Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

MARSHA CROSBY

Fairfax,VA

Summary

Encouraging manager and analytical problem-solver with talents for team building, leading and motivating, as well as excellent customer relations aptitude and relationship-building skills. Proficient in using independent decision-making skills and sound judgment to positively impact company success. Dedicated to applying training, monitoring and morale-building abilities to enhance employee engagement and boost performance.

Overview

22
22
years of professional experience
1
1
Certification

Work History

Onsite Contract Support Program Manager

Chickasaw Nation Industries, Inc., and Chenega Decision Sciences
07.2017 - 09.2024
  • Led performance compliance for 80% of the contract period, monitoring sixteen contract support personnel and subcontractors
  • Managed a team of sixteen contractors, ensuring contract standards and quality expectations
  • Improved project delivery by 30% through strategic planning
  • Ensured prompt support aligned with the performance work statement, leading to correct report submissions to the Contracting Officer's Representative (COR)
  • This oversight maintained contract standards and performance metrics, ensuring work met or exceeded expectations
  • Ensured that the network services and support provided by the Cyber Security Service Provider (CSSP) met the 100% requirement, as showed in their Service Level Agreements
  • Delivered high-quality results by setting performance metrics and monitoring progress against targets
  • Provided research, analytical, and program support directly to the CISO and the Cybersecurity Program
  • Established strong relationships with key stakeholders, ensuring support for program initiatives
  • Conducted complete program evaluations, finding areas for improvement and proactively recommending actionable solutions that led to significant enhancements
  • Met with project stakeholders regularly to assess progress and adjust if/when required
  • Leveraged project management processes and tools to define and execute projects.
  • Identified program obstacles and communicated possible impacts to the team.
  • Coached team members on professional development opportunities, contributing to improved overall performance.
  • Developed and maintained logistics workflows, procedures, and reports.
  • Participated in vendor selection and management process for program initiatives.
  • Enhanced project visibility with regular status updates, leading to increased stakeholder engagement.
  • Managed and supervised administrative and daily program operations, complying with policies and regulations.
  • Met with project stakeholders regularly to assess progress and make adjustments.
  • Improved program efficiency by streamlining processes and implementing time-saving solutions.
  • Delivered high-quality results by setting performance metrics and monitoring progress against targets.
  • Interacted with customers and clients to identify business needs and requirements.
  • Ensured regulatory compliance by closely monitoring adherence to industry standards and guidelines throughout the program lifecycle.
  • Leveraged technology tools for enhanced project tracking, reporting, and information sharing among team members.
  • Optimized resource allocation, effectively balancing priorities and managing competing demands.
  • Developed strategic plans, setting clear objectives and achievable milestones for the team.
  • Utilized data-driven decision-making approaches to inform strategy development and optimize outcomes.
  • Increased customer satisfaction through effective communication of program goals and expectations.
  • Built teams to address project goals and objectives for multiple projects.
  • Addressed and resolved technical, financial, and operational concerns by working with team members and directors.
  • Championed best practices in project management, fostering a culture of continuous improvement.
  • Established strong relationships with key stakeholders, ensuring support for program initiatives.
  • Negotiated contracts with vendors, securing favorable terms that supported budgetary constraints.
  • Engaged and worked alongside cross-functional stakeholders to manage strategic initiatives.
  • Implemented risk management strategies to mitigate potential barriers to project success.
  • Researched industry best practices in support of training development and program content.
  • Conducted comprehensive program evaluations, identifying areas for improvement and recommending actionable solutions.
  • Coached team members on productivity strategies to accomplish challenging goals.
  • Led change management efforts, supporting staff through transitions and promoting buy-in for new initiatives.
  • Collaborated with business leadership to set priorities based on business needs, resource capacity, and risk exposure.
  • Devised creative solutions to critical customer and user needs.
  • Demonstrated strong writing and presentation skills to develop briefs, memorandums, and analytical reports for clients.
  • Managed multiple strategic projects with numerous sub-projects or workstreams.
  • Spearheaded innovative problem-solving techniques that addressed challenges head-on, resulting in effective resolution measures.
  • Facilitated workshops and conducted one-on-one training to educate team members.
  • Streamlined communication channels to facilitate efficient collaboration among team members and stakeholders.
  • Worked with subject matter experts to develop and implement mentoring programs to promote better learner experiences.
  • Participated in pilot tests and revised programs based on feedback and results.
  • Established employee performance goals and provided feedback on methods for reaching those milestones.
  • Reduced waste and pursued revenue development strategies to keep department aligned with sales and profit targets.
  • Set aggressive targets for employees to drive company success and strengthen motivation.
  • Evaluated employee performance and conveyed constructive feedback to improve skills.
  • Launched quality assurance practices for each phase of development
  • Assisted in organizing and overseeing assignments to drive operational excellence.
  • Established team priorities, maintained schedules, and monitored performance.
  • Successfully managed budgets and allocated resources to maximize productivity and profitability.
  • Maintained positive customer relations by addressing problems head-on and implementing successful corrective actions.
  • Cultivated positive rapport with fellow employees to boost company morale and promote employee retention.
  • Trained personnel in equipment maintenance and enforced participation in exercises focused on developing key skills.
  • Recruited, interviewed, and hired employees and implemented a mentoring program to promote positive feedback and engagement.
  • Leveraged data and analytics to make informed decisions and drive business improvements.
  • Improved staffing during busy periods by creating employee schedules and monitoring call-outs.
  • Used industry expertise, customer service skills and analytical nature to resolve customer concerns and promote loyalty.
  • Controlled resources and assets for department activities to comply with industry standards and government regulations.
  • Maintained a professional demeanor by staying calm when addressing unhappy or angry customers.
  • Streamlined and monitored quality programs to alleviate overdue compliance activities.
  • Defined clear targets and objectives and communicated to other team members.
  • Identified and communicated customer needs to supply chain capacity and quality teams.
  • Developed detailed plans based on broad guidance and direction.
  • Planned, created, tested, and deployed system life cycle methodology to produce high-quality systems to meet and exceed customer expectations.

