Summary
Overview
Work History
Education
Skills
Certification
References
Timeline
Generic

MICHAEL VENO

Jacksonville

Summary

Seasoned security professional specializing in cybersecurity, with a strong background in developing and implementing comprehensive information security programs. Expert in cybersecurity management and compliance auditing, leading teams to optimize security protocols, enhance data integrity, while ensuring compliance with policies and regulations (i.e., NISPOM, NIST, DoD, DAAPM, ICD, JSIG). Notable record in enhancing overall organizational security posture through strategic planning and execution. Passionate about fostering a culture of cybersecurity excellence.

Overview

19
19
years of professional experience
1
1
Certification

Work History

Information Systems Security Manager

Logistic Services International, Incorporated
Jacksonville
11.2022 - Current
  • Oversaw daily operations of the cybersecurity team, resulting in zero discrepancies and contributing to an overall 'Commendable' Security Assessment rating.
  • Developed and maintained a range of industrial and cyber security policies, procedures, and standards to ensure the confidentiality, integrity, and availability of information systems.
  • Ensures compliance with multiple boundary requirements using contract, SoW/PWS, DD254, NIST, DoD regulations.
  • Formulated and executed a comprehensive boundary decommissioning strategy, guaranteeing data integrity and removal.
  • Coordinated and implemented an auditing reduction tool, which streamlined procedures, improved efficiency, and enhanced compliance.
  • Optimized methods for maintaining accurate records of classified items, meeting compliance standards.
  • Directed staff members to update systems and apply vulnerability patches to alleviate network security threats.
  • Developed and implemented security training programs for new and existing employees.
  • Lead investigations of breaches in security protocol or policy violations by users.
  • Coordinated with external vendors providing security services such as guard force services or technology solutions.

Information Systems Security Officer Lead / Classified Cybersecurity Staff

Lockheed Martin Corporation
Hurlburt Field
06.2019 - 10.2022
  • Delivered cybersecurity expertise to USG and contractor clients across the AFSOC enterprise.
  • Implemented technology solutions for aircrew simulators, supporting pilot and maintenance training.
  • Utilized NISPOM, DAAPM, and DoD 5200.01 Volumes 1-4 guidance to weave cohesive cyber and industrial security policies.
  • Migrated the cybersecurity program from DIACAP to the DoD Risk Management Framework for assessing and authorizing information systems.
  • Oversaw the development and implementation of cybersecurity tools, improving training devices and network security posture, such as ESS, WSUS, YUM, SPLUNK, and ACAS.
  • Performed Control Account Manager responsibilities, supporting cybersecurity operations, device modifications, and the installation/removal of classified aircrew training devices.
  • Developed and implemented security training programs for new and existing employees.

Information Systems Security Officer / Classified Cybersecurity Staff

Lockheed Martin
Hurlburt Field
11.2018 - 06.2019
  • Documented all changes made to the organization's IT infrastructure to ensure DoD compliance.
  • Developed initial and recurring RMF documentation to support ATO approvals for aircrew training device networks.
  • Designed scanning protocols to detect system vulnerabilities and ensure STIG compliance.
  • Conducted regular security audits to ensure compliance with established guidelines.
  • Made recommendations to improve security procedures and systems.
  • Worked closely with fellow security and engineering personnel to remedy and alleviate technology issues.

F-35 Information Systems Security Manager / Information Systems Security Risk Analyst Associate Manager

Lockheed Martin Corp.
Marine Corps Air Station (MCAS) Beaufort
11.2016 - 11.2018
  • Led the creation and management of the first ISSO team for the USMC F-35 PTC and VMFAT-501.
  • Cybersecurity team secured highest rating in inaugural F-35 security inspection by Headquarters Marine Corps SAPCO in March 2018.
  • Hand-picked to lead the development, preparation, and presentation of F-35 cybersecurity training materials to the first United Kingdom F-35 ISSOs at RAF Marham, UK.
  • Provided cybersecurity subject matter expertise in the successful stand-up of the F-35 PTC and VFA-125 flight operations at Naval Air Station Lemoore, CA.
  • Aided the Lockheed Martin RMS Orlando cybersecurity and security team in preparing for an AFOSI/PJ compliance inspection, which yielded an overall satisfactory rating for the inspection.

