Overview
Work History
Education
Skills
Certification
Generic

Matthew Stephens

Indianapolis

Overview

5
5
years of professional experience
1
1
Certification

Work History

Cybersecurity Control Assessor

Defense Industrial Base Cybersecurity Assessment Center (DIBCAC)
08.2023 - Current
  • Conducted 13+ DIBCAC High assessments, evaluating compliance with NIST 800-171, DFARS 252.204-7012, and federal cybersecurity requirements
  • Evaluated the performance of 3+ C3PAO assessors, verifying assessment consistency, objective evidence collection, and the proper application of CMMC practices and processes
  • Assessed cybersecurity policies, procedures, and technical controls to ensure adherence to industry best practices and regulatory standards
  • Assisted in verifying Controlled Unclassified Information (CUI) security controls, confirming C3PAO findings against established cybersecurity frameworks

Sr. Cyber Operations Specialist / Team Leader

Indiana Army National Guard 137th Cyber Security Company
01.2020 - Current
  • Perform network security monitoring across SIEM, IDS/IPS, and firewalls, ensuring optimal configuration to mitigate risks
  • Utilize nslookup, dig, and Google Hacking Database for reconnaissance and vulnerability identification, implementing mitigation strategies through software/hardware adjustments
  • Conduct penetration testing using Kali Linux, Metasploit, and perform vulnerability assessments with Nessus, Nikto, and other tools
  • Execute memory forensics using Volatility and conduct malware analysis in both traditional and cloud environments
  • Configure and customize Reverse HTTP shells and ICMP tunnels to establish covert communication channels and bypass network restrictions

Watch Operations System Administrator

U.S. Army 780 Military Intelligence
05.2021 - 12.2022
  • Deployed, configured, and maintained critical systems to support U.S
  • Cyber Command (CYBERCOM) and Joint Mission Operations Center (JMOC) cyberspace missions
  • Managed software installations, updates, and removals, ensuring optimal system performance and security
  • Analyzed system processes, network connections, and user issues, troubleshooting and resolving issues efficiently
  • Utilized SIEM tools to monitor infrastructure, investigate event logs, and protect confidential communications
  • Managed ticketing system operations, including change requests, user account creation, and mission preparation
  • Supported cyberspace missions by monitoring, transmitting, and receiving critical data over highly secure Top Secret networks

Education

Bachelor of Science (B.S.) - Informatics (Web Application Development Focus)

Indiana University
Indianapolis, IN
12.2018

Skills

  • Records maintenance
  • Analytical reasoning
  • Attention to detail
  • Team building

Certification

  • SANS-GIAC Penetration Tester (GPEN)
  • SANS-GIAC Certified Incident Handler (GCIH)
  • CompTIA Security+
  • CompTIA Linux+
  • CompTIA Cloud+
  • AWS Cloud Practitioner
Matthew Stephens