Summary
Overview
Work History
Skills
Certification
Timeline
Generic

Cherena Covington

Woodbridge,USA

Summary

I am a dedicated and highly skilled technical professional with over 11 years of comprehensive experience. I have a strong background in planning, project management, and communication. I excel in conducting system repairs and troubleshooting in areas such as Network, Desktop Engineer, SCCM, Database SQL, Technical Security (ESS), RMF, System Administrator, and Linux Administrator. As an analytical and systematic system administrator, I have a proven track record of ensuring a highly available and secure environment.

Overview

13
13
years of professional experience
1
1
Certification

Work History

EndPoint CyberSecurity Engineer 4

CACI International
Springfield, VA
01.2025 - Current
  • Architect, Design, Build, Configure, and deploy on-premises and cloud-based cybersecurity infrastructure and applications running on Windows and Linux operating systems
  • Engineer and implement cybersecurity solutions leveraging cloud services such as EC2, EBS, ELB, S3, and RDS. Provision AMIs, perform software installations, troubleshooting and maintenance.
  • Assist with research and implementation of enterprise-wide cybersecurity solutions/capabilities/enhancements to support customer business/mission goals and objectives.
  • Evaluate and recommend changes and/or technology upgrades to address performance, standardization and industry best practices
  • Provide specific, detailed information for hardware and software selection, implementation techniques, and tools for the most efficient solution to meet business needs, including present and future capacity requirements.
  • Represent customer requirements in technical exchanges with other government agencies.
  • Develop and maintain architecture diagrams.
  • Develop and maintain a road map for capabilities, operations, and technologies.
  • Assist with development and execution of test plans and supporting documentation of all network configuration upgrades, additions or revisions for customer approval before implementation.
  • Coordinate with stakeholders and external assessors to facilitate security assessments and authorization processes.

JWICS SME (HBSS, ACAS AND MDE) ENDPOINT SECURITY

NETOPS SOLUTIONS INC
Alexandria, VA
06.2020 - 09.2024
  • Support the Enterprise Cyber Security Team on quarantine systems in various states of the life cycle (needing patches, updates, NIC Cards, KMV etc.)
  • Document tools, techniques, and procedures (TTP) for all levels of IT support personnel
  • Aid included pushing updates, removing files, and making sure systems are in the correct OU in active directory
  • Ensured the VIP and JSP user are receiving the proper patching updates and resolving issues impacting the different agencies
  • Implement changes to code, scripts, and configurations for new developments, bug fixes, enhancements and installations using best practices
  • Monitor system performance, event logs and security logs for workstations and peripherals
  • Provide support with Cyber Security Splunk ATO dashes boards
  • Perform client-level support on enterprise systems using centralized systems such as Active Directory with a solid foundation in applying group policies
  • Responsible for opening, tracking, and closing incent response ticket
  • Ensure problem ownership working with Cyber Security Team
  • Monitor the Voicemail box and create a ticket or update a current ticket with the information from the voicemail that is received
  • Utilize data at hand to make expert decisions and recommendations on how to resolve, improve, or prevent network problems/issues
  • Contribute to crisis management situations (outages, virus outbreaks, and in high-pressure environments) with creative solutions, techniques, and best practices.
  • Based on the provided work history and responsibilities for the Subject Matter Expert role at NETOPS SOLUTIONS INC, here are six original resume statements that reflect high-impact responsibilities missing from the existing work history:

OPERATOR

Raytheon/IG, NGA
Springfield, VA
12.2021 - 05.2022
  • Support a prototype email system plus a critical operational system
  • Monitoring several systems and mail inboxes and performing secure data transfers between them.
  • **Facilitate** secure data transfers across multiple platforms while adhering to established data protection standards.

SENIOR CYBERSECURITY (HBSS)

GDIT
Alexandria, VA
08.2019 - 06.2020
  • Support the Enterprise Cyber Security Team on quarantine systems in various states of the life cycle (needing patches, updates, NIC Cards, KMV etc.)
  • Document tools, techniques, and procedures (TTP) for all levels of IT support personnel
  • Aid included pushing updates, removing files, and making sure systems are in the correct OU in active directory
  • Ensured the VIP and JSP user are receiving the proper patching updates and resolving issues impacting the different agencies
  • Implement changes to code, scripts, and configurations for new developments, bug fixes, enhancements and installations using best practices
  • Monitor system performance, event logs and security logs for workstations and peripherals
  • Provide support with Cyber Security Splunk ATO dashes boards
  • Perform client-level support on enterprise systems using centralized systems such as Active Directory with a solid foundation in applying group policies
  • Responsible for opening, tracking, and closing incident response ticket
  • Ensure problem ownership working with Cyber Security Team
  • Monitor the Voicemail box and create a ticket or update a current ticket with the information from the voicemail that is received
  • Utilize data at hand to make expert decisions and recommendations on how to resolve, improve, or prevent network problems/issues
  • Contribute to crisis management situations (outages, virus outbreaks, and in high-pressure environments) with creative solutions, techniques, and best practices.
  • Implement incident response protocols during security incidents, ensuring timely resolution and minimal impact on operations.

