Accomplished Cybersecurity professional with 6 years of system administration experience, a
Bachelor's degree in Cyber and Information Assurance, and a suite of certifications including
CASP, CySA+, and Pentest+. Backed by 1 year of dedicated cyber engineering experience, I
specialize in cybersecurity hardening, compliance auditing, vulnerability assessment, patch
management, and security analysis and remediation. My hands-on approach extends beyond
professional settings into personal time, where I continually refine my skills through self-built home
labs. This blend of practical experience, formal education, and ongoing self-driven learning
ensures a deep and evolving understanding of current cybersecurity challenges and solutions. I
am adept at applying this knowledge to safeguard systems and data, aligning security measures
with organizational goals and industry standards.
Project and Cyber Certifications
• Identified vulnerabilities in the organization's email security system and recommended comprehensive solutions to encrypt and enhance overall email security, leading to a marked improvement in protecting sensitive communications.
• Responded to and triaged alerts generated by Trend Micro XDR and CrowdStrike IDP, validating and addressing potential security incidents.
• Integrated and managed Zscaler ZPA, ZIA and ZDX solutions to ensure Zero Trust access for users across a widely diverse organization, enhancing overall security posture and user access control.
• Developed and implemented comprehensive vulnerability and patch management procedures using ManageEngine Vulnerability Manager and Nessus Scanner Pro, significantly enhancing the organization's security posture through systematic identification and mitigation of vulnerabilities.
• Responded to and meticulously analyzed spoofing and phishing attempts within the organization, utilizing in-depth email header analysis to identify and mitigate these security threats effectively.
• Managed SonicWall firewalls across four sites, including the implementation and maintenance of SSL and IPSEC VPNs, ensuring robust and secure inter-site connectivity and reliable remote access.
• Ensured identity and access management by conducting thorough audits, encompassing security groups, DUO, and Azure MFA, to verify and reinforce user access controls and authentication mechanisms within the organization.
• Prioritized assets and performed risk assessments for zero-day vulnerabilities.
• Developed and executed a comprehensive Information Security Policy aligned with ISO 27001:2020 standards, incorporating specific guidelines and procedures to strengthen organizational security posture.
• Successfully onboarded employees to adhere to policy compliance, leveraging KnowBe4 for effective security awareness training and ensuring a culture of cybersecurity awareness.
• Conducted detailed gap analyses to pinpoint and address organizational weaknesses in processes, procedures, and technical implementations, thereby enhancing overall security resilience.
• Managed and maintained computer baselines using CIS Benchmarking, skillfully implementing changes and updates through Intune and on-premises group policy to ensure system integrity and compliance.
• experience with Azure, M365, OneDrive, and SharePoint services, emphasizing the maintenance of overall security for these cloud-based platforms.