Summary
Overview
Work History
Education
Skills
Certification
Training
Timeline
Generic

Richard Crump

CYBER SECURITY ENGINEER
Buffalo,NY

Summary

Resourceful and analytical professional with over 10 years of experience and a cross-functional background in IT engineering, cybersecurity, information security, data analysis, and technical support operations. Skilled in incident response, vulnerability identification, and implementing solutions to enhance organizational security posture. Proficient in conducting security audits, risk assessments, and penetration testing to mitigate cyber threats. Exceptional leadership abilities, excellent communication skills, strong organizational aptitude, and meticulous attention to detail. Adaptable individual with the ability to work independently and collaboratively in a dynamic and fast-paced environment. Qualified cybersecurity engineer with a robust background in IT security engineering. Demonstrated expertise in securing network infrastructures and implementing advanced security protocols to mitigate risks. Proven ability to use analytical skills and problem-solving capabilities to enhance system security.

Overview

14
14
years of professional experience
3
3
years of post-secondary education
8
8
Certifications

Work History

GLOBAL IT SECURITY ENGINEER

Moog
Buffalo, NY
04.2022 - Current
  • Deploy, manage, and maintain all security systems, including firewalls, intrusion detection systems, cryptography systems, and anti-virus software
  • Manage user accounts, permissions, and access across various platforms and systems, as well as conduct Security Assessment Authorization processes to ensure compliance
  • Conducted vulnerability assessments and penetration testing using Rapid7 to identify and mitigate security risks
  • Performed regular audits of Active Directory to identify and resolve potential security vulnerabilities
  • Threat Hunting and Detection
  • Monitor security incidents using LogRhythm (SIEM), remediate cyber alerts using the Cybereason platform, as well as utilize Okta for creating MFA, TPAM, and Beyond Trust accounts
  • Conduct email reviews for phishing attempts and implement Data Loss Prevention strategies using Proof Point
  • Created a Powershell Script to create new user accounts for OKTA an MFA Tool
  • Implemented role-based access control (RBAC) in Azure to ensure secure and compliant access to resources and services
  • Manage Intune as MDM solution and to push out windows updates
  • Reduced risk of cyberattacks by conducting regular vulnerability assessments and penetration tests.
  • Provided training sessions on cybersecurity awareness, fostering a culture of vigilance among employees.
  • Performed forensic analysis on compromised systems to identify root causes and prevent future occurrences effectively.
  • Reviewed third-party vendor security policies, ensuring alignment with organizational standards before entering partnerships or contracts.
  • Strengthened IT security infrastructure by implementing advanced threat detection and prevention measures.
  • Led regular tabletop exercises simulating various cyberattack scenarios, improving preparedness across teams.
  • Coordinated with third-party security information and event management (SIEM) providers to maintain protections and predict threats.

CYBER SECURITY ANALYST

Goldberg Segalla
Buffalo, NY
08.2021 - 04.2022
  • Monitored and analyzed security incidents across the network using SIEM and other tools to detect vulnerabilities and mitigate threats promptly
  • Monitor WAP using Meraki
  • Performed vulnerability scans and penetration tests to identify and address security weaknesses within systems
  • Performed regular audits of Active Directory to identify and resolve potential security vulnerabilities
  • Investigated security incidents and breaches and provided recommendations for remediation to ensure confidentiality, integrity, and availability of systems
  • Developed and implemented security policies, procedures, and best practices to protect against malware, ransomware, and other cyber threats
  • Collaborated with other IT teams to implement security policies, procedures, and controls, ensuring security requirements are met
  • Managed User Accounts in AD360 a manage engine tool and Azure AD
  • Performed regular reviews of user access rights, minimizing the risk posed by insider threats or compromised accounts.
  • Analyzed security incidents post-resolution, identifying areas for improvement in both technical controls and incident response processes.
  • Reduced risk of cyber attacks by conducting regular vulnerability assessments and penetration testing.
  • Enhanced network security by implementing advanced threat detection and prevention systems.
  • Performed risk analyses to identify appropriate security countermeasures.
  • Improved incident response times by developing and maintaining cybersecurity playbooks for common attack scenarios.
  • Optimized security monitoring processes by implementing automated tools for real-time threat detection and analysis.
  • Ensured compliance with industry regulations by performing comprehensive audits on existing security policies and procedures.
  • Conducted regular security risk assessments, enabling proactive identification and mitigation of potential threats.
  • Customized and managed security information and event management (SIEM) systems for real-time threat detection and analysis.
  • Recommend improvements in security systems and procedures.

