Senior Cyber Security Engineer/ Deputy Project Manager Resume
Chantilly, VA
SUMMARY:
Mission - driven Cyber Engineer with over 15 years of experience in the Information Technology industry, 5 years in support of national security and intelligence community efforts. Ability to work collaboratively with executive-level personnel and colleagues in high-pressure situations and under tight deadlines. Adjudicated for TS/SCI access with a CI polygraph.
TECHNICAL SKILLS:
Software: Microsoft (Office 2000-2013, Visio, Project, SCCM, SharePoint 2010 - 2013), Symantec Endpoint, McAfee Endpoint, HBSS, VMWare, ACAS, Nessus, AWS, XACTA, Splunk
Operating Systems: Windows 3.x - 10, Windows Server NT - 2016, MAC OS X, UNIX, Linux (RedHat5, 6, 7 and Ubuntu), Mobile (Android, IOS, Windows)
Methodologies: ITIL, Agile, Scrum, RMF, SDLC
Inspections: FISMA, CNDSP, CCRI
PROFESSIONAL EXPERIENCE:
Senior Cyber Security Engineer/ Deputy Project Manager
Confidential, Chantilly, VA
Responsibilities:
- Execute, monitor, and manage changes to project activities through the project schedule. Managed two multi-million dollar projects from cradle-to-grave that impacted over 40,000 users/systems over multiple classification enclaves; direct leadership resulted in completing both projects two months ahead of schedule.
- Coordinate priorities and allocate the appropriate resources between multiple projects to ensure projects completion time.
- Coordinate the engineering, integration, and administration functions required to successfully deliver capabilities and services to the enterprise.
- Create and manage assessment and authorization artifacts using the Risk Management Framework (RMF) process for the Host-Based Security System (HBSS) accreditation which ensured project schedules were executed ahead of proposed delivery date.
- Implement security requirementswithin an information system including system/security engineering principles, secure design, and secure architecture which ensured rapid accreditation and authorization of system prior to deployment.
- Assess security controls and vulnerability; review the adequacy of the security controls and their ability to protect the information system and its information; tailor the security controls to ensure compliance.
- Prepare briefings for upper management and the customer.
- Advise and educate junior engineers on cyber concepts and solutions.
- Deploy, configure, and document McAfee Endpoint products to support the customer’s enterprise IT security objectives for over 300 customers.
- Develop project-related documentation ranging from DODAAF views, user guides, configuration management guides, and restoration procedures.
- Update and maintain production, quality, and system health metrics of projects.
Cyber Security Engineer
Confidential, Chantilly, VA
Responsibilities:
- Coordinated the engineering, integration, and administration functions required to successfully deliver capabilities and services to the enterprise.
- Created and managed assessment and authorization artifacts using the Risk Management Framework (RMF) process for the Host-Based Security System (HBSS) accreditation.
- Assess security controls and vulnerability; review the adequacy of the security controls and their ability to protect the information system and its information; tailor the security controls to ensure compliance.
- Worked through the FISMA, CNDSP, and CCRI inspections.
- Increased the security posture of the unclassified systems by over 150% in a three month time frame re-mediating more than 1500 STIG findings before CCRI.
- Worked with customers with onboarding their systems into the enterprise environment; from request of the service, deployment, to giving the Body of Evidence at the end.
- Helped complete the on-boarding on 104 systems into HBSS which was an increase of 103% from last year’s number of 51 systems on-boarded.
- Closed over 700 customer inquiries, emails, phone calls, conference calls, and issues related to the on-boarding, O&M, policies, and continuous monitoring of HBSS.
- Integral in the creation of a new process to automate the onboarding of customers to the security services; HBSS, ACAS, and Audit.
- Prepared briefings for senior government and military personnel upper management and the customer.
- Advised and educate junior engineers on cyber concepts and solutions.
- Deployed, configured, and documented McAfee Endpoint products to support the customer’s enterprise IT security objectives.
Cyber Security Engineer
Confidential, Washington, DC
Responsibilities:
- Provided IA systems support for the design, testing and deployment of Government approved Continuous Diagnostic & Monitoring (CDM) tools.
- Designed, tested, deployed, configured, and documented McAfee Endpoint products, Tenable Security Center, and VMWare products to support the customer’s enterprise IT security objectives.
- Assessed best approaches for the implementation of CDM Tools.
- Captured and refined information security requirementsand ensured therequirements were integratedinto information systems throughout the System Development Life Cycle (SDLC).
- Interpreted government security classification guides to determine classified system requirements and prepare written instructions to facilitate proper security implementation.
- Evaluated IT configurations and documented assessment steps, results, and risks at various locations across the U.S.
