Cleared US Marine Veteran with 7+ years’ experience in Information security, Cybersecurity, Cloud computing security, IT Risk Management, Security Frameworks, Project and Team Management, Information Assurance, NIST guidelines and FISMA Compliance. An IT professional continuously seeking new knowledge to pursue self-improvement and career advancement. Ability to work with diverse staff, independently and as a contributing team member or team leader. Capable of handling multiple tasks concurrently while meeting deadlines. Motivated IT Professional always seeking challenges, seeing them as opportunities for problem solving and resolving difficult disputes.
Overview
12
12
years of professional experience
1
1
Certification
Work History
Information Systems Security Officer
Goldman Sachs
08.2020 - Current
Ensured system security requirements are addressed and integrated into the software development lifecycle by participating in daily development team scrums and working closely with development teams to implement security action items and deliverables.
Developed, maintained, and reviewed existing security documents supporting the Risk Management Framework (RMF), to include Security Plans (SPs), Concept of Operations (CONOPS), Security Test Plans (STPs), Security Control Traceability Matrixes (SCTMs) and other system security documentation.
Reviewed information system vulnerability scans and develop Plans of Action and Milestones (POA&Ms) using CSAM AND XACTA in response to outstanding vulnerabilities
Ensured compliance with contractual deliverables and RMF status reporting.
Executed examined, interviewed, and test procedures by NIST SP 800-53A Revision 4.
Liaised with System Owners and clients to ensure cyber security policies are adhered to and that required controls are implemented.
Reviewed system security plan (SSP) for accuracy and completeness and help facilitate and support the Ongoing Authorization Program for the organization by reviewing completed documentation for completeness, accuracy, and quality.
Managed vulnerabilities with the aid of Nessus vulnerability Scanners to detect potential risks on a single or multiple assets across the enterprise network and use of Splunk to audit and analyze data.
Reviewed SAR post assessment and conducted Security Assessment via document examination, interviews and manual assessments.
Conducted weekly meetings with the IT team to gather documentation and evidence about their control environment and implementing proper security controls to assist them with accomplishing security objectives and system performance requirements.
Information Security Analyst
Genesys Inc
06.2016 - 08.2020
Conducted security audits to identify vulnerabilities.
Monitored use of data files and regulated access to protect secure information.
Monitored computer virus reports to determine when to update virus protection systems.
Educated and trained users on information security policies and procedures.
Investigated and resolved incidents of unauthorized access to sensitive information.
Engineered, maintained and repaired security systems and programmable logic controls.
Analyzed network traffic and system logs to detect malicious activities.
Reviewed violations of computer security procedures and developed mitigation plans.
Performed risk analyses to identify appropriate security countermeasures.
Senior Logistics Officer
United States Marine Corps
01.2015 - 01.2016
Special Purpose Marine Air Ground Task 16-1 Combined excellent technical, analytical, interpersonal, and organizational skills to effectively support medical and logistical operational areas such as procurement for Information systems, transportation, asset management of all information technology and Logistical supplies, medical supplies.
Managed Information Assurance and maintained accountability of government Logistical and systems information assets and security information worked with executive staff to ensure operational objectives and organization goals are met by devising strategies to reduce expenses, modernize operations and revamp procedures to improve medical and logistics operations.
Reviewed and apply command cyber security policies, Information Assurances policies and verify system security and network compliance with headquarters and liaised with the US embassy in Kampala in Information Security procurement needs to meet the unit operational goals and improve Logistical and medical operations for mission accomplishment.
Provided inputs to Special Purpose Marine Air Ground Task 16-1 on procurement needs for Information Assurance, Liaised with system owners at the command to budget for the purchase of IA enabled products such as firewalls, routers, switches and right security software to protect Federal Information systems.
Offered expertise in all Logistical Asset inventory management and current stock levels to internal teams and customers to facilitate accuracy and product availability.
Supply Administration Manager
United States Marine Corps, MCAS
04.2012 - 04.2016
Maintained accountability of 64 million dollars of operational assets and requisitioned over 500,000 dollars in logistics supplies to include Information Technology asset on an annual basis.
Utilized Oracle E-Business Suite GCSS-MC (Global Combat Service Support Systems) to provide logistics chain services and ensured timely project completion in coordination with project management.
Effectively prioritized and completed multiple projects within strict budgetary and time restraints and customer and technical specifications by Maintained a strict annual budget of 1.5 million dollars across 18 sections based on objective prioritization, attention to detail, and work efficiency.
Maintained accountability of government assets and worked with executive staff to ensure operational objectives and organization goals were met by devising strategies to reduce expenses, modernize operations and revamp procedures to improve institution operations.
Led project team meetings, communicated deadline updates, outlined action items, provided recommendations and offered targeted solutions
Managed quality assurance program including on site evaluations, internal audits and customer surveys
Resolved conflicts and negotiated agreements between parties in order to reach win-win solutions to disagreements and clarify misunderstandings
Education
Master of Science - Cybersecurity Management And Policy.
University of Maryland - University College
Hyattsville, MD
05.2021
Master of Science - Business And Technology Management.
Stevenson University
Stevenson, MD
05.2019
Bachelor of Science - Management Information Systems.
Park University
Kansas City, MO
12.2015
Diploma - Advanced Desktop and Publishing
Florin Computer Institute
08.2008
Skills
Risk Assessment and Vulnerability Assessment Management
Oracle/SQL proficient
Risk Management Framework (RMF)
FEDRAMP
M&A Risk Management
Network and Cloud Security
Project planning and completion
Splunk Monitoring and Tenable Nessus scan
Project and Team Management
POAM Management and Monitoring
Global Combat Support System (GCSS-MC)
Implementing Security Controls
Information Assurance/Certification and Accreditation
Senior Closeout Specialist - Project Manager at Jefferson Solutions – Department of Transportation Federal Railroad AdministrationSenior Closeout Specialist - Project Manager at Jefferson Solutions – Department of Transportation Federal Railroad Administration