INFORMATION SECURITY ANALYST/TECHNICAL SUPPORT ENGINEER

Linde via Raxlink
Buffalo, NY
06.2020 - 08.2021
  • Provisioned laptops and desktops, managed software deployment via SCCM, created End Users Accounts, and Verified System Access to ensure compliance
  • Provided escalated technical support for complex issues related to hardware, software, and network infrastructure to customers
  • Conducted security audits to identify vulnerabilities.
  • Analyzed network traffic and system logs to detect malicious activities.
  • Reduced vulnerabilities by performing thorough penetration testing on a regular basis.
  • Managed relationships with third-party vendors to ensure timely delivery of essential security products and services.
  • Provided remote assistance to clients, ensuring timely resolution of software and hardware concerns.
  • Enhanced customer satisfaction by resolving complex technical issues promptly and effectively.
  • Delivered Tier-3 support and SME input to internal and external customers.

COMPUTER SUPPORT ENGINEER

Moog via IDC
Buffalo, NY
09.2019 - 06.2020
  • Provided Level 3 technical support to end users and facilitated the seamless transfer of end-user accounts from one domain to another
  • Implemented and managed Endpoint security solutions for laptops and desktops, enhancing overall system security
  • Delivered specialized hardware and software solutions tailored to meet customer requirements and improve operational efficiency
  • Offered onsite 'hands and feet' support for network and security-related issues, ensuring minimal downtime and optimal performance
  • Troubleshot cubicle networking issues, identifying root causes and implementing effective solutions
  • Improved customer satisfaction by promptly addressing support tickets and providing accurate solutions.
  • Implemented technical solutions to solve customer issues and increase satisfaction.
  • Documented technical issues and solutions to enable tracking history and maintain accurate logs.
  • Reduced response times by prioritizing urgent requests and escalating issues when necessary.
  • Implemented automation tools to streamline workflows, reducing manual tasks and increasing productivity within the support team.
  • Installed and maintained hardware and computer peripherals to store tangible components.
  • Managed multiple projects simultaneously, staying organized and meeting deadlines consistently.
  • Patched software and installed new versions to eliminate security problems and protect data.

LINUX ADMIN /INFORMATION SECURITY ANALYST

Cobham via Engineering Help Network
Buffalo, NY
01.2018 - 06.2019
  • Managed and ensured proper operation of Linux-based systems, facilitating uninterrupted business processes for end users
  • Monitored the health and capacity of firewall environments across multiple data centers and implemented IT security and risk management frameworks to enhance overall security posture
  • Contributed to incident reporting and resolution according to established Incident Management System (IMS) procedures
  • Created end-user accounts, managed applications access rights, and resolved user requests from basic troubleshooting to complex technical issues
  • Coordinated with the network administrator in the installation, configuration, and monitoring of networking hardware
  • Conducted security audits to identify vulnerabilities.
  • Analyzed network traffic and system logs to detect malicious activities.
  • Collaborated with IT teams to ensure seamless integration of security measures into existing infrastructure.
  • Managed relationships with third-party vendors to ensure timely delivery of essential security products and services.

