Summary
Overview
Work History
Education
Certification
Timeline
Generic

Kendall Holmes

Fredericksburg,VA

Summary

Dynamic Cyber Security Analyst with extensive experience with excelling in Incident Response and vulnerability assessments. Proven ability to enhance security posture through effective communication and critical thinking. Skilled in SIEM tools and dedicated to continuous improvement in cybersecurity practices. Motivated individual with business acumen and willingness to take on challenging roles. Seeks opportunities to improve processes and workflows for team benefit. Conscientious, hardworking and excels at multitasking in fast-paced environments. With over 5 years of cyber security experiences and over 10 years of DoD experience to back.

Professional with strong background in cybersecurity, skilled in threat detection, incident response, and vulnerability management. Known for effective team collaboration, adaptability in dynamic environments, and results-driven approach. Equipped with expertise in network monitoring, risk assessment, and security protocols, ensuring reliable protection and mitigation strategies. Recognized for analytical thinking, problem-solving abilities, and unwavering focus on achieving organizational goals.

Overview

9
9
years of professional experience
1
1
Certification

Work History

SOC Analyst - Journeyman (Temp)

JCS Solutions
Alexandria, VA
04.2026 - Current

• Implement signature tuning for over 20 plus tools to ensure minimal false positives for
analysts.
• Conduct integrated and synchronized Offensive Cyberspace Operations (OCO) intended
to project power by the application of force in and through cyberspace by targeting
enemy and hostile adversary activities and capabilities.
• Defensive Cyberspace Operations (DCO) in order to protect data, networks, net-centric
capabilities, and other designated systems by detecting, identifying, and responding to
attacks against friendly networks, in cyberspace and across all domains.
• Investigation with a suite of over 20 tools, including Elastic, Tanium, McAfee/Trellix
ePO, MDE, Splunk, XSOAR, Wireshark, JRSS tool set and many more.
• Collaborative investigations with multiple other government agencies to determine
specific IOC’s for future investigation or to implement blocking procedures.
• Worked with senior leaders in development and implementation of Microsoft Defender
Endpoint for DISA JSP.
• Assistance in Yara/STIG implementation by providing technical guidance to secure
information systems/software that might otherwise be vulnerable.

INCIDENT REPONSE

Bespoke Corps - Pentagon, VA - Sec War Communications
Pentagon, VA
03.2024 - Current
  • Monitoring of security events using a SPLUNK and other feeds such as Menlo, Ironport and other tools, looking for significant events, and processing reports of unexpected network activity
  • Coordination of incidents activities, including written and verbal communication with other IT groups and IT management
  • Identify security incidents through hunting operations within SIEM and other relevant tools
  • Conduct weekly vulnerabilities scan and scores and distribute among entire organizations.
  • Provide detailed forensic analysis and reporting on a verify of source including packet captures, filesystem, host base application and security logs, networking and security devices.
  • Distributes endpoint security dashboard and develop reports within Trixellix to entire organizations.
  • Apply tags, created DLP policy exemption and help established that organization is above 98% compliance in accordance within FARGO guidelines.
  • Work with other teams to leverage extracted IOC and IOA to enhance security posture in our organization.
  • Ensure the integrity and protection of network, system and applications by technical enforcement of organizational security policies, through monitory of vulnerability scanning devices.
  • Lead all related 5 classified massage or spillage incidents by directing and giving step by step instructions and with writing report.
  • Provides government lead with weekly status updates of our cyber security posture and provides cyber security recommendations to government leads.
  • Provides monthly Cyber Security Summary report for our entire network to keep them abreast of known CVE that could affect the environment.

