Dynamic Senior Consultant with Booz Allen Hamilton, specializing in information security and compliance. Proven track record in conducting security assessments and developing mitigation plans, enhancing organizational cybersecurity posture. Adept at strategic planning and fostering teamwork, ensuring timely remediation of risks while maintaining a 100% completion rate for security reports.
• Conduct Security Control Assessments: Evaluate security controls for government systems, ensuring compliance with NIST 800-53 Rev 5 and RMF standards.
• Develop Mitigation Plans: Collaborate with risk specialists and system stakeholders to identify cyber risks and develop actionable mitigation plans.
• Perform Compliance Scans: Conduct security assessments and compliance scans under GRC standards, identifying control gaps and recommending remediation or risk acceptance.
• Review Authorization Packages: Assess FedRAMP authorization packages, mapping security controls to NIST 800-53 Rev 5 to ensure federal cloud security compliance.
• Prepare Security Assessment Reports: Maintain a high completion rate for security assessment reports, ensuring timely submission to the risk management tool.
• Translate Security Concepts: Communicate complex security concepts to clients, enabling them to make informed decisions to secure their systems.
• Guide Remediation Efforts: Assist clients in implementing remediations and compensating controls to reduce their risk.
• Collaborate with SMEs: Gather technical, environmental, and personnel details from subject matter experts, engineers, and cyber professionals to assess the threat landscape.
• Stay Updated on Policies: Keep abreast of applicable policies and standards to ensure assessments are current and comprehensive.
• Support Mission Systems: Take an active role in securing mission-critical systems, contributing to the protection of national assets.
• Conducting and assisting with security audits to identify vulnerabilities and enforce compliance with
DHS and federal regulations.
• Supporting the development and implementation of DHS-wide cybersecurity policies and procedures to
strengthen system reliability and mitigate risks.
• Monitoring and managing Plans of Action and Milestones (POAM) to ensure timely remediation of
identified risks and system improvements.
• Collaborate with stakeholders to address security risks, improve compliance, and strengthen DHS’s
cybersecurity posture.
• Conducted security control assessments for NASA systems, evaluating NIST 800-53 Rev 5 controls in
accordance with NIST RMF and FIPS 199 security categorization standards.
• Maintained a 100% completion rate for security assessment reports, ensuring timely submission to the
risk management tool within five days of assessment out-briefs.
• Reviewed and assessed FedRAMP authorization packages, mapping security controls to NIST 800-53
Rev 5 to ensure compliance with federal cloud security requirements.
• Performed security assessments and compliance scans under GRC standards, identifying security
control gaps and providing recommendations for remediation or risk acceptance to ensure system
security and compliance.
• Provided Tier 1 and Tier 2 technical support to 20-30 customers daily,
troubleshooting system access, network connectivity, and endpoint security issues.
• Used Active Directory (AD) to manage user accounts, provision access, and enforce security
policies for new employees within the U.S. Army Corps of Engineers organization.
• Remotely accessed users’ computers to diagnose and resolve technical issues,
ensuring secure configurations and compliance with IT security protocols.
• Collaborated with the Network Operations Security Center (NOSC) and application
teams to resolve incidents, mitigate security risks, and restore critical services.
• Processed and validated 30+ daily software requests and government phone setup
tickets, ensuring adherence to security policies and access control guidelines.
• Delivered 24/7 technical support for internal and external clients, resolving security-related incidents
and access management issues across multiple communication channels.
• Served as on-shift supervisor, enforcing cybersecurity protocols and maintaining a 99.99% SLA
compliance rate for incident response.
• Improved cybersecurity awareness by refining knowledge base articles, enhancing troubleshooting
efficiency, and reducing average call handling time to 10 minutes.
• Provided exemplary customer service by consistently exceeding performance targets and
maintaining a customer satisfaction rating of over 95%.
• Maintained a 90% first-call resolution rate by applying strong problem-solving skills to security and
system access issues.
• Played a vital role in developing and implementing new training modules, contributing to
continuously improving the customer service team's skills and knowledge.
• Utilizing BMC remedy ticketing system for incident reporting and use of knowledge base.
• Directed the launch and recovery of 35 aircraft during deployment and sea trials.
• Enforced physical security protocols, controlled access to restricted areas, and conducted routine
inspections to ensure compliance with Navy security regulations and safety procedures.
• Operated, maintained, and performed organizational maintenance on ground-handling equipment used
for moving and hoisting aircraft ashore and floating.
• Head trainer and mentor for over 40 personnel for the maintenance, management, and preservation of
life support equipment.
Systems Security Certified Practitioner (SSCP) - (ISC)2
Certified Ethical Hacker - EC2
CompTIA CySA+
CompTIA Security+
CompTIA Network+
CompTIA Project+
CompTIA A+
Linux Essentials - LPI
ITIL Foundation - PeopleCert