Senior Information System Security Manager (ISSM)

Chickasaw Nation Industries, Inc., and Chenega Decision Sciences
07.2017 - 09.2024
  • Managed the 163-application and 261-entity-level Federal Information System Control Audit Manual (FISCAM) controls for two financial systems
  • Performed compliance and security assessments, designed, and implemented controls, provided remediation support, and drafted governance documentation
  • Led SOP creation with the Privacy Act Officer, securing 100% RMF compliance and elevating privacy standards
  • Kept team compliant with security protocols and appearance standards.
  • Oversaw contract negotiations, budget implementation, disciplinary reviews, training and manpower work schedules.
  • Coordinated protective service operations with other emergency response agencies.
  • Verified excellence in regards to security programs, strategies and plans within fast-paced and high-risk environments.
  • Developed and enforced strict security policies, significantly reducing risk of data breaches and theft.
  • Customized security training programs to address specific needs and vulnerabilities within organization.
  • Advised senior management on security best practices, contributing to strategic planning and risk management.
  • Enhanced overall security by conducting comprehensive risk assessments and implementing tailored security plans.
  • Enhanced staff awareness and compliance with security protocols through comprehensive education and training programs.
  • Conducted regular security audits to identify vulnerabilities and recommend corrective actions.
  • Conducted regular security audits to identify vulnerabilities, resulting in strengthened defense mechanisms.
  • Managed a team of security personnel, providing regular training for improved performance and professional growth.
  • Mentored junior security staff, providing guidance and support to build skilled and motivated security team.
  • Conducted regular security audits and assessments to identify potential security risks and vulnerabilities.
  • Analyzed security threats and risks and developed mitigation strategies to reduce potential losses.
  • Responded swiftly to security incidents and effectively resolved security issues.
  • Delivered regular security awareness programs to educate personnel on security measures and protocols.
  • Collaborated with senior management to develop and implement strategies to mitigate security risks.
  • Supervised team of 16 security personnel during shift.
  • Cultivated relationships with external security vendors to make additional security resources available if necessary.
  • Evaluated security systems and procedures to identify areas for improvement.

Sr Cybersecurity Engineer and USMC Validator

Sentar, Inc
12.2014 - 07.2017
  • Analyzed security policies, performed security assessments, and generated compliance documentation as part of the security assessment team while measuring and tracking 50% of relevant metrics
  • Achieved ATO for eleven critical systems by conducting security and risk assessments on-site for military (Air Force) clients
  • Improved system resilience with development and execution of disaster recovery plans.
  • Created customized security awareness training materials tailored to various departments within the organization.
  • Reduced risk of data breaches by systematically upgrading security software and hardware.
  • Evaluated emerging security technologies, recommending appropriate tools to enhance organizational defense capabilities.
  • Collaborated with cross-functional teams to develop comprehensive cybersecurity policies and procedures.

