Summary
Overview
Work History
Education
Skills
Certification
Security Clearance
Timeline
Generic

Erica Payton

Tampa,USA

Summary

Cybersecurity and Information Technology professional delivering secure, scalable technology solutions within Department of Defense, federal, and enterprise environments. Led successful cybersecurity programs, implemented security controls, and managed compliance initiatives while supporting mission-critical systems in alignment with NIST and DISA requirements. Translated complex technical and regulatory requirements into practical solutions to enhance operational efficiency and build strong partnerships with stakeholders.

Overview

1
1
Certification
12
12
years of professional experience

Work History

Senior Cybersecurity Manager

Seneca Holdings
Tampa, FL
10.2025 - 06.2026
  • Spearheaded enterprise cybersecurity operations and governance initiatives supporting Department of Defense (DoD) and federal information systems across classified and unclassified environments.
  • Led multidisciplinary cybersecurity teams responsible for Risk Management Framework (RMF) implementation, continuous monitoring, vulnerability management, and enterprise security compliance across multiple systems and networks.
  • Directed the full Authorization to Operate (ATO) lifecycle, ensuring compliance with NIST SP 800-53, DISA STIGs, DoD 8500, DoD 8510, and other federal cybersecurity requirements.
  • Championed enterprise vulnerability management and remediation efforts with ACAS/Tenable, facilitating timely mitigation of security findings and maintaining audit readiness and continuous monitoring.
  • Advised executive leadership on cybersecurity strategy and risk posture, identifying compliance deficiencies and recommending program improvements to enhance organizational security.
  • Orchestrated cross-functional collaboration among system administrators, cloud engineers, ISSOs, network engineers, and program stakeholders to implement secure architectures and enforce cybersecurity controls.
  • Governed development and maintenance of cybersecurity documentation, including System Security Plans (SSPs) and Security Assessment Reports (SARs), ensuring alignment with federal and DoD standards.
  • Facilitated cybersecurity inspections, RMF assessments, compliance audits, and accreditation activities by maintaining eMASS records, coordinating assessment efforts, and ensuring the accuracy of enterprise GRC documentation.
  • Engineered, deployed, and maintained secure VMware vSphere 7.0 virtualized environments supporting TACLAN 20.2X infrastructure for Department of Defense mission systems.
  • Designed, configured, and administered VMware ESXi hosts, virtual machines, virtual networking, vCenter, vMotion, and vSAN storage solutions to maximize system performance, scalability, resilience, and high availability.
  • Built and managed Windows Server 2022 virtual environments supporting Active Directory Domain Services (AD DS), DNS, DHCP, File and Storage Services, Group Policy, and enterprise network services.
  • Integrated TACLAN virtual infrastructure with secure VLANs, encrypted network tunnels, and TACLANE encryption devices, ensuring secure communications across classified and unclassified environments.
  • Validated interoperability among TACLAN infrastructure, routers, switches, servers, and VMware-hosted systems while executing installation, configuration, testing, and operational validation in accordance with TACLAN System Administration Guides (SAG), Operations & Maintenance (O&M) manuals, and installation procedures.
  • Performed system verification by validating virtual machine functionality, network connectivity, application performance, disaster recovery readiness, and security configurations following deployment.
  • Applied DoD cybersecurity best practices, DISA STIGs, security hardening, and encryption policies to VMware environments supporting RMF compliance, ATO sustainment, and secure mission operations.
  • Produced technical documentation, system configuration baselines, standard operating procedures (SOPs), implementation guides, and maintenance documentation supporting accreditation, sustainment, and operational readiness.
  • Trained system administrators and technical personnel on VMware administration, TACLAN infrastructure management, troubleshooting methodologies, and cybersecurity best practices.
  • Collaborated with cybersecurity teams, systems engineers, network engineers, cloud architects, and program leadership to deliver secure, resilient virtualization and enterprise infrastructure solutions supporting critical federal and defense missions.

Senior Cyber Compliance Management

Leidos
MacDill AFB, Florida
08.2024 - 10.2025
  • Led development and standardization of enterprise cybersecurity governance processes supporting risk management framework, ensuring scalable workflows that enhanced consistency across authorization to operate lifecycle and strengthened compliance with NIST SP 800-37, NIST SP 800-53, and DoD RMF requirements.
  • Performed compliance risk assessments to identify vulnerabilities, evaluate control deficiencies, and assess organizational risk. Implemented control measures that reduced compliance risks and ensured adherence to federal cybersecurity regulations.
  • Validated DISA Security Technical Implementation Guides (STIGs) across various systems and collaborated with system administrators to remediate non-compliant configurations while maintaining audit-ready compliance records.
  • Managed analysis, tracking, and remediation of Information Assurance Vulnerability Management notices through the DISA IASE portal. Coordinated remediation activities with technical teams to resolve vulnerabilities within compliance timelines.
  • Collaborated with information system owners, cybersecurity engineers, and cloud teams to analyze security processes, define standardized workflows, and establish governance procedures that improved cross-functional collaboration and enterprise adoption of RMF best practices.
  • Conducted current-state and future-state analyses of cybersecurity operations, identifying process inefficiencies and compliance gaps. Developed recommendations that streamlined authorization activities and improved operational efficiency.
  • Authored comprehensive process documentation including SOPs, process maps, workflow diagrams, RACI matrices, and security playbooks that defined stakeholder roles and responsibilities throughout RMF lifecycle.
  • Developed executive dashboards and performance metrics using Microsoft Excel and Power BI to provide leadership with insights into RMF package status, vulnerability remediation progress, and overall cybersecurity performance.

