Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Sylvia Oputa

Summary

Information Systems Security Officer with over 5 years of experience in governance, risk and security, specializing in compliance management and security policy development. Proven track record in significantly reducing risk through proactive assessments and effective vulnerability management. Skilled in promoting cross-departmental teamwork and collaboration to strengthen security posture, while ensuring full compliance with industry standards, including NIST, FISMA, and FedRAMP regulations and requirements.

Overview

5
5
years of professional experience
1
1
Certification

Work History

Information Systems Security Officer

Aetos Security
05.2023 - Current
  • Generate and maintain the complete security Body of Evidence (BoE) while leading the Assessment & Authorization (A&A) activities according to the RMF processes (NIST 800-37, NIST 800-53, etc.) for information systems
  • Maintain compliance with industry standards such as NIST, FedRAMP and Executive Orders by enforcing strict protocols and controls.
  • Evaluate emerging technologies and made recommendations for strategic investments in information security tools and resources.
  • Maintain Authority to Operate compliance for all RMF packages.
  • Conduct regular risk assessments for proactive identification and mitigation of potential vulnerabilities and support ongoing Continuous Monitoring.
  • Improved vulnerability management by reviewing vulnerability scans, reporting, and prioritizing remediation tasks based on criticality.
  • Contributed towards reducing overall enterprise risk by consistently analyzing and refining the organization''s risk appetite and tolerance levels.
  • Developed comprehensive security policies, procedures, and training materials to strengthen organizational security posture.
  • Collaborated with IT teams to integrate security best practices into system development and operations.
  • Established effective communication channels between cross-functional departments to facilitate prompt exchange of relevant cybersecurity information.
  • Conduct security audits to identify vulnerabilities.
  • Perform risk analyses to identify appropriate security countermeasures.


Information Security Analyst

Insync Technology Solutions
03.2020 - 05.2022
  • Conducted security audits to identify vulnerabilities.
  • Analyzed network traffic and system logs to detect malicious activities.
  • Administered and monitored firewalls, intrusion detection systems and anti-virus software to detect risks.
  • Assessed vendor security during procurement processes, ensuring compliance with company policies and industry best practices.
  • Conducted internal audits to identify areas of improvement within the organization''s information security program.
  • Collaborated with IT teams to ensure seamless integration of security measures into existing infrastructure.
  • Strengthened network security by conducting regular risk assessments and implementing appropriate countermeasures.

Education

Bachelor of Science - Business Administration And Management

University of Maryland, College Park
College Park, MD
05-2018

Skills

  • Social engineering prevention
  • Physical security
  • Security policy development
  • Access control management
  • Compliance auditing
  • Compliance management
  • Information governance
  • Teamwork and collaboration
  • Multitasking
  • Attention to detail
  • Adaptability and flexibility

Certification

  • CompTIA Security+ - CompTIA.

Timeline

Information Systems Security Officer

Aetos Security
05.2023 - Current

Information Security Analyst

Insync Technology Solutions
03.2020 - 05.2022

Bachelor of Science - Business Administration And Management

University of Maryland, College Park
Sylvia Oputa