Summary
Work History
Education
Skills
Certification
Awards
Timeline
Generic

Carl Jackson

Ypsilanti,MI

Summary

IT professional with over 20 years of experience developing and implementing security solutions in network environments. Skilled in Auditing and Compliance with proven history of delivering exceptional risk management support.

Work History

Information Assurance Specialist

Bluewater Federal Solutions
07.2017 - Current
  • Audit and Compliance: Implemented processes to fulfill NIST requirements for government network audits
  • Managed Plans of Actions and Milestones (POAM) to help correct any audit findings in a timely manner
  • Management Interaction: Run monthly user account review meetings, and present network service findings and recommendations to stakeholders
  • Created weekly security remediation reports to review the latest security findings, provide status updates for ongoing issues and kept upper management informed for all security issues
  • Change Control Board: Ran weekly Change Control Board meetings where network changes were presented, reviewed and if needed approvals by appropriate stakeholders
  • Applications Used: Nessus, Tenable Security Center, ADAudit Plus, Nagios, AlienVault, ManageEngine Desktop Central, Cylance Antivirus
  • Policies: Perform regular reviews of all policies to ensure compliance for the annual audits

Lead Privacy and Security Auditor and Risk Analyst

Experis
11.2016 - 02.2017
  • Performed internal and third-party risk assessments
  • Evaluated systems, policies and procedures from a security perspective
  • Evaluated third parties that had access to patient information to ensure privacy requirements were met
  • Regularly reviewed HIPAA and NIST security requirements for implementing in existing or new policies and procedures
  • Reviewed and evaluated third parties for Medicare compliance

Information Systems Auditor

Central Transport
09.2011 - 09.2016
  • Created policies and procedures compliant with NIST, COBIT and SSAE-16 standards
  • Created, implemented and conducted internal audit program
  • Prepare monthly result reports on the company audit program for submission to management for review
  • Assess company physical and network security processes
  • Perform regular review of company network and systems Websense, Symantec, SQL Compliance Manager, Cisco Firewall, Windows Active Directory, Physical Access

Information Security Analyst

Integrated Communications Solutions ICS
09.2010 - 01.2011
  • Provided DOD Information Assurance Certification and Accreditation Program (DIACAP) support for US Navy
  • Updated and maintained Government Information System policies
  • Assess access controls, documented and reported findings
  • Took part in stakeholder meetings to gather information to update policies, software hardware lists, assess compliance with FISMA standards, report findings from audits

Information Systems Security Officer (ISSO)

General Dynamics Land Systems
09.2009 - 09.2010
  • Maintain, prepare and implement Information System Security Plans
  • Support and maintain documentation for special security requirements required by GCA and DSS Government Contracting Agency
  • Implement and maintain facility procedures developed by Information Systems Security Manager
  • Researched, documented and reported DIACAP requirements for network implementation
  • Determine sensitivity levels of information used on information systems and ensure proper security measures are implemented to protect the information
  • Weekly security scans and audit log reviews
  • Patch management, network administration, policy creation and review

Information Security Analyst

Integrated Communication Solutions ICS
02.2005 - 09.2009
  • Member of Network Vulnerability Analysis Team working in Security Operations Center
  • Performed weekly and monthly security scans
  • Provided Checkpoint Firewall administration for Government Enterprise Network
  • Authorized approval authority for network changes and identity management
  • Generated security incident reports when network security incidents occurred
  • Responsible for the support of existing security policies as well as creation and implementation of new security procedures

Network and Computer Support Technician

City of Battle Creek Michigan
01.2003 - 02.2005
  • Designed and implemented Windows 2000 Active Directory Services
  • Designed Security framework utilizing Active Directory and Group Policy

Education

Master of Science - Information Security and Assurance

Western Governors University

Bachelor of Science - Organizational Management

Spring Arbor University

Skills

  • Vulnerability Assessment
  • Security Awareness Training
  • Security Policies
  • Physical Security
  • Access Control
  • Incident Response
  • Network Security
  • Cybersecurity Management
  • Compliance Monitoring
  • Patch management

Certification

  • (CISSP) Information Systems Security Professional
  • (CISA) Information Systems Auditor
  • Security+ - CompTIA.


Awards

  • Honorable Discharge, United States Marine Corps
  • Honorable Discharge, Army National Guard

Timeline

Information Assurance Specialist

Bluewater Federal Solutions
07.2017 - Current

Lead Privacy and Security Auditor and Risk Analyst

Experis
11.2016 - 02.2017

Information Systems Auditor

Central Transport
09.2011 - 09.2016

Information Security Analyst

Integrated Communications Solutions ICS
09.2010 - 01.2011

Information Systems Security Officer (ISSO)

General Dynamics Land Systems
09.2009 - 09.2010

Information Security Analyst

Integrated Communication Solutions ICS
02.2005 - 09.2009

Network and Computer Support Technician

City of Battle Creek Michigan
01.2003 - 02.2005

Master of Science - Information Security and Assurance

Western Governors University

Bachelor of Science - Organizational Management

Spring Arbor University
Carl Jackson