Summary
Overview
Work History
Education
Skills
Software
Certification
Timeline
Generic

Luke Barber

Cybersecurity Engineer
New York

Summary

A personable, poised, and effective team member with a background in cybersecurity and computer engineering. Through studying around the globe in Bahrain, Germany, and Canada, and cultivating skills in a variety of roles, I enjoy bringing my experience, knowledge, and unique perspective to my work.

Overview

4
4
years of professional experience
4
4
years of post-secondary education
3
3
Certifications
3
3
Languages

Work History

Cybersecurity Engineer / NIST Specialist

American Roll-On Roll-Off Carrier
New York, NY
04.2024 - Current
  • Responsible for spearheading the companies NIST 800-171 and CMMC compliance efforts, resulting in the passing of a level 1 audit.
  • Collaborated with cross-functional teams to develop and implement comprehensive cybersecurity policies and procedures, improving 80% of the companies IT infrastructure.
  • Conducted regular audits of IT infrastructure to ensure adherence to established cybersecurity policies and best practices.
  • Worked with our commercial team to audit prospective business applications/solutions for their cyber hygiene and NIST compliance.
  • Maintained up-to-date knowledge of industry trends and threat landscape through attending conferences ran by our government counterparts.

Cybersecurity Engineer

The MITRE Corporation
McLean, VA
05.2021 - 04.2024
  • Participated in the Cyber New Professionals program, gaining on-the-job experience through project rotations focusing on various cyber areas.
  • Completed 4 CTF exercises: CORTeX, CNP's CyberGames, and CNP's Cyber Capstone.

Project Contributions:

ARES:

  • MITRE internal project for creating an all-inclusive suite for evaluating practical approaches for improving network resiliency.
  • Contributed to the ARES CyBoard application, automating the deployment of cloud resources with AWS to emulate an organization's IT infrastructure.
  • Expanded the ARES Caldera plugin's automated attack capabilities to cover more techniques outlined in MITRE's ATT&CK framework.

NGA Diode Testing:

  • NGA sponsored testing program to compare and contrast diodes from different product manufacturers for use in Low to High security CDS solutions.
  • Created and automated the data sending, receiving, and metrics software, improving our data gathering efficiency by 40%.
  • Worked with an example CDS, and presented its capabilities to the CDS lab leaders and other key stakeholders.

Dioptra:

  • NIST sponsored AI testbed for implementing security experiments utilizing a variety of ML attack and defenses.
  • Expanded the capabilities of the test suite and added functionality for the upcoming 1.0 public release.
  • Aided in the creation of an FGSM attack example on an audio data trained ML model. Created queries to NIST servers for registering the experiment, trained the model on the data, and integrated existing FGSM attack code to the example.
  • Resolved outstanding issues touching various parts of the application and reviewed code from other developers.
  • Completed QA and testing responsibilities and provided feedback to the development team.

Metabus:

  • OSD DOT&E sponsored suite for testing the security of various physical communication mediums; metasploit for communication buses.
  • Integrated and supplemented a MIL-STD-1553 device simulator into the project, allowing payloads to be tested without requiring a physical device.
  • Altered metabus' 1553 device controller to use the transaction capability of the simulator and provided helper functions to run standard data transactions.
  • Fixed CI/CD pipeline for the project

NIAP Security:

  • NSA sponsored tools for automating device security validation and standards creation.
  • Created and maintained tools for automating device security validation and device security standards creation.

C# Backend Developer

123Loadboard
10.2021 - 05.2022
  • Expanded the companies 123Connect messaging service to include a "Reply by Email" option. Extensively used the Mandrill Transaction API and integrated webhooks to the existing company e-mail infrastructure.
  • Resolved other outstanding Jira tickets and participated in agile development.

Education

Bachelor's of Engineering - Computer Engineering

McGill University
Montreal, Canada
09.2018 - 12.2022

Skills

    Software Development

RESTful Web Services

Cybersecurity Auditing

Cloud Computing (AWS)

Offensive Security

Reverse Engineering

Web Security

Software

Python

Kali Linux

Wireshark

Git

MongoDB

Docker

Redis

Java

C

ARM Assembly

C#

JavaScript

PHP

AWS

Certification

DOD-TS Cleared

Timeline

Cybersecurity Engineer / NIST Specialist

American Roll-On Roll-Off Carrier
04.2024 - Current

DOD-TS Cleared

09-2023

C# Backend Developer

123Loadboard
10.2021 - 05.2022

Cybersecurity Engineer

The MITRE Corporation
05.2021 - 04.2024

CompTIA Security+: 83J469EF6DV4QYGX

12-2020

Bachelor's of Engineering - Computer Engineering

McGill University
09.2018 - 12.2022

German Sprachdiplom Stufe 1

11-2016
Luke BarberCybersecurity Engineer