TECHNICAL SUPPORT ENGINEER

Advance2000
Buffalo, NY
02.2016 - 01.2018
  • Troubleshot and resolved reported issues promptly to minimize downtime and ensure operational efficiency
  • Installed, configured, and maintained virtual client desktops and mainframes, optimizing performance and reliability
  • Set up user accounts and managed file access permissions to uphold security protocols and regulatory compliance
  • Configured routers and switches for new clients, ensuring smooth onboarding and network connectivity
  • Assisted network team with backups and general server maintenance tasks, as well as collaborated with the IAM Security Engineer on system access permissions and security policies
  • Mentored junior members of the team on best practices in issue resolution techniques.
  • Served as an escalation point for challenging technical inquiries, demonstrating expertise in product knowledge and problem-solving abilities.
  • Provided remote assistance to clients, ensuring timely resolution of software and hardware concerns.
  • Enhanced customer satisfaction by resolving complex technical issues promptly and effectively.
  • Conducted root cause analysis of technical issues, implementing preventive measures for future occurrences.
  • Maintained clear communication channels with clients throughout the troubleshooting process, ensuring transparency and trust.
  • Explained technical information in clear terms to promote better understanding for non-technical users.
  • Responded to support requests from end-users and patiently walked individuals through basic troubleshooting tasks.

DATA ANALYST

Citigroup via Nfrastructure
Buffalo, NY
10.2014 - 10.2015
  • Oversaw data extraction, storage, manipulation, processing, and analysis to ensure data integrity
  • Conducted comprehensive research and collated data from multiple sources for usage in databases and research, ensuring accuracy and relevance
  • Discussed business intelligence needs with internal staff and contributed to decisions on data collection, study design, methodology, and analysis
  • Conducted data analysis and presented findings to stakeholders to support business decision-making processes
  • Produced monthly reports using advanced Excel spreadsheet functions.
  • Used statistical methods to analyze data and generate useful business reports.
  • Utilized data visualization tools to effectively communicate business insights.
  • Collaborated with cross-functional teams to ensure data integrity and accuracy, resulting in better-informed decisions.
  • Provided actionable insights through comprehensive reports and dashboards, supporting strategic initiatives.
  • Integrated multiple sources of disparate data into cohesive datasets using ETL processes, improving overall analytic capabilities.

TECHNICAL ANALYST

Delaware North Company via Nfrastructure
Buffalo, NY
01.2014 - 04.2014
  • Utilized documented incident management procedures to ensure timely restoration of service during migration efforts, minimizing downtime and ensuring service continuity
  • Troubleshot Windows 7 migration incidents to identify root causes and resolved issues promptly and effectively
  • Collaborated with Client engineering teams to develop problem resolution and avoidance measures, enhancing the efficiency and success of Windows 7 migration activities
  • Assisted in operational tasks within the Network Operations Center (NOC), including tape management and other infrastructure support duties
  • Provided exceptional support for end-users by addressing technical concerns, reducing downtime, and improving user experience.
  • Diagnosed software issues and applied troubleshooting techniques to resolve problems.
  • Collaborated with cross-functional teams to complete projects on time, ensuring client satisfaction and meeting business objectives.
  • Performed root cause analysis for recurring incidents to develop long-term resolutions that prevented future occurrences.
  • Enhanced system performance by identifying and resolving technical issues through thorough analysis and troubleshooting.

Data Security Administrator II, IAM Security Engineer

M&T Bank via Nfrastructure
Buffalo, NY
04.2013 - 08.2013
  • Updated software patches promptly, safeguarding the organization against known vulnerabilities.
  • Ensured compliance with data privacy regulations by implementing strict controls over personal information storage and processing methods.
  • Implemented effective password policies, resulting in reduced unauthorized access incidents.
  • Collaborated with cross-functional teams for efficient incident response management during security events.
  • Maintained documentation of security procedures and protocols, enabling effective knowledge sharing among team members.
  • Coordinated with IT personnel regarding security of digital assets and information systems.

