DoD Information System Security Officer with 12 years of IT security best practices experience. Action-oriented with strong ability to communicate effectively with cybersecurity, technology, and executive audiences
Overview
13
13
years of professional experience
Work History
Information Systems Security Officer
QRI, INC
Huntsville, AL
02.2023 - Current
Ensure compliance with cybersecurity requirements IAW DoD and DoD Component cybersecurity
Support the PM in the development of a Plan of Action and Milestone (POA&M) and budget that addresses the implementation of cybersecurity requirements throughout the lifecycle of the system
Support implementation of the RMF
Maintain and report systems assessment and authorization status and issues IAW DoD Component guidance
Coordinate with the organization’s security manager to ensure issues affecting the organization’s overall security are addressed appropriately
Continuously monitor the system or information environment for security-relevant events and configuration changes that negatively affect security posture.
Ensure compliance with cybersecurity requirements IAW DoD and DoD Component cybersecurity
Support the PM in the development of a Plan of Action and Milestone (POA&M) and budget that addresses the implementation of cybersecurity requirements throughout the lifecycle of the system
Support developmental operations of establishing RMF and ATO guidelines
Maintain and report systems assessment and authorization status and issues IAW DoD Component guidance
Coordinate with the organization's security manager to ensure issues affecting the organization's overall security are addressed appropriately
Continuously monitor the system or information environment for security-relevant events and configuration changes that negatively affect security posture
Organize and participates as an active member in CCB meetings. Provides feedback for change and configuration management. Develops SOC baselines, i.e. Data Loss Protection
Create CCB baseline documentatio
Senior Cybersecurity Engineer/ISSO
BigBear AI
Salt Lake City, UT
10.2022 - 02.2023
Defending systems against unauthorized access, modification and/or destruction
Scanning and assessing network for vulnerabilities
Monitoring network traffic for unusual activity
Configuring and supporting security tools such as firewalls, anti-virus software and patch management systems
Implementing network security policies, application security, and access control
Training fellow employees in security awareness and procedures
Developing and updating business continuity and disaster recovery protocols
Information System Security Officer / IA Engineer
SMS DATA PRODUCTS GROUP, INC
Montgomery, AL
05.2020 - 10.2022
Supports the establishment, executions, and maintenance of a cybersecurity risk management framework and process
Provides technical expertise during IT security incident response
Manages cyber security planning, design, development, testing, demonstration, and integration of information systems
Oversees the creation of RMF related artifacts specific to NIST security control families.
Experience with RMF, eMASSS, ACAS reports via Tenable, and Air Force Authorization and Assessment process
Oversees mitigation of vulnerabilities derived from security scans
Establishes physical security by developing standards, policies, and procedures
Generate Security Assessment Test Plans and articulate cybersecurity assessment findings in technical and non-technical ways to the customer
Leads the development of security control assessments for common platforms and the implementation of findings from said assessments
Advises management on best practices, current trends, and pertinent changes in internal and external threats and opportunities for improvement
Investigates potential incidents, conducts forensic investigations, and mount incident responses with tools such as SolarWinds
Conducts cross-functional and organizational training to raise awareness of security risks and business decisions
Senior Application Administrator
INTEGRATED COMPUTER SOLUTIONS, INC
Montgomery, AL
09.2019 - 04.2020
Experienced with analyzing system and application logs to investigate security issues and complex operational issues
Created AHLTA admin accounts and maintained ethics by adhering to HIPPA Privacy Rules for customers while working ticket queue independently
Responded to technical security questions and concerns from customers
Ensure security architecture standards and solutions to meet objectives and regulatory compliance requirements
Reviewed logs of system events for potential server issues for health care facilities
Created user accounts and provided customer password support
Used remote tools to assist clients with technical questions and resolved problems
Senior Systems Administrator
MSI, LLC
Montgomery, AL
09.2018 - 09.2019
Taught proper PHI practices for protecting medical health records in compliance with DHA standards
Performed Backup and restore content for workstations and configurations on application servers
Served as an operating system expert for Windows 10, providing technical support for the TMIP-Air Force
Provided guidance, advice, and policy interpretation to identify solutions to technical health systems problems
Implemented proper storage and physical security for server rack used to provide technical training for demonstrating basic network setup for medical systems.
Developed and implemented organization-wide information continuity for new hires and military personnel
Provided technical support for the installation, configuration, and maintenance of security solutions such antivirus software
Educated staff on information security awareness topics such as secure passwords
Managed simulations and testing environment with network cabling, demo virtual Hyper-V servers and physical server racks, as well as demonstrating training with virtual EHR demos
Planned and completed group power point presentations
Desktop Support Administrator
INTEGRATED COMPUTER SOLUTIONS, INC
Montgomery, AL
02.2018 - 09.2018
Managed the Defense Information Systems Agency's security parameters
Performed data entry tasks into computer databases from paper documents.
Developed spreadsheets to track ACAS scans and systems that were quarantined and other related data
Managed Active Directory user accounts, groups, and computer objects
Conducted risk and vulnerability assessments at the network, system, and application level
Utilized COTS/GOTS to identify, contain, mitigate, and remediate vulnerabilities, and intrusions
Experienced with HBSS Endpoint Security Support in conjunct with McAfee ePolicy Orchestrator to provide risk management for secure and classified networks and systems
Provided technical support and troubleshooting for user issues related to applications
Demonstrates excellent interpersonal and oral/written communication skills for effective interactions with customers and coworkers
Conducted training sessions on the usage of applications for users
Reviewed system logs and identified potential problems with applications
IT Support Specialist
ARMY NATIONAL GUARD
Prattville, AL
01.2011 - 02.2017
Maintained military computer systems and operations
Monitored and managed email spam filters, firewalls, and anti-virus systems
Provided guidance to unit soldiers for information assurance compliance
Protected classified information such as COMSEC and encryption keys and devices
Coordinated with other government agencies such as DISA, to update equipment
Provided field support and classes to detachment units for geospatial devices, TOC network architecture, VoIP assistance
Installed software applications as requested by customers
Diagnosed system malfunctions and provided troubleshooting assistance
Resolved network connectivity issues with routers and switches
Performed regular maintenance checks on computer hardware components
Implemented security measures to protect data from unauthorized access
Responded promptly to service requests from staff members
Coordinated with vendors for repairs or replacement of defective equipment
Identified problems in printers, scanners and networking hardware, applying required fixes or escalating issues