We provide IT Staff Augmentation Services!

Senior Information Systems Security Officer Resume

3.00/5 (Submit Your Rating)

Aberdeen, MD

OBJECTIVE:

  • To obtain a position utilizing my security skills so that I can do my part to contribute to the design, implementation, and maintenance of a good secure computing environment.
  • I am a very Detail Oriented Team Player who has Excellent Communication and Documentation skills.
  • I work with the intent to do the job right the first time. This intent ensures the highest of quality with the end results of tasks I lead and execute.

AREAS OF EXPERTISE:

  • Vulnerability Management / Security Patch Management / Threat and
  • Vulnerability Analysis - (Critical Windows Updates, Office Updates, Vendor
  • Updates), Antivirus Monitoring, DIACAP Experience, Identified windows / vendor vulnerabilities using eEye Retina scanning software and prioritized results for action needed to remediate, Created and posted evaluation reports from Retina scans weekly for Team and Management review, Utilized military regulations and policies as guidelines for actions taken, Made Configuration Management recommendations and took part in meetings dealing with security issues, Incident Response responsibilities, Excellent analytical, problem solving, and communication skills, Ability to Multitask well, Ability to take initiative and work independently, Ability to make best practice security recommendations to management to include review and new input to Security SOP, Served twelve years total in military, Detail Oriented, Strong Technical
  • Documentation Skills, Good Trainer, Follow Up and Follow Through

TECHNICAL SKILLS:

Operating Systems: Windows Server 2008 / 2003, NT Server 4.0 and 3.51, NT Workstation, Windows 7, Vista, XP, 2000, 98, 95, Windows 3.11, and DOS 6.22

Software: eEye Retina Scanning Software, Utilization of DISA GOLD Disk vulnerability scanner (Used for IAVMs, security patches, virus signature updates, STIG changes), QTIP Software, Expert in Microsoft Outlook 2000/97/98 and Outlook Express, Microsoft Exchange Server, Microsoft Office, Novell 2.2, 3.1, 3.2, and 3.3 clients, Internet Explorer, SMS, Symantec, Norton, McAfee, and IBM Anti - virus software, Xircom, 3 COM, New Media PCMCIA Network cards, Windows Registry, Symantec Ghost, Crystal Reports 5.0 and 6.0, Tivoli Problem Management (Expert Advisor), Applix, Remedy, Intel Landesk Management for Remote Control, Dameware, Aurorean for VPN, Spyware detection software (Ad-aware), WinInstall

Hardware: Blackberry, Palm Treo, Windows Mobile PDAs / Palm Pilots to include Compaq IPAQ, Confidential Axim and Palm Series Desktop Experience Confidential, HP, Compaq, Gateway, Micron, Aspect Laptop Experience Confidential (600 & CPX models), Panasonic (CF - 21, CF-25- Ruggedized, CF-61), Toshiba, HP, Compaq, IBM Hardware repair to include replacing hard drives, floppy drives, CD-ROM drives, power supplies, processors, fans, memory, modems, and network cards

PROFESSIONAL EXPERIENCE:

Confidential, Aberdeen, MD

Senior Information Systems Security Officer

Responsibilities:
  • Worked on eMASS packages consistent with DoDI 8510.01, NIST SP 800-53, NIST SP 800-37, and other relevant regulations as necessary
  • Responsible for drafting Policy documentation
  • Responsible for ACAS (Nessus) & SCAP Scans / STIG Manual checks
  • Created STIG Baseline Checklist with the intent to have an accurate STIG list per accreditation
  • Brought a physical security related issue to the attention of security for action to help ensure FOUO documents / PII were properly safeguarded consistent with AR 380-5.
Confidential, Aberdeen, MD

Information Assurance Engineer

Responsibilities:
  • Worked diligently on IT Purchase Request Tickets and Travel Request Tickets verifying that these tickets met all requirements per policy.
  • Worked Taskers as they were assigned consolidating responses from Directorates
  • Assured Compliance Assessment Solution (ACAS) Training attended
  • Responded to Weekly FISMA Tracking
  • Worked on updating the System Owner list for all military accreditations within our organization
  • Worked on XP and Other Non-Compliant OSs TASKER with the spirit to ensure they’ve tried to test their software apps on the newer compliant OS already
Confidential, Edgewood, MD

