Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Kavel Woods

Information Security Analyst
Brooklyn,NY

Summary

Cybersecurity Professional with extensive experience in identifying, assessing, and mitigating organizational risks using NIST standards. Proficient in vulnerability management and preparing Authorization Packages, including SSP, SAR, and POA&M. Skilled in security assessments, compliance, and continuous monitoring to ensure organizational security objectives are achieved.

Overview

5
5
years of professional experience
1
1
Certification

Work History

Information Security Analyst

CPT Global
08.2020 - 09.2022
  • Developed, documented, and reviewed Security Assessment Plans (SAPs), POA&Ms, and SAR’s
  • Buillt and manage information security compliance program aligned with business objectives
  • Prepared and reviewed authorization packages (SSP, SAP, SAR, POA&M) for Low and Moderate
  • Develop policies, standards, and guidelines for ensuring compliance with applicable regulatory requirements as well as alignment with security strategy
  • Conducted gap analyses of organizational policies against NIST controls
  • Assessed security controls based on NIST 800-53A requirements through testing, interviewing, and examination
  • Manage risk program activities including risk registers, risk identification, tracking, and prioritization
  • Executed vulnerability scanning using Tenable Nessus and provided detailed reports
  • Presented findings to stakeholders and recommended remediation actions
  • Provided POA&M support to ensure timely mitigations
  • Performed continuous monitoring to ensure the functionality of security controls throughout system lifecycles

Compliance Analyst / Security Control Assessor

NFC Management
06.2018 - 08.2020
  • Developed and reviewed Security Assessment Plans (SAPs)
  • Conducted technical and non-technical security risk assessments following NIST guidelines
  • Performed vulnerability testing, scanning, and security control assessments for general support systems
  • Collaborated with system administrators to remediate POA&M findings
  • Prepared and updated ATO packages, including SSPs, POA&Ms, PTAs, PIAs, and SARs
  • Assisted in internal audits of information security processes

System Administrator

Kent Services
08.2017 - 05.2018
  • Maintained, installed, and troubleshot desktop and laptop systems and peripherals
  • Provided first-level support to 500 users, resolving network and application issues
  • Managed user accounts and access control
  • Documented processes and performed data backup and archiving
  • Responded to alerts and remediated issues promptly

Education

Associate of Arts - Information and Computer Systems

GC Foster College
Jamaica
01.2013

Skills

  • Microsoft Office Suite
  • Microsoft 360
  • Microsoft SharePoint
  • Tenable Nessus
  • NIST SP 800-54a Expertise
  • Governance, Risk Management, and Compliance
  • Tenable Nessus
  • Risk Management Framework (RMF)
  • Security Assessment & Authorization (A&A)
  • Continuous Monitoring
  • Vulnerability Management
  • Documentation & Reporting

Certification

CompTIA Security+, In Progress

Timeline

Information Security Analyst

CPT Global
08.2020 - 09.2022

Compliance Analyst / Security Control Assessor

NFC Management
06.2018 - 08.2020

System Administrator

Kent Services
08.2017 - 05.2018

CompTIA Security+, In Progress

Associate of Arts - Information and Computer Systems

GC Foster College
Kavel WoodsInformation Security Analyst