Summary
Overview
Work History
Education
Skills
Certification
Careertrack
Timeline
Generic

Darrell Wilson

Austin,TX

Summary

Dynamic cybersecurity expert with a proven track record with the Department of the Army and The Boeing Company, adept in information security and operations management. Excelled in developing and implementing robust security policies, leveraging cyber security and encryption technology skills. Demonstrated leadership in enhancing system security, achieving significant risk mitigation, and fostering team growth.

Overview

21
21
years of professional experience
1
1
Certification

Work History

Program Information System Security Manger (PISSM)

DOA Federal Employee
Austin, TX
01.2019 - Current
  • Using the RMF 6-step process to assess current and future systems for authorization to operate (ATO), and to mitigate system security threats and risks throughout the program life cycle.
  • Documenting findings and artifacts within the Enterprise Mission Assurance Support Service (eMASS).
  • Work with system owners to close vulnerabilities and open Plans of Action and Milestones (POA&Ms) in a rapid fashion, in accordance with DoD instructions and directives.
  • Review all system packages seeking an ATO under an assess and authorize (A&A), assess only, interim authority to operate (IATT), and provide guidance and feedback to system owners, authorizing officials (AOs), control assessors (CAs), and the Cyber Security Director.
  • Provide Defense in Depth principles and technology in security engineering designs and implementation under zero trust (ZT), by mapping risks to controls outlined in SP 800-53, and providing guidance to mitigate those risks.
  • Analyze existing and future systems, review security architectures, and develop engineering solutions that integrate information security requirements to manage information protection proactively.
  • Apply security risk assessment methodology to system development, including assessing and auditing network penetration testing, antivirus deployment, and risk analysis.
  • Provide guidance to subordinates on how to conduct computer incident response for information systems.
  • Provide guidance to IT professionals on how to review and assess information security events and logs via a sophisticated security information/event manager.
  • Provide guidance to subordinate team members for planning, implementing, and managing a defense in depth for the total network and/or enclaves within the network to include such items as: scanning, remediation, host and network intrusion detection/prevention, firewalls, proxy servers, web cache, virus programs, vulnerability scanning, content filtering, remote dial-in protection, host-based security services, directory services, and authorization and assessment, DoD Instruction 5200.40, accreditation guidance, and advice IAW AR 25-2 and Cyber Best Business Practices (BBPs).
  • Plan, respond, investigate, and report undisclosed classified incident remediation.

Cyber Security, Information System Security Officer (ISSO)

The Boeing Company
Dallas, TX
01.2016 - 01.2019
  • Developed and maintained system security plans (SP/SSP).
  • A functional member of the program's configuration control board (CCB) process.
  • Researched, developed, implemented, tested, and reviewed the program's information security to protect information and prevent unauthorized access using the Joint Special Access Program (SAP) Implementation Guide (JSIG) and the Risk Management Framework (RMF).
  • Provided training and information about security measures, explaining potential threats, the installation of software, the implementation of security measures, and monitoring networks.
  • Responsible for gathering information necessary to maintain security and establish functioning external barriers, such as firewalls and other security measures.
  • Define, create, and maintain documentation for the Assessment and Authorization of each information system following government requirements under the Risk Management Framework (RMF).
  • Assess the impacts of system modifications and technological advances.
  • Review systems for identifying potential security weaknesses recommend improvements to amend vulnerabilities, implement any changes, and document upgrades.
  • Design and develop tools to aid in tracking issued media (media control), daily transfers, and patch management.
  • Conducts daily and weekly auditing of Information Systems (IS) within the accredited boundary using physical inspection and SPLUNK.