Information Assurance Engineer

Responsibilities:
  • Dealt with the many accreditation artifacts needed to be able to gain and maintain accreditations to include the System Security Plan (SSP), DIACAP Implementation Plan (DIP), Architectural Diagrams to name a few
  • Lead responsible for managing all type accreditation packages such as Enterprise Authority To Operate (ATOs) and Certificates of Networthiness (CoNs) for all branches of service for each system as follows: Installation Protection Integration Platform (IPIP AKA iP2), Decision Support System (DSS) 5.0, Giant Voice (GV) / Indoor Warning Notification System (IWNS), Telephone Alerting System (TAS), Network Alerting System (NAS), and Enhanced 911 (E-911) Systems
  • Came in ahead of schedule for a new accreditation that I ran through the process from cradle to grave
  • Very skilled at doing diligent research when called upon relating to DOD/Specific branch regulations to ensure we get the most comprehensive accurate answer for our customer: DODI 8500.1, DODI 8500.2, DODI 8510.01, AR 25-1, and AR 25-2 to name a few.
  • Lead efforts to process Privacy Impact Assessments (PIA) needed for multiple systems validating content of answers on the PIA form, gaining necessary signatures, and doing diligent follow ups when necessary
  • Registered systems Ports, Protocols, and Services Management (PPSM) information
  • Oversaw vulnerability scanning software procedures to ensure scans were being done properly to ensure accuracy of results as I have detailed experience configuring & running scans
  • Makes recommendations for secure solutions as it relates to the systems listed above.
  • Assists with specific IA help desk ticket resolutions as needed to provide the best secure solution on behalf of the Program
  • Leads a weekly IA Meeting to discuss relevant current IA issues on behalf of the Program.
  • Participates in other Programmatic meetings as appropriate to lend valuable IA expertise where needed and applicable.
  • Interfaces as necessary with DOD entities outside the Program to answer specific IA related questions regarding our systems to include providing status updates as well as problem solving for real challenges that the Program must address
  • Manages the prime contractor vendor efforts that supports the Emergency Management Modernization Program (EM2P) office for the Information Assurance (IA) needs of the Program
Confidential, Warminster, PA

Information Assurance Engineer

Responsibilities:
  • Escalated difficult findings and worked closely with Microsoft when necessary to ensure we’re doing our diligence to rule accurately on a particular vulnerability.
  • Utilized multiple resources as references to guide my actions: (DODI) 8500.1,8500.2, 8510.01, 5200.1, AR- 25-2,etc.
  • Believe that a big part of a good IA Program includes making sure that users are trained in IA Awareness topics on a regular basis appropriate to their role in the organization
  • Instrumental in taking actions needed to maintain the DIACAP Certification & Accreditation (C&A) of our systems
  • Conduct Retina and Gold Disk scans on systems, analyze results from these scans, and report the results monthly
  • Research possible false positives identified by Retina and GOLD Disk scanning software
  • Research difficult findings by utilizing multiple methods to ensure we have done our diligence to call a finding correctly as open or closed.
  • Deal directly with the DISA Retina Support desk / DISA FSO support desk for GOLD Disk to log tickets for technical issues / questions
  • Responsible for creating and maintaining checklists and process documents as it relates to the scanning, analysis, and reporting that we do.
  • Participate in meetings as needed to work together as a Team with our government counterparts in an effort to streamline processes and answer questions that we have on particular findings
Confidential, Hanover, MD

