We provide IT Staff Augmentation Services!

It Security Analyst Resume

4.00/5 (Submit Your Rating)

Ellicott City, MarylanD

SUMMARY:

  • Expertise in Risk Management Framework (RMF), systems development life cycle (SDLC), security life circle and vulnerabilities management using FISMA, and applicable NIST standards.
  • Prepared, solutions - focused, deadline-focused, team oriented, work well independently or in team providing all facets of computer supports with in-depth knowledge and understanding of numerous software packages and operating systems.
  • Expertise in providing IT security and guidance in support of security assessments and continuous monitoring for government (FISMA) and commercial clients.
  • Expertise in Assessment and Authorization (A&A), Certification and Accreditation (C&A), IT Security Compliance, Vulnerability Assessment, Network Vulnerability Scanning, Information Assurance, System Risk Assessment, System Development Life Cycle (SDLC), Technical Writing and Project Management Support.
  • An experienced project and team lead with excellent customer service, leadership, excellent communication (both oral and written) and presentation skills.
  • Strong team member with an ability to perform individually, and has good interpersonal relation.
  • Process strong communication skills and highly motivated.

TECHNICAL SKILLS:

Operating System: Windows 98, 2000, XP, Vista, Mac and Windows 7-10

Application software: MS Office (Excel, Word, PowerPoint, and Project, Visio), SD MM

Testing Tools: Nessus and Retina Vulnerability Scanner

Others: Oracle virtual box, Parallel virtual Machine, CSAM,Trusted Agent FISMA (TAF), Accellion/WatchDox secure file solution

PROFESSIONAL EXPERIENCE:

Confidential, ELLICOTT CITY, MARYLAND

IT SECURITY ANALYST

Responsibilities:

  • Provides security expertise and guidance in support of security assessments
  • Supports A&A (C&A) activities according to the A&A project plan
  • Reviews authorization documentation for completeness and accuracy for compliance
  • Facilitate Security Control Assessment (SCA) and Continuous Monitoring Activities
  • Implement, examine, interview, and test procedures in accordance with NIST SP A Revision 4
  • Ensure cyber security policies are adhered to and that required controls are implemented
  • Validate information system security plans to ensure NIST control requirements are met
  • Develop resultant SCA documentation, including but not limited to the Security Assessment Report (SAR)
  • Authored recommendations associated with findings on how to improve the customer’s security posture in accordance with NIST controls
  • Support team members with proper artifact collection and detail to client’s examples of artifacts that will satisfy assessment requirements
  • Review security logs to ensure compliance with policies and procedures and identifies potential anomalies
  • Update and review A&A Packages to include Core Docs, Policy & Procedures, Operations and Maintenance Artifacts, SSP, SAR, FIPS 200, FIPS 199, POA&M, BIA, PTA, PIA, and more
  • Collects Operation and Maintenance artifacts on an ongoing basis so that Security Control Assessment (SCA) is seamless
  • Upload supporting docs in the System’s Artifact Libraries, Google Docs, and CSAM
  • Updates, review, and align SSP to the requirements in NIST, rev4; so that assessments can be done against the actual requirements and not ambiguous statements
  • Manage vulnerabilities with the aid of Nessus vulnerability Scanners to detect potential risks on a single or multiple asset across the enterprise network
  • Reviewed SAR post assessment; created and completed POAM’s milestones to remediate findings and vulnerabilities
  • Monitor security controls post authorization to ensure continuous compliance with the security requirements

Confidential, PLANO, TEXAS

SAP SD ANALYST

Responsibilities:

  • Worked as member on SD module configuration.
  • Defined and assigned Sales organization, Distribution Channels, Divisions, Sales Areas, Sales groups.
  • Configured different sales document types and assigned to Item Category groups.
  • Defined copy controls rules and incompletion control for Sales document.
  • Configured order types for customer Inquiry, Quotation, Sales Orders, delivery order and billing documents.
  • Configured Sales order management concepts like Scheduling agreements, customer contracts, third party sales and consignment stocks.
  • Defined and assigned partner determination procedures.
  • Developed and Executed Unit Testing and Integration Testing of OTC Configuration.
  • Provided support on clients SAP environment for SD module, suggested technical solutions and solved specific issues.

We'd love your feedback!