Professional Summary
Overview
Work History
Education
Skills
Certification
LANGUAGES
Timeline

Marcus Powell

Convisoinc
Upper Marlboro,United States
1
Language
1
Certification
17
years of professional experience

Cyber Security Analyst with specialization in ACAS, Nessus, Splunk, and Carbon Black App Control across large-scale DoD environments, holding Top Secret SCI w/ Counterintelligence Polygraph. Drives vulnerability management, STIG compliance, and RMF/ATO readiness for 1,000+ assets while producing dashboards, SOPs, and audit-ready documentation. Strengthens incident response and remediation by pairing log analysis with system-owner coordination and corrective actions.

Work History

Vulnerability Engineer

10 Months
Convisoinc | 10.2025 - Current
  • Analyze ACAS/Tenable vulnerability scan data across enterprise Windows, Linux, network, virtualization, and cloud environments.
  • · Research CVEs, Nessus plugins, DISA IAVM notices, vendor advisories, affected software versions, and remediation guidance.
  • · Create and manage Jira vulnerability remediation tickets for Windows servers, workstations, VDI, network devices, virtualization platforms, and enterprise applications.
  • · Identify and provide filtered affected asset lists to technical teams so remediation efforts are focused on systems impacted by specific vulnerabilities.
  • · Coordinate vulnerability remediation with Windows, Network, Virtualization, CyberIO, Desktop Engineering, and other technical teams.
  • · Perform vulnerability trend analysis and prepare status updates, metrics, and technical summaries for VM leadership and customer teams.
  • · Validate vulnerabilities using ACAS/Tenable, CyFER/Power BI, Tanium, and vendor documentation.
  • · Review authentication and scan health data to identify credentialed scan failures, suspicious results, and assets requiring additional investigation.
  • · Support Microsoft Patch Tuesday and vendor security releases by identifying new Nessus plugins, KBs, affected products, IAVs, and impacted assets.

Cyber Security Analyst / Carbon Black App Control Admin/Acas Administrator

3 Years 5 Months
Iconic Cyber Technologies/DARPA | 05.2022 - 10.2025
  • Spearheaded vulnerability management and compliance efforts across 1,000+ assets using ACAS, Nessus, Tenable Security Center, and STIGs to support RMF and ATO readiness.
  • Formulated and administered ACAS dashboards, performed weekly plugin updates, and validated credentialed scans to enhance eMASS reporting and quarterly assessments.
  • Engineered Carbon Black App Control to enforce High Enforcement policies and support DLP exception workflows in alignment with DoD CMRS compliance.
  • Evaluated and remediated security findings identified by Trellix, Nessus, and Cyber Command directives in collaboration with system owners and engineering teams.
  • Utilized Splunk and Cribl to monitor SIEM data from 20+ ACAS servers, investigate anomalies, and resolve issues related to blocked communications and firewall rules (Palo Alto).
  • Scrutinized log data using SPL queries to detect threats, conduct root cause analysis, and partner with System Administrators to implement corrective measures.
  • Supported incident response by triaging alerts, analyzing security events, and crafting documentation for lessons learned and process enhancements.
  • Coordinated with stakeholders across AD, Azure, AWS, and SCCM environments to uphold secure configurations, access controls, and encryption protocols.
  • Prepared and updated cybersecurity documentation, including SSPs, POA&Ms, ConMon artifacts, and SOPs, to ensure audit readiness and compliance.
  • Developed and delivered over 10 SOPs and work instructions to optimize ACAS operations and bolster interdepartmental cybersecurity efforts.
  • Executed Linux server hardening and compliance validation using STIG Viewer and SCAP benchmarks in Red Hat Enterprise Linux environments.
  • Conducted scheduled maintenance on Red Hat Enterprise Linux servers, which entailed patch management, security updates, and compliance validation against DISA STIGs.
  • Administered Red Hat Enterprise Linux virtual machines via VMware vSphere, performing root-level configurations, security patching, and STIG compliance updates