F-35 Information System Security Officer Lead / Information Systems Security Risk Analyst Staff

Lockheed Martin Corporation
Marine Corps Air Station (MCAS) Beaufort
07.2014 - 11.2016
  • Provided cybersecurity expertise and established policy, processes, and procedures for F-35 site standup.
  • Led cybersecurity team in transitioning from JAFAN Certification and Accreditation to JSIG Risk Management Framework Assessment and Authorization.
  • Oversaw integrated systems enabling virtual pilot training environments, mission preparation platforms, and secure networks.
  • Facilitated implementation of external classified networks to support F-35 pilot training.
  • Created and delivered initial and recurring cybersecurity training specifically for USMC F-35 personnel.
  • Experienced with the application of COMSEC to F-35 information systems.
  • Responded to alarms and conducted investigations as required.
  • Utilized advanced technical skills and expertise to troubleshoot complex problems and implement solutions.

F-35 Information Assurance Officer / Computer Systems Security Analyst, Senior

Eglin AFB
Eglin AFB
04.2010 - 07.2014
  • Conducted certification, accreditation, and auditing activities in SAP facilities.
  • Established classified external network connectivity to enhance F-35 flight training operations.
  • Utilized Event Log Analyzer and LogRhythm to analyze security event logs from Microsoft and Linux.
  • Engaged in C&A procedures for locally approved information systems.
  • Managed user accounts in accordance with established security protocols.
  • Made recommendations to improve security procedures and systems.
  • Worked closely with IT staff on projects related to system hardening and vulnerability scanning activities.

F-22 Information Assurance Officer / Computer Systems Security Analyst

Tyndall AFB
Tyndall AFB
04.2006 - 04.2010
  • Executed duties as an information assurance officer in SAP/SCI facilities on systems and networks.
  • Performed Windows Server 2003 system administrative functions using Active Directory and implementing GPOs.
  • Experienced with equipment tracking and management programs, ensuring accountability.
  • Knowledgeable in Non-Secure Internet Protocol Network and Secure Internet Protocol Network system administration.
  • COMSEC/Secure Voice Responsible Officer proficient in configuring, keying, and managing NSA Type 1 encryption devices.

Education

Bachelor of Science - Information Systems Security

American Military University
10.2020

Skills

  • Cybersecurity management
  • Risk management framework
  • Compliance auditing
  • Vulnerability assessment
  • Incident response
  • Data integrity
  • Policy development
  • Security awareness training
  • System administration
  • Network security
  • Team leadership
  • Contract compliance
  • Stakeholder coordination
  • Access control management
  • Compliance management
  • Disaster recovery planning
  • Identity management
  • Physical security
  • Presentation skills
  • Cybersecurity policy development
  • Security plans of action
  • Vulnerability scanning
  • Effective customer communication
  • Patch management
  • Social engineering defense
  • Vulnerability assessments
  • Security event log reviews
  • Data encryption
  • Security policy development
  • Government policy compliance
  • Public speaking
  • Endpoint protection
  • Encryption technologies
  • Identity and Access management
  • SIEM management
  • Data loss prevention
  • Cybersecurity strategy
  • Teamwork and collaboration
  • Problem-solving abilities
  • Team building

Certification

  • Facility Security Officer (FSO) Program Management for Possessing Facilities - 2024
  • (ISC)² Certified Information Systems Security Professional - Since 2016, ID# 528980
  • CompTIA Security+ CE - since 2009, ID# COMP001008165763
  • CompTIA A+ CE - since 2008, ID# COMP001008165763
  • Air Force Information Assurance Manager/Information Systems Security Manager (IAM/ISSM), Information Assurance Officer/Information Systems Security Officer (IAM/ISSO) for SAP/SCI - 2009
  • Information System Security Manager training for SAP - 2006
  • Special Access Program Orientation - 2004

References

References available upon request.

Timeline

Information Systems Security Manager

Logistic Services International, Incorporated
11.2022 - Current

Information Systems Security Officer Lead / Classified Cybersecurity Staff

Lockheed Martin Corporation
06.2019 - 10.2022

Information Systems Security Officer / Classified Cybersecurity Staff

Lockheed Martin
11.2018 - 06.2019

F-35 Information Systems Security Manager / Information Systems Security Risk Analyst Associate Manager

Lockheed Martin Corp.
11.2016 - 11.2018

F-35 Information System Security Officer Lead / Information Systems Security Risk Analyst Staff

Lockheed Martin Corporation
07.2014 - 11.2016

F-35 Information Assurance Officer / Computer Systems Security Analyst, Senior

Eglin AFB
04.2010 - 07.2014

F-22 Information Assurance Officer / Computer Systems Security Analyst

Tyndall AFB
04.2006 - 04.2010

Bachelor of Science - Information Systems Security

American Military University
MICHAEL VENO