It Security Analyst Resume
4.00/5 (Submit Your Rating)
Ellicott City, MarylanD
SUMMARY:
- Expertise in Risk Management Framework (RMF), systems development life cycle (SDLC), security life circle and vulnerabilities management using FISMA, and applicable NIST standards.
- Prepared, solutions - focused, deadline-focused, team oriented, work well independently or in team providing all facets of computer supports with in-depth knowledge and understanding of numerous software packages and operating systems.
- Expertise in providing IT security and guidance in support of security assessments and continuous monitoring for government (FISMA) and commercial clients.
- Expertise in Assessment and Authorization (A&A), Certification and Accreditation (C&A), IT Security Compliance, Vulnerability Assessment, Network Vulnerability Scanning, Information Assurance, System Risk Assessment, System Development Life Cycle (SDLC), Technical Writing and Project Management Support.
- An experienced project and team lead with excellent customer service, leadership, excellent communication (both oral and written) and presentation skills.
- Strong team member with an ability to perform individually, and has good interpersonal relation.
- Process strong communication skills and highly motivated.
TECHNICAL SKILLS:
Operating System: Windows 98, 2000, XP, Vista, Mac and Windows 7-10
Application software: MS Office (Excel, Word, PowerPoint, and Project, Visio), SD MM
Testing Tools: Nessus and Retina Vulnerability Scanner
Others: Oracle virtual box, Parallel virtual Machine, CSAM,Trusted Agent FISMA (TAF), Accellion/WatchDox secure file solution
PROFESSIONAL EXPERIENCE:
Confidential, ELLICOTT CITY, MARYLAND
IT SECURITY ANALYST
Responsibilities:
- Provides security expertise and guidance in support of security assessments
- Supports A&A (C&A) activities according to the A&A project plan
- Reviews authorization documentation for completeness and accuracy for compliance
- Facilitate Security Control Assessment (SCA) and Continuous Monitoring Activities
- Implement, examine, interview, and test procedures in accordance with NIST SP A Revision 4
- Ensure cyber security policies are adhered to and that required controls are implemented
- Validate information system security plans to ensure NIST control requirements are met
- Develop resultant SCA documentation, including but not limited to the Security Assessment Report (SAR)
- Authored recommendations associated with findings on how to improve the customer’s security posture in accordance with NIST controls
- Support team members with proper artifact collection and detail to client’s examples of artifacts that will satisfy assessment requirements
- Review security logs to ensure compliance with policies and procedures and identifies potential anomalies
- Update and review A&A Packages to include Core Docs, Policy & Procedures, Operations and Maintenance Artifacts, SSP, SAR, FIPS 200, FIPS 199, POA&M, BIA, PTA, PIA, and more
- Collects Operation and Maintenance artifacts on an ongoing basis so that Security Control Assessment (SCA) is seamless
- Upload supporting docs in the System’s Artifact Libraries, Google Docs, and CSAM
- Updates, review, and align SSP to the requirements in NIST, rev4; so that assessments can be done against the actual requirements and not ambiguous statements
- Manage vulnerabilities with the aid of Nessus vulnerability Scanners to detect potential risks on a single or multiple asset across the enterprise network
- Reviewed SAR post assessment; created and completed POAM’s milestones to remediate findings and vulnerabilities
- Monitor security controls post authorization to ensure continuous compliance with the security requirements
Confidential, PLANO, TEXAS
SAP SD ANALYST
Responsibilities:
- Worked as member on SD module configuration.
- Defined and assigned Sales organization, Distribution Channels, Divisions, Sales Areas, Sales groups.
- Configured different sales document types and assigned to Item Category groups.
- Defined copy controls rules and incompletion control for Sales document.
- Configured order types for customer Inquiry, Quotation, Sales Orders, delivery order and billing documents.
- Configured Sales order management concepts like Scheduling agreements, customer contracts, third party sales and consignment stocks.
- Defined and assigned partner determination procedures.
- Developed and Executed Unit Testing and Integration Testing of OTC Configuration.
- Provided support on clients SAP environment for SD module, suggested technical solutions and solved specific issues.
