Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Sabrina Seward

Portsmouth,VA

Summary

Information assurance expert with active security clearance. Proven ability in security control management and NIST CSF compliance, driving improvements in endpoint security solutions across the U.S. Navy Fleet.

Overview

4
4
years of professional experience
1
1
Certification

Work History

(OIS)ESS/ACAS Software Management SME

AERMOR LLC
Suffolk, Virginia
08.2023 - Current
  • Identifies and reports any implementation, configuration, resource, and coverage gaps regarding the deployment and operation of HBSS. Responsible for deploying and sustaining the full capabilities of the HBSS to all enterprise-wide managed systems, including agent deployments, policy enforcement, reporting, and compliance.
  • Manages ISNS, CANES, SUBLAN, and Ashore configuration in the e-Policy Orchestrator (ePO) System tree for 282 ships, submarines, and Military Sealift Command (MSC) assets.
  • Subject Matter Expert (SME) providing technical expertise and information assurance support for Afloat Endpoint Security Solutions (ESS) within the U.S. Navy Fleet, ensuring compliance with cybersecurity standards, and enhancing system security to ensure external teams meet RMF and ATO requirements.
  • Collaborate with cross-functional teams to implement network migration strategies, and ensure compliance with cybersecurity frameworks to support ongoing system authorization processes.
  • Conduct remote troubleshooting and issue resolution for software installations and outages, while supporting cybersecurity risk management and system hardening efforts in alignment with RMF security controls.
  • Executes the cybersecurity Plan of Action and Milestones (POA&M) activities, ensuring that vulnerabilities are identified, tracked, and remediated to support ATO readiness for the Program of Records (POR).
  • Maintain ESS baseline security policies and products for various Programs of Record, aligning with internal security guidelines and program-specific security requirements as part of continuous monitoring efforts.
  • Implement and manage security controls (e.g., DLP, Host Intrusion Prevention (HIPS), Firewall) for both classified and unclassified networks to align with RMF security control families.
  • Perform routine policy audits to ensure ongoing system/network hardening, and assess the effectiveness of implemented security measures in alignment with continuous monitoring best practices.
  • Coordinate with Ship Force (S/F) teams to identify security risks using security tools like Trellix ePO and ACAS/Tenable.sc, providing timely solutions for issues identified in vulnerability scans and security events.
  • Create, implement, and update exceptions for Data Loss Prevention (DLP), Host Intrusion Prevention System (HIPS), and Firewall policies, ensuring compliance with established security policies.
  • Support the U.S. Navy system administrators and PORs are responsible for vulnerability remediation and system troubleshooting by reviewing logs and identifying potential security risks related to endpoint security tools.
  • Ensure proper configuration and assignment of ESS policies across the fleet, adhering to the Program of Record (POR) Policy Layout Guides (PLGs) for consistent policy enforcement and alignment with authorized configurations.
  • Maintain compliance with SAAR forms and PAA documents for system access and authorization, supporting the ongoing ATO process for NIPR/SIPR enclaves.
  • Conduct detailed monitoring of agent handler statuses, and report real-time reports on abnormalities, ensuring proper oversight for system health and security compliance.
  • Manage and troubleshoot endpoint security agent configurations, and ensure remote desktop connection configurations meet security requirements for system integrity and availability.
  • Utilize enterprise tools such as ACAS, Tenable.sc, Trellix ePO, and Vulnerability Remediation Asset Manager (VRAM) for proactive risk management, vulnerability assessment, and continuous system security monitoring.
  • Responsible for creating and managing NIPR/SIPR ePO accounts, ensuring role-based access control (RBAC) is implemented in accordance with security authorization policies.

IT Service Desk Analyst

SAIC
Norfolk, Virginia
05.2021 - 08.2023
  • Provided technical support for end-users across various software applications.
  • Troubleshot hardware and software issues to restore system functionality.
  • Documented and tracked service requests using ticketing systems effectively.
  • Operates as the initial point of contact for customers via telephone and email to provide technical support for NMCI hardware, systems, sub-systems, and/or applications. Assisted customers in resolving their IT issues accurately and promptly.
  • Troubleshoot network connectivity issues to test and analyze IT system, software performance, and issues.
  • Work with remote employees to resolve incoming client and personnel IT queries.
  • Performs system updates and performance tests after the completion of troubleshooting and necessary repairs.
  • Prioritize and resolve IT concerns, perform escalation steps for serious issues, and work with relevant stakeholders to resolve issues.
  • Avoid service interruptions by performing system maintenance, installations, and maintenance updates in line with procedures.
  • Making recommendations to optimize IT performance and to prevent future problems.
  • Collaborating with internal departments to ensure that IT needs are met.

Education

Bachelor of Science - Information Technology

ECPI University
Virginia Beach, VA
06-2022

Skills

  • Active security clearance
  • Information assurance
  • Documentation and reporting
  • Security control management
  • NIST CSF and RMF, analytical thinking
  • Analytical thinking
  • Policy implementation and auditing
  • Ethical judgment
  • Effective communication

Certification

  • CompTIA Security+ CE
  • AZURE 900
  • AZURE 104
  • AZURE 305
  • AZURE 400
  • CYSA+
  • NAVWAR- RMF-NQV Training
  • DISA ESS Administrator 201, 301, and 501 ePO 5.10 training courses
  • DISA eMASS training course
  • DISA Windows Operating System Security training

Timeline

(OIS)ESS/ACAS Software Management SME

AERMOR LLC
08.2023 - Current

IT Service Desk Analyst

SAIC
05.2021 - 08.2023

Bachelor of Science - Information Technology

ECPI University