Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

MARSHA CROSBY

Fairfax,VA

Summary

Experienced Program Manager with a background in leading diverse teams to accomplish project objectives. Strengths include strategic planning, process improvement, and stakeholder management. Known for leveraging technical skills to improve organizational efficiency and drive project success. Previous work contributions include streamlining processes for improved productivity and implementing innovative program strategies that increase overall performance.

Overview

23
23
years of professional experience
1
1
Certification

Work History

Onsite Contract Support Program Manager and Sr Information System Security Manager (ISSM)

Chickasaw Nation Industries, Inc.
01.2023 - 10.2024
  • Monitored 100% of the performance contract period to ensure proper compliance.
  • Prepared and submitted performance reports and documentation to the Contract Office Representative (COR).
  • Led a team of sixteen contractor-support personnel, whose pivotal role ensured successful project completion within deadlines and budgets.
  • Ensured that the network services and support provided by the Cyber Security Service Provider (CSSP) met the 100% requirement, as stated in their Service Level Agreements.
  • Managed the 163-application and 261-entity-level Federal Information System Control Audit Manual (FISCAM) controls for two financial systems.
  • Coordinated with internal stakeholders to ensure the successful implementation of the program initiatives.

Contract Security Program Manager and Sr. ISSM

Chenega Decision Sciences
07.2017 - 12.2022
  • Supervised a team of six contractor staff, ensuring they met all contract requirements and quality standards
  • Improved project delivery by 30% through detailed risk assessment analysis and strategic planning
  • Recognized by the client for dependability and responsiveness
  • Collaborated with the Privacy Act Officer to create an SOP that improved privacy measures, achieving 100% RMF privacy compliance
  • Launched a quarterly self-assessment initiative for cybersecurity, enhancing system security posture for 100+ accredited systems

Sr Cybersecurity Engineer and USMC Validator

Sentar, Inc
12.2014 - 07.2017
  • Analyzed security policies, performed security assessments, and generated compliance documentation as part of the security assessment team while measuring and tracking 50% of relevant metrics
  • Achieved ATO for eleven critical systems by conducting security and risk assessments on-site for military (Air Force) clients

IT Senior Cybersecurity Engineer

Independent Consultant
03.2013 - 12.2014
  • Conducted risk assessments, identifying potential negative-affected events and process gaps affecting continuous operations at FEMA's Mount Weather Emergency Operations Center
  • Conducted exhaustive security assessment to establish the overall cyber defense baseline for DoD and intelligence community members
  • Provided risk mitigation recommendation strategies
  • Reviewed subscribers' JCAP security documentation to verify IA requirements and logical and physical architectures and identified system vulnerabilities with corresponding controls

Sr Information Assurance Analyst

Syracuse Research Center (SRC) Inc.
06.2010 - 01.2013
  • Delegated by the Designated Approving Authority (DAA) to ensure conformance to prescribed security requirements for components of sites under the purview
  • Oversaw the security management of over 160 government and private industrial systems, ensuring information assurance during the transition from legacy DCID 6/3 approved methods to the new NIST RMF
  • Authored security authorization documentation and provided recommendations to enhance the customer's security posture, aligning with NIST controls

Director, Security

QinetiQ North America/Pinnacle CSI
Herndon, VA
04.2002 - 05.2010
  • Oversee the construction of the physical facility and the design, implementation, and maintenance of security policies, procedures, and systems.
  • Developed and Implemented Security Strategies.
  • Spearheaded security practices and monitored internal operations, communication systems, and infrastructure, including IT, local and wide-area networks.
  • Conducted Risk Management Audits.
  • Led and supervised a small team of Information System Security Officers and System Administrators.

Education

Masters of Science - Information Technology, Assurance & Security

American InterContinental University
10.2024

Bachelor of Arts - Organizational Management, Concentration in Information Systems

10.2024

Skills

  • Leadership
  • Problem-solving
  • Teamwork
  • Cybersecurity and Risk Management Framework
  • Clearance
  • Personnel Management
  • Team leadership and direction

Certification

  • ISC2 Certified Governance, Risk and Compliance (CGRC), 11/01/19, 03/01/26
  • CNSS 4016-Immediate (Risk Analyst Immediate), 01/01/15

Timeline

Onsite Contract Support Program Manager and Sr Information System Security Manager (ISSM)

Chickasaw Nation Industries, Inc.
01.2023 - 10.2024

Contract Security Program Manager and Sr. ISSM

Chenega Decision Sciences
07.2017 - 12.2022

Sr Cybersecurity Engineer and USMC Validator

Sentar, Inc
12.2014 - 07.2017

IT Senior Cybersecurity Engineer

Independent Consultant
03.2013 - 12.2014

Sr Information Assurance Analyst

Syracuse Research Center (SRC) Inc.
06.2010 - 01.2013

Director, Security

QinetiQ North America/Pinnacle CSI
04.2002 - 05.2010
  • ISC2 Certified Governance, Risk and Compliance (CGRC), 11/01/19, 03/01/26
  • CNSS 4016-Immediate (Risk Analyst Immediate), 01/01/15

Masters of Science - Information Technology, Assurance & Security

American InterContinental University

Bachelor of Arts - Organizational Management, Concentration in Information Systems

MARSHA CROSBY