System Analyst/Data Security/Application Control Team

Bank of America via Nfrastructure
Buffalo, NY
07.2011 - 04.2013
  • Provided technical support for end-users, resolving issues promptly and effectively.
  • Improved systems with addition of new features and infrastructure.
  • Enhanced user experience through the implementation of interface updates and usability improvements.
  • Analyzed existing systems and databases and recommended enhancements to solve business needs

Education

Associate of Applied Science - Cyber Network Defense

Utica College
Utica, New York
09.2018 - 05.2019

Associate of Applied Science - Computer Networking - CISCO Academy

Erie Community College
Orchard Park, New York
09.2017 - 05.2018

Associate of Applied Science - Computer Networking

ITT Technical Institution
Buffalo, New York
09.2008 - 05.2010

Skills

  • Network Security

  • Vulnerability Assessment and Management

  • Incident Response and Remediation

  • Penetration Testing

  • Security Information and Event Management (SIEM)

  • Identity and Access Management (IAM)

  • Risk Assessment and Management

  • Ethical Hacking

  • Threat Response

  • Computer Forensics

  • Mimecast

  • CrowdStrike

  • Ivanti/MDM

  • FortiGate

  • Rapid7

  • SIEM- LogRhythm

  • SOC Trained

  • Kali Linux/Metasploit

  • Proof Point

  • Palo Alto XDR

  • Palo Alto XSOAR

  • Microsoft Sentinel

  • Vulnerability assessment

  • Network security management

  • Identity and Access management

  • Security information and event management

  • Intrusion detection systems

  • Two-factor authentication implementation

  • Digital forensics investigation

  • Threat intelligence analysis

  • Ethical hacking techniques

  • Operating system hardening

  • Malware analysis and remediation

  • Virtual private network management

  • IP addressing and subnetting

  • SIEM provider management

  • Access control systems

  • Security issues troubleshooting

  • Critical thinking

  • Effective communication

  • Analytical thinking

  • Analytical skills

  • Data analysis

Certification

OSCP Penetration Testing, Ongoing

Training

  • EC-Council Mobile Forensic
  • EC-Council Web Application Hacking and Security
  • EC-Council Dark Web Forensic
  • EC-Council Malware & Memory

Timeline

GLOBAL IT SECURITY ENGINEER

Moog
04.2022 - Current

CYBER SECURITY ANALYST

Goldberg Segalla
08.2021 - 04.2022

INFORMATION SECURITY ANALYST/TECHNICAL SUPPORT ENGINEER

Linde via Raxlink
06.2020 - 08.2021

COMPUTER SUPPORT ENGINEER

Moog via IDC
09.2019 - 06.2020

Associate of Applied Science - Cyber Network Defense

Utica College
09.2018 - 05.2019

LINUX ADMIN /INFORMATION SECURITY ANALYST

Cobham via Engineering Help Network
01.2018 - 06.2019

Associate of Applied Science - Computer Networking - CISCO Academy

Erie Community College
09.2017 - 05.2018

TECHNICAL SUPPORT ENGINEER

Advance2000
02.2016 - 01.2018

DATA ANALYST

Citigroup via Nfrastructure
10.2014 - 10.2015

TECHNICAL ANALYST

Delaware North Company via Nfrastructure
01.2014 - 04.2014

Data Security Administrator II, IAM Security Engineer

M&T Bank via Nfrastructure
04.2013 - 08.2013

System Analyst/Data Security/Application Control Team

Bank of America via Nfrastructure
07.2011 - 04.2013

Associate of Applied Science - Computer Networking

ITT Technical Institution
09.2008 - 05.2010
OSCP Penetration Testing, Ongoing
EC-Council Computer Hacking Forensic Investigator (CHFI), Certified

Linkedin Learning - Python

Linkedin Learning - Incident Response Planning

Proofpoint - Certified Phishing Specialist

Proofpoint - Certified Identity Threat Specialist

Linkedin Learning - Penetration Testing Essential Training

Linkedin Learning - Threat Modeling for Security Professionals

Richard CrumpCYBER SECURITY ENGINEER