Sr Consultant/ It Assurance Engineer Resume
3.00/5 (Submit Your Rating)
SUMMARY:
- Expert in communicating verbally and in writing
- Analyze: dB Protect, Nessus and Web Inspect scans
- Ability to compile daily database reports to ensure the security of the system
- Proficient in XACTA and SharePoint
- Ability to identify vulnerabilities as well as risk analysis.
TECHNICAL SKILLS:
General Tools: dB Protect, Nessus, Web Inspect scans, Microsoft Word, Excel, Access
Development Tools/Languages: Java, VBA, HTML, Visual Basic
PROFESSIONAL EXPERIENCE:
Confidential
Sr Consultant/ IT assurance engineer
Responsibilities:
- Assists the Confidential team in conducting Security Control Assessments (SCA) following the NIST 800 - 53 framework for over 300 systems in offices, data centers, and medical centers across the United States.
- Document NIST 800-53 security control compliance findings within Requirements Traceability Matrixes (RTMs) and Security Assessment Reports (SARs).
- Ability to execute Security Assessments, develop and deliver supporting documentation with an aggressive timeline.
- Perform security testing to include discovery of vulnerabilities and risk analysis
- Experience executing Step 4 (Security Assessment) and step 6 (continuous monitoring) of the NIST Risk Management Framework (RMF).
- Perform security testing of web application as well as the infrastructure technology.
- Develop initial client deliverables which provide detailed information and timelines about the security control assessments to be conducted
- Support the team during on-site interviews by documenting notes about each system’s security controls and leading client interviews for some control families
- Assists in Updated IT security policies, procedures, standards, and guidelines per the respective department and federal requirements.
- Perform risk assessments, security Control Assessments, and specific security documentation using NIST SP 800-53 rev4/FIPS 200 (Security Controls), NIST SP 800-53A rev4 (Assessing Security Controls).
- Examine systems and analyze client artifacts to determine if such security control implementations are compliant with VA accreditation standards
- Create remediation strategies for weaknesses based on priorities
- Provide review and progress reports of all Plan of Action and Milestones (POA&M)
IT security Analyst
Responsibilities:
- Developed and conducted ST&E (Security Test and Evaluation) according to NIST and RMF.
- Prepared Security Assessment and Authorization (SA&A) packages to ascertain that management, operational and technical security controls adhere to NIST SP 800-53 standards.
- Drafted and oversaw the development of various audit programs, work papers and reports.
- Developed and performed test of design and operating effectiveness related to logical and physical access controls, audit logging controls, configuration/change management controls, security management controls, risk management controls; and back-up and disaster recovery controls
- Reviewing and interpreting Tenable Nessus Vulnerability and Compliance scans, WebInspect scans, and DbProtect scan
- Assisted in Updating IT security policies, procedures and standards according to NIST.
- Performed vulnerability scanning with the support of Nessus scanning tool.
- Evaluated compensating controls related to transaction processing and reporting.
- Identified risks associated with IT infrastructure, operations and applications including pre/post implementation audit reviews for ongoing IT projects along with current legacy applications.
- Accomplished information assurance control auditing to test the design of control implementation and the operating effectiveness of specific processes to ensure compliance with governing documentation and polices to meet client's requirements. Update IT security policies, procedures, standards, and guidelines according to private and federal requirements.
- Developed and/or maintained POA&Ms for all accepted risks upon completion of system SCA, including the utilization of waivers/exceptions where appropriate
Student Billing Coordinator
Responsibilities:
- Maintain student tuition records.
- Post all charges of tuition, taxis, chaperones, charge-home to student billing Software.
- Prepare and review monthly student statements.
- Reconcile weekly, General Ledger to Student Billing accounts weekly
- Responsible for collections on all receivables from student accounts, donations, summer and auxiliary programs and credit card collections
- Prepare, adjust and make journal entries to the General Ledger
- Process all payments, deposits and administer petty cash
- Assist in the preparation of yearly audit
- Serve as back-up for accounts Payable Administrator
- Maintain up-to-date knowledge of Madeira and departmental procedures
