012 (SCOM)
- Upgrade of multiple systems to Windows 2008R2
- Migration of multiple custom developed application, web services and databases on Classified and Unclassified systems
Confidential, Washington, DC
Senior Division Project Manager
Responsibilities:
- Senior Division Project Manager responsible for management of programs and projects at the Confidential ( Confidential )
- Program Manager responsible for the oversight and management of Confidential firewall projects and engineering tasks
- Responsible for the design and implementation of firewall and security services for Confidential business partners
- Firewall Advisory Board (FAB) chair responsible for the assessment, review, coordination and implementation of firewall changes
- Senior Technical Project Manager responsible for the oversight and management of Confidential ’ IT projects
- Project Manager responsible for the implementation of System Center Operations Manager (SCOM)
- Project Manager responsible for the implementation of System Center Configuration Manager (SCCM)
Confidential, Washington, DC
Program Manager/Service delivery Manager
Responsibilities:
- Responsible for program financial management
- Responsible for subcontractor management
- Responsible for the management of IT resources
Confidential
IT Service Delivery Manager
Responsibilities:
- Service Delivery Manager responsible for the management, implementation, administration, operation, maintenance and support of all technology in the PEO Aircraft Carriers Integrated Digital Environment
- Management of all activities for a core team of 7 IT professionals
- Management, administration, operation, maintenance and support of all servers in the IDE Development, Test and Production environments
- Managed business process analysis and re-engineering efforts
- Managed the development of custom applications to automate government’s business processes
- Responsible for application maintenance, enhancement and support of custom written applications
- Management of database design, database administration and support of multiple Oracle 10G databases
- Responsible for the network management, administration, maintenance and support of the IDE network
- Management for all DITSCAP and DIACAP Certification and Accreditation (C&A) activities
- Project management of a successful migration of the IDE from a commercial hosting facility, Qwest, to a government hosting facility (DISA)
Confidential
IT Project Manager/Operations Manager
Responsibilities:
- IT Project Manager responsible for management over $13,000,000 in IT government contracts
- Financial management, budget forecasting, resource management and other direct costs (ODC’s)
Confidential
IT Operations Manager
Responsibilities:
- Management of all activities for a core team of 10 IT professionals
- Management of all application maintenance, enhancement and support of custom written applications using .Net, VB/ASP and Java
- Management of all database design, data modeling, database administration and support of multiple Oracle 10G databases
- Responsible for network security to include operation, administration, maintenance and support of Checkpoint firewalls
- Responsible for system administration, operation, maintenance and support of all servers in the CDX Development, Integration, Test and Production environments
Confidential
IT Service Delivery Manager
Responsibilities:
- Managed 24/7 help desk support team to include Tier-1 and Tier-2
- Managed all aspects of Wide Area Network (WAN) transition from Genuity to Qwest
- Key participant in achieving the 1st DITSCAP Certification and Accreditation (C&A) of the HUDOIG network
- Received company recognition award for excellence in customer service delivery.
- Successfully installed NetIQ to manage and monitor major networking components throughout the WAN
Confidential, Arlington, VA
Principal Consultant
Responsibilities:
- WorldCom's International Technical Leader for the ICIS (International Customer Information System) project
- Responsible for the installation and support of 38NT servers and 2 UNIX servers in the US and UK
- Setup multiple Siebel 99.5 client server environments to include Development, Integration and Testing, Training, and Production
- Installed Oracle 8.0.5 on multiple NT servers and created Siebel databases
- Provided NT, Oracle and Siebel technical support to international user community
Confidential, Arlington, VA
IT Manager
Responsibilities:
- Managed 4 technical staff in a WindowsNT environment to include supporting Windows98, NTWS4.0, SQL 6.5 and 7.0, development of client applications to support customized reports
- Responsible for the management and administration of 100 users in an International (US and UK) network consisting of WindowsNT4.0, SQL 6.5, Exchange 5.5.and NetWare 4.11
- Integrated 5 Linux servers running Redhat 5.2 and Oracle 8 into a WindowsNT 4.0 environment consisting of 5 NT4.0 servers, SQL 6.5 and MS Exchange 5.5.
- Responsible for the technical selection and procurement of all company hardware and software for the US and UK offices
- Successfully migrated Confidential 's IT infrastructure from NetWare 4.11 to WindowsNT 4.0.
Confidential, Reston, VA
Senior Network Engineer
Responsibilities:
- Technical lead responsible for the design and implementation of company email systems using Microsoft mail and SMTP gateways for 5 sites and over 1000 users
- Project leader responsible for the installation of the corporate Internet Security System (TIS Firewall)
- Installed company Internet connection to include configuring the Domain Name Server (DNS) as well as coordinating with Internet Service Providers (ISP) and local telecommunication vendors
Confidential, Washington, DC
Network Engineer
Responsibilities:
- Network Engineer responsible for the design, installation and support of the corporate local area network
- Installed, managed and maintained all corporate hardware and software
- Performed technical support for all systems to include network servers, switches, routers and workstations