System Design & Integration Specialist (IT)

The Boeing Company
St Louis, Mo
01.2015 - 01.2016
  • Identify, evaluated, and documented complex enterprise computing system requirements
  • Led activities to architect, design, build and test enterprise level delivery systems and components in a development, test, and production environment
  • Provided technical leadership to evaluate product usability, affordability, functionality, security, and performance to assess suitability for integration into delivery system environments
  • Provided technical support and consultation for the implementation and usage of complex delivery systems and desktop support when needed

Systems Engineer – Information Assurance

The Boeing Company
01.2010 - 01.2015
  • Led the development and/or deployment of program-wide computing and information security for patch management requirements, policies, standards, guidelines and procedures for multiple stakeholders, government and contracting
  • Developed a broad range of compliant information security and data protection requirements
  • Identified root causes, prioritizes threats and recommends and/or implements corrective action
  • Performed security compliance monitoring
  • Led and/or participated in security assessments and audits
  • Conducted manual testing of software to ensure it fits the purpose
  • Designed and developed middleware applications for the intended software under test
  • Found and documented bugs and issues within the software under test and recommend solutions
  • Developed and conducts ad hoc training and testing
  • Meet with system users to understand the scope of projects
  • Worked with software developers and project support teams
  • Identified business requirements
  • Writing and executing test scripts

Sr. Military Analyst
Fort Hood, Iraq
01.2004 - 01.2010
  • Functional Team Lead for System Integration, design and development
  • Conducted manual testing of software created by developers is fit for purpose
  • Designed and developed middleware applications for the intended software under test
  • Found and documented bugs and issues within the software under test and recommend solutions
  • Performed troubleshooting procedures for multiple systems and specialty coverage in a lab environment
  • Monitored product performance and made recommendations for resolution of potential issues
  • Analyzed technical data and evaluated maintenance procedures
  • Developed and conducts ad hoc training and testing
  • Meet with system users to understand the scope of projects
  • Worked with software developers and project support teams
  • Identified business requirements
  • Project planning

Education

Master of Science - Computer Science – Software Engineering

Colorado Technical University
01.2014

Masters Certificate - Advanced Information Assurance and Security – Government

Villanova University
01.2014

Bachelor of Science - Management

University of Phoenix
01.2011

Associate - General Studies

Central Texas College
01.1998

Skills

  • Microsoft Visual Studio
  • Outlook
  • Word
  • Microsoft Excel
  • PowerPoint
  • Visio
  • Access database
  • SPLUNK
  • Enterprise Mission Assurance Support Service (eMASS)
  • Visual C
  • Cloud Security
  • Operations management
  • Information security
  • Encryption technologies
  • Vendor risk management
  • Identity management
  • Report writing
  • Asset protection
  • Security policy development
  • C Programming Language
  • Visual Basic NET
  • PERL
  • Visual Basic for Applications (VBA)

Certification

  • CompTIA Security+ ce
  • Apache Bridge\Tomcat8
  • Adobe LiveCycle ES4
  • Essentials of Security (certificate of Training)
  • ITIL Foundation (certificate of Training)

