Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Guy Tchiango

Riverdale Park,MD

Summary

Security-focused Vulnerability Analyst with 5 years of experience in identifying, assessing, and mitigating security vulnerabilities. Highly skilled in optimizing security measures to protect organizations Assets against cyber threats while ensuring compliance with industry standards and frameworks (NIST RMF, FIPS, CSF 2.0, CIS controls, CVSS). Proficient in leveraging vulnerabilities assessment tools like (Tenable.io, Nessus, Qualys) to identify vulnerabilities within Networks,Hardwares, Applications and End-points devices for remediation. Adept at collaborating with cross-functional teams to enhance organizational security posture and to develop and implement Incident Respond Plan.

Overview

6
6
years of professional experience
1
1
Certification

Work History

VULNERABILITY MANAGEMENT SPECIALIST

Xerox
12.2021 - Current
  • Conducted vulnerability scans for the entire Xerox’s assets using Nessus and prioritizing critical findings using CVSS risk levels and business impact.
  • Collaborated with system administrators to ensure timely patch management and remediation in compliance with NIST CSF framework and Xerox’s security policies.
  • Monitored threat intelligence feeds to identifying emerging vulnerabilities and exploits.
  • Conducted security awareness training of Xerox’s employees through Knowbe4 by preventing human vulnerabilities, reducing accidental leaks or breaches, ensuring employees adhere to required standards.
  • Performed regular reviews of logs, alerts, and other sources of informations to proactivily enhance threat detection, Prioritize risks, and maintain a robust security posture.
  • Identified system misconfigurations that could lead to a breach of security or data leakage.
  • Exported and Prepared detailed vulnerability reports for the Security team and SME.
  • Reviewed and updated on an annual basis Xerox’s information security policies.
  • Collaborated closely with IT security Team to develop a robust vulnerability management program.

VULNERABILITY ANALYST

COX
12.2019 - 11.2021
  • Conducted weekly and monthly vulnerability scans and assessments using Qualys tool to identify security weaknesses.
  • Analyzed, prioritized vulnerabilities and implemented a mitigation strategy in collaboration with IT security teams.
  • Collaborated with Systems Engineers and security teams to reduce by 40% high-risk vulnerabilities the first year through proactive patching and process optimization.
  • Developed and maintained reports on security findings, tracking remediation efforts to ensure compliance with NIST, CIS Benchmarks.
  • Assisted in incident response implementation plan and conducted analysis to address security breaches.
  • Stayed up to-date on IT trends, security standards and recent Threats.

Education

Bachelor Degree in Network And Telecommunications -

University of Douala - IUT
CAMEROON

Skills

  • Vulnerability Scanning and Assessment
  • Scanning Tools (Tenableio, Nessus, Qualys ETM)
  • Network Architecture and Data Flow Diagram
  • Threat hunting
  • Threat intelligence(EPSS)
  • Awareness and Training for cybersecurity (CVSS, CVE, MITRE CVE/CWE DATA Best Practices)
  • Cloud security(CSPM)
  • Monitoring and Analyzing
  • Critical Thinking
  • Problem-Solving
  • Security Information Events (Splunk)
  • Security Standards and Frameworks (RMF, NIST CSF, CIS, MITRE ATT&CK)

Certification

  • CompTIA Security+
  • CompTIA CYSA+
  • Hands on trainings certificate in Cybersecurity(Vulnerability Management, GRC, Third Party Risk Management)

Timeline

VULNERABILITY MANAGEMENT SPECIALIST

Xerox
12.2021 - Current

VULNERABILITY ANALYST

COX
12.2019 - 11.2021

Bachelor Degree in Network And Telecommunications -

University of Douala - IUT
Guy Tchiango