System Administrator / Security Operations Analyst

2 Years 7 Months
NCIS/SOFWORLD INC | 10.2019 - 05.2022
  • Executed regular vulnerability scanning using ACAS, STIG Viewer, and SCAP to bolster compliance, risk management, and audit readiness across enterprise systems.
  • Assisted with Assessment & Authorization (A&A) efforts by preparing and maintaining security control artifacts and evidence documentation.
  • Diagnosed threats and vulnerabilities, delivering actionable recommendations to safeguard information systems in accordance with NIST RMF guidelines.
  • Automated vulnerability management reporting while tracking remediation progress across multiple systems and enclaves.
  • Provided technical guidance to system owners and administrators on addressing, mitigating, and documenting security findings.
  • Created comprehensive compliance reports and presented risk and remediation status to management and stakeholders.
  • Managed operations extensively in Windows enterprise environments, overseeing servers and workstations to uphold system security baselines.
  • Conducted weekend maintenance activities, including patch management, system updates, and vulnerability scanning to ensure continuous compliance and availability.
  • Quarantined non-compliant or vulnerable Windows systems from production networks to prevent risk propagation; coordinated revalidation and reintegration of remediated systems.
  • Oversaw group policy and access control configurations to enforce security posture across Windows-based environments.
  • Collaborated with the Cybersecurity team and System Administrators to ensure timely implementation of security updates and patches.
  • Monitored system and network logs to detect and respond to anomalous activity or potential indicators of compromise.
  • Supported incident response efforts by isolating affected systems, analyzing log data, and assisting in forensic investigations.
  • Participated in continuous improvement initiatives to enhance security monitoring, vulnerability management processes, and system hardening procedures.

Information System Security Officer

1 Year 6 Months
Capstone/OPNAV | 04.2018 - 10.2019
  • Monitored network security events and traffic patterns utilizing SIEM and network analytics tools to detect potential security incidents and anomalous activity.
  • Conducted real-time threat and vulnerability analysis and participated in coordinated incident response activities, including triage, containment, and remediation.
  • Performed comprehensive investigations of security incidents and emerging cyber threats; documented findings and supported post-incident reporting and lessons learned.
  • Developed, maintained, and updated Standard Operating Procedures (SOPs) to enhance incident response, vulnerability management, and monitoring processes.
  • Supported organizational risk assessments and provided recommendations to mitigate risk and strengthen the security posture of information systems.
  • Assisted in the preparation and maintenance of security documentation, including System Security Plans (SSPs), POA&Ms, risk assessments, and audit artifacts.
  • Collaborated with system owners and engineering teams to review vulnerabilities and implement remediation strategies aligned with organizational risk tolerance.
  • Provided support for Continuous Monitoring (ConMon) activities through regular log reviews, vulnerability scans, and security control assessments.
  • Participated in preparation for security audits and inspections, ensuring evidence and documentation aligned with applicable controls and frameworks (e.g., NIST RMF).
  • Supported access control reviews and contributed to efforts to ensure least-privilege and need-to-know access principles were enforced.
  • Delivered briefings and written reports to leadership on evolving threat trends, risk levels, and system compliance status.
  • Conducted phishing awareness support activities and contributed to user security training efforts to enhance the organizational security posture.

Help Desk & IT Support Roles (Tier II)

1 Year 11 Months
Quadrant INC/DHA | 05.2016 - 04.2018
  • Acted as the first point of contact for IT and security-related support requests via phone, email, and in-person interactions.
  • Created, documented, and tracked incidents and service requests through ticketing systems (ServiceNow, Remedy)
  • Managed Active Directory administration, including user account creation, password resets, and access provisioning/deprovisioning.
  • Promoted security best practices through end-user education on data protection, phishing prevention, and password hygiene.
  • Assisted with onboarding and offboarding processes to ensure appropriate access controls and secure handling of equipment.
  • Installed and configured end-user devices and peripherals, ensuring compliance with security configurations and patching requirements.
  • Applied Windows patches and software updates using SCCM and additional deployment tools.
  • Supported VDI, Citrix environments, and remote desktop connections with secure configurations.
  • Remapped printers, managed workstation configurations, and ensured that appropriate security settings were applied.
  • Maintained equipment inventory and coordinated with vendors for repair and replacement, adhering to asset management policies.
  • Collaborated with internal IT and security teams to resolve issues related to endpoint security, antivirus, and encryption.