SECURITY OPERATION SPECIALIST

192nd Support Squadron - USAF
USA
06.2021 - 06.2024
  • Ensure IA polices fully support legal and regulatory requirements policies are applied to new and existing IT resources
  • Enforces the compliance of cybersecurity procedures and investigations security related incident including COMSEC incidents, classified message incidents, classified file incidents.
  • Preforms 50 initial TEMPEST inspection of office and personal home space. To verify that it is in accordance with DoD TEMPEST standards
  • Lead over 10 new training meeting where to get access to DoD network by refreshing new individual by explaining associates risk and teaching how to fill out paperworks
  • Was supervisor role over computer security where I was responsible ensure all individuals are properly trained and paperwork is update and tracking all the associate training that are required in accordance with DoD standards and local ISSM guidelines.
  • VA National Guard

CYBER DETECTION ANALYST TIER 2

Insight global - Quantico
Quantico
03.2023 - 03.2024
  • Perform network monitoring and intrusion detecting analysis using various computer network defense as intrusion detection/prevention systems, firewalls, and hosted based security system.
  • Utilize Tanium to remote connect to host system across the Marine Core Networks to identify if malicious files has been successfully removed, fill on system, or removing compromise system off the Network entirely.
  • Collaborate with the treat-hunt team to maintain awareness of current threats and review threat intelligence reports.
  • Analyze traffic, reviews logs, and identifying identifying potential security treats.
  • Writes 3pm daily reports, depending on daily triage produces any malicious finding in the Marine Core Network and share the reports and those finding to Computer Incident Response Team.
  • Triage alerts on Microsoft Azure Sentinel, investigates and verify the seriousness of alerts and see if the alert are true positive, false positive, benign or undetermined.
  • Daily research of existing and new security vulnerabilities including 0-day vulnerabilities.

CYBER SECURITY ANALYST

General Dynamics Information Technology (GDIT)
08.2022 - 03.2023
  • Conduct regular security audits and vulnerability assessment across digital infrastructures
  • Monitor network traffic for suspicious activities using various SIEM tools.
  • Preformed threat analysis in a 24/7 environment, mitigation and managing all threats and risk to company.
  • Performed detailed security evaluations and collaborative with other teams to recommend cybersecurity improvements.
  • Respond and validate IDS/IPS alerts, tune the SIEM events to minimize false positive, evaluate and analyze hardware and software in coordination and support.
  • Leverage Army Endpoint Security System tools suites monitor rouge system, tag systems for non-compliance, update signatures and install agents as required and request by government and senior leadership.
  • Monitor, investigate and identify anomalous events that are detect by SIEM or reported to the SOC from external entities, government leads, system administration, and user.

AEROSPACE ENGINEER

United States air force (USAF)
USA
12.2018 - 12.2021
  • Earned Outstanding Performer for completing over 110 inspections, over 45 high maintenance actions, and train over 10 individuals on service ready inspection. Effort played a key role in helping organization win outstanding unit of the year.
  • Used conventional and digital multimeter, voltmeters, ohmmeters and mainly more tools to establish and test equipment functionally.

AEROSPACE ENGINEER

United States air force (USA)
USA
12.2016 - 06.2018
  • Operated, inspected, and tested over 500-600 pieces of Aerospace Ground Equipment value at 70 million dollars
  • Advised and performed troubleshooting on Aerospace Ground Equipment, inspect and approved maintenance and prepared the equipment for storage and mobility deployment
  • Manage and supervise over 7 personnel for local contractor oversight spanning over 5 bases
  • Facilitated all phased of COVID-19 screening, living quarters and holding rooms.

Education

High School Diploma -

Massaponax High School
Spotsylvania, VA
01-2014

CCAF - undefined

Community College of The Air Force - United States Air Force

Certification

  • Security Plus CE, 2022-04-01, 2028-04-01
  • ECC CEH, 2022-05-01, 2028-05-01

Timeline

SOC Analyst - Journeyman (Temp)

JCS Solutions
04.2026 - Current

INCIDENT REPONSE

Bespoke Corps - Pentagon, VA - Sec War Communications
03.2024 - Current

CYBER DETECTION ANALYST TIER 2

Insight global - Quantico
03.2023 - 03.2024

CYBER SECURITY ANALYST

General Dynamics Information Technology (GDIT)
08.2022 - 03.2023

SECURITY OPERATION SPECIALIST

192nd Support Squadron - USAF
06.2021 - 06.2024

AEROSPACE ENGINEER

United States air force (USAF)
12.2018 - 12.2021

AEROSPACE ENGINEER

United States air force (USA)
12.2016 - 06.2018

CCAF - undefined

Community College of The Air Force - United States Air Force

High School Diploma -

Massaponax High School
Kendall Holmes