- Decommissioned failing components and integrated modern components to reduce cost, improve risk management, and improve integrated performance.
- Investigated and proposed alternatives to existing software used in the development of applications.
- Created and maintained assessment and authorization artifacts using the Risk Management Framework (RMF) process for 13 assets.
- Reviewed and updated policies and associated standards, procedures, and implementation guidance to meet Federal IT solutions standards.
- Conducted structured security certification and accreditation activities for all types of Information Technology solutions.
Cyber Security Specialist
Confidential, Ashburn, VA
Responsibilities:
- Scanned 2000 servers for vulnerabilities using ACAS and Retina that allowed for a security posture increase to over 95% secure week after week.
- Conducted vulnerability assessments impacting over 30 customers; reviewed the adequacy of the security controls; tailored the security controls to ensure compliance; resulting in a 55% increase in compliance.
- Analyzed and assessed the impact and risk of detected potential threats on production systems by reviewing ongoing tools output; resulting in a 90% compliance rate.
- Provided expertise on intrusion detection/monitoring tools, and conducted trend analysis focusing on proactive identification of threats indicating potential vulnerabilities to program infrastructure.
- Implemented over 100 DISA STIGS for Windows Server 2012 R2 and RedHat6.
- Provided weekly summary briefings to program management.
Cyber Team Lead
Confidential, Ashburn, VA
Responsibilities:
- Lead a team of four Windows, Linux, and Solaris administrators in the implementation of the Host Based Security System (HBSS) across all enclaves.
- Brought 2000 servers into compliance using HBSS McAfee Agent (MA), Policy Auditor (PA), Data Loss Prevention (DLP), Host Intrusion Prevention (HIPS), Asset Configuration and Compliance Module (ACCM), and Virus Scan Enterprise/ for Linux (VSE/L).
- Delegated task orders to remediate several zero day vulnerabilities and hundreds of Retina/ACAS vulnerabilities.
- Created SOPs for installing MA, PA, DLP, HIPS ACCM, and VSE/L from HBSS ePolicy Orchestrator 4.6 to the client machines; resulting in a 25% process improvement and a 15% error reduction.
Wintel Administrator
Confidential, Ashburn, VA
Responsibilities:
- Supervised the daily activities of configuration, maintenance, patching, updating and troubleshooting over 2000 non-mission/mission servers, working with monthly DISA IAVAs, using SCCM and Red Hat Satellite Server.
- Optimized systems and resource utilization, while continuing to provide system capacity analysis and planning.
- Designed and administered programs to include policies, standards, and guidelines.
- Oversaw and reviewed the testing and implementation of software, data systems, and data networks to ensure the integrity and security of all electronic data and data systems are adequately protected.
- Brought systems into compliance pushing HBSS McAfee Agent, Policy Auditor, Data Loss Prevention, Host Intrusion Prevention, Asset Configuration and Compliance Module, and Virus Scan Enterprise/ for Linux.
Exhibit Technician 2 / IT Manager
Confidential, Virginia Beach, VA
Responsibilities:
- Responsible for the enterprise-wide information systems and networks managing all exhibit systems, accounting systems, physical security systems, cybersecurity, wiring and networks, servers and applications, hardware and core networking equipment.
- Supervised part-time employees and volunteers in the management of IT systems on the organization.
- Created user manuals for all programs created and all major improvements including how to access the wireless network and how to perform a full system recovery as well as provide end-user training.
- Coordinated cross-functional meetings of personnel related to multiple projects.
Exhibit Technician / IT Specialist
Confidential, Virginia Beach, VA
Responsibilities:
- Provided advanced technical support and maintenance of the application servers and networks including installation, configuration, troubleshooting, change requests, and tracking projects.
- Spearheaded the architectural design and implementation of a new network consisting of over 100 PCs, 12 servers, 15 cisco switches and 20 cisco wireless access points under budget.
- Developed and implemented the organizations backup policies and procedures as well as a 30-minute data recovery plan for full system operability.
- Researched, developed and implemented live camera feeds from four aquariums.
Operations Assistant
Confidential, Virginia Beach, VA
Responsibilities:
- Responsible for the enterprise-wide information systems and networks managing all exhibit systems, wiring and networks, servers and applications, hardware and core networking equipment, technical support and maintenance to include installation, configuration, and troubleshooting.
- Spearheaded the architectural design and implementation of a new network consisting of over 30 PCs, a server, six switches and 10 wireless access points on time and under budget.
- Designed and implemented a collections database and asset-tracking program for over 2000 pieces organizing and enabling better cataloging and searching on all collection and exhibit pieces.
- Created user manuals for all programs created and all major improvements including how to access the wireless network and use the collections database as well as provide end-user training.