IT Support Specialist

2 Years 1 Month
Inova Health System | 04.2014 - 05.2016
  • Provided helpdesk and technical support for local and off-site users at Inova Facilities.
  • Reset passwords in Active Directory for Epic, Active Roles, MyChart, and Health Stream.
  • Guided users on scheduling appointments and updating information in MyChart.
  • Managed and monitored problem tickets, analyzed incidents, and determined the support required.
  • Applied diagnostic techniques to frame problems, investigate causes, and recommend solutions.
  • Maintained a database utilizing the ticketing system to track calls and messages requesting assistance.
  • Input feedback on issues into the knowledge database for team enhancement.
  • Documented IT requests in the tracking system, recorded actions, and followed up on deferred items.
  • Kept customers informed of progress and status of tickets throughout resolution.
  • Collaborated with customers and colleagues to diagnose and resolve issues.
  • Troubleshot, analyzed, resolved, tracked, escalated, and documented technical issues with efficiency to ensure high satisfaction levels.
  • Strived to resolve incidents on first contact, wherever possible, using supported remote desktop control applications as needed.
  • Mapped printers and configured workstations based on user needs.
  • Utilized SCCM for Windows patches and updates, as well as application-specific optimizations.
  • Leveraged Citrix to manage kiosks and workstations effectively.

Help Desk

4 Years 3 Months
Doorways for Women & Families | 01.2010 - 04.2014
  • Provided first-line IT support for shelter staff and residents, addressing hardware, software, and connectivity issues.
  • Supported desktop and laptop computers, printers, phones, and network devices throughout the shelter facilities.
  • Executed user account management tasks including new user setup, password resets, and access permissions following organizational security policies.
  • Educated staff and residents on safe computing practices, data privacy, and secure internet usage.
  • Monitored and maintained the shelter’s shared technology resources to ensure reliability and security.
  • Documented support requests and resolutions in Help Scout ticketing system for accountability and service tracking.
  • Assisted with onboarding and offboarding processes to ensure the proper setup and decommissioning of user accounts and IT equipment.
  • Maintained inventory of IT equipment while coordinating with vendors for repairs, replacements, or upgrades.
  • Supported basic network troubleshooting (wired and wireless), and managed escalation to external IT providers when necessary.
  • Ensured technology use adhered to the shelter’s confidentiality, privacy, and safety requirements for clients and staff.

Education

Bachelor of Science - Cyber Security

Western Governors University | Salt Lake City, UT

Certificate of Completion - Comptia SEC +, Cyber Security/Information Technology

IMO Tech Computer Training School | Lanham, MD, United States | 01.2020

AS - Cyber Security

Northern Virginia Community College | Alexandria, VA, United States | 01.2015

AS - Information Technology

Richard Bland College of William & Mary | Petersburg, VA, United States | 01.2009

High School Diploma - All General Courses

Greensville County High School | Emporia, VA, United States | 01.2008

Skills

Vulnerability Management
System Administration
NIST RMF Compliance
Incident Response
Splunk
Trellix
ACAS
Nessus
Tenable Security Center
Cribl
Security Policy Development
Risk Assessment Management
ATO Readiness
Assessment & Authorization (A&A)
Compliance Reporting

Certification

  • CompTIA Security+
  • CompTIA SecurityX (Formally known as CASP+)
  • IT Help Desk Professional Certification
  • Udemy
  • Help Desk Certification
  • Google

LANGUAGES

English

Timeline

Vulnerability Engineer

Convisoinc
10.2025 - CurrentRead More

Cyber Security Analyst / Carbon Black App Control Admin/Acas Administrator

Iconic Cyber Technologies/DARPA
05.2022 - 10.2025Read More

System Administrator / Security Operations Analyst

NCIS/SOFWORLD INC
10.2019 - 05.2022Read More

Information System Security Officer

Capstone/OPNAV
04.2018 - 10.2019Read More

Help Desk & IT Support Roles (Tier II)

Quadrant INC/DHA
05.2016 - 04.2018Read More

IT Support Specialist

Inova Health System
04.2014 - 05.2016Read More

Help Desk

Doorways for Women & Families
01.2010 - 04.2014Read More

Greensville County High School

High School Diploma from All General Courses
Read More

Richard Bland College of William & Mary

AS from Information Technology
Read More

Northern Virginia Community College

AS from Cyber Security
Read More

IMO Tech Computer Training School

Certificate of Completion from Comptia SEC +, Cyber Security/Information Technology
Read More

Western Governors University

Bachelor of Science from Cyber Security
Read More
Marcus Powell