Summary
Overview
Work History
Education
Skills
Certification
Military Experience
Languages
References
Timeline
Generic

Ivan Claudio Amba

Washington,D.C.

Summary

DoD Secret Cleared Cyber Security Analyst with over five plus (5+) years of professional experience in Security Assessment & Authorization (A&A), System Development Life Cycle (SDLC), and System Security Monitoring. Support systems undergoing Authorization to Operate (ATO) and Information Security Continuous Monitoring (ISCM) process following the NIST Risk Management Framework (RMF). Experience in implementing all phases of the RMF process from Categorization through Continuous Monitoring process and FedRAMP. Also, highly efficient in developing and reviewing security documentations such as SSP, SAR, SAP, CMP, CP, IRP, SCRTM, POA&M, SOPs, and other Policies & Procedures.

Overview

5
5
years of professional experience
2
2
Certification

Work History

Cyber Security Analyst (ISSO)

DelTaah-Tech Consulting
04.2020 - Current
  • Cross-functional Cyber Security Engineer (ISSO) supports the Joint Service Provider (JSP) under the Defense Information Systems Agency (DISA) at the Pentagon
  • Performs ongoing Assessment and Authorization projects in support of client security systems and ensures quality control of A&A documents
  • Conducts risk assessments and collaborate with clients to provide recommendations regarding critical infrastructure, network security operations and Continuous Monitoring processes
  • Reviews Privacy Impact Assessment (PIA) document after a positive PTA is created and ensures PII findings are recorded in the System of Record Notice (SORN)
  • Evaluates threats and vulnerabilities based on tenable reports and Implement Risk Management Framework (RMF) in accordance with NIST SP 800-37
  • Categorization of information Systems using the RMF processes to ensure system Confidentiality, Integrity and Availability using FIPS 199 and NIST 800-60 Rev 1
  • Generates, review and update System Security Plans (SSP) against NIST 800-18 and NIST 800 53 requirements
  • Develops and maintains the Plan of Action and Milestones (POA&Ms) and supports remediation as well as continuous monitoring activities using existing ISCMP and NIST 800-137 Rev 1.

Information System Security Officer

Total Cyber Solutions
02.2019 - 04.2020
  • Recommend improvements in security systems and procedures.
  • Conducted security audits to identify vulnerabilities.
  • Performed risk analyses to identify appropriate security countermeasures.
  • Monitored use of data files and regulated access to protect secure information. Performed risk analyses to identify appropriate security countermeasures.
  • Investigated and resolved incidents of unauthorized access to sensitive information.
  • Educated and trained users on information security policies and procedures.
  • Kept operations in line with government regulations by carefully checking documentation.
  • Collaborated with stakeholders to define project objectives and criteria.
  • Performed gap analysis to identify areas of improvement.
  • Interacted with internal customers to understand business needs and translate into requirements and project scope.
  • Self-motivated, with a strong sense of personal responsibility.
  • Worked effectively in fast-paced environments.

Education

Bachelor of Science - Cyber Security & Computer Engineering

University of Maryland Global Campus (UMGC)

Skills

  • Team Player
  • Quick Learner
  • Very Dependable
  • Proactive
  • Pays Attention to Detail
  • Can Work Under Difficult Conditions to Meet Deadlines and Make the Client Happy
  • Excellent Communication
  • Customer Service
  • Analytical
  • Problem Solving
  • Writing/Documentation
  • Time Management
  • Interpersonal Skills
  • Root Cause Analysis
  • Information Gathering
  • Analytical Thinking

Certification

  • CISM (Active)
  • Sec+ (Active)
  • CGRC (In Progress)
  • CISSP (In Progress)


Military Experience

Small Arms/Towed Artillery Repairer, MOS-91F, United States Army Reserves, 01/2021, Present, E4, 

Active DoD Secret Clearance

Languages

English
Native or Bilingual
French
Native or Bilingual

References

Available upon request

Timeline

Cyber Security Analyst (ISSO)

DelTaah-Tech Consulting
04.2020 - Current

Information System Security Officer

Total Cyber Solutions
02.2019 - 04.2020

Bachelor of Science - Cyber Security & Computer Engineering

University of Maryland Global Campus (UMGC)
Ivan Claudio Amba