Summary
Overview
Work History
Education
Skills
Certification
Technical Proficiency And Skills
Timeline
Generic

Philemon Antwi

Herndon,VA

Summary

A seasoned, self-motivated Information Security Analyst with extensive experience and expertise in the NIST Risk Management Framework (RMF), ISO 27001, Vulnerability Management, Continuous Monitoring, and Compliance. I am seeking a position in an organization where I can leverage my years of experience and skills to contribute to its ongoing success.

Overview

10
10
years of professional experience
1
1
Certification

Work History

Information System Security Officer

Fortress Group LLC
06.2019 - Current
  • Developed and maintained Authorization to Operate (ATO) packages (SSP, SAR, POA&M) for systems to ensure compliance with organizational security requirements
  • Updated and maintained IT security policies, procedures, and guidelines according to departmental and federal requirements
  • Conducted verification and validation of security controls to determine compliance with organizational guidelines and standards
  • Identified and resolved false positive findings in assessment results
  • Recommended improvements to the Information Security Program to the Chief Information Security Officer (CISO)
  • Performed FISMA audit reviews to maintain ongoing Authorization to Operate (ATO) for the system.

Information Security Analyst

CERTIFIED FINANCIAL LLC
07.2017 - 05.2019
  • Developed and maintained a variety of supporting security documentation for ATO packages for compliance with agency and FISMA security requirements
  • Initiated and facilitate kick-off meetings and presentations with system stakeholders or clients on the operational security posture for the systems assigned to me and on security related requirement
  • Created and tracked POA&Ms for corrective of all accepted risks upon completion of Security Control Assessment (SCA) exercises and vulnerability scan results
  • Provided support for organization's risk management, policy, and technical governance processes to facilitate compliance with applicable laws, regulations
  • Supported the creation of business continuity/disaster recovery plans, to include conducting disaster recovery tests, publishing test results, and making changes necessary to address deficiencies
  • Produced vulnerability, configuration, and coverage metrics and reporting to demonstrate assessment coverage and remediation effectiveness
  • Participated in continuous monitoring that includes but not limited to POA&M management, waiver & Exception support and periodic recertification in accordance to NIST standards
  • Assessed and reported on the security state of the information systems and specified gaps and actionable recommendations and suggestions relating to the security programs with reference to enterprise information objectives and security requirements.

Helpdesk Support Engineer II

GTN LLC
03.2014 - 06.2017
  • Resolved an average of 100 helpdesk tickets per week with a 95% customer satisfaction rate
  • Reduced the average resolution time for helpdesk tickets by 50% through the implementation of a new ticketing system and improved troubleshooting processes
  • Provided technical support for the successful rollout of a new software system to 500+ employees, resulting in zero major issues reported during the rollout
  • Maintained a 99.9% uptime for all critical systems by proactively monitoring system performance and addressing any issues before they impacted end-users
  • Conducted regular security awareness training for end-users, resulting in a 50% reduction in incidents caused by employee error
  • Maintained accurate and up-to-date documentation for all supported systems and processes, resulting in a 90% reduction in the time required for new team members to become fully trained and productive.

Education

Bachelor of Science - Information Systems and Cyber Security

CENTRAL UNIVERSITY
06.2015

Skills

  • Incident Response
  • Data Encryption
  • Disaster Recovery Planning
  • Penetration Testing
  • Identity Management
  • Access Control Management
  • Two-Factor Authentication

Certification

  • CISA
  • CompTIA Security +

Technical Proficiency And Skills

  • Identifying Risks
  • Risk Management Assessments
  • Remediation Systems
  • NIST Security Standards
  • AWS
  • Security Information and Event Management (SIEM)
  • System Security Plans
  • Analyzing Systems
  • Technical Analysis

Timeline

Information System Security Officer

Fortress Group LLC
06.2019 - Current

Information Security Analyst

CERTIFIED FINANCIAL LLC
07.2017 - 05.2019

Helpdesk Support Engineer II

GTN LLC
03.2014 - 06.2017

Bachelor of Science - Information Systems and Cyber Security

CENTRAL UNIVERSITY
Philemon Antwi