Senior It Security Analyst Resume
2.00/5 (Submit Your Rating)
Baltimore, MD
PROFESSIONAL SUMMARY:
- Experienced IT Cybersecurity Analyst with 5+ years of experience in security tools and technologies with more emphasis in FISMA/NIST, HIPAA, PCI/DSS.
- Proven ability to identify, audit, and demonstrate risk and vulnerabilities.
- Successful in directing a broad range of corporate IT security initiatives while participating in planning, analysis, and implementing solutions in support of business objectives.
- Exceled at providing comprehensive secure network design and full life cycle project management.
TECHNICAL SKILLS:
Operating Systems: Windows, Linux, Mac OS
Programs: HTML, Python, CSS, SQL, C#, Microsoft (Excel, Word, Power point)
Tools: Nmap, Nessus, Snort, Qualys, Wireshark, Splunk, Symantec/Mcafee
PROFESSIONAL EXPERIENCE:
Senior IT Security Analyst
Confidential, Baltimore, MD
Responsibilities:
- Analyze and update System Security Plan (SSP), Risk Assessment (RA), Privacy Impact Assessment (PIA), Privacy Threshold Analysis(PTA), and the Plan Of Actions and Milestones (POA&M)
- Identify, distribute, and balance the workload and tasks amongst 12 RMF team members in accordance with established work flow
- Making sure that risks are assessed, evaluated and a proper actions have been taken to limit their impact on the Information and Information Systems
- Performing daily ongoing (A&A) Assessment and Authorization projects in support of client security systems and ensuring quality control of the A&A documents
- Specialize in the entire FISMA Risk Management Framework (RMF), A&A/C&A and system control assessment processes using FIPS 199/NIST, NIST r4/53A, NIST, preparing and reporting SSP, SAP, SAR, and POA&M
- Categorize, select, and apply appropriate information security controls for Federal Information Systems based on NIST 800 Series and FIPS Series
- Initiate plan of Action and Milestone (POAM) for the information system based on the recommendations and findings from the Security Assessment Report (SAR)
- Perform Vulnerability Scanning and Assessment using tools like Nessus and Arcsight on Kali linux
Incidence Response Analyst
Confidential - New York, NY
Responsibilities:
- Searched for vulnerabilities and performed scans on TCP/IP ports using Nessus
- Researched security services/analysis concepts, the art of penetration techniques, methodologies and procedures using NIST
- Monitored and performed various HIDS/NIDS, IPS, firewalls (Cisco ASA), routers, switch, operating systems, and other Palo Alto appliances to ensure all sensors are active
- Reviewed the Security Information and Event Management (SIEM) tool interface, as the tool correlates and aggregates alert data from multiple IDS sensor types and additional security devices
- Provided network security monitoring, reporting, and incident handling and made recommendations for preventive measures; assess network activity and system configuration for anomalous activity
- Monitored, evaluated, and assisted with the maintenance of assigned windows and mac operating systems
- Maintained and troubleshooted switch applications and network connectivity including DNS, DHCP, LAN and TCP/IP issues
Tech Support
Confidential - New York
- Installed software, configured and tested classroom Macs & PC's
- Assisted in setting up new computer equipment in classrooms and offices
- Troubleshoot hardware/software issues in conjunction with DOE policies and procedures
- Set-up and hosted training sessions to educate the teachers and staff on new software
- Acted as a technical resource in order to assist users with resolving computer issues
- Maintained, organized, and troubleshooted all computers, and other technology for administrative offices, classrooms, computer labs and laptop carts