IT Senior Cybersecurity Engineer

Independent Consultant
03.2013 - 12.2014
  • Conducted risk assessments that led to a 25% decrease in downtime and a 30% improvement in response times at FEMA's Mount Weather Emergency Operations Center
  • Led vulnerability assessments for DoD and IC, identifying 120 vulnerabilities (15 critical), reducing risk exposure by 30%
  • Reviewed the subscribers' JCAP security documentation and architectures
  • Improved compliance score by 60% by identifying weaknesses and implementing controls

Sr Information Assurance Analyst

Syracuse Research Center (SRC) Inc.
06.2010 - 01.2013
  • Assigned by the DAA to ensure that over 160 sites follow DCID 6/3 security standards, achieving compliance in 95% of audits conducted and reducing non-compliance rating by 30% over the year
  • Completed the migration of 160 systems to a new security framework within 8 months by adhering to agency directives and guidelines
  • Developed and recommended security policies and procedures for implementation, achieving 90% compliance with security standards

Director, Security

QinetiQ North America/Pinnacle CSI
04.2002 - 05.2010
  • Organized internal risk management audits with a 95% compliance rate, enhancing customer satisfaction by 25% through status updates
  • Supervised five ISSOs and System Admins
  • Oversaw the spending of $3 million to build a 50,000-square-foot facility
  • Managed safety and security operations at various locations, reducing incident reports by 25%
  • Established an incident reporting system that streamlined information gathering processes during critical events or emergencies.
  • Developed and executed comprehensive emergency response plans, ensuring swift action during crises.
  • Managed a team of security personnel, providing training and development opportunities to ensure their consistent growth and effectiveness.
  • Facilitated internal security awareness training sessions for all employees, fostering a culture of vigilance within the organization.
  • Spearheaded cybersecurity initiatives to protect sensitive company data from breaches or unauthorized access attempts.
  • Collaborated with local law enforcement agencies to strengthen partnerships and enhance overall safety in the community.
  • Oversaw budget allocation for security department expenditures, maximizing efficiency while maintaining high-quality service provisions.
  • Monitored CCTV cameras and alarm systems for security breaches.
  • Issued access cards to authorized personnel to monitor access points.
  • Conducted training sessions for new security personnel to facilitate compliance with security protocols.

Education

Master of Science - Information Technology, Assurance & Security

American InterContinental University
Schaumburg, IL
08.2015

Bachelor of Arts - Organizational Management, Concentration: Information Systems

Ashford University
Clinton, IA
12.2008

Skills

  • Leadership
  • Problem-solving
  • Cybersecurity
  • Risk Management Framework
  • Project Management Communication
  • Team Management
  • Time Management
  • Adaptability
  • Decision-making
  • Remote team management
  • Team leadership

Certification

  • ISC2 Certified Governance, Risk and Compliance (CGRC), 11/01/19, 03/01/26
  • CNSS 4016-Immediate (Risk Analyst Immediate), 01/01/15

Timeline

Onsite Contract Support Program Manager

Chickasaw Nation Industries, Inc., and Chenega Decision Sciences
07.2017 - 09.2024

Senior Information System Security Manager (ISSM)

Chickasaw Nation Industries, Inc., and Chenega Decision Sciences
07.2017 - 09.2024

Sr Cybersecurity Engineer and USMC Validator

Sentar, Inc
12.2014 - 07.2017

IT Senior Cybersecurity Engineer

Independent Consultant
03.2013 - 12.2014

Sr Information Assurance Analyst

Syracuse Research Center (SRC) Inc.
06.2010 - 01.2013

Director, Security

QinetiQ North America/Pinnacle CSI
04.2002 - 05.2010
  • ISC2 Certified Governance, Risk and Compliance (CGRC), 11/01/19, 03/01/26
  • CNSS 4016-Immediate (Risk Analyst Immediate), 01/01/15

Master of Science - Information Technology, Assurance & Security

American InterContinental University

Bachelor of Arts - Organizational Management, Concentration: Information Systems

Ashford University
MARSHA CROSBY