Careertrack

  • DoD Federal Employee, Austin, TX, RMF Lead – Program ISSM - Army’s Futures Command, 01/01/19, Present, Using the RMF 6 step process to assess current and future systems for authorization to operate (ATO) and mitigate system security threats/risks throughout the program life cycle., Documenting findings and artifacts within eMASS., Work with system owners to close vulnerabilities and open Plan of Action and Milestones (POA&Ms) in a rapid fashion, in accordance with DoD instructions/directives., Review all system packages seeking an ATO under an assess only and provide guidance and feedback to team members and to the Deputy Cyber Security Director., Provide Defense in Depth principles and technology in security engineering designs and implementation by mapping risks to controls outlined in SP 800-53 and providing guidance to mitigate those risk., Analyze existing and future systems, review security architectures, and develop engineering solutions that integrate information security requirements to proactively manage information protection., Apply security risk assessment methodology to system development, including assessing and auditing network penetration testing, antivirus deployment, risk analysis., Provide guidance to subordinates on how to conduct Computer Incident Response Team (CIRT) activities, including forensic analysis., Provide guidance to IT professionals on how to review and assess information security events and logs via sophisticated security information/event manager., Provide guidance to subordinate team members for Planning, implementing, and managing a Defense In Depth for the total network and/or enclaves within the network.
  • The Boeing Company, Dallas, TX, Cyber Security, Information System Security Officer (ISSO), 01/01/16, 12/31/19, Developed and maintained Master System Security Plans (SSP)., A functional member of the programs configuration control board (CCB) process., Researched, developed, implemented, test and reviewed the programs information security to protect information and prevent unauthorized access using Joint Special Access Program (SAP) Implementation Guide (JSIG) and Risk Management Framework (RMF)., Provided training and information about security measures, explaining potential threats, installation of software, implementation of security measures and monitoring networks., Responsible for gathering information necessary to maintain security and establish functioning external barriers such as firewalls and other security measures., Define, create and maintain documentation for Assessment and Authorization of each information system in accordance with government requirements under the Risk Management Framework (RMF)., Assess the impacts on system modifications and technological advances., Review systems in identifying potential security weaknesses, recommend improvements to amend vulnerabilities, implement any changes and document upgrades., Design and develop tools to aid in tracking issued media (media control), daily transfers, and patch management., Conducts daily, weekly auditing of Information Systems (IS) within the accredited boundary using physical inspection and SPLUNK.
  • The Boeing Company, St Louis, MO, System Design & Integration Specialist (IT), 01/01/15, 12/31/16, Identify, evaluated, and documented complex enterprise computing system requirements., Led activities to architect, design, build and test enterprise level delivery systems and components in a development, test, and production environment., Provided technical leadership to evaluate product usability, affordability, functionality, security, and performance to assess suitability for integration into delivery system environments., Provided technical support and consultation for the implementation and usage of complex delivery systems and desktop support when needed.
  • The Boeing Company, St Louis, MO, Systems Engineer – Information Assurance, 01/01/10, 12/31/15, Led the development and/or deployment of program-wide computing and information security for patch management requirements, policies, standards, guidelines and procedures for multiple stakeholders, government and contracting., Developed a broad range of compliant information security and data protection requirements., Identified root causes, prioritizes threats and recommends and/or implements corrective action., Performed security compliance monitoring., Led and/or participated in security assessments and audits., Conducted manual testing of software to ensure it fits the purpose., Designed and developed middleware applications for the intended software under test., Found and documented bugs and issues within the software under test and recommend solutions., Developed and conducts ad hoc training and testing., Meet with system users to understand the scope of projects., Worked with software developers and project support teams., Identified business requirements., Writing and executing test scripts.
  • Fort Hood TX, Iraq, Sr. Military Analyst, 01/01/04, 12/31/10, Functional Team Lead for System Integration, design and development., Conducted manual testing of software created by developers is fit for purpose., Designed and developed middleware applications for the intended software under test., Found and documented bugs and issues within the software under test and recommend solutions., Performed troubleshooting procedures for multiple systems and specialty coverage in a lab environment., Monitored product performance and made recommendations for resolution of potential issues., Analyzed technical data and evaluated maintenance procedures., Developed and conducts ad hoc training and testing., Meet with system users to understand the scope of projects., Worked with software developers and project support teams., Identified business requirements., Project planning.

Timeline

Program Information System Security Manger (PISSM)

DOA Federal Employee
01.2019 - Current

Cyber Security, Information System Security Officer (ISSO)

The Boeing Company
01.2016 - 01.2019

System Design & Integration Specialist (IT)

The Boeing Company
01.2015 - 01.2016

Systems Engineer – Information Assurance

The Boeing Company
01.2010 - 01.2015

Sr. Military Analyst
01.2004 - 01.2010

Master of Science - Computer Science – Software Engineering

Colorado Technical University

Masters Certificate - Advanced Information Assurance and Security – Government

Villanova University

Bachelor of Science - Management

University of Phoenix

Associate - General Studies

Central Texas College
Darrell Wilson