Cybersecurity Specialist (JWICS SCA)

Federal Information System
MacDill AFB, Florida
02.2024 - 08.2024
  • Validated security controls for 16 mission-critical programs, ensuring compliance with DOD RMF and NIST SP 800-53.
  • Assessed and remediated 23 RMF security packages, expediting authorization to operate approvals and reducing accreditation timelines.
  • Directed continuous monitoring activities for risk management framework supporting special operations forces on JWICS classified networks.
  • Collaborated with ISSOs, system administrators, security engineers, and auditors to maintain accreditation compliance.
  • Managed ATO and authority to connect submission packages through EMASS and Xacta, ensuring audit-ready authorization.
  • Oversaw and resolved security findings to maintain accreditation standards across all systems.
  • Authored and maintained RMF documentation, including system security plans, security assessment reports, and plans of action.
  • Streamlined documentation processes, improving clarity and accessibility of security artifacts.

System Administrator for Executive Directors

Jacobs Technology
MacDill AFB, Florida
10.2022 - 02.2024
  • Administered comprehensive Tier II/III systems administration for DoD executives, ensuring seamless access to critical resources.
  • Acted as primary technical advisor for executive teams, diagnosing hardware and software issues to minimize operational disruptions.
  • Managed Windows Server and Active Directory environments by overseeing user accounts and security configurations for enterprise operations.
  • Configured executive workstations and mobile devices to comply with DoD cybersecurity standards, ensuring secure functionality.
  • Installed and maintained Cisco VoIP phones and video conferencing systems, enhancing executive communication capabilities.
  • Supported network infrastructure by configuring routers, switches, and troubleshooting connectivity issues across the enterprise.
  • Executed system hardening measures and vulnerability remediation according to DISA guidelines to ensure compliance with security policies.
  • Produced detailed technical documentation to enhance organizational knowledge management and support audit processes.

Service Desktop Technician

United States Postal Services (USPS)
Tampa, Florida
10.2014 - 10.2022
  • Delivered Tier II enterprise technical support for more than 10,000 domestic and international users across a large-scale Microsoft enterprise, ensuring secure access to mission-critical applications, Windows workstations, Microsoft 365 services, and corporate network resources while meeting established Service Level Agreements (SLAs).
  • Resolved an average of 35–50 technical incidents daily, achieving an 80% first-call resolution rate by performing advanced troubleshooting of Windows operating systems, Active Directory authentication, Microsoft Outlook/Exchange, Microsoft Office, VPN connectivity, network printing, DNS, DHCP, TCP/IP, and enterprise application issues.
  • Administered over 9,000 Identity and Access Management (IAM) requests, including user provisioning, deprovisioning, password resets, and security group management, enforcing least-privilege and separation-of-duties principles to enhance organizational security.
  • Utilized Microsoft Active Directory Users and Computers (ADUC), Group Policy Management Console (GPMC), and other tools to diagnose and resolve enterprise infrastructure issues, ensuring minimal disruption to user operations.
  • Performed root cause analysis on complex workstation, application, and network failures by analyzing Windows Event Viewer logs, system performance metrics, registry configurations, service dependencies, and network communication using command-line diagnostic utilities including ipconfig, nslookup, netstat, tracert, ping, gpupdate, gpresult, net use, and PowerShell.
  • Configured, deployed, and supported Windows desktops, laptops, thin clients, printers, scanners, mobile devices, docking stations, and peripheral equipment while maintaining secure baseline configurations and compliance with organizational cybersecurity policies.
  • Diagnosed and resolved enterprise network connectivity issues involving Cisco switches, routers, VPN gateways, wireless access points, TCP/IP configuration, DNS resolution, DHCP lease failures, and network authentication, coordinating with Network Operations teams to restore service availability.
  • Supported Microsoft Exchange and Microsoft 365 environments by troubleshooting mailbox connectivity, Outlook profile corruption, email routing issues, shared mailbox permissions, mobile device synchronization, and calendar access problems.
  • Leveraged SCCM and enterprise software deployment solutions to install operating system updates, security patches, application packages, and software upgrades while validating successful deployment and minimizing business disruption.
  • Investigated security incidents related to compromised accounts and policy violations, collecting diagnostic information and preserving audit data to support escalation to Cybersecurity Operations and Incident Response teams.
  • Collaborated with Systems Administrators, Cybersecurity Engineers, Network Engineers, Messaging Administrators, and Enterprise Infrastructure teams to troubleshoot complex cross-functional issues, support infrastructure upgrades, and improve enterprise service reliability.

