Developed and enforced security policies to protect sensitive information assets.
Conducted regular risk assessments to identify vulnerabilities in information systems.
Implemented incident response protocols to address potential security breaches efficiently.
Led training sessions to enhance staff awareness of cybersecurity best practices.
Performed forensic investigations following incidents to identify root causes, assess damage, and recommend appropriate mitigations or improvements in processes or tools.
Oversaw the deployment of security technologies, ensuring optimal performance and protection levels.
Collaborated with IT teams to integrate security best practices into system development and operations.
Network Monitoring Analyst (Mid-Level)
Valdez International Corporation
11.2022 - Current
Performed routine, scheduled hardware and software checks on core services and document results in Remedy ticket and the Master Station Log (MSL)
Work with the Senior Lead to communicate the status, risk, and impact of emerging problem areas and report findings to Incident and Problem Management teams.
Investigate out-of-normal operational performance to determine need for escalation.
Create After-Action Reports as needed
Provide guidance and training on policies, procedures and lessons learned to other team members.
Collect and document all available data on potential and actual problem areas in order to support rapid hand-off to problem management, event, or incident response teams.
Installed mission essential programs and software onto remote SIPRNET servers.
Cyber Sustainment Technician
US Department Of Defense
11.2021 - 10.2022
Interacted with users to repair, replace, program and maintain all switches, VOIP telephony, software, hardware configurations, and communication networking equipment ensuring proper system operation.
Upgraded, monitored, and maintained endpoint user machines for continous operations at the 561st .
Provided 24/7 on-call support for computer issues and network outages.
Local subject matter expert on SIPRnet and 2 other classified networks.
Supported both SIPRNET and NIPRNET operations.
Applied diagnostic, corrective, and recovery techniques to integrated information systems.
Defensive Cyber Operator
US Department Of Defense
10.2017 - 11.2021
Identified cyber incidents, anomalies, and mission impacts; closely monitored IDS logs and reported findings to management for corrective technical actions and planning efforts; supported new analysts on how to review SIEM alerts, generating SIEM dashboards, and investigate anomalous logs.
Operating SolarWinds, monitored critical network infrastructure while investigating unofficial downtime; cooperated with several teams on enabling network infrastructure with agile response; relayed findings to management detailing actions performed.
Collaborated with senior management to develop a cyber-operations plan for several mission systems, performed a complex assessment on the critical infrastructure of each mission system; created measures to ensure security of each critical piece of infrastructure; correlated findings to cyber security kill chain and presented complex findings to senior executives in a clear and understanding presentation.
Using eMASS, identified and answered NIST SP 800-53 Rev 4 and 8510 controls to ensure Risk Management Framework (RMF) compliance; reviewed documentation provided by Subject Matter Experts to investigate proper compliance; Authority to Operate (ATO) generated and approved by senior management.
Initiated vulnerability scans to detect all levels of vulnerabilities on an enterprise-wide network consisting of hundreds of critical vulnerabilities; reported findings to Vulnerability Management Team to remediate and patch critical vulnerabilities on dozens of endpoint machines.
Experienced Defensive Cyber Operator with 3+ years of experience in FISMA regulations, cybersecurity operations, and incident response
Experiance NIST SP 80-060 projects, ensuring compliance with NIST guidelines