Summary
Overview
Work History
Education
Skills
Tools/Technologies
Certification
Timeline
Generic

Jacqueline Wilson

Jacksonville,FL

Summary

Experienced Information Security professional with a broad background in government and commercial security and privacy practices. 20 year's experience in a Medicare Administrative Contractor environment; including three years of System Security Officer (SSO) experience.

Overview

23
23
years of professional experience
1
1
Certification

Work History

SSO / Sr. Mg Security, Audit & Policy

GuideWell Source
Jacksonville, FL
06.2014 - Current


  • Work in tandem with CISO to develop the information security strategy and roadmap
  • Develop and maintain presentations for CIO to present the organization security posture to executive leaders and board of directors
  • Managed security project resources within schedule and budget
  • Managed SIEM, IGL&L/IAM, MFA, PAM and GRC teams and tools; including vendor patches and product upgrades
  • Partnered with internal cross-functional teams to implement NIST 800-53 operational processes
  • Governed vulnerability management remediation in adherence to Cybersecurity & Infrastructure Agency (CISA) Continuous Diagnostic Monitoring program; including executive orders and HHS Binding Operational Deliverables (BOD)
  • Conducted reviews to verity compliance to Contractor Performance of INternal Controls (CPIC) standards
  • Conducted system and physical access recertifications in accordance to established review schedules
  • Monitor completion of business continuity tabletop and disaster recovery exercises
  • Provide direction and replacement prioritization for End-of-Life technology components in accordance to Health and Human Services (HHS) EOL standards
  • Developed and maintained Plan of Action and Milestones (POA&M) corrective action plans
  • Maintained Security Awareness Training curriculum. Trained organizational staff upon hires and annually
  • Maintained Information Security and Privacy policies, standards and procedures
  • Governed implementation and maintenance of federal and vendor systems configuration benchmarks (ie; DISA STIGs, CIS, USGCB, vendor best practices)
  • Developed and maintained System Security Plan(s) (SSP), Information Security Risk Assessment plans (ISRA) and IT Security Continuity plans (ITSCP) for three Medicare systems
  • Managed pre, fieldwork and post internal and external audit activities
  • Established team goals and performed periodic coaching/mentoring, individual, development plans and annual performance evaluations


Sr, Systems Security Analyst

Diversified Service Options, Inc
JACKSONVILLE, FL
03.2012 - 09.2013
  • Oversaw security and IT support for internal and external audit reviews
  • Maintained Authority to Operate (ATO) compliance documentation
  • Led compliance projects to implement HIPAA, Model Audit Rule (MAR) and DISA STIG requirements


Project Manager II/ Sr. Security Analyst

Blue Cross Blue Shield Of Florida
JACKSONVILLE, FL
01.2001 - 03.2012
  • Led workgroups to implement security projects
  • Utilized change management tools and processes to implement security software updates
  • Conducted risk analysis reviews to identify operational control weaknesses and develop mitigation plans.
  • Maintained compliance documentation in CMS GRC systems (CISS and CFACTS)
  • Acted as department liaison for internal and external security compliance audits (SOX, MAR, HIPPAA, SSAE16, 18 /SOC2)
  • Performed Role Based Access Control (RBAC) administration for Mainframe, UNIX and Windows

Education

Associate of Science - Networking Services Technology

Florida State College At Jacksonville
Jacksonville, FL
08.2005

Skills

  • Risk Assessment
  • Compliance Monitoring
  • Government Auditing Standards
  • Configuration Management
  • Internal Controls Analysis
  • Vulnerability Assessments
  • Vulnerability Management
  • Asset Lifecycle Management

Tools/Technologies

RSA Identity Governance & Lifecycle (IG&L), RSA Archer, RSA SecurId Multi-Factor Authentication (MFA), Personal Identity Verification (PIV), Beyond Trust Privilege Access Manager (PAM), Splunk, DISA STIGs, NIST Standards (800-53, 800-171, 800-88)

Certification

  • CISSP - Certified Information System Security Professional
  • CISM - Certified Information Systems Manager
  • ECIH - EC-Council Certified Incident Handler

Timeline

SSO / Sr. Mg Security, Audit & Policy

GuideWell Source
06.2014 - Current

Sr, Systems Security Analyst

Diversified Service Options, Inc
03.2012 - 09.2013

Project Manager II/ Sr. Security Analyst

Blue Cross Blue Shield Of Florida
01.2001 - 03.2012

Associate of Science - Networking Services Technology

Florida State College At Jacksonville
  • CISSP - Certified Information System Security Professional
  • CISM - Certified Information Systems Manager
  • ECIH - EC-Council Certified Incident Handler
Jacqueline Wilson