Information Assurance Engineer

Responsibilities:
  • Identified windows / vendor vulnerabilities using eEye Retina scanning software and prioritized results for action needed to remediate
  • Created and posted evaluation reports from Retina scans weekly for Team and Management review
  • Logged tickets with vulnerabilities identified for systems admins so systems could be remediated / patched
  • Researched possible false positives identified by Retina scanning software by working with vendor
  • Made Configuration Management recommendations and took part in meetings dealing with security issues
  • Utilized military regulations and policies as guidelines for actions taken
  • Responsible for conducting security inspections at subordinate units and documenting results.
  • Trained in DIACAP Process
  • Scanned customer laptops for vulnerabilities prior to their travels to have them patched.
  • Rescanned laptops after remediation completed to ensure they were clean and provided supporting documentation.
  • Utilized QTIP software to scan for malware / unauthorized software
  • Made best practice security recommendations to management to include review and new input to Security SOP
Confidential, Harlingen, TX

Senior Desktop Engineer Solutions Consultant

Responsibilities:
  • Install, configure and support GE Healthcare and Electronic Medical Records software (EMR), Picis Anesthesia Manager, OR Manager, PACU Manager and Caresuite Centricity EMR, LCJ, IDX, LCW; StreamLine Health AccessAnyWare, DataManager, FolderView, Release Scan, PowerScan, RegScan
  • Analyze client needs and configure automated solutions for Information Management for Physician and Patient Access with Clinical Transformation (IMPPACT).
  • Inventory and document all current systems and determine replacement strategy for fat and thin clients and virtualization candidates for 3000+ users.
Confidential, Kennett Square, PA

Project Coordinator Lead / Facility Systems Implementer

Responsibilities:
  • Responsible for bringing up over twenty remote sites from start to finish
  • Documenting processes so that current and future projects can benefit from Checklists
  • Being well organized and ability to multitask was a must for success in this position
  • Ordering New Phone and Cable/DSL Service for sites and scheduling vendor to arrive onsite to setup all hardware
  • Setting up and configuring wireless networks and determining whether AP needed (Cisco 851W Wireless Router)
  • Making sure all hardware arrives onsite prior to final vendor showing
  • Remote Control Software, Dameware, VNC, to install software, printers, and configure
Confidential

Security Systems Administrator / Field Sensor Engineer / Desktop Support

Responsibilities:
  • Utilization of DISA GOLD Disk vulnerability scanner (Used for IAVMs, security patches, virus signature updates, STIG changes)
  • Responsible for Physical Security of day to day operations
  • Symantec Antivirus Management
  • Spyware Scans and Protection Management - Adaware and Spybotsearchanddestroy
  • Active Secret Security Clearance
  • Maintain, Operate, and Provide Security for Weapons Surveillance Systems (XP/2000)
  • New Software Version Deployment, Testing, Documenting, and Providing Feedback
  • Installation and configuration of Hardware
  • Remote Desktop, VNC, and Dameware for remote access and administration
  • Excellent Troubleshooting and Problem Solving skills
  • File and Print sharing
  • Systems Admin for all Systems on each site
  • Active Directory and Group Policy
Confidential

Desktop Support Technician

Responsibilities:
  • Security Patch Management - Critical Windows Updates, Office Updates
  • Whats Up Gold for network monitoring in NOC (Network Operations Center)
  • Responsible for my part in overall physical security of day to day operations
  • IASO Certified
  • Active Secret Security Clearance
  • Norton Antivirus monitoring project to address viruses on network
  • Implement, integrate, maintain, and modify NIPRNET (Unclassified) and SIPRNET (Classified) systems
  • Remedy Ticketing System
  • Printer and Software Installations
  • Very Experienced with Outlook email trouble shooting
  • Dameware Remote Control Software
  • Maintaining KIV 7 and KIV 19 equipment
Confidential, Wilmington, DE

Temporary Desktop Support Position

Responsibilities:
  • Security Patch Management by Applying Security Patches identified
  • Destruction of Hard Drives to include appropriate paperwork
  • Active Secret Security Clearance
  • Supported 500 users
  • Hardware repair on desktop systems to include replacing hard drives, floppy drives, CD-ROM drives, power supplies, processors, fans, memory, modems, and network cards
  • Hardware: Compaq, Confidential, HP, Micron Desktops & Confidential Laptops
  • Instrumental in creating desktop images and devising a checklist for creating those images
  • PDAs / Palm Pilots to include Compaq IPAQ & Palm Series
  • Symantec Ghost Experience
  • SMS for remote control to solve problems
  • Troubleshooting MS Outlook configurations to resolve email problems
  • Configuring and troubleshooting laptops for dial up connections
  • Participated in Migration of systems to XP Pro
  • Installation and troubleshooting of software & hardware
  • Printer troubleshooting and resolution
  • Excellent Customer Service skills to include follow up
Confidential, Wilmington, DE

