Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic
Ginette Rancy

Ginette Rancy

Denver,CO

Summary

A detail-oriented Security Analyst with 5 years of experience in analyzing and mitigating risks for various entities. Experienced in assessing Third Party Vendor Risk, NIST Risk Management Framework (RMF), System Monitoring, and Regulatory Compliance. Proven project executioner with an aptitude for excellent customer service and communication skills. Researches interpret, analyze, and apply regulations, policies, procedures, and resolve financial issues.

Overview

4
4
years of professional experience
1
1
Certification

Work History

Leasing Consultant

Centerspacehomes
10.2022 - Current
  • Responded to messages and inquiries from various parties and used well-developed active listening and open-ended questioning skills to promote quick issue resolution.
  • Assisted prospective tenants in paperwork completion and other logistics to facilitate smooth move-in processes.
  • Greeted clients, showed apartments, and prepared leases.
  • Collected monthly rent payments and other fees, always properly recording, and processing money.

Cybersecurity Intern

Google
08.2023 - 01.2024

• Conducted third-party cybersecurity risk assessments, applying established criteria; Information gathering, questionnaire administration, receive vendor response, risk assessment, reporting and monitoring – using RSA Archer

• Reviewed assessments performed by 3rd party and provide feedback. Define appropriate risk levels and corrective actions for issues identified

• Engaged in post assessment activities including validation of initial findings with management and business unit, follow-up on risk remediation’s and mitigation as well as process exception for high risk accepted by the business.

• Conducted risk-based audits including all aspects of the audit lifecycle, including risk assessment, planning, client coordination, fieldwork, data analysis, work paper documentation, reporting, and remediation validation, with direction from senior team members

• Evaluated key information security risks including confidentiality, integrity and availability of technology components through review of. Security operational processes, such as vulnerability management, security logging and monitoring, security incident response, and defense in depth strategies

• Conducted kickoff meetings with vendors and Third-Party Managers to help identify and understand all technology involved in their service delivery and to also establish the scope of assessment

• Reported on assessment outcomes, risk level and associated recommendations, and present issues to 3rd parties and obtain corrective action plans

• Assisted in providing compliance training to IT audit staff in accordance with the Security awareness training policy and its modules

• Requested, reviewed and validated artifacts in the form screenshots and other documentations to close out and audit item

• Collated conclusions and recommendations and present assessment findings to management regarding the effectiveness and efficiency of control mechanisms

IT Technical Support Specialist

Xerox IT Solutions
07.2020 - 07.2023

• Assisted staff and clients with network based issues, either face-to-face or over the phone,

• Supported the roll-out of new applications

• Set up systems, new users' accounts, profiles

• Tested and evaluated new technology

• Monitored and maintained computer systems and networks

• Provide user’s desktop assistance and training when necessary

  • Installed, configured and maintained computer systems and network connections.
  • Managed high levels of call flow and responded to technical support needs.
  • Patched software and installed new versions to eliminate security problems and protect data.
  • Tested new software and hardware prior to deployment.
  • Diagnosed and troubleshot hardware, software and network issues.

Education

Bachelor of Science - Cyber Security

Colorado State University
Fort Collins, CO
05-2026

Associate of Applied Science - Computer And Information Systems Security

Ashworth College
Norcross, GA
12-2024

Skills

    Risk Management Framework (RMF) SIEM Monitoring NIST 800 Series Plan of Actions and Milestone (POAM) System Security Plan (SSP) System Assessment Report (SAR) Assessment and Authorization (A&A) ATO Data Security HIPAA PCI-DSS ISO 27001SOX SOCFIPS 199 SOX Developing Security Plans Implementing security programs Implementing Security Controls Nessus Anti-Virus Tools Web Inspect Unix-Based Systems Windows 7 Windows 10 LANs WANs VPNs Routers/Switches Firewalls TCP/IP MS Office Suite MS Project CSAM ATO Access SharePoint COBIT

Certification

  • CompTIA Secuirty+
  • CISA Certification
  • ISC2 Candidate
  • IBM: Introduction to Cybersecurity Tools & Cyber Attacks
  • IBM: Network Security & Database Vulnerabilities
  • IBM: Cybersecurity IT Fundamentals Specialization
  • IBM: Penetration Testing, Incident Response and Forensics
  • Cisco: Introduction to Cybersecurity
  • Cisco: Junior Cybersecurity Analyst Career Path
  • Google Cyber Security Professional: Automate Cybersecurity Tasks with Python
  • Google Cyber Security Professional: Tools of Trade: Linux and SQL
  • Google Cyber Security Professional: Foundations of Cyber Security
  • Google Cyber Security Professional: Sound the Alarm: Detection and Response
  • Google Cyber Security Professional: Assets, Threats, and Vulnerabilities
  • Google Cyber Security Professional: Play it Safe: Manage Security Risks
  • Google Cyber Security Professional: Connect and Protect: Networks and Network Security
  • Google Cyber Security Professional: Put it to work: Prepare fir Cybersecurity Jobs

Timeline

Cybersecurity Intern

Google
08.2023 - 01.2024

Leasing Consultant

Centerspacehomes
10.2022 - Current

IT Technical Support Specialist

Xerox IT Solutions
07.2020 - 07.2023

Bachelor of Science - Cyber Security

Colorado State University

Associate of Applied Science - Computer And Information Systems Security

Ashworth College
Ginette Rancy