IT Management role
Responsible for all of IT including help desk support, networking, vulnerability management, patching, acquisition, and cybersecurity, including strategy and execution. Responsible for CMMC/DFARS/800-171 compliance, Classified IT, Insider Threat, and Facility Security Officer requirements.
CMMC/800-171 role
Created company response to contract requirements from contract offering through all required compliance reporting. Created system to track all controls and assessment objectives including POAMS, reporting for SPRS, 52.204-21, Exostar, and various prime reporting requirements. Created CMMC strategy, tech stack, procurement needs, encryption requirements, training, and all technical, procedural and policy solutions. Created ticketing system to track all requirements. Implemented all technical work personally.
ISSM role
Completed required training for RMF including eMASS training and associated training necessary to set up initial eMASS account for company. Created classified IT program starting from initial DD254/contract award.
ITPSO role
Completed required training for Insider Threat program management. Created Insider Threat program including all necessary plans, training, scheduling, and ongoing management.
AFSO role
Responsible for day to day operation of classified programs. NISS/DISS, visits, monthly checklists, DD254 reviews, COMSEC, OPSEC, TEMPEST. SAP/SAR experience with billet award process. Was promoted to FSO pending further training and DISS update.
Ability to read and interpret DFARS and other DoD regulations and create a detailed strategy to comply from control through technical configuration
undefinedWindows 10, macOS, Linux, Active Directory, SIEM, PKI, SMIME, Bitlocker, MFA, STIG/SCAP, MSSQL, MySQL, vulnerability scanning, gap analysis, ITAM, antivirus, encryption, asset management, lab equipment, SCADA controls, Android, MDM, NTP, patch management, WiFi, Firewall/network configuration, cloud data and system management, AWS, GCP, Google Workspace administration, Outlook administration, web server management, VMs, hardening, assessment, access control, SLAs, etc...