Desktop and Laptop Support

Responsibilities:
  • Supported 800 users using Applix Application for Ticket Logging and Tracking
  • Outlook Expert - email profile setup, extensive troubleshooting of settings, personal folders troubleshooting and repair, researched answers for the usage of features not commonly used by all clients to help customize & simplify life for that particular client
  • Troubleshoot connectivity issues - dial up connection from home, broadband, DSL, T1 (RAS) using Secure ID Token (Key FOB)
  • Printer troubleshooting and resolution
  • PDAs / Palm Pilots to include Compaq IPAQ, Confidential Axim, & Palm Series
  • Hardware diagnosis, Software installations, troubleshooting, and problem resolution - Escalation to support Teams when applicable
  • Take ownership of issue and follow up with client to make sure that all was completed to their satisfaction

Confidential, Wilmington, DE

Desktop Support and Network Administration

Responsibilities:
  • Procurement of all desktop systems and all other computer related supplies
  • Network Admin NT / Novell
  • Worked directly with Vendors to resolve problems
  • Resolved problems at each desktop
Confidential, Wilmington, DE

Live Transfer Team / 2 nd and 3 rd Level Desktop Support

Responsibilities:
  • Supported desktops and laptops in a 1500 user environment using Expert Advisor ticket logging software for First USA at all Wilmington and remote sites utilizing Intel LANDesk remote management software.
  • Support included installation and configuration of Novell and Microsoft network clients, software applications, printers, drivers, ODBC settings, Outlook profiles, and dial-up networking for remote users.
  • Software troubleshooting (Windows 95/98/NT, Windows Registry, Chameleon 6, Xoftware 5, Chameleon Unix Link 97, Xoftware 8, Outlook 97/98, IE 4/5, Dial-Up Networking, IBM Personal Communications, IRMA, MS Project 98, MS Office Suite 97 Professional, Norton Anti-Virus, Crystal Reports 5.0 and 6.0, Tivoli Problem Management / Expert
  • Advisor)
  • Troubleshooting network connectivity (Desktop side: Novell 2.2, 3.1, 3.2, and 3.3 clients, Microsoft Networking Client, IPX/SPX, and TCP/IP)
  • Experience with Confidential desktop and laptop PCs
  • Experience with Confidential Vectra desktop PCs.
  • Re-imaging of PCs using Symantec Ghost
  • Training of new personnel
Confidential, Fort Drum, NY

Systems Administrator / Network Administrator / Desktop Support

Responsibilities:

  • Top Secret Security Clearance
  • Install, configure, maintain, and administer: (Microsoft WindowsNT Server 3.51 and 4.0, Microsoft Exchange Server 4.0 and 5.0, Microsoft Windows 98, 95, Windows 3.11, and DOS 6.22, Microsoft Office 97, Microsoft Outlook 97 and Outlook Express, McAfee and IBM Anti-virus software, Xircom, 3 COM and New Media PCMCIA network cards)
  • Install, configure, maintain, and administer network for up to 250 users (Setup the network in a field environment - Setup the servers, ran the backbone of the network with RG58 connected by hubs, and used repeaters when necessary - Customers connected laptops via UTP to the hubs)
  • Creating, editing and deleting NT User Accounts
  • Troubleshooting and testing RG58 and UTP cabling with equipment to include making and repairing cable ends
  • Experience with Panasonic Laptops (CF-21, CF-25, CF-61)
  • Teaching Windows95, Microsoft Office, Microsoft Outlook, Configuring Network Cards
  • Work very well under pressure due to military training

We'd love your feedback!