Education

BACHELOR OF SCIENCE - Network Engineering & Security

Western Governors University
UT
01-2027

Certificate - Computer Networking

New Horizons Computer Learning Center
Tampa, FL
08-2022

ASSOCIATE OF SCIENCE - Information Technology

St. Petersburg College
FL
05-2022

Skills

  • Risk Management Framework (RMF)
  • Authorization to Operate (ATO)
  • Authority to Connect (ATC)
  • NIST SP 800-37
  • NIST SP 800-53
  • DoD security standards
  • DISA STIGs
  • STIG Viewer
  • Security assessment
  • Continuous monitoring
  • Control validation
  • POA&M management
  • Security plans
  • Assessment reports
  • Risk Assessments
  • Security Governance
  • Control Inheritance
  • Security Compliance
  • eMASS
  • XACTA
  • GRC Platforms
  • Audit Readiness
  • Policy Development
  • Configuration Management
  • Change Management
Vulnerability Management
  • ACAS/Tenable Security Center
  • Nessus
  • HBSS
  • Vulnerability assessments
  • Vulnerability remediation
  • IAVM compliance
  • DISA IASE Portal
  • Security Hardening
  • Patch Management
  • Endpoint Hardening
  • Baseline validation
Systems Administration
  • Windows Server 2016/2019/2022
  • Windows 10/11 Enterprise
  • Active Directory
  • Group Policy (GPO)
  • DNS
  • DHCP
  • DFS
  • NTFS Permissions
  • RBAC
  • Endpoint management
  • Office 365 admin
  • Exchange Online
  • Azure Active Directory
  • BitLocker
  • Windows Event Viewer
  • PowerShell
  • Remote Desktop Services (RDP)
Virtualization & Cloud
  • VMware vSphere 7
  • VMware ESXi
  • VMware vCenter
  • VMware vMotion
  • VMware vSAN
  • Hyper-V
  • AWS
  • Microsoft Azure
  • Azure Security Center
  • Virtual Machine Deployment
  • Virtual Networking
  • Storage Administration
Networking & Infrastructure
  • Cisco Routers/Switches
  • VPN Technologies
  • VLAN Configuration
  • DHCP Administration
  • Routing & Switching
  • Network Security
  • IDS/IPS
  • Secure Communications
Operating Systems
  • Windows Server
  • Red Hat Enterprise Linux (RHEL)
  • Ubuntu Linux
  • macOS
Security Operations
  • IBM QRadar
  • SIEM Monitoring
  • Log Analysis
  • Event investigation
  • Incident Response
  • Root cause analysis
  • Endpoint Protection
Enterprise Tools
  • ServiceNow
  • SharePoint
  • Microsoft Excel
  • Microsoft Power BI
  • Azure DevOps
  • Git
  • SCCM (Microsoft Configuration Manager)
  • Microsoft Office 365
Engineering and Business Analysis
  • Systems Engineering
  • Infrastructure design
  • Architecture support
  • Process Mapping
  • State analysis
  • Workflow Design
  • Requirements Gathering
  • Stakeholder Management
  • RACI development
  • SOP development
  • Technical Documentation
  • Executive Reporting
  • KPI reporting
  • Cross-functional collaboration

Certification

  • CompTIA CASP+ (Security X)
  • CompTIA CySA+
  • CompTIA Cloud+
  • CompTIA Security + CE
  • CompTIA Network+
  • CompTIA A+
  • CompTIA Project+
  • Microsoft Azure Admin (AZ-104)
  • Linux Essentials
  • DISA ACAS Operator & Supervisor Course (Tenable)
  • DISA Enterprise Mission Assurance Support Service (eMASS) Training

Security Clearance

ACTIVE Top Secret/SCI

Timeline

Senior Cybersecurity Manager

Seneca Holdings
10.2025 - 06.2026

Senior Cyber Compliance Management

Leidos
08.2024 - 10.2025

Cybersecurity Specialist (JWICS SCA)

Federal Information System
02.2024 - 08.2024

System Administrator for Executive Directors

Jacobs Technology
10.2022 - 02.2024

Service Desktop Technician

United States Postal Services (USPS)
10.2014 - 10.2022

BACHELOR OF SCIENCE - Network Engineering & Security

Western Governors University

Certificate - Computer Networking

New Horizons Computer Learning Center

ASSOCIATE OF SCIENCE - Information Technology

St. Petersburg College
Erica Payton