SYSTEM ADMINISTRATOR (SOC ANALYST) PARTTIME

Lynxnet
Fort Belvoir, VA
05.2016 - 06.2019
  • Support day-to-day cybersecurity threat detection and incident response operations through indicator pivoting, campaign analysis, and tactical intelligence
  • Identify and enhance processes where automation has the potential to improve efficiencies, provide actionable data, and facilitate collaboration across INSCOM
  • Leverage Security Orchestration, Automation, and Response (SOAR) or Security Information and Event Management (SIEM) tools to identify threat patterns, enrich investigations, and build automation-supported workflows
  • Deconstruct multi-source reporting into actionable intelligence including Tactics, Techniques, and Procedures TTPs data objects, campaign analysis, and threat patterns
  • Regularly analyze malware reports to track adversary behaviors and support the construction of a TTP repository
  • Conduct time-sensitive analysis during cyber investigations, including active threat hunting, malware analysis, and campaign enrichment
  • Routinely identify gaps in detection and collaborate with teams across the Cyber organization to mitigate risk, including blocking malicious indicators, tuning vendor signatures, and instrumenting custom detection rules
  • Respond and resolve cyber security incidents and proactively prevent recurrence of these incidents
  • Apply leading-edge principles, theories, and concepts
  • Contribute to the development of new principles and concepts
  • Work on unusually complex problems and provide highly innovative solutions
  • Operate with substantial latitude for unreviewed action or decision
  • Mentor or supervise employees in both firm and technical competencies.
  • **Configure** and maintain user accounts and permissions in Active Directory to ensure secure access controls.

CYBER SECURITY SPECIALIST

Lynxnet
Fort Belvoir, VA
05.2016 - 06.2019
  • RMF (Risk Management Frame package)
  • Apply the NIST Special Publication 800-37 Rev 2 Risk Management Framework (RMF) process to information systems and applications currently being assessed or developed by our company for use in the U.S
  • Federal government, especially the Department of Defense (DoD)
  • Lead information assurance audits to examine potential security violations and determine if any employee has been violated, breached, or circumvented the installation campus area network (I-CAN)
  • Recommend changes with industry best practices and provide report to the ISSM
  • Develop RMF documentation as required to prepare products and systems for submission to an ATO authority
  • Provide recommendations on how RMF products can be used to prepare for other processes
  • Formulate plans and schedules to conduct either portions or all the RMF process on selected products
  • Conduct and guide the analysis needed to gather information needed to produce RMF artifacts
  • Formulate plans and schedules to conduct either portions or all the RMF process on selected products.

CYBER COMPLIANCE MANAGER (HBSS ADMINISTRATOR) AND (ACAS ADMINISTRATOR) OVERSEER

Lynxnet, 8825
Fort Belvoir, VA
05.2016 - 06.2019
  • Provide integration and operational support for vulnerability remediation of distributed systems using tools such as
  • McAfee’s Host Based Security System (HBSS) and Microsoft System Center Configuration Manager (SCCM), including scripting support
  • Perform client-level support on enterprise systems using centralized systems such as Active Directory with a solid foundation in applying group policies
  • Recommend and implement security mitigation technologies and strategies using automated and semi-automated systems on MS Windows based platforms
  • Support daily activities related to operations, security, and performance of information systems, including (but not limited to) communication systems, databases, software firewalls, and other technologies that require ongoing management of workstations
  • Test and apply security and update patches and other preventive maintenance activities in a robust environment within expected timelines
  • Verify that desktop products and common workgroup devices follow applicable IT security policies, procedures, and guidelines
  • Monitor system performance, event logs and security logs for workstations and peripherals
  • Implement changes to code, scripts, and configurations for new developments, bug fixes, enhancements and installations using best practices
  • Utilize data at hand to make expert decisions and recommendations on how to resolve, improve, or prevent network problems/issues
  • Contribute to crisis management situations (outages, virus outbreaks, and in high-pressure environments) with creative solutions, techniques, and best practices
  • Be prepared to respond to crisis situations outside of normal duty hours
  • Document tools, techniques, and procedures (TTP) for all levels of IT support personnel
  • Produce formal documentation products such as project plans, release documents and test plans, IT systems concept of operations, technical assessments, implementation plans, patching solutions, and similar sets of documentation.

CHANGE, ASSET, CONFIGURATION MANAGEMENT

CACI
Stafford, VA
06.2015 - 05.2016
  • Provide Configuration Management (CM) support for the Department of Defense (DoD), DSS, Information
  • Co-manage projects as assigned by the Change, Configuration & Asset Management Lead to ensure contract
  • Determine configuration requirements and develop system configuration procedures
  • Process and update Change Requests (CRQs), Information Assurance Vulnerability Management (IAVM)
  • Requirements, Configuration Items (CIs), and the Approved Product Lists (APL) to ensure software and hardware compliance
  • Develop process improvements to enhance configuration efficiency
  • Develop and maintain CM tools and support configuration identification, control, reporting, release and delivery of products and systems
  • Developing procedures for establishing configuration baselines as reference points for rebuilds and provide ability to revert to stable configuration states
  • Standardizing/Improvising ITIL processes and functions’ implementations in large complex IT environment
  • Establishing and executing strategic and tactical plans for a full-scale implementation of the ITIL/ITSM framework using industry standard ITSM tools.

PROPRIETARY SYSTEM SPECIALIST/QUEUE MANAGER

CACI
Stafford, VA
08.2014 - 06.2015
  • Monitor the IT services queue and assign tickets to the team or service Desk Management
  • Monitor the Mailbox and create a ticket or update a current ticket with the email that is received
  • Monitor the Voicemail box and create a ticket or update a current ticket with the information from the voicemail that is received
  • Image bench stock laptops and desktops
  • Maintain file servers, network access
  • Documents and analyzes system anomalies to ensure optimum equipment performance
  • Troubleshoot problems for customer specific information systems and application
  • Defines and classifies level, priority, and nature of problem; request and/or issue
  • Responsible for opening, tracking and closing trouble tickets
  • Perform installing, configuration, and patching of end – user computers
  • Provide guidance and resolutions to a broad range of over 2,000 customers
  • Assist with Army installation personnel in the implementation of Enterprise Environmental Safety and
  • Occupational Health Management Information System (EESOH-MIS)
  • Responsible for opening, tracking and closing trouble tickets
  • Ensure problem ownership and promote customer satisfaction
  • Led EESOH-MIS implementation teams and coordinated with Installations POC's

HELPDESK

NCI Information
Stafford, VA
10.2013 - 08.2014
  • Monitored and responded to hardware and software problems utilized a variety of hardware and software testing tools and techniques.
  • Installed and configured application software and related hardware (e.g., desktops, servers, and related peripherals like printers, scanners, drivers, monitors and video teleconferencing.
  • Posses’ solid understanding and practical experience in customer support operations help desk operations.
  • Desktop support operation and provision and re-provision of technology training.
  • Provide software and system troubleshooting and support.
  • Solved technical or operational problems and evaluated option based on relevant information, resources, experience, and knowledge.
  • Communicated clearly and concisely, both orally and in writing.
  • Managed various Microsoft Office Applications. (e.g., Office 2007 and 2010.)
  • Installed, configured and managed the following operating systems: Windows 7 enterprise, Windows XP SP3, Windows Server 2008 R2 and Windows Server 2003.

Skills

  • Endpoint protection
  • Operating system security
  • Security auditing
  • Compliance management
  • Patch management
  • Two-factor authentication
  • Database security
  • Vulnerability assessment
  • Data loss prevention
  • Intrusion detection
  • Disaster recovery planning
  • Access control
  • Incident response

Certification

  • Top Secret/SCI w CI POLY
  • MDE
  • ESS 201 and 301
  • MCSE
  • 740: Installation, Storage and Compute with Windows Server 2016
  • 741: Networking with Windows Server 2016
  • 742: Identity with Windows Server 2016
  • 744: Securing Windows Server 2016
  • MCSA 2016
  • DLP
  • Security+ (IAT Level 2 as defined by DoD 8570.01-M)
  • CASP (IAT Level 3 as defined by DoD 8570.01-M)
  • ITILv3
  • CEH v10
  • HBSS 201 Certified by DISA
  • HBSS 301 Advance Certified by DISA
  • HBSS Operational Training
  • ACAS 4.6 Certified by DISA
  • Splunk Infrastructure Overview 6.x
  • Splunk 7.2 Fundamentals Part 2 Dedicated Virtual
  • Facility Security Officer Management Program
  • National Industrial Security Program Operating Manual (NISPOM) Chapter 8
  • Information System Security Basics
  • ISSO Compliance Officer

Timeline

EndPoint CyberSecurity Engineer 4

CACI International
01.2025 - Current

OPERATOR

Raytheon/IG, NGA
12.2021 - 05.2022

JWICS SME (HBSS, ACAS AND MDE) ENDPOINT SECURITY

NETOPS SOLUTIONS INC
06.2020 - 09.2024

SENIOR CYBERSECURITY (HBSS)

GDIT
08.2019 - 06.2020

SYSTEM ADMINISTRATOR (SOC ANALYST) PARTTIME

Lynxnet
05.2016 - 06.2019

CYBER SECURITY SPECIALIST

Lynxnet
05.2016 - 06.2019

CYBER COMPLIANCE MANAGER (HBSS ADMINISTRATOR) AND (ACAS ADMINISTRATOR) OVERSEER

Lynxnet, 8825
05.2016 - 06.2019

CHANGE, ASSET, CONFIGURATION MANAGEMENT

CACI
06.2015 - 05.2016

PROPRIETARY SYSTEM SPECIALIST/QUEUE MANAGER

CACI
08.2014 - 06.2015

HELPDESK

NCI Information
10.2013 - 08.2014