We provide IT Staff Augmentation Services!

Information Technology Specialist Resume Profile

3.00/5 (Submit Your Rating)

Sterling, VA

SUMMARY OF EXPERIENCE

Over 17 years in the information technology management and information security INFOSEC industry addressing complex cybersecurity issues for information technology systems with national impact.Significant experience in planning and providing information security consulting and services to Department of Defense and Federal Government industry. Extensive experience in developing security programs, performing vulnerability assessments and audits, implementing security operations centers and incident response capabilities, and implementing infrastructure improvements to improve the security posture. Extensive technical experience in INFOSEC tools, solutions and infrastructure technologies.In-depth knowledge of information security policies. Strong technical, business and project management skill set with excellent oral communication skills.

WORK EXPERIENCE

Confidential

Information Technology Specialist

Confidential

Key Accomplishments

  • Incrementally improved the security posture of the DEA infrastructure
  • Led 6 years of successful annual audits that resulted in no Notifications of Findings
  • Ensured full removal of default passwords and clear text passwords in the environment
  • Led incorporation of Access Control List ACLs throughout network devices to limit security exposure
  • Improved patch management by instituting more frequent image updates
  • Improved compliance with DISA STIG requirements by developing checklists for use by PMs
  • Implemented information technology readiness processes that improved C A success

Confidential

Provided a Security Risk and Vulnerability Assessment of the NY City Wireless project, a new wireless communication system implemented to support emergency communication for agencies within the NY City Government. Performed penetration testing and ensured compliance with the security requirements traceability matrix SRTM . Thoroughly analyzed assessment results, determined alternatives and developed recommendations. Documented detailed findings in a report and outbrief. Advised NY City Wireless local Government executives via oral presentations.

Key Accomplishment: Vulnerability Assessment Report was considered by client as reflecting attention to detail, effective problem solving and significant knowledge of security policies and practices. Many findings were sensitive and critical however, recommendations were met with support and were initiated.

Confidential

As lead information security engineer, performed vulnerability assessments and monitored compliance with the DISA STIGs. Performed assessments, tests and scan as preparation for or input to the certification process. Maintained the Vulnerability Management System.

Key Accomplishment: Improved the security posture and backlog of problems by implementing a weekly Tiger Team meeting to problem solve and communicate information.

Confidential

As the IA Vulnerability Assessment Lead and Information Systems Security Officer ISSO for HSDN, led all aspects of information security to include the security assessment evaluation of the Information Assurance program. HSDN network is a classified local and wide area network. Ensured the organization's information security practices complied with organizational and contractual policies, standards, and procedures. Executed scans on the enterprise, monitored patch management program, advised operating system owners of published vulnerabilities and patches, conducted follow up scans to verify that patches were deployed and all vulnerabilities were mitigated and prepared vulnerability assessment status reports for senior management. Prepared environments for the C A process. Provided reports and scans for certification packages.

Key Accomplishment: Significantly improved the patch management program which improved the overall security posture of the HSDN.

Confidential

As a member of the Vulnerability Incident Analysis Cell VIAC team within the Federal Bureau of Investigation's FBI Enterprise Security Operations Center ESOC , performed vulnerability assessments, threat assessment and mitigation, penetration testing and other information assurance functions on the classified network. Conducted research regarding threat environment and latest technologies. Analyzed, solved problems, tested, deployed and maintained hardware and software tools. Performed reviews, assessments, testing and scans for C A of networks, applications, and databases.Promoted awareness of security issues to management and operations via operations and program management regular meetings.

Key Accomplishments: Made multiple technology and policy recommendations to the FBI that were implemented to include development of the FBI enterprise scanning solution resulting in a significant improvements to security